Kate Pearce

16.4K posts

Kate Pearce banner
Kate Pearce

Kate Pearce

@secvalve

Recovering pentester, security pragmatist. Head of security at a place, many other hats. 👩🏽‍💻🏳️‍🌈 Personal views. @[email protected]

Wellington City, New Zealand 가입일 Haziran 2010
4.1K 팔로잉4.4K 팔로워
Kate Pearce 리트윗함
Duncan Campbell
Duncan Campbell@duncan_2qq·
@rossjanderson Professor Ross Anderson, FRS, FREng Dear friend and treasured long term campaigner for privacy and security, Professor of Security Engineering at Cambridge University and Edinburgh University, Lovelace Medal winner, has died suddenly at home in Cambridge.
Duncan Campbell tweet media
English
74
293
806
487.5K
Kate Pearce
Kate Pearce@secvalve·
@herbertbos My Blackhat talks had several academic papers come out a year or so later each claiming it was “novel” and “not yet documented”. They practically copied my diagrams and didn’t reference my talk.
English
2
0
5
1.2K
Herbert Bos
Herbert Bos@herbertbos·
Hey Infosec twitter/X, I am looking for examples where academic researchers did not credit hackers/non-academic security researcher, or vice versa. Just reply here, or DM me if you don't want do this in public.
English
12
28
49
30.8K
Kate Pearce
Kate Pearce@secvalve·
@andrewtychen She absolutely could beat you up. But, she would never need to fight. You would take one look and you would never start it. She finishes fights by never needing to start them.
English
1
0
1
62
Kate Pearce
Kate Pearce@secvalve·
@AlanJ_KA7 “It sounds like carrots might actually be fruit in this case. Attackers are known to innovate and work to evade traditional definition methodologies.”
English
1
0
1
79
AlanJ_KA7
AlanJ_KA7@AlanJ_KA7·
@secvalve God yes, I’d give this tweet a thousand likes if I could. There’s always one source in the local media that’s willing to speculate on basically any topic.
English
1
0
0
136
Kate Pearce 리트윗함
Kate Pearce
Kate Pearce@secvalve·
Important note about cyber security and media interaction during active incidents: When those who know the details can’t talk, those who can talk won’t know the details.
English
8
57
202
0
Kate Pearce
Kate Pearce@secvalve·
@taramcallister4 But the “potential savings” of $3.70 if you fly seven hours after you need to be there and/or stay 45km away. The potential savings!!!1!
English
0
0
1
80
Kate Pearce
Kate Pearce@secvalve·
@grogersxyz There is a reason the phrase “as much as the market can bear” exists….
English
0
0
1
39
Geordie Rogers
Geordie Rogers@grogersxyz·
Stuff is asking for whinging landlords to complain about increased costs while the treasury reveals that the main factor driving increases in rents isn’t increased costs, it’s hoarding and greed i.stuff.co.nz/stuff-nation/1…
English
1
0
3
356
Kate Pearce 리트윗함
VeryBritishProblems
VeryBritishProblems@SoVeryBritish·
Do NOT season the pigeons
VeryBritishProblems tweet media
English
121
1.9K
21.1K
1.1M
Kate Pearce 리트윗함
Daniel Moghimi
Daniel Moghimi@flowyroll·
Dropping #Downfall, exploiting speculative forwarding of 'Gather' instruction to steal data from hardware registers. #MeltdownSequel - Practical to exploit (POC/Demo) - Defeat all isolation boundaries (OS, VM, SGX) - Bypass all Meltdown/MDS mitigations. downfall.page
GIF
English
16
376
954
228.4K
Daniel
Daniel@DeeMickSee·
Q: What do you call 10 Twitter Engineers? ... A: 10 X Engineers 🥁
English
1
0
1
125
Kate Pearce 리트윗함
Dino A. Dai Zovi
Dino A. Dai Zovi@dinodaizovi·
Where @dotMudge makes an important point at @SummerC0n: real data on ATOs shows that SMS 2FA is fine for the vast majority of users. It prevented 100% of 3.3B automated password stuffing attacks, 96% of 12M bulk phishing, and even 76% of <10k targeted attacks seen over last year.
Dino A. Dai Zovi tweet media
English
17
111
313
187.5K
Kate Pearce
Kate Pearce@secvalve·
This tweet bought to you by the one person with overlapping interests.
English
0
0
0
187
Kate Pearce
Kate Pearce@secvalve·
What’s that about Microsoft Entrapta?
GIF
English
1
0
3
347
Kate Pearce
Kate Pearce@secvalve·
Web3 is dead, long live webGPT
English
5
1
8
604
Kate Pearce
Kate Pearce@secvalve·
Which is worse?
English
3
0
1
644
Geordie Rogers
Geordie Rogers@grogersxyz·
@secvalve I feel quite strongly that allowing your developers access to production data is a larger risk than implementing a bug in production that might expose the data
English
1
0
0
119