Andy Grant

2.6K posts

Andy Grant

Andy Grant

@andywgrant

Swammer (@stanfordmswim), techie (computer security), husband of @danavollmer, father of Arlen (because of @PVBrett) and Ryker (not because of @StarTrek)

Katılım Ağustos 2010
275 Takip Edilen990 Takipçiler
Andy Grant
Andy Grant@andywgrant·
Over time, I have developed a bit of a reputation for saying no to external work for my teams. At least that's how people describe it. But I realized what I actually do is shape the work, often before it even arrives. andywgrant.substack.com/p/its-more-tha…
English
0
6
30
8.5K
Andy Grant
Andy Grant@andywgrant·
When I left consulting, I didn’t want to run another box-checking pentest factory. I wanted to build a program that hunts truths instead of bugs. This is the philosophy behind the intuition-driven offensive security program. andywgrant.substack.com/p/intuition-dr…
English
0
1
1
202
Andy Grant retweetledi
Mikko Kenttälä
Mikko Kenttälä@Turmio_·
I discovered a zero-click vulnerability in macOS Calendar that allowed attackers to add/delete files in the Calendar sandbox. This could lead to code execution and compromise iCloud Photos data. (Now fixed). More details on my blog: mikko-kenttala.medium.com/zero-click-cal… #macOS #infosec
Mikko Kenttälä tweet media
English
7
67
236
21.5K
dade
dade@0xdade·
@tqbf This seems like something I would have seen from you, or that you'd otherwise know about. I remember seeing a story about cracking someone's password hash from like... 30? 40? 50? years ago and how it still hadn't been properly cracked but that someone found a collision
English
1
0
0
104
Andy Grant
Andy Grant@andywgrant·
@KillrBunn3 @DianaInitiative Fantastic talk! And I really enjoyed your presentation style. You have great command of tone/pitch modulation for drawing the audience into and then emphasis of your points.
English
1
0
2
30
Andy Grant retweetledi
Objective-See Foundation
Objective-See Foundation@objective_see·
Stoked to announce our first mini-#OBTS: "Objective for the We" v1.0 This *free* event offers trainings & talks to students and those interested in learning more about Apple (in)security! 🍎👾 🗓️ May 9 - 10 📍 San Francisco To learn more and to apply: #oftw" target="_blank" rel="nofollow noopener">objective-see.org/we.html#oftw
English
2
24
65
29.8K
Andy Grant
Andy Grant@andywgrant·
@mubix Paraphrasing a Manager of Product Security, “you cheated by encrypting the chicken-beak symbol”. We made at tshirt out of it (ascii art chicken but with < where the beak should be)
English
0
0
1
161
Rob Fuller
Rob Fuller@mubix·
What is the dumbest thing you ever heard in a pentest/red team/security assessment/incident response report out? I’ll go first: “But if we turn WiFi broadcasting back on then anyone from anywhere in the world can connect to our corporate WiFi….”
GIF
English
13
7
46
10.5K
Bill Demirkapi
Bill Demirkapi@BillDemirkapi·
Been a wild four years, but I'm finally done 🥲
Bill Demirkapi tweet media
English
21
5
186
28.9K
Rob Fuller
Rob Fuller@mubix·
Asking for a friend, what are some of your favorite Pentest / Red Team firms? Totally valid to say one that you have worked with or for now or in the past. Just trying to get some recommendations of options that people respect.
English
72
20
190
102.8K
Andy Grant
Andy Grant@andywgrant·
@Jhyp3 Must be a quote from Spiderverse 3: Simba’s MCU Phase
Andy Grant tweet media
English
0
0
1
68
Jessica Crosby
Jessica Crosby@Jhyp3·
“Aren’t you worried about AI taking over???” >Me thinking about that time I asked ChatGPT for Spider-Man quotes and it was like “everything the light touches…. Is our kingdom”
Jessica Crosby tweet media
English
1
2
17
3.2K
Andy Grant
Andy Grant@andywgrant·
@SentinelOne @philofishal Thanks for sharing! For a clean desktop, I like to use the following: alias hidedesk='defaults write com.apple.finder CreateDesktop -bool FALSE;killall Finder' alias showdesk='defaults write com.apple.finder CreateDesktop -bool TRUE;killall Finder'
English
0
0
1
29
Andy Grant
Andy Grant@andywgrant·
@jrozner Interns. Or find college programs that encourage/require their students to partner with industry folk for a final project.
English
0
0
1
75
Joe Rozner
Joe Rozner@jrozner·
What do you do when you want to do a large scale research project you want to do but aren't an academic and don't have grad students to take advantage of to farm out work to?
English
6
0
0
1.6K
Andy Grant retweetledi
SANS Institute
SANS Institute@SANSInstitute·
SANS Institute CEO Eric Bassel presented Innovator of the Year to kick off the evening.   The Innovator of the Year Community Winner, @andywgrant! Congratulations! 👏   #SANSDMA
SANS Institute tweet media
English
1
1
5
2.2K