Jonathan Walker
promptinjection.bsky.social
Jonathan Walker
@promptinjection.bsky.social
I enjoy security in all of its forms but mostly cloud security. Enjoy golang, vuejs, terraform, aws, kubernetes, docker, and hacking together interesting tools.
Reposted by Jonathan Walker
The CFP for the very first hacker con I submitted to and spoke at is open. I’m also on their CFP board!

Submit to Thotcon’s CFP by January 1, 2025!

If you make submitting to a con in 2025 your New Year’s resolution, you’ll accomplish it on day 1 if you submit on Jan 1.

www.thotcon.org/cfp.html
THOTCON - Chicago's Hacking Conference - Call for Papers [CFP]
Chicago's Hacking Conference
www.thotcon.org
December 10, 2024 at 7:19 AM
Reposted by Jonathan Walker
Repo swatting: Upload crypto miner to victim repo -> report abuse to GitHub/Gitlab -> repo is taken down. sourcecodered.com/repo-swatting/
Repo swatting attack deletes GitHub and GitLab accounts
This brand new type of attack combines two fundamental functions in SCM providers for malicious intent by abusing a trust and safety feature meant to protect users.
sourcecodered.com
November 21, 2024 at 1:17 AM
In response to @frichetten.com finding ap-southeast-7 in a Bluesky post, I am happy to announce my new blog post here first. Please join me in my discovery of us-east-15 asset and my failed attempt at intercepting satellite communications.

www.securityrunners.io/post/stop-us...
Stop Using Predictable Bucket Names: A Failed Attempt at Hacking Satellites
This blog discusses the security risks of S3 bucket namesquatting in AWS, where attackers could potentially exploit predictable bucket naming patterns that include region names, and documents the auth...
www.securityrunners.io
November 21, 2024 at 12:56 AM