Rami McCarthy (@ramimacisabird) 's Twitter Profile
Rami McCarthy

@ramimacisabird

security, for the internet, at @wiz_io!
opinionated about security.
(he/him) @[email protected], bsky=ramimac.me

ID: 1138180991556698112

linkhttp://ramimac.me calendar_today10-06-2019 20:27:49

865 Tweet

1,1K Followers

723 Following

haya14busa (@__haya14busa__) 's Twitter Profile Photo

We've completed our investigation and remediation for reviewdog regarding the recent incident—impact limited to the v1 tag. Investigation into the upstream cause is ongoing. Details: github.com/reviewdog/revi…

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

New update from はや(・ε・)ぶさ on the tj-actions supply chain attack: github.com/reviewdog/revi… * reviewdog contrib. hit via another repo * that compromise used a compromised account to invite a temporary malicious account, and a gato-x secret dump payload ... more to come

Wiz (@wiz_io) 's Twitter Profile Photo

🎙️ New #CryingOutCloud episode! 🚨 Amitai Cohen 🎗️🤟 & Eden Naftali chat with Nir Ohfeld on #IngressNightmare — an unauth RCE in NGINX Ingress Controller. Listen now: 🎧open.spotify.com/episode/0G1Mml… 🍏 podcasts.apple.com/us/podcast/ing…

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

Amazing timing from John publishing this research on Secrets in Github Actions Workflow Logs, including a cool exploit of a 2s exposure window against CodeQL praetorian.com/blog/codeqleak…

Amazing timing from John publishing this research on Secrets in Github Actions Workflow Logs, including a cool exploit of a 2s exposure window against CodeQL

praetorian.com/blog/codeqleak…
Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

📝Everything you need to know about MCP security synthesized Covering local and remote servers, and clients Today's options, and tomorrow's possibilities wiz.io/blog/mcp-secur…

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

In light of recent GitHub Actions incidents (Ultralytics, tj-actions...), I wrote up a practical guide to hardening for Wiz Covers permissions, secrets, 3rd-party Actions, ++ Use it to avoid learning these lessons the hard way: wiz.io/blog/github-ac…

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

⏪There is a lot more to be said about the tj-actions incident. Here's a little sample of five previously unpublished details:

⏪There is a lot more to be said about the tj-actions incident. Here's a little sample of five previously unpublished details:
Scott Piper (@0xdabbad00) 's Twitter Profile Photo

Since fwd:cloudsec's first year in 2020, 11 of 51 sponsors (22%) have been acquired. 2 of 18 of this year's US sponsors were acquired in the 3 months since they were selected. I don't know if it's causation, but sponsoring fwd:cloudsec seems to be correlated with good things. 🤔

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

Big fan of Chris Norman and Ziyad Edher's BSidesSF talk! Admission Control for Dependencies is an under rated and under discussed tool in supply chain security: youtube.com/watch?v=fCaQOP…

Scott Piper (@0xdabbad00) 's Twitter Profile Photo

My keynote from BSidesSLC is up! This is a lessons learned from my mistakes and a behind the scenes look at how and why I did some things with regard to trying to get things fixed both inside and outside of a company. youtube.com/watch?v=SXiwyR…

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

> We've set up a web endpoint so vetted ... security researchers can submit suspected exposed credentials for review > To report exposed Google Cloud credentials, please contact [email protected] cloud.google.com/blog/products/… really buried a lede!

Rami McCarthy (@ramimacisabird) 's Twitter Profile Photo

Another tidbit from this research: A "fun" side effect of GitHub and popular secrets scanners western-centricity - China's AI Tigers are overrepresented in secrets leakage

Another tidbit from this research:

A "fun" side effect of GitHub and popular secrets scanners western-centricity - China's AI Tigers are overrepresented in secrets leakage