Sign in

HD Moore

@hdm.io
2.1K followers 1.4K following 109 posts
PostsRepliesMedia
Reposted by HD Moore
Zack Whittaker @zackwhittaker.com · 27/09/2026
CISA has confirmed two bugs in Citrix NetScaler are being exploited in active cyberattacks, CVE-2026-88771 and CVE-2026-88772, in a rare weekend drop of security news. www.cisa.gov/known-exploi... Citrix has a support base article, confirming exploitation. support.citrix.com/support-home...
2286
HD Moore @hdm.io · 09/09/2026
Hello Austin Gophers! This month's ATX Golang meetup is *tonight* September 9th, at STATION Austin, from 6:30-8:30. Note that we'll be downstairs (first floor) in Wall-E instead of Antones (16th) tonight. www.meetup.com/atxgolang/ev...
meetup.com
ATX Golang Meetup - September 2026, Wed, Sep 9, 2026, 6:30 PM | Meetup
***UPDATE FOR SEPTEMBER 2026*** For our meetup on September 9th, 2026, we will be meeting in the Wall-E room on the first floor of STATION Austin instead of the usual Anton
021
HD Moore @hdm.io · 27/08/2026
LOL, perfect!
020
HD Moore @hdm.io · 06/08/2026
The best part of BSidesLV/BlackHat/DEFCON is getting to meet the people you admire. I got a chance to nerd out with Thai Duong of calif.io today (photo proof!). Thai and team just posted their latest work - 3 remote exploits in FreeBSD: blog.calif.io/p/the-taking...
090
Reposted by HD Moore
SHAER @shaerintel.bsky.social · 06/08/2026
BMCs make such good targets because they live in the org gap nobody owns. not quite the server team, not the network team, not security, so they sit on firmware nobody has touched in years. the access is almost a side effect of the ownership hole.
011
HD Moore @hdm.io · 06/08/2026
Hello Las Vegas (and hackers following along at home)! I'm excited to share the first batch of our Out-of-Band / Baseboard Management Controller research at Black Hat USA today and DEFCON 34 this weekend. Read an exclusive by Ars Technica at: arstechnica.com/security/202...
arstechnica.com
Thousands of servers can be backdoored by exploiting buggy motherboard controllers
Baseboard management controllers from the world's biggest manufacturers are a security mess.
2103
HD Moore @hdm.io · 30/06/2026
Skipping Black Hat and DEFCON this year? Consider presenting at BSides Hanoi instead. Now in its second year, the conference takes place on August 5th, 2026, and a few more talk slots are still open - but the submission deadline is today. Apply here: www.bsideshanoi.net/en/call-for-...
buff.ly
Call for Paper - BSides Hanoi 2026
Submit your proposal for BSides Hanoi 2026 NoHuman.
0101
Reposted by HD Moore
Filippo Valsorda @filippo.abyssdomain.expert · 23/06/2026
We know vulnerability reports are not like ordinary issues. But why? It comes down to needing the scarce insight and temporary confidentiality to protect users. However, now that LLMs can find more or less the same bugs for everyone, none of that matters, and vuln reports are not special anymore.
words.filippo.io
Vulnerability Reports Are Not Special Anymore
We needed the insight and confidentiality to protect our users, but now that anyone can get the same results from LLM?
5729
HD Moore @hdm.io · 06/06/2026
My favorite bugs are where the vendor doesn't consider it a vulnerability: How a USB-connected speaker can infect a PC without ever being touched: arstechnica.com/security/202...
arstechnica.com
How a USB-connected speaker can infect a PC without ever being touched
Seller of the Sound Blaster Katana V2X doesn't consider the behavior a vulnerability.
272
HD Moore @hdm.io · 06/05/2026
ATX Go is TONIGHT (a week early this month): Hey gophers! Join us Wednesday (May 6th, today), 6:30–8:30pm at Station Austin (ie. Capital Factory) 16th floor, in "Antones" for our monthly meetup. You know the drill: 🍕 pizza, 🍻 beer, and a few short talks on Go. www.meetup.com/atxgolang/ev...
meetup.com
ATX Golang Meetup - May 2026 (RESCHEDULED), Wed, May 6, 2026, 6:30 PM | Meetup
Join us for an evening of information, networking, friendship, beer, and pizza! You are invited to come discuss our favorite programming language and meet other Go develope
030
HD Moore @hdm.io · 06/05/2026
ATX Go is a week early this month, tomorrow night! Hey gophers! Join us Wednesday, 6:30–8:30pm at Station Austin (ie. Capital Factory) 16th floor, in "Antones" for our monthly meetup. You know the drill: 🍕 pizza, 🍻 beer, and a few short talks on Go: www.meetup.com/atxgolang/ev...
meetup.com
ATX Golang Meetup - May 2026 (RESCHEDULED), Wed, May 6, 2026, 6:30 PM | Meetup
Join us for an evening of information, networking, friendship, beer, and pizza! You are invited to come discuss our favorite programming language and meet other Go develope
010
Reposted by HD Moore
runZero (Official Account) @runzero.com · 30/04/2026
🚨 New runZero 4.9: We got you, defenders! 📈 Interactive attack path mapping 👁️ Multi-homed detection 🗺️ 2D/3D topology maps 🧠 Deep OT intel + field-level discovery ✅ Protocol exposures 🔥 Risk prioritization 💻 UI/UX enhancements 👉️ Release details at: www.runzero.com/blog/runzero... #OTsecurity
074
HD Moore @hdm.io · 30/03/2026
Tom Ptacek posted a great writeup titled "Vulnerability Research Is Cooked", covering the state of vulndev and its rapidly accelerating future: sockpuppet.org/blog/2026/03...
sockpuppet.org
Vulnerability Research Is Cooked — Quarrelsome
For the last two years, technologists have ominously predicted that AI coding agents will be responsible for a deluge of security vulnerabilities. They were right! Just, not for the reasons they…
183
Reposted by HD Moore
runZero (Official Account) @runzero.com · 25/03/2026
Up next on #runZeroDay at 12:30 PM PT – Force multiplied: Community-powered vuln detection. Our guest is Rishiraj Sharma from ProjectDiscovery. Don’t miss a minute! Watch it live at: www.runzero.com/rsac-live-20...
011
HD Moore @hdm.io · 25/03/2026
www.linkedin.com/posts/kylecg...
linkedin.com
Running on Empty with runZero | Kyle Goode
Network asset inventory is basically Frogger. 🐸 You're hopping between subnets, dodging unmanaged devices, weaving through cloud instances, and just when you think you've made it across — some rogue ...
021
HD Moore @hdm.io · 23/03/2026
Joseph Menn, renowned journalist & author of "The Cult of the Dead Cow," joins us for a special book signing event at RSAC! runZero and Mallory are thrilled to co-host a private book signing with renowned investigative journalist Joseph Menn during RSA: www.runzero.com/joseph-menn-...
runzero.com
Joseph Menn Book Signing
Complete security visibility across IT, OT, IoT, cloud, mobile, and remote assets.
080
HD Moore @hdm.io · 23/03/2026
Join author Caroline Wong for the release of "The AI Cybersecurity Handbook" at RSAC! runZero and Mallory are thrilled to co-host a private book signing with the AI cybersecurity strategist Caroline Wong during RSA Conference 2026! www.runzero.com/caroline-won...
runzero.com
Caroline Wong Book Signing
Complete security visibility across IT, OT, IoT, cloud, mobile, and remote assets.
030
Reposted by HD Moore
runZero (Official Account) @runzero.com · 23/03/2026
#RSAC session today at 10:50 AM PT – Preparing for AI Vulnerability Exploitation: Preventing Cataclysm. 👀 Don’t miss this panel featuring @runzero.com’s CEO @hdm.io, @argv.bsky.social (Google), and @gadievron.bsky.social (Knostic). 🗓️ TODAY at 10:50 AM PT
021
Reposted by HD Moore
runZero (Official Account) @runzero.com · 18/03/2026
AI vulnerability discovery is here. Don’t miss the #RSAC 2026 session-Preparing for AI Vulnerability Exploitation: Preventing Cataclysm-featuring our CEO @hdm.io, Google’s @argv.bsky.social & Knostic’s @gadievron.bsky.social. 🗓️ Mon, Mar 23 @ 10:50 AM PT path.rsaconference.com/flow/rsac/us...
032
HD Moore @hdm.io · 18/03/2026
runZero Hour 0x1C is live NOW: www.youtube.com/live/EF633eU...
031
HD Moore @hdm.io · 07/03/2026
"The @phrack CFP with demoscene cracktro is live. Turn up the volume and enjoy the awesome stylings of @PiotrBania with some hopefully inspiring text from phrack staff :)" phrack.org (via @richinseattle)
phrack.org
PHRACK CALL FOR PAPERS
094
Reposted by HD Moore
Phrack Zine @phrack.org · 04/02/2026
The Phrack Staff is on the latest episode of the DarknetDiaries episode! darknetdiaries.com/episode/170/
darknetdiaries.com
Phrack – Darknet Diaries
Phrack is legendary. It is the oldest, and arguably the most prestigious, underground hacking magazine in the world. It started in 1985 and is still running today. In this episode we interview the Phr...
0337
Reposted by HD Moore
Aaron Schaffer @aaronschaffer.com · 26/02/2026
Huh -- this week, the FBI uploaded 35 pages on Phrack to its FOIA Library vault.fbi.gov/phrack/phrac...
vault.fbi.gov
Phrack (Final)
2125
Reposted by HD Moore
Phrack Zine @phrack.org · 04/03/2026
I spy a Phrack gnome in the latest FIRE #ansi pack! Thanks @nail7.bsky.social, it's so cool!
Phrack gnome ansified by nail!
0296
HD Moore @hdm.io · 26/02/2026
New AirSnitch attack breaks Wi-Fi encryption in homes, offices, and enterprises: arstechnica.com/security/202... AirSnitch resets WiFi security back to the bad-old-days of ARP spoofing and trivial MITM.
arstechnica.com
New AirSnitch attack breaks Wi-Fi encryption in homes, offices, and enterprises
That guest network you set up for your neighbors may not be as secure as you think.
084
HD Moore @hdm.io · 11/02/2026
Hello Austin Go hackers! Tonight (2026-02-11) is our next ATX Golang meetup, located in Station Austin (aka Capital Factory ). We will have pizza, drinks, and various short talks and discussions related to the Go ecosystem: www.meetup.com/atxgolang/ev...
meetup.com
ATX Golang Meetup - February 2026, Wed, Feb 11, 2026, 6:30 PM | Meetup
Join us for an evening of information, networking, friendship, beer, and pizza! You are invited to come discuss our favorite programming language and meet other Go develope
020
HD Moore @hdm.io · 03/02/2026
runZero users get a new feature today (including Community Edition) - recurring internet speed tests for all deployed Explorers! This (very optional) capability lets you identify backhaul/connectivity issues for sites that you can't physically get to: www.runzero.com/blog/interne...
runzero.com
Run Internet speed tests from runZero Explorers
Get an early signal into usability before you scan. Measure internet connectivity via runZero Explorers to remove uncertainty, with audit logs included.
030
HD Moore @hdm.io · 14/01/2026
It's time for our first ATX Gopher meetup of the year! If you are in Austin and write Go code (or would like to start), please join us at 6:30pm at Station Austin (co-located with Capital Factory). Charles and I will be providing pizza and drinks as usual: www.meetup.com/atxgolang/ev...
meetup.com
ATX Golang Meetup - January 2026, Wed, Jan 14, 2026, 6:30 PM | Meetup
Join us for an evening of information, networking, friendship, beer, and pizza! You are invited to come discuss our favorite programming language and meet other Go develope
061
HD Moore @hdm.io · 09/01/2026
they blinked: www.guru3d.com/story/synolo...
guru3d.com
Synology Reverses Policy Banning Third-Party HDDs After NAS sales plummet
Synology has backtracked on one of its most unpopular decisions in years. After seeing NAS sales plummet in 2025, the company has decided to lift restrictions that forced users to buy its own Synology...
020
Reposted by HD Moore
runZero (Official Account) @runzero.com · 22/12/2025
🎧 We collected some of our favorite podcasts of 2025 featuring @hdm.io for you to enjoy. 📺 So go ahead and get yourself some coffee (or hot cocoa!) & watch here: www.runzero.com/blog/fun-pod...
031
Reposted by HD Moore
runZero (Official Account) @runzero.com · 09/12/2025
Exposure is everywhere now — cloud, SaaS, IoT, shadow IT, unmanaged vendors. Replay the SC Media webcast with @sawaba.bsky.social, @hdm.io & @todb.hugesuccess.org to learn why continuous discovery matters & how attackers exploit what you can’t see. 👉 www.runzero.com/resources/as...
042
HD Moore @hdm.io · 04/12/2025
heya! great community as always; easiest way to get in touch is the #atx channel on the gopher slack
010
Reposted by HD Moore
runZero (Official Account) @runzero.com · 28/11/2025
🎙️ The Hacker's Cache: Kyser Clark talks with Metasploit creator @hdm.io on why CVEs won’t save you in 2025. They get into non-CVE vulns, hidden SSH risks, attacker innovation, AI’s impact, and why exposing version numbers can improve security. 👉 www.runzero.com/resources/wh...
021
Reposted by HD Moore
runZero (Official Account) @runzero.com · 26/11/2025
On the latest Risky Biz, @patrick.risky.biz, and @hdm.io talk about visualizing the attack surface with runZeroHound, why you can't synthesize what runZero delivers, & how we are leveraging AI to help predict risks and scan smarter. 📺 Watch the full interview: www.runzero.com/resources/ri...
021
Reposted by HD Moore
runZero (Official Account) @runzero.com · 24/11/2025
📺 Live webcast Dec 3 with SC Media! Your attack surface doesn’t end at the firewall. Join @hdm.io, @todb.hugesuccess.org, and @sawaba.bsky.social to learn how continuous discovery + attack path mapping keeps you ahead. 👉 www.scworld.com/cybercast/at...
scworld.com
032
Reposted by HD Moore
runZero (Official Account) @runzero.com · 21/11/2025
🧭 Cybersecurity’s old rules are cracking. In his SecTor keynote, @hdm.io breaks down the rules that shaped the 2000s: what survived, what failed us, and the new rules we’ll need next. Missed it? 👀 Watch the keynote: www.runzero.com/resources/on...
012
HD Moore @hdm.io · 15/11/2025
The CFP for SO-CON 2026 closes in about 12 hours (11:59 2025-11-15)! Have a cool approach to attack path management (or awesome connector for BloodHound OpenGraph)? Submit ASAP: specterops.io/so-con/
specterops.io
SO-CON 2026 - SpecterOps
SO-CON 2026: Secure your spot for the conference and training.
082
HD Moore @hdm.io · 15/11/2025
The clever folks at Grumpy Goose Labs have published even more ways to identify unauthorized IP KVMs across your environment, with some great memes to boot! Be KVM, Do Fraud - blog.grumpygoose.io/be-kvm-do-fr...
blog.grumpygoose.io
Be KVM, Do Fraud
Hi Everyone! It’s me, your friendly Wav3.
0135
Reposted by HD Moore
runZero (Official Account) @runzero.com · 13/11/2025
Your attack surface is sprawling & full of blind spots. 🎥 On Dec 3 at 2 PM ET, SC Media brings together @hdm.io, @todb.hugesuccess.org, & @sawaba.bsky.social to reveal how to operationalize attack surface management without losing your mind. 👉 Register here: www.scworld.com/cybercast/at...
032
Reposted by HD Moore
runZero (Official Account) @runzero.com · 12/11/2025
runZero Hour is one week away! Join us on Nov 19: @todb.hugesuccess.org, Rob King, @hdm.io, and Jared Atkinson ( CTO @specterops.io ) break down attacker movement, graph analysis, runZeroHound, and this month’s top vulnerabilities. 👉 Register here: www.runzero.com/research/run...
021
Reposted by HD Moore
runZero (Official Account) @runzero.com · 11/11/2025
🚨Your secure enclave? More of a suggestion than a guarantee. If you were expecting TEEs to provide private computing in untrusted data centers, this latest article by @arstechnica.com featuring our Founder & CEO @hdm.io is a must-read: arstechnica.com/security/202...
001
HD Moore @hdm.io · 06/11/2025
Identify insecure TLS services with the enhanced runZero Certificate Inventory: www.runzero.com/blog/identif...
runzero.com
Identify insecure TLS services with runZero Certificate Inventory
The runZero Certificates Inventory is an essential tool for seeing and securing every certificate in your environment. Explore these essential use cases.
051
Reposted by HD Moore
runZero (Official Account) @runzero.com · 31/10/2025
🎃 Happy Halloween! The end of #CybersecurityAwarenessMonth means it's time for our EoL-palooza grand finale! The scariest find? A surge of End-of-Life Proxmox systems... software zombies attackers feast on. 🧟‍♂️ @hdm.io has the guide to hunt them down: www.runzero.com/blog/managin...
runzero.com
After VMware: Managing EOL for Proxmox Hypervisors
Outdated Proxmox VE installs leave systems exposed as users migrate from VMware. With runZero you can easily identify EoL hosts and expiring TLS certs.
022
HD Moore @hdm.io · 30/10/2025
Austin Hackers Anonymous (AHA) is TONIGHT (2025-10-30) takeonme.org - Have some zero-day to share? AHA is an official CNA and will issue CVEs for vulnerabilities disclosed at the meeting. I'm planning to demo more SSHamble.com findings along with BloodHound OpenGraph stuff. See yall soon!
takeonme.org
AHA!
Austin Hackers Anonymous!
151
HD Moore @hdm.io · 27/10/2025
Just like chocolate and peanut butter, runZero and BloodHound are an amazing combination. Today we are introducing runZeroHound - an open source toolkit for bringing runZero Asset Inventory data into BloodHound attack graphs: www.runzero.com/blog/introdu...
runzero.com
Uncovering network attack paths with runZeroHound
runZeroHound converts runZero asset inventories into BloodHound OpenGraph imports, enabling Cypher-based analysis of real network attack paths.
061
Reposted by HD Moore
Richard Kadrey @richardkadrey.bsky.social · 23/10/2025
It's the spooky season, so several of my ebooks are on sale. 💀🎃🪦 Aloha from Hell appears to be $2.99 everywhere, and The Secrets of Insects is $6.99. Dead Set and King Bullet are $1.99 each on Amazon. US only
35315
HD Moore @hdm.io · 23/10/2025
SpecterOps released "DumpGuard" along with a detailed article on how they were able to bypass Windows Credential Guard in both privileged and unprivileged contexts. I learned a ton about Isolated LSA and friends: specterops.io/blog/2025/10...
specterops.io
Catching Credential Guard Off Guard - SpecterOps
Uncovering the protection mechanisms provided by modern Windows security features and identifying new methods for credential dumping.
030
Reposted by HD Moore
BSides Pyongyang @bsidespyongyang.bsky.social · 20/10/2025
Our new website has launched. We will continue to update the site with information as it becomes available. bsidespyongyang.com
075
Reposted by HD Moore
runZero (Official Account) @runzero.com · 22/10/2025
🎙️ Join @hdm.io, @todb.hugesuccess.org & @sawaba.bsky.social for a live SC Media webcast: “Fixing a Broken System: Why Legacy Vulnerability Management Tools Can’t Keep Up” Learn what’s next for exposure & attack surface management. 📅 Oct 29 ⏰ 2 PM ET 🔗 www.scworld.com/cybercast/fi...
022