Sign in

Ron Bowes

@iagox86.bsky.social
3.4K followers 786 following 1.6K posts

Staff Product Detection Engineer @ Censys. skullsecurity.org Mostly post about professional stuff, maybe some improv stuff and maybe even magic some day. Seattle-based (originally Canadian), queer, cybersecurity nerd. (He/him)

PostsRepliesMedia
Ron Bowes @iagox86.bsky.social · 16m
Corp: "Dear researcher: we fixed the unauthenticated RCE vuln 2 weeks ago without telling you, didn't generate a CVE, and didn't credit you" Me: *Finds a full patch bypass in 2 hours*
021
Reposted by Ron Bowes
Censys @censys.bsky.social · 08/10/2026
A messaging protocol with a multi-year ransomware track record. An actively exploited Cisco SD-WAN flaw. We added 22 new protocol and endpoint scanners last month. See what else might be exposed in your environment. bit.ly/4yHJ6dI
A digital network visualization with interconnected nodes. Icons depicting a building, a database, a Wi-Fi router, and a security camera are connected by lines, symbolizing communication and data transfer across a global network. The background features a subtle image of the Earth, enhancing the theme of connectivity.
011
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 08/10/2026
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
021
Ron Bowes @iagox86.bsky.social · 08/10/2026
I'm also curious how much crime is unreported.. after the guy arrested on my stolen bike was let go with no charges, I've completely given up on reporting anything
000
Reposted by Ron Bowes
Censys @censys.bsky.social · 08/10/2026
🚨 Rapid Response: SonicWall patched a critical CVSS 10.0 pre-auth SSRF in SMA1000 (CVE-2026-102255). Censys detects 5,966 Internet-exposed hosts and 39,310 web properties running SMA1000/Secure Mobile Access, excluding honeypots. Censys ARC advisory: bit.ly/3VWfWJc
Censys map highlighting countries with varying host counts, showing higher concentrations in the United States, Germany, and Japan. A sidebar lists host counts, with the United States at 1,832, followed by Germany at 594. Additional countries include Canada, Australia, and the United Kingdom.
011
Reposted by Ron Bowes
Censys @censys.bsky.social · 07/10/2026
Join Censys ARC for a special edition of Censys ARC Flash at 11 AM ET for highlights of what they found across the vast and volatile Internet. Register to join: bit.ly/4uEpjd2 #CensysARC #CensysSOTIR
011
Ron Bowes @iagox86.bsky.social · 07/10/2026
This is so cool!
000
Reposted by Ron Bowes
Chris Adams @mrchrisadams.net · 07/10/2026
I guess this is the week Bluesky answers this vital question
The "press two button meme", with "I hate AI more" as one button and "I hate Adobe more" as the other
2422656
Ron Bowes @iagox86.bsky.social · 06/10/2026
I don't think I've ever had pumpkin spice, but I'm just angry that summer is ending and it's an easy target
110
Ron Bowes @iagox86.bsky.social · 05/10/2026
Humans have judgement, which makes a big difference
100
Ron Bowes @iagox86.bsky.social · 05/10/2026
I'd love it so much if SANS was actually hosting the @heyscoops.bsky.social podcast
021
Ron Bowes @iagox86.bsky.social · 04/10/2026
We've suppressed sex in favor of violence forever, and this gives people a place to experiment with desires in what feels like a judgement-free setting I'm not at all surprised we're seeing this, and it sucks that we're going to shame and ban instead of giving tools to explore it ethically
050
Ron Bowes @iagox86.bsky.social · 04/10/2026
That whole stretch east from there to Marblemount is just depressing, but has some beautiful wilderness!
000
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 02/10/2026
Fortinet warns of critical FortiMail flaw exploited in zero-day attacks #cybersecurity #hacking #news #infosec #security #technology #privacy
bleepingcomputer.com
Fortinet warns of critical FortiMail flaw exploited in zero-day attacks
Fortinet is warning customers of a critical FortiMail vulnerability, tracked as CVE-2026-104286, that is being actively exploited in zero-day attacks to execute unauthorized code or commands on vulnerable devices.
021
Ron Bowes @iagox86.bsky.social · 03/10/2026
I switched to libro.fm, they feel more ethical
libro.fm
Buy audiobooks & support local bookstores
Libro.fm makes it possible for you to buy audiobooks directly through local bookstores.
031
Ron Bowes @iagox86.bsky.social · 02/10/2026
At least where I live, there's no sign or convention like that. In fact, they have card readers at the back doors too! Maybe this is local?
010
Ron Bowes @iagox86.bsky.social · 01/10/2026
When I'm at a live event (or watching one) I want to post and read about it without bothering others
000
Ron Bowes @iagox86.bsky.social · 01/10/2026
They can't/won't solve the easiest crimes or show up when called, what do they need cameras for??
000
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 01/10/2026
Cisco Warns of Attackers Exploiting Critical Authentication Bypass in SD-WAN Manager #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
021
Reposted by Ron Bowes
Censys @censys.bsky.social · 30/09/2026
In the 2026 State of the Internet Report, we are looking beyond the weekly news cycle to benchmark security trends across more than 2 years of Internet data. Join Censys ARC Flash on Oct 14 at 11 AM ET to hear directly from the researchers behind the report & ask questions. bit.ly/3ToHoyz
021
Ron Bowes @iagox86.bsky.social · 30/09/2026
I've done many trainings where they teach us to not put liability concerns in text format (Slack or Email) - I'll be curious how disciplined their folks are
010
Ron Bowes @iagox86.bsky.social · 30/09/2026
I recently visited IMDb and it automatically logged me in with the account I use on Amazon, then started sending me spam. The "unsubscribe" link in the spam was a 404 I deleted the account, blocked the email address, and banned IMDb results in Kagi. Wikipedia does it better anyways
010
Reposted by Ron Bowes
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Kiteworks patches the vulnerability law enforcement warned it about last week and revokes its "take server offline" recommendation www.kiteworks.com/company/pres...
kiteworks.com
Kiteworks' Difficult and Unique Decision to Ensure Customer Data Protection Through Customer-Wide Shutdown Successfully Navigates Credible Threat
Kiteworks restored all customer systems after a precautionary shutdown, confirming no evidence of compromise from the credible threat. Read the full update.
041
Reposted by Ron Bowes
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Two recently patched Citrix NetScaler zero-days are seeing widespread mass-exploitation after detailed write-ups and POCs were published on Monday www.greynoise.io/blog/swarmin... x.com/LupovisDefen... mastodon.social/@GossiTheDog...
greynoise.io
Swarming Against Citrix 0-Day Exploitation
On 24 September 2026, a malicious cyber actor (MCA) used 149.104.78.141 to attempt zero-day exploitation against a Citrix NetScaler Gateway. At the time, there were no CVE-specific detections for the ...
2104
Ron Bowes @iagox86.bsky.social · 29/09/2026
I've done too much writing where my editor writes "who??" next to it
000
Reposted by Ron Bowes
Censys @censys.bsky.social · 28/09/2026
🚨Two Citrix NetScaler RCE vulnerabilities are being actively exploited as zero-days. Censys sees 42,735 Internet-exposed NetScaler ADC or Gateway hosts. Censys ARC advisory:
011
Ron Bowes @iagox86.bsky.social · 28/09/2026
Halloween is coming!
000
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 27/09/2026
Kiteworks Urges Customers to Shut Down Systems for 9 Hours Over Possible Cyber Attack #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
042
Ron Bowes @iagox86.bsky.social · 26/09/2026
The really smart people extracting money from gamblers feels so evil to me Also, governments profiting from gambling is just wrong - tax the rich, not the poor/addicts FFS I liked the part in the middle about how forcing companies to regulate themselves is both unfair and unproductive
020
Ron Bowes @iagox86.bsky.social · 26/09/2026
If I don't have a drink, I'm going to wind up phlegmy and coughing by the end.. my throat gets dry when I'm nervous Judging people for making themselves comfortable is crazy
100
Ron Bowes @iagox86.bsky.social · 26/09/2026
Today's debate is hilarious. I had no idea people cared about bringing drinks into interviews, I've interviewes a ton (both sides of the table) and it's never occurred to me to consider what they're drinking - I just want to know if they can do the job (Also I always have an iced latte)
140
Ron Bowes @iagox86.bsky.social · 26/09/2026
I've been on both side of the table for senior/principal positions and I can't even tell you what others were drinking, but I certainly had iced coffee (in a Yeti insulated cup). It's crazy to think that people care
010
Ron Bowes @iagox86.bsky.social · 25/09/2026
As long as the doors open in the correct direction!
000
Ron Bowes @iagox86.bsky.social · 23/09/2026
"I'm a large large large large large large large large large large large large large large large large large large T girl"!
090
Ron Bowes @iagox86.bsky.social · 23/09/2026
To me, I keep it simple: bees make honey for themselves, not for me, so taking away their labors is wrong (But on the scale of ethical animal-based agriculture, it's among the least-bad)
000
Reposted by Ron Bowes
Catalin Cimpanu @campuscodi.risky.biz · 22/09/2026
Check Point has disclosed a zero-day (in Security Management Server) and marked an older bug also as exploited in the wild (in Site-to-Site VPN) blog.checkpoint.com/security/sec...
blog.checkpoint.com
Security Advisory – Action Required – Active Exploitation of CVE-2026-85102 and a Management Pre-Authentication Vulnerability CVE-2026-93616 - Check Point Blog
As part of Check Point’s Frontier AI Readiness Program, we continue to release Jumbo hotfixes with security fixes and hardening improvements for our %
084
Ron Bowes @iagox86.bsky.social · 21/09/2026
I do love this, which has melty vegan cheese but savory soy saucy flavors: www.eatfigsnotpigs.com/cheesy-vegan...
020
Ron Bowes @iagox86.bsky.social · 21/09/2026
Betcha it costs more than they ever recover
010
Ron Bowes @iagox86.bsky.social · 20/09/2026
Do we need a giant sniper nest in DC? Are we doing a lot of targeted assassination in the Capitol...?
140
Ron Bowes @iagox86.bsky.social · 20/09/2026
I dunno, in the original story I'm kinda in favor of humanity gaining the knowledge that God didn't want them to and being cast out - I always think of it as humans becoming sentient and no longer being just pets
120
Reposted by Ron Bowes
Censys @censys.bsky.social · 18/09/2026
@feedly.com now links straight into Censys. When a threat report surfaces an IP, it rarely tells you what that host is doing right in real-time. Now analysts can click 'Open in Censys' from a Feedly IoC Insights Card and land on the live host record. Great threat intel integration! bit.ly/3V4kr42
021
Ron Bowes @iagox86.bsky.social · 18/09/2026
Truncating the location and not giving a link was a weird choice.. I tracked it down to 23rd and Jackson
Instagram screenshot with the full details
000
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 18/09/2026
Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
022
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 18/09/2026
Cisco Warns of New Zero-Day ISE Auth Bypass (CVSS 10.0) Exploited in Active Attacks #cybersecurity #hacking #news #infosec #security #technology #privacy thehackernews.com/20...
022
Ron Bowes @iagox86.bsky.social · 17/09/2026
I've been trying to aggressively mute words associated with political hot topics to some semblance of sanity, but it's dire
000
Reposted by Ron Bowes
Ninja Owl @ninjaowl.ai · 17/09/2026
Critical ScreenConnect flaw now actively exploited in attacks #cybersecurity #hacking #news #infosec #security #technology #privacy
bleepingcomputer.com
Critical ScreenConnect flaw now actively exploited in attacks
Attackers now exploit a critical-severity ConnectWise ScreenConnect vulnerability in the wild, according to the U.S. Cybersecurity and Infrastructure Security Agency (CISA).
032
Reposted by Ron Bowes
Censys @censys.bsky.social · 16/09/2026
🚨CVE-2026-91843 is a critical (CVSS 9.8) pre-auth RCE affecting Check Point Quantum Security Management and Log Servers. Censys sees 3,836 hosts globally with the management/log server role. No public PoC or confirmed exploitation as of publication. Patches are available. bit.ly/4cRApEJ
033
Ron Bowes @iagox86.bsky.social · 16/09/2026
Did she just call hamburgers nutritious??
000
Ron Bowes @iagox86.bsky.social · 16/09/2026
Scheduled for Monday! The day after is always terrible but it's better than the alternative
010
Ron Bowes @iagox86.bsky.social · 15/09/2026
Good reminder, scheduled mine for next week!
060