Sign in

HD Moore

@hdm.infosec.exchange.ap.brid.gy
700 followers 3 following 35 posts

🌉 bridged from ⁂ infosec.exchange/@hdm, follow @ap.brid.gy to interact

PostsRepliesMedia
HD Moore @hdm.infosec.exchange.ap.brid.gy · 09/09/2026
Hello Austin Gophers! This month's ATX Golang meetup is *tonight* September 9th, at STATION Austin, from 6:30-8:30. Note that we'll be downstairs (first floor) in Wall-E instead of Antones (16th) tonight. Join us for pizza, drinks, Go discussion, and maybe […] [Original post on infosec.exchange]
002
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/08/2026
The best part of BSidesLV/BlackHat/DEFCON is getting to meet the people you admire. I got a chance to nerd out with Thai Duong of calif.io today (photo proof!). Thai and team just posted their latest work - 3 remote exploits in FreeBSD - all critical issues […] [Original post on infosec.exchange]
021
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/08/2026
Hello Las Vegas (and hackers following along at home)! I'm excited to share the first batch of our Out-of-Band / Baseboard Management Controller research at Black Hat USA today and DEFCON 34 this weekend. Read an exclusive by Ars Technica at […] [Original post on infosec.exchange]
002
HD Moore @hdm.infosec.exchange.ap.brid.gy · 30/06/2026
Skipping Black Hat and DEFCON this year? Consider presenting at BSides Hanoi instead. Now in its second year, the conference takes place on August 5th, 2026, and a few more talk slots are still open - but the submission deadline is today. Apply here: www.bsideshanoi.net/en/call-for-pap… […]
infosec.exchange
Original post on infosec.exchange
012
Reposted by HD Moore
Tyson, Chicken Rancher 🐓 @tsupasat.infosec.exchange.ap.brid.gy · 18/06/2026
Accenture spends $4.1 billion on Dragos, NetRise, and runZero to build an OT/IoT powerhouse. Dragos will continue to operate independently under Accenture ownership, and NetRise and runZero execs will join the leadership team. Congrats to @hdm and the other scrappy startup team members! […]
infosec.exchange
Original post on infosec.exchange
011
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/06/2026
My favorite bugs are where the vendor doesn't consider it a vulnerability: How a USB-connected speaker can infect a PC without ever being touched: arstechnica.com/security/2026/06/hi…
023
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/05/2026
ATX Go is TONIGHT (a week early this month): Hey gophers! Join us Wednesday (May 6th, today), 6:30–8:30pm at Station Austin (ie. Capital Factory) 16th floor, in "Antones" for our monthly meetup. You know the drill: 🍕 pizza, 🍻 beer, and a few short talks on Go. Bring a talk, a friend, or an […]
infosec.exchange
Original post on infosec.exchange
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/05/2026
ATX Go is a week early this month, tomorrow night! Hey gophers! Join us Wednesday, 6:30–8:30pm at Station Austin (ie. Capital Factory) 16th floor, in "Antones" for our monthly meetup. You know the drill: 🍕 pizza, 🍻 beer, a few short talks on Go, and general discussion. Whether you write Go all […]
infosec.exchange
Original post on infosec.exchange
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 30/04/2026
RE: infosec.exchange/@runZeroInc/116493… Excited to share what we've been cooking for the last few months: Interactive attack graphs, with hop-by-hop planning, support for over 220 protocols, and no-auth backplane enumeration to identify non-IP systems unauth over the […]
infosec.exchange
Original post on infosec.exchange
003
HD Moore @hdm.infosec.exchange.ap.brid.gy · 30/03/2026
Tom Ptacek posted a great writeup titled "Vulnerability Research Is Cooked", covering the state of vulndev and its rapidly accelerating future: sockpuppet.org/blog/2026/03/30/vuln…
001
HD Moore @hdm.infosec.exchange.ap.brid.gy · 25/03/2026
www.linkedin.com/posts/kylecgoode_n…
linkedin.com
Running on Empty with runZero | Kyle Goode
Network asset inventory is basically Frogger. 🐸 You're hopping between subnets, dodging unmanaged devices, weaving through cloud instances, and just when you think you've made it across — some rogue IoT device runs you over from the lane you forgot to check. It's ex-HAUST-ing. And most of us are running on empty. That's why I wrote about runZero — built by Metasploit creator HD Moore, it finds and fingerprints every device on your network without credentials or agents. Three discovery methods. One unified inventory. And a completely free Community Edition for up to 100 assets.
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 23/03/2026
Joseph Menn, renowned journalist & author of "The Cult of the Dead Cow," joins us for a special book signing event at RSAC! runZero and Mallory are thrilled to co-host a private book signing with renowned investigative journalist Joseph Menn during RSA […] [Original post on infosec.exchange]
020
HD Moore @hdm.infosec.exchange.ap.brid.gy · 23/03/2026
Join author Caroline Wong for the release of "The AI Cybersecurity Handbook" at RSAC! runZero and Mallory are thrilled to co-host a private book signing with the AI cybersecurity strategist Caroline Wong during RSA Conference 2026! This is your chance to […] [Original post on infosec.exchange]
010
HD Moore @hdm.infosec.exchange.ap.brid.gy · 18/03/2026
runZero Hour 0x1C is live NOW: www.youtube.com/live/EF633eUIquI
100
HD Moore @hdm.infosec.exchange.ap.brid.gy · 26/02/2026
New AirSnitch attack breaks Wi-Fi encryption in homes, offices, and enterprises: arstechnica.com/security/2026/02/ne… AirSnitch resets WiFi security back to the bad-old-days of ARP spoofing and trivial MITM.
0011
HD Moore @hdm.infosec.exchange.ap.brid.gy · 11/02/2026
Hello Austin Go hackers! Tonight (2026-02-11) is our next ATX Golang meetup, located in Station Austin (aka Capital Factory ). We will have pizza, drinks, and various short talks and discussions related to the Go ecosystem. If you're looking for a Go job […] [Original post on infosec.exchange]
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 03/02/2026
runZero users get a new feature today (including Community Edition) - recurring internet speed tests for all deployed Explorers! This (very optional) capability lets you identify backhaul/connectivity issues for sites that you can't physically get to […] [Original post on infosec.exchange]
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 14/01/2026
It's time for our first ATX Gopher meetup of the year! If you are in Austin and write Go code (or would like to start), please join us at 6:30pm at Station Austin (co-located with Capital Factory). Charles and I will be providing pizza and drinks as usual […] [Original post on infosec.exchange]
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 15/11/2025
The CFP for SO-CON 2026 closes in about 12 hours (11:59 2025-11-15)! Have a cool approach to attack path management (or awesome connector for BloodHound OpenGraph)? Submit ASAP: specterops.io/so-con
011
HD Moore @hdm.infosec.exchange.ap.brid.gy · 15/11/2025
The clever folks at Grumpy Goose Labs have published even more ways to identify unauthorized IP KVMs across your environment, with some great memes to boot! Be KVM, Do Fraud - blog.grumpygoose.io/be-kvm-do-fraud…
022
HD Moore @hdm.infosec.exchange.ap.brid.gy · 06/11/2025
Identify insecure TLS services with the enhanced runZero Certificate Inventory: www.runzero.com/blog/identify-insec…
010
Reposted by HD Moore
Babak Farrokhi :dns: @farrokhi.unix.family.ap.brid.gy · 03/11/2025
Something that started as a small curiosity and weekend project turned into a long article with several surprises for myself (including how bad I am at time estimates). I went down quite a few rabbit holes along the way. EDNS Client Subnet in Practice: Evaluating Public Resolver Behaviors […]
unix.family
Original post on unix.family
113
HD Moore @hdm.infosec.exchange.ap.brid.gy · 30/10/2025
Austin Hackers Anonymous (AHA) is TONIGHT (2025-10-30) takeonme.org - Have some zero-day to share? AHA is an official CNA and will issue CVEs for vulnerabilities disclosed at the meeting. I'm planning to demo more SSHamble.com findings along with BloodHound OpenGraph stuff. See yall soon!
AHA logo
101
HD Moore @hdm.infosec.exchange.ap.brid.gy · 27/10/2025
Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs, using the brand new OpenGraph […] [Original post on infosec.exchange]
023
HD Moore @hdm.infosec.exchange.ap.brid.gy · 23/10/2025
SpecterOps released "DumpGuard" along with a detailed article on how they were able to bypass Windows Credential Guard in both privileged and unprivileged contexts. I learned a ton about Isolated LSA and friends. Its funny to see that DES-cracking of NTLMv1 […] [Original post on infosec.exchange]
003
HD Moore @hdm.infosec.exchange.ap.brid.gy · 15/10/2025
Today's runZero Hour is up with Rob King, Tod Beardsley, and EOL expert and technology necromancer, captn3m0 (pronounced “nemo”). They will summon and explore runZero’s latest research paper, “Undead by design: Benchmarking end-of-life operating systems” […] [Original post on infosec.exchange]
001
HD Moore @hdm.infosec.exchange.ap.brid.gy · 13/10/2025
JawnCon (jawncon.org) 0x02 just wrapped! I wish I could make it this year, but settled for catching the talks on the live stream: Main Stage Day 1: www.youtube.com/live/Cvf-mAdnPl0?lc… Man Stage Day 2 […] [Original post on infosec.exchange]
JawnCon closing session - stats on badges, speakers, bandwidth, and money raised for FU Cancer
100
Reposted by HD Moore
hrbrmstr 🇺🇦 🇬🇱 🇨🇦🇧🇪 @hrbrmstr.mastodon.social.ap.brid.gy · 12/10/2025
Virtually every major remote access tech is under attack rn. It's gonna be a truly unpleasant Q4, isn't it…
time-series grid for:

- Fortinet SSL VPN Bruteforcer
- Microsoft RD Web Access Anonymous Authentication Timing Attack Scanner
- Microsoft RDP Web Client Login Enumeration Check
- SonicOS TFA Scanner
- SonicWall SonicOS API Scanner
- Palo Alto Networks Login Scanner
- Cisco ASA Scanner
- Cisco SSL VPN Bruteforcer
- Pulse Secure VPN Scanner
- Sophos XG Firewall User Portal Scanner
- Ivanti Connect Secure (ICS) Scanner
- Palo Alto Networks PAN-OS Crawler
- Cisco RV320/325 Info Disclosure
114
HD Moore @hdm.infosec.exchange.ap.brid.gy · 08/10/2025
Hello Austin Gophers! Join us tonight, Wednesday, October 8th, 2025 for two hours of lightning talks and discussion at the ATX Go meetup. This is hosted by Capital Factory and runs from 6:30 PM to 8:30 PM central (with pizza and drinks!): www.meetup.com/atxgolang/events/305…
meetup.com
ATX Golang Meetup - October 2025, Wed, Oct 8, 2025, 6:30 PM | Meetup
Join us for an evening of information, networking, friendship, beer, and pizza! You are invited to come discuss our favorite programming language and meet other Go develope
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 23/01/2025
Hacking Subaru: Tracking and Controlling Cars via the STARLINK Admin Panel: samcurry.net/hacking-subaru (via @watchtowrcyber
000
HD Moore @hdm.infosec.exchange.ap.brid.gy · 22/01/2025
runZero Hour Episode 14 (0xE) is happening now, you can find the YouTube live feed here: www.youtube.com/watch?v=nvkGd31s46c
000