Sign in

Caitlin Condon

@catc0n.bsky.social
800 followers 505 following 153 posts

Adventurer. Takes a lot of photos, calls many places home. VP of research @VulnCheck. Previously vulnerability research director @Rapid7 / @metasploit.

PostsRepliesMedia
Reposted by Caitlin Condon
Reuters @reuters.com · 27/08/2026
Researchers discover additional backdoors in Chinese-made Zbtlink routers reut.rs/4xWSb1w
reut.rs
Researchers discover additional backdoors in Chinese-made Zbtlink routers
More than a dozen models of Chinese-made Zbtlink routers ‌ship with at least two backdoors that could allow for invasive remote access akin to “surveillance,” according to new findings from cybersecurity firm VulnCheck.
12414
Reposted by Caitlin Condon
Catalin Cimpanu @campuscodi.risky.biz · 27/08/2026
VulnCheck finds not one, but two new backdoor mechanisms in ZBT routers. They found a first earlier this month. Researchers believe its "domestic Chinese surveillance technology" for the Chinese market www.vulncheck.com/blog/zbt-dar...
vulncheck.com
Chinese Implants in the Supply Chain | Blog | VulnCheck
In our previous blog, ENDLESSDOORS Is Phoning Home. Pick up, we detailed a phone-home implant vulnerable to man-in-the-middle attacks embedded in ZBT routers. In this blog, we trace the ZBT supply cha...
171
Reposted by Caitlin Condon
Dennis @dennisf.bsky.social · 12/03/2026
This podcast was nominated for Best Side Eye by a Lead Actress @catc0n.bsky.social youtu.be/VLvtO5QxHXE?...
youtu.be
The Wild, Wild World of Exploits With Caitlin Condon
YouTube video by Decipher
022
Reposted by Caitlin Condon
Maya Sen @mayasen.bsky.social · 25/01/2026
Local folks:
1202
Caitlin Condon @catc0n.bsky.social · 04/12/2025
VulnCheck is #hiring (senior) exploit developers in the U.S. and UK! If you love writing RCE exploits but also want to help customers detect exploitation and assess exposure, this is a fantastic place to learn and grow! Open roles here - we're also looking for UK engineers: www.vulncheck.com/careers
vulncheck.com
VulnCheck - Outpace Adversaries
Vulnerability intelligence that predicts avenues of attack with speed and accuracy.
021
Caitlin Condon @catc0n.bsky.social · 22/11/2025
But keep reading
010
Reposted by Caitlin Condon
Decipher @deciphersec.bsky.social · 17/11/2025
“Silently patching vulnerabilities is an established bad practice that enables attackers and harms defenders." @catc0n.bsky.social decipher.sc/2025/11/17/f...
decipher.sc
Fortinet CVE-2025-64446 Under Active Attack - Decipher
That vulnerability (CVE-2025-64446) affects several versions of FortiWeb and CISA  has added it to its Known Exploited Vulnerabilities catalog.
013
Reposted by Caitlin Condon
Preeti Chhibber @runwithskizzers.bsky.social · 12/11/2025
C R Y I N G this is so perfect lmao x: www.instagram.com/reel/DQ7cPSf...
2082882694
Caitlin Condon @catc0n.bsky.social · 25/10/2025
If AI is going to economically and environmentally doom us all anyway, could it at least make iOS keyboards less godawful?
010
Reposted by Caitlin Condon
Elle @elleisanisland.bsky.social · 23/10/2025
Forgive me, Chicago, I was not aware of your game
Posted by Block Club Chicago: "Cycling x Solidarity's latest mutual aid effort takes cyclists on group rides through Pilsen and other neighborhoods to buy out tamale vendors so they can stay home as ICE swarm the city. They pass out to food to people in need."
223094938
Caitlin Condon @catc0n.bsky.social · 22/10/2025
"Plan to skip No. 1 piece of advice" is a wild way to say "cannot afford to wait until the recommended age because of the high cost of basic expenses throughout their lives" www.cbsnews.com/news/social-...
cbsnews.com
90% of Americans plan to skip the No. 1 piece of Social Security advice, study finds
Financial pros recommend waiting as long as possible to claim your Social Security benefits. Most Americans say they're ignoring that advice.
020
Reposted by Caitlin Condon
McSweeney's @mcsweeneys.net · 16/10/2025
*Charlotte and Emily Brontë:* "He has no clue which one of us is which."
buff.ly
What Your Favorite Author Says About You (Behind Your Back)
Agatha Christie: “I bet I could murder them and get away with it.” Ernest Hemingway: “For sale. Two testicles. Never used.” George R. R. Martin: “H...
05014
Reposted by Caitlin Condon
Jake Williams @malwarejake.bsky.social · 02/10/2025
More governors need to stand up like this. I'm no fan of Newsom generally, but he's at least not rolling over for the administration. California is better off for it.
2251
Reposted by Caitlin Condon
Ján Trenčanský @j91321.bsky.social · 27/09/2025
I haven't found exploitation of Fortra's GoAnywhere MFT CVE-2025-10035 in EDR telemetry yet. Which means it is probably still rare and folks have some time to patch. Wonder how long it will stay that way. The previously exploited vulns appeared fairly quickly.
121
Caitlin Condon @catc0n.bsky.social · 25/09/2025
Pretty unfortunate update on Fortra GoAnywhere MFT CVE-2025-10035 from the folks at watchTowr labs.watchtowr.com/it-is-bad-ex...
labs.watchtowr.com
It Is Bad (Exploitation of Fortra GoAnywhere MFT CVE-2025-10035) - Part 2
We’re back, just over 24 hours later, to share our evolving understanding of CVE-2025-10035. Thanks to everyone who reached out after Part 1, and especially to the individual who shared credible inte...
021
Reposted by Caitlin Condon
jon greig @jgreig.bsky.social · 25/09/2025
Federal agencies have about 24 hours to patch two critical bugs in a line of Cisco firewalls patch CVE-2025-30333 and CVE-2025-20362 asap therecord.media/cisco-asa-fi...
therecord.media
Federal agencies given one day to patch exploited Cisco firewall bugs
Vulnerabilities in some models of Cisco's Adaptive Security Appliances (ASA) have been exploited by "an advanced threat actor," according to a warning from CISA.
053
Reposted by Caitlin Condon
Kat Abughazaleh @katmabu.bsky.social · 25/09/2025
I don’t think I’ve ever loved anything as much as ICE loves violently attacking women.
1228147754141
Reposted by Caitlin Condon
Andy Greenberg @agreenberg.bsky.social · 23/09/2025
The Secret Service isn't claiming it foiled any plot targeting the UN General Assembly. Just that a big collection of SIMs (probably used for fraud) could have *potentially* disrupted NYC cell service. The SIMs were in a *35 MILE* radius of the UN. These headlines are all pretty egregiously wrong:
1135395
Reposted by Caitlin Condon
Anthony Moser @anthonymoser.com · 21/09/2025
This is incredible stuff
1356
Caitlin Condon @catc0n.bsky.social · 19/09/2025
Last night, Fortra disclosed a critical vulnerability in their GoAnywhere MFT file transfer product. CVE-2025-10035 has a virtually identical description to CVE-2023-0669, which was exploited by ransomware crews. Unclear if this one has been exploited. Patch now. www.vulncheck.com/blog/cve-202...
vulncheck.com
CVE-2025-10035: Critical Vulnerability in Fortra GoAnywhere MFT | Blog | VulnCheck
A new critical vulnerability was disclosed in Fortra's GoAnywhere managed file transfer product, which has been targeted in the past by ransomware and extortion groups
054
Reposted by Caitlin Condon
Dave Walker @davewalker.bsky.social · 25/08/2025
Possible causes of your problems. It’s a diagram that (sadly) still seems relevant in 2025, so reposting a year and a bit on.
Diagram titled 'Possible causes of your problems'. On the left hand side, subtitled 'Yes': Funding removed from local councils, growing gap between rich and poor, multinational companies not paying their taxes, lack of new affordable housing, government not investing sufficiently in schools and healthcare. On the right hand side, subtitled 'No': Picture of small boat, with arrow; 'People fleeing horrific situations that you and I can't imagine'.
1226251612
Caitlin Condon @catc0n.bsky.social · 17/09/2025
Hey, security research friends! You know how vulnerability disclosure coordination is the most painful part of vuln research? Good news: VulnCheck will do it for you! You get credit, we handle the CVEs + vendor discussions. Report vulnerabilities for disclosure here: vulncheck.com/advisories/r...
vulncheck.com
VulnCheck - Outpace Adversaries
Vulnerability intelligence that predicts avenues of attack with speed and accuracy.
070
Caitlin Condon @catc0n.bsky.social · 13/09/2025
A beautiful, tender piece about grief and aging and friendship and the sacred call to haunt: joysullivan.substack.com/p/when-to-ca...
joysullivan.substack.com
When to call the witches
1-800 dark magic
000
Reposted by Caitlin Condon
Mrs. Detective PikaBOO, Esq. @clapifyoulikeme.favrd.social · 12/09/2025
We need community notes here to clarify that in fact Michelle Wu ended his campaign
241504187
Caitlin Condon @catc0n.bsky.social · 12/09/2025
Quote from the VulnCheck team exploit mines 2025-09-11T19:24:00Z
A meme with the black spinning top from the movie "Inception". It's on a beige-ish background and the text of the meme says "It's like...a third-order command injection."
021
Reposted by Caitlin Condon
Alejandra Caraballo @esqueer.net · 09/09/2025
Gen Z in Nepal burned down the parliament, burned down the homes of government officials, forced the prime minister to resign, and paraded the finance minister through the streets nearly naked.
22479002365
Caitlin Condon @catc0n.bsky.social · 08/09/2025
I know NPM and SAP and probably other acronyms are on fire today, but @vulncheck.bsky.social put out a Chrome extension for #CVE and #exploit intel and it's saving me kind of a lot of tab-switching effort, so you get 🎉 🤠posts from me instead of 🗑️🔥 posts www.vulncheck.com/blog/vuln-ch...
vulncheck.com
VulnCheck Insights: CVE Context at the Hover of Your Cursor | Blog | VulnCheck
Instead of bouncing between tabs, you now get instant, current context the moment a CVE appears on your screen.
011
Reposted by Caitlin Condon
Paul Byrne @theplanetaryguy.com · 29/08/2025
Friends, for your Friday, here's a new image of planets being born.
340659
Caitlin Condon @catc0n.bsky.social · 05/09/2025
The inverse of this skeet is "Some enterprising young sys admins used example machine keys for production deployments, which is also significantly less surprising than anyone reading docs."
000
Reposted by Caitlin Condon
Allan “Ransomware Sommelier” Liska @ransomwaresommelier.com · 04/09/2025
There is something soothing about watching a baseball diamond get steamrolled.
151
Caitlin Condon @catc0n.bsky.social · 03/09/2025
Some enterprising young threat actor read the Sitecore docs, which is significantly less surprising than literally anyone else reading docs cloud.google.com/blog/topics/...
cloud.google.com
ViewState Deserialization Zero-Day Vulnerability in Sitecore Products (CVE-2025-53690) | Google Cloud Blog
An active ViewState deserialization attack affecting Sitecore products, where attackers achieved remote code execution.
081
Caitlin Condon @catc0n.bsky.social · 29/08/2025
Holy speaker agenda, Batman! This is a shameless plug that is also wholly sincere: @vulncheck.bsky.social is hosting our inaugural THREATCON1 in VA Sept. 21 and 22. The conference is free, Jen Easterly and Andrew Boyd are keynoting (!), and the talk tracks slap. COME!! www.threatcon1.org/agenda
threatcon1.org
THREATCON1 Agenda
121
Caitlin Condon @catc0n.bsky.social · 27/08/2025
Great metaphor
020
Caitlin Condon @catc0n.bsky.social · 27/08/2025
"I hate this piece of crap." Quote from the team #exploit mines 2025-08-26T21:48:00Z (am I doing ISO 8601 right, since this is apparently what we are doing now?)
020
Caitlin Condon @catc0n.bsky.social · 26/08/2025
New Citrix #NetScaler 0day (CVE-2025-7775), plus a bonus management interface improper access control vuln. The zero-day has been added to @vulncheck.bsky.social KEV ✅ www.vulncheck.com/blog/new-cit...
vulncheck.com
New Citrix NetScaler Zero-Day Vulnerability Exploited in the Wild | Blog | VulnCheck
Three new Citrix NetScaler vulnerabilities were disclosed on August 26, including CVE-2025-7775, a fresh zero-day flaw being used in the wild
000
Caitlin Condon @catc0n.bsky.social · 25/08/2025
New additions to @VulnCheckAI's initial access intelligence: Exploits, PCAPs, signatures, and queries for FortiSIEM CVE-2025-25256, SharePoint CVE-2020-1147, SUSE Manager CVE-2025-46811, an underappreciated GNSS reference station cred leak, and plenty more 👀 docs.vulncheck.com/initial-acce...
docs.vulncheck.com
New exploits and detections for FortiSIEM, SharePoint, SUSE Manager, Web-Check, and CHCNAV P5E GNSS. New support for legacy Censys queries. - Initial Access
API Update, CVE-2025-25256: Fortinet FortiSIEM Command Injection, CVE-2022-30622: CHCNAV P5E GNSS, CVE-2020-1147: SharePoint .NET Core Deserialization RCE, CVE-2025-46811: SUSE Manager RemoteMinionCom...
030
Caitlin Condon @catc0n.bsky.social · 21/08/2025
In 1H 2025 alone, 400+ CVEs were reported as exploited in the wild for the first time, and 180+ CVEs were freshly attributed to known threat actors. Into #CVE and #exploit data? Join @vulncheck.bsky.social on Tuesday, August 26 for more 1H 2025 attack trends 🐚 wwv.vulncheck.com/1h-state-of-...
wwv.vulncheck.com
VulnCheck | Webinar August 2025
030
Reposted by Caitlin Condon
Wagatwe Wanjuki @wagatwe.bsky.social · 10/08/2025
holy crap. "In Ireland, there are more than 80 data centres, gobbling up 50 per cent of the electricity in the Dublin region, and hoovering up more than 20 per cent nationally, as they work to process and distribute huge quantities of digital information."
361567687
Reposted by Caitlin Condon
🇵🇹 snipe, lixo tóxico ⭑⭒⭒⭒⭒ @snipe.lol · 07/08/2025
Excellent question - specifically related to deportations, folks visiting defcon from another country, etc. Anyone know if they're doing anything like that?
1189
Reposted by Caitlin Condon
Cynthia Brumfield @metacurity.com · 06/08/2025
This is just sensationally bad: Microsoft struck a deal with the Israeli secret intelligence arm Unit 8200 that allowed it to build a powerful new mass surveillance tool that collects and stores recordings of millions of mobile phone calls made each day by Palestinians in Gaza and the West Bank.
058
Reposted by Caitlin Condon
Zack Whittaker @zackwhittaker.com · 06/08/2025
NEW, by me: Google has confirmed that some of its customers' data was stolen in a recent breach of one of its Salesforce databases. Google attributed the hack to ShinyHunters, a group known for hacking into Salesforce instances using voice phishing attacks. More:
techcrunch.com
Google says hackers stole its customers' data in a breach of its Salesforce database | TechCrunch
Google confirmed that one of its cloud-stored Salesforce databases was breached, exposing its customer data. Google attributed the breach to a hacking group, ShinyHunters, known for breaking into Sale...
17441
Reposted by Caitlin Condon
Kevin Beaumont @doublepulsar.com · 06/08/2025
satya.. this is not okay. www.theguardian.com/world/2025/a...
theguardian.com
‘A million calls an hour’: Israel relying on Microsoft cloud for expansive surveillance of Palestinians
Revealed: The Israeli military undertook an ambitious project to store a giant trove of Palestinians’ phone calls on Microsoft’s servers in Europe
02212
Reposted by Caitlin Condon
BleepingComputer @bleepingcomputer.com · 05/08/2025
SonicWall has warned customers to disable SSLVPN services due to ransomware gangs potentially exploiting an unknown security vulnerability in SonicWall Gen 7 firewalls to breach networks over the past few weeks.
bleepingcomputer.com
SonicWall urges admins to disable SSLVPN amid rising attacks
SonicWall has warned customers to disable SSLVPN services due to ransomware gangs potentially exploiting an unknown security vulnerability in SonicWall Gen 7 firewalls to breach networks over the past few weeks.
085
Reposted by Caitlin Condon
Christopher Mims @mims.bsky.social · 01/08/2025
The AI infrastructure build-out is so gigantic that in the past 6 months, it contributed more to the growth of the U.S. economy than /all of consumer spending/ The 'magnificent 7' spent more than $100 billion on data centers and the like in the past three months *alone* www.wsj.com/tech/ai/sili...
chart: capital expenditures, quarterly

shows hockey-stick like growth in the capex expenditures of Amazon, Microsoft, Google and meta, almost entirely on data centers

in the most recent quarter it was nearly $100 billion, collectively
75816320
Caitlin Condon @catc0n.bsky.social · 31/07/2025
Very cool research from the @vulncheck.bsky.social IP intel team on attacker infrastructure longevity — this is one of those pieces that makes me realize I’ve not seen much of this type of research before www.vulncheck.com/blog/stillup...
vulncheck.com
Still Up. Still Evil. | Blog | VulnCheck
VulnCheck tracked thousands of attacker systems over a 90-day window to see how long malicious infrastructure really lasts. The results show that exposure doesn’t mean disruption, as many phishing kit...
021
Reposted by Caitlin Condon
Ben Collins @bencollins.bsky.social · 30/07/2025
12 years earlier.
theonion.com
‘No Way To Prevent This,’ Says Only Nation Where This Regularly Happens
ISLA VISTA, CA—In the days following a violent rampage in southern California in which a lone attacker killed seven individuals, including himself, and seriously injured over a dozen others, citizens ...
43106981296
Reposted by Caitlin Condon
Ben Collins @bencollins.bsky.social · 30/07/2025
Holy shit, they did it. They wrote the headline.
NYC Mass Shooting Was Nearly Impossible to Prevent, Experts Say
795421029312
Reposted by Caitlin Condon
Joshua J. Friedman @joshuajfriedman.com · 29/07/2025
Unexpectedly good politics from Thomas Kinkade's family! www.kinkadefamilyfoundation.org
On July 1st, the United States Department of Homeland Security (DHS) posted a photo on their social media accounts accompanied by a Thomas Kinkade Studios painting. The use of his artwork was unauthorized, and we have requested that DHS remove the post, and we are consulting with our counsel on our options.
At The Kinkade Family Foundation, we strongly condemn the sentiment expressed in the post and the deplorable actions that DHS continues to carry out. Like many of you, we were deeply troubled to see this image used to promote division and xenophobia associated with the ideals of DHS, as this is antithetical to our mission. We stand firmly with our communities who have been threatened and targeted by DHS, especially our immigrant, BIPOC, undocumented, LGBTQ+, and disabled relatives and neighbors.
373707952