Ron Bowes

Profile banner

Ron Bowes

@iagox86.bsky.social

Is this thing on yet? *tap* *tap*

Security Researcher at GreyNoise. https://skullsecurity.org
Avatar
The way software vendors treat researchers doing *free* work for them continues to be *incredibly* bad. This post from ZDI really sums it up: www.zerodayinitiative.com/blog/2024/7/...
Zero Day Initiative — Uncoordinated Vulnerability Disclosure: The Continuing Issues with CVDwww.zerodayinitiative.com
Reposted byAvatar Ron Bowes
Avatar
In all seriousness: the very idea that someone can take highly classified documents, store them in a public place, defy any number of requests, subpoenas, etc., and then face NO CONSEQUENCES AT ALL is genuinely shocking, and should terrify anyone who cares about national security.
Reposted byAvatar Ron Bowes
Avatar
🥪 & #threatintel: something suspicious a-bot this spike in IP addresses attempting to exploit Mikrotik CVE-2018-14847... new botnet/addition? viz.greynoise.io/tag...#threatintel: something suspicious a-bot this spike in IP addresses attempting to exploit Mikrotik CVE-2018-14847... new botnet/addition? viz.greynoise.io/tag... 1/2
Reposted byAvatar Ron Bowes
Avatar
A Crossword Puzzle xkcd.com/2957
Avatar
Email purportedly from McAfee to my legit TicketMaster email. On one hand, this sounds like a scam. On the other hand, it's the same kinda deadbrained thing you'd expect a company like TicketMaster to do in response to a breach Deeply unclear on whether this is real. Or, honestly, what's worse. :)
Reposted byAvatar Ron Bowes
Avatar
Avatar
"Can I schedule an appointment to see my doctor?" "Sorry, they don't have any available appointments" US healthcare in a nutshell.
Reposted byAvatar Ron Bowes
Avatar
Google: AI Potentially Breaking Reality Is a Feature Not a Bug www.404media.co/goog...
Avatar
This is such a cool feature of Grey Noise. Guilt-free vacation, because nobody's working or having meetings! Thankfully, my team created a Signal group so we could keep shitposting together and not go through withdrawal :)
We're going on summer break - every employee is on mandatory PTO starting TODAY. Services will continue to operate. A skeleton crew will be on call for emergencies. If y'all need us over the next week, you'll have to ask @andrewmorr.is , jk don't do that, you'll just have to wait til July 8th. ✌️
Avatar
Happy fourth birthday (hatchday?) to Clang - my bitey little princess :)
Reposted byAvatar Ron Bowes
Avatar
Uuuuh RCE in OpenSSH. Exploitable on 32-bit systems, possibly on 64-bit, too. The advisory is... idk, modern vulnerability exploitation is basically art. www.qualys.com/2024/07/01/c... The OpenSSH release notes are thorough, practical, and to the point. www.openssh.com/releasenotes...
Reposted byAvatar Ron Bowes
Avatar
Avatar
So at what point did "recommended for you" (on Play Store etc.) go from "things we think you'll like" to "things that'll make us money"?
Reposted byAvatar Ron Bowes
Avatar
🚨 New path traversal vuln found in D-Link DIR-859 routers, leading to account info disclosure! ⚠️ No patch coming as it's End-of-Life. https://buff.ly/3VIOniP
Reposted byAvatar Ron Bowes
Avatar
It's not "I suffered so you should too," it's "I suffered and no one else should ever have to."
Reposted byAvatar Ron Bowes
Avatar
Reposted byAvatar Ron Bowes
Avatar
"What I learned from this experiment is that flooding the internet with an infinite amount of what could pass for journalism is cheap and even easier than I imagined, as long as I didn’t respect the craft, my audience, or myself." You are not prepared for coming flood. www.404media.co/i-pa...
I Paid $365.63 to Replace 404 Media With AIwww.404media.co Paying a freelancer on Fiverr to create a plagiarizing ChatGPT-powered news site revealed an industry of middlemen and services trying to game Google Search.
Reposted byAvatar Ron Bowes
Avatar
Reposted byAvatar Ron Bowes
Avatar
1/ Reminder that violent crime has gone down since the 1960s, and wage theft and civil asset forfeiture have gone up since the 1980s. Cops stole more property than burglars stole in the last five years. More money is lost to wage theft than lost to all violent crimes for the last five years.
Reposted byAvatar Ron Bowes
Avatar
Reposted byAvatar Ron Bowes
Avatar
Such a waste that someone threw out all those perfectly good seagulls
Reposted byAvatar Ron Bowes
Avatar
"Expand public transit and make it free? And who's gonna pay for that?" Me you fucking goofy bastard. I pay taxes. give me healthcare instead of buying another 700,000 tear gas canisters for the police to spray on my friends.
Reposted byAvatar Ron Bowes
Avatar
⚠️ We are now tracking CVE-2024-29824, which is a remote code execution vulnerability (via SQL injection and xp_cmdshell) in Ivanti Endpoint Protection Manager, based on the proof of concept built by horizon3ai. viz.greynoise.io/tags/ivanti-...
Tag Details | GreyNoise Visualizerviz.greynoise.io At GreyNoise, we collect and analyze untargeted, widespread, and opportunistic scan and attack activity that reaches every server directly connected to the Internet.
Reposted byAvatar Ron Bowes
Avatar
Reposted byAvatar Ron Bowes
Avatar
We are looking for a seasoned Senior Product Marketing Manager to join GreyNoise. We're on the cusp of releasing some epic new things so you'd really get to have fun with some new tech! grnh.se/ac73d2f95us
Senior Product Marketing Managergrnh.se United States or Remote
Reposted byAvatar Ron Bowes
Avatar
⛱️ and #threatintel: GreyNoise has observed exploitation for CVE-2024-4577, a remote code execution vulnerability in Windows-based PHP installations. viz.greynoise.io/tag...#threatintel: GreyNoise has observed exploitation for CVE-2024-4577, a remote code execution vulnerability in Windows-based PHP installations. viz.greynoise.io/tag...
Reposted byAvatar Ron Bowes
Avatar
Honored to be named to the #RisinginCyber list by Notable Capital! Thanks to the CISOs, VPs + Investors for recognizing the small part we are playing in innovating cybersecurity. 🚀
Reposted byAvatar Ron Bowes
Avatar
My company: click this link to take your cybersecurity training immediately or risk termination Training: be wary of emails creating a sense of urgency and fear asking you to click a link
Avatar
I just wanted to read my book!!
Reposted byAvatar Ron Bowes
Avatar
A sort of day 7 checkpoint of Check Point's CVE-2024-24919...
From vague advisories to in the wild exploits, #CVE-2024-24919 is more than a checkpoint— it's a potential gateway to domain admin exploits! Dive into our latest post to see how this #0-day evolved and why patching ASAP is crucial. ⚠️
What’s Going on With Checkpoint (CVE-2024-24919)? | GreyNoise Blogbuff.ly Find out more about CVE-2024-24919, a zero-day vulnerability in Check Point's Network Security gateway products that threat actors are exploiting in the wild.