Sign in

Mackenzie Jackson

@advocatemack.bsky.social
88 followers 408 following 18 posts

DevRel @AikidoSecurity - Kiwi living in the Netherlands

PostsRepliesMedia
Mackenzie Jackson @advocatemack.bsky.social · 21/11/2025
𝗠𝗮𝗹𝗶𝗰𝗶𝗼𝘂𝘀 𝗩𝗦 𝗖𝗼𝗱𝗲 𝗲𝘅𝘁𝗲𝗻𝘀𝗶𝗼𝗻𝘀 𝗮𝗿𝗲 𝗯𝗲𝗰𝗼𝗺𝗶𝗻𝗴 𝗼𝗻𝗲-𝗰𝗹𝗶𝗰𝗸 𝗥𝗖𝗘 𝗴𝗮𝘁𝗲𝘄𝗮𝘆𝘀 𝗶𝗻𝘁𝗼 𝗱𝗲𝘃𝗲𝗹𝗼𝗽𝗲𝗿 𝗺𝗮𝗰𝗵𝗶𝗻𝗲𝘀. “𝘊𝘰𝘮𝘱𝘳𝘰𝘮𝘪𝘴𝘪𝘯𝘨 𝘢 𝘥𝘦𝘷 𝘣𝘰𝘹 𝘪𝘴 𝘣𝘢𝘴𝘪𝘤𝘢𝘭𝘭𝘺 𝘨𝘢𝘪𝘯𝘪𝘯𝘨 𝘢𝘯 𝘢𝘥𝘮𝘪𝘯-𝘭𝘦𝘷𝘦𝘭 𝘮𝘢𝘤𝘩𝘪𝘯𝘦 𝘪𝘯𝘴𝘪𝘥𝘦 𝘢𝘯 𝘰𝘳𝘨.” In my latest podcast episode I chat Ransom Vibe, Sleepy Duck, and why VS Code marketplaces are the new battleground.
100
Mackenzie Jackson @advocatemack.bsky.social · 13/05/2025
🧵𝗙𝗿𝗼𝗺 𝗚𝗶𝘁𝗛𝘂𝗯 𝘁𝗼 𝗚𝗿𝗼𝗸: 𝘅𝗔𝗜 𝗹𝗲𝗮𝗸𝗲𝗱 𝗮 𝘀𝗲𝗰𝗿𝗲𝘁 𝘁𝗵𝗮𝘁 𝗲𝘅𝗽𝗼𝘀𝗲𝗱 𝗮 𝗡𝗲𝘅𝘁𝗚𝗲𝗻 𝗮𝘁𝘁𝗮𝗰𝗸 𝘃𝗲𝗰𝘁𝗼𝗿. So a XAi dev leaked a ApiKey on GitHub. At first, it seemed like just another API key leak. But the deeper you look, the more alarming it becomes. 👇 #AIsecurity #LLMs #xAI #Tesla #SpaceX #Grok #Infosec #APISecurity
100
Mackenzie Jackson @advocatemack.bsky.social · 06/05/2025
🚨 A Remote Access Trojan was hiding in a popular npm package— rand-user-agent — using whitespace and crazy obfuscation to stay out of sight. Supply chain attacks are getting sneaky. Check your deps. Full video in comments 🧪 #infosec #npm #malware #devsecops
000
Mackenzie Jackson @advocatemack.bsky.social · 08/04/2025
Now available from the @aikidosecurity.bsky.social swag store. The Maction (see what I did there) figure. Dogs aren't allowed in the Aikido office, which is good because I just have a very large cat that sometimes comes in.
000
Mackenzie Jackson @advocatemack.bsky.social · 27/03/2025
So apparently everyone is getting on the studio #Gihbli trend. Did I do it right? 😅 #studioGihbli
000
Mackenzie Jackson @advocatemack.bsky.social · 28/02/2025
1 𝐰𝐞𝐞𝐤(ish) 𝐮𝐧𝐭𝐢𝐥 𝐈'𝐦 𝐛𝐚𝐜𝐤 𝐨𝐧 𝐭𝐡𝐞 𝐫𝐨𝐚𝐝 𝐚𝐠𝐚𝐢𝐧! Pumped to be back on stage speaking again at some world class events after taking a little break. We have put together some seriously cool research and exploits I can't wait unleash (𝘢𝘯𝘥, 𝘰𝘧 𝘤𝘰𝘶𝘳𝘴𝘦, 𝘴𝘰𝘮𝘦 𝘵𝘳𝘶𝘭𝘺 𝘩𝘰𝘳𝘳𝘪𝘣𝘭𝘦 𝘫𝘰𝘬𝘦𝘴).
030
Mackenzie Jackson @advocatemack.bsky.social · 28/02/2025
Oh man, the feed on here gives me hope in the world again
041
Mackenzie Jackson @advocatemack.bsky.social · 17/12/2024
At @AikidoSecurity we have been using LLMs to find vulnerabilities in open-source packages that were never disclosed. This year we found 511 vulnerabilities (patched but never reported), 67% of them were never disclosed.
120