Profile avatar
rgblights.bsky.social
Cyber guy. Former NSA cybersecurity director and chief of TAO. Lover of memes. Warning - occasional outrageous Christmas light content.
159 posts 10,014 followers 571 following
Prolific Poster
Conversation Starter

As I testified to congress, I’m worried about TP-Link products! Breaking: DOJ “criminal antitrust investigation into pricing strategies by TP-Link Systems Inc, a California-based router maker with links to China whose equipment now dominates the American market” www.bloomberg.com/news/article...

Since being part of the CSRB that reported on security shortcomings, I've seen tangible efforts improving the security at Microsoft. The Secure Futures Initiative is making progress: www.microsoft.com/en-us/securi...

TP-Link origins: “Chinese corporate records and government announcements show … much of the research, development and manufacturing operations of … new US company remain in China, entrenched in the country’s state-sponsored technology ecosystem” t.co/mMFw4LkUDv

How should you think about security related to the threat of Quantum Computers? Businesses need to start their multi-year journey now. In my role as PwC US Cyber, Risk & Regulatory Senior Fellow, I offered some thoughts here: www.pwc.com/gx/en/issues...

Huawei not only uses predatory pricing practices to undercut the more secure western products but it appears they use bribery too… www.reuters.com/world/europe...

AI empowered software development is advancing at an astonishing pace. Check out my story about creating a custom iPhone app in only 30 minutes. New tools enable friction-free development with remarkable efficiency. It is the dawn of a new era... www.joycecyber.com/my-post

I got to testify to the House Select Committee on the Chinese Communist Party last week. One focus area was the threat from TP-Link routers. Having 60% of the US consumer Wi-Fi market flooded with devices that get automatic software updates from the PRC is a risk we can't accept.

Always great to be on the Risky Business podcast! Give it a listen here!

This week's special guest co-host is @rgblights.bsky.social, who'll be joining @metlstorm.risky.biz and I to talk through the week's news. Then we'll chat with SpecterOps about new features they've built in Bloodhound to address NTLM-related risks to your network NTLM.. still a problem In 2025 :(

My opening statement to the House Select Committee on the CCP drive.google.com/file/d/1fwlE...

Former top NSA cyber official: Probationary #firings ‘devastating’ to cyber, #nationalsecurity. Rob Joyce emphasized during a House hearing how important probationary employees are to #NSA efforts to counter #China and other threats in #cyberspace. cyberscoop.com/joyce-china-...

Sinking to new depths…

Australia beat us to the Huawei ban. The US got rid of Kaspersky first.

I continue to be impressed by the capabilities of Sandfly Security. If you run Linux—whether on big servers or embedded devices—you should check out their creative and powerful agentless approach! www.linkedin.com/feed/update/...

We need to make sure we don’t cripple ourselves in the 5G race! thehill.com/opinion/tech...

A day watching robot violence!

Are your home Wi-Fi routers a secret entry point for nation-state hackers? I discussed the alarming trend of PRC cyber ops using devices like TP-Link routers, along with intrusions into critical infrastructure & telcos: NatTech Sec podcast. @scsp.bsky.social scsp222.substack.com/p/episode-68...

Ghidra 11.3 is OUT! 
PyGhidra is the new feature to be excited about.

It’s a Python library providing direct access to the Ghidra API. 

 I expect this to massively increase Reverse Engineering tool development, as it significantly reduces the barrier to entry for Ghidra interaction.

Another gathering of the Joyce cybersecurity cabal. Working to make the world a safer place!

Blocking the HP Enterprise / Juniper Networks deal makes no sense-especially this week. Are we really going to let Huawei and China own the market on critical technology infrastructure after Salt Typhoon and other intrusions? This is antitrust craziness. #HPE #JNPR www.investors.com/news/technol...

Last weekend I got to talk about the light wands I use in my Christmas display and give a live demonstration at Shmoocon. Thanks Carson Zimmerman, official Shmoo photographer, for the awesome pics. You have to do the "we will rock you" soundtrack in your head! www.scworld.com/perspective/...

@shmoocon.bsky.social light wand /Christmas light resources can be found here: lightsatshmoo.free.nf

Light wand challenge 1 is complete! @psifertex Jordan Wiens has successfully parsed captures to understand R/G/B values, checksum, and static values necessary to frame the transmission. GitHub documentation promised after cleanup. #Shmoocon Challenge 2, Flipper app is still unclaimed at this time

As seen at Shmoocon ❤️❤️

As of Saturday 4:15pm, nobody has submitted either of the light wand challenges at @shmoocon.bsky.social Details on the challenge in the deck here: drive.google.com/file/d/1OKYO...

Thanks @_0xKiwi IYKYK!

Day one (and a sleepy me) at Shmoocon in the books! I met a ton of people I knew from online only and saw many DEFCON peeps too! Really loved @rgblights.bsky.social talk with blinky lights, which will always hold my ADHD ass's attention.

Everyone has a light wand in their #shmoocon swag bag. Don’t forget to bring it to the 6pm talk! They are RF controlled and part of the experience!

Christmas Robot was easily the favorite song in our holiday light show this year. It's an earworm!

Congratulations, @rgblights.bsky.social. www.wsj.com/articles/for...

For all my math peeps out there: 2025 is pretty amazing mathematical arrangement. 1. 2025 is a perfect square (45×45=2025) 2. 2025 is the sum of digits of cubes from 1 to 9 (1³ + 2³ + 3³ + ... + 9³ = 2025) 3. 2025 is the first square year after 1936 (Cont…)

If you are lucky enough to have a shmoocon badge, let's make sure we go to this talk at 18:00 Friday. @rgblights.bsky.social is awesome. I will be in the front row

A story about my Christmas obsession! www.theregister.com/2024/12/25/j...

It’s not a bad way to spread cheer I guess 😬 Thanks to @rgblights.bsky.social for the inspiration to get started and the wonderful @mrschockymonster.bsky.social for putting up with me doing it 🤗