Phil Ames (@philames) 's Twitter Profile
Phil Ames

@philames

Information security professional. Tweets/opinions are my own.

infosec.exchange/@failames

ID: 37951495

linkhttp://www.linkedin.com/in/phillipames calendar_today05-05-2009 15:54:19

1,1K Tweet

841 Followers

1,1K Following

marissamayer (@marissamayer) 's Twitter Profile Photo

Othman Laraki Very thought provoking post, @Othman! Not sure I agree with all of your views, but my takeaways are: * Google needs to start caring more about winning in AI than about internal politics/political agendas. From the outside, it appears there’s a high level of “hand-tuning” going

Marc Stevens (@realhashbreaker) 's Twitter Profile Photo

Here is a 72-byte alphanum MD5 collision with 1-byte difference for fun: md5("TEXTCOLLBYfGiJUETHQ4hAcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak") = md5("TEXTCOLLBYfGiJUETHQ4hEcKSMd5zYpgqf1YRDhkmxHkhPWptrkoyz28wnI9V0aHeAuaKnak")

0xor0ne (@0xor0ne) 's Twitter Profile Photo

Series by Pepe Berba about persistence in Linux environments Map: pberba.github.io/assets/posts/c… Auditd: pberba.github.io/security/2021/… Accounts: pberba.github.io/security/2021/… Systemd: pberba.github.io/security/2022/… Scripts: pberba.github.io/security/2022/… Generators: pberba.github.io/security/2022/… #Linux

Series by <a href="/__pberba__/">Pepe Berba</a> about persistence in Linux environments

Map: pberba.github.io/assets/posts/c… 

Auditd: pberba.github.io/security/2021/… 

Accounts: pberba.github.io/security/2021/… 

Systemd: pberba.github.io/security/2022/… 

Scripts: pberba.github.io/security/2022/… 

Generators: pberba.github.io/security/2022/… 

#Linux
Phil Ames (@philames) 's Twitter Profile Photo

Every time I think I have enough guitars, I consider there are enough songs that have to be played in Eb tuning to respect the original (randomly looking at you, weezer, Collective Soul, and so many others) I should definitely just get one more to leave in that tuning, right?

lcamtuf (@lcamtuf) 's Twitter Profile Photo

Sad to hear about the passing of David Ross. He never sought recognition, but made a difference for the industry - and left a mark on many people's lives. He was a force for good when I met him in his MSFT days, a great teammate at Google, and a good person in every other way.

0xor0ne (@0xor0ne) 's Twitter Profile Photo

Free Rust course developed by the Android team at Google "Comprehensive Rust" google.github.io/comprehensive-… #rustlang

Free Rust course developed by the Android team at Google

"Comprehensive Rust"

google.github.io/comprehensive-…

#rustlang
kai (@0xskeletonkey) 's Twitter Profile Photo

If you're on an internal pentest engagement, always go after printers. There's a good chance if you're in a decent sized environment they have scan to email set up. Go into the network settings and change the SMTP server to one under your control. Then do a connection test and

Phil Ames (@philames) 's Twitter Profile Photo

Now waiting for the "Derek Zoolander school for those who can't use LLMs good and want to learn how to do other stuff good too" to open up.

GitHub Projects Community (@githubprojects) 's Twitter Profile Photo

| ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄ ̄| | Don't Push To Production On Friday | |_________________| \ (•◡•) / \ / —— | | |_ |_

Ben Hawkes (@benhawkes) 's Twitter Profile Photo

"OpenSSH Backdoors" -- a few thoughts on supply-chain attacks against OpenSSH, and what we can learn from both historical and modern events. blog.isosceles.com/openssh-backdo…