Richard Clarke
banner
rsclarke.bsky.social
Richard Clarke
@rsclarke.bsky.social
Application Security
Is this in scope for Apple's bug bounty? www.youtube.com/watch?v=XOB...
October 21, 2025 at 1:42 AM
Trying more to leverage AI in vulnerability discovery, findings are often reported "critical". In review, constraints are ignored that limit impact, only when challenging assumptions does it reach the same conclusion. Good for finding starting points to assess from an idea.
September 5, 2025 at 9:13 AM
How you know you're researching a service on AWS.
July 11, 2025 at 7:36 AM
From AWS VPC architecture design doc to deployed. Do you really need infrastructure as code?
June 12, 2025 at 6:29 AM
I started reading about why we might have resistance to certain tasks, which led me down a path to consider, how we might align engineering and security team motives for better dependency management, in turn fixing the vulnerabilities associated with them.
May 27, 2025 at 5:41 AM