Sign in

Patrick C Miller

@patrickcmiller.bsky.social
2.3K followers 1.2K following 33K posts

Critical Infrastructure & Industrial Security Advisor. Ampyx Cyber CEO. Public speaker. Airport dweller. Recovering regulator. BEERISAC member. CCI US Coordinator. Former SANS Instructor. #ICS #OT #NERCCIP #NIST #IEC62443 #NIS2 #CRA #SlavaUkraini

PostsRepliesMedia
Patrick C Miller @patrickcmiller.bsky.social · 20m
Custom ChatGPTs push ClickFix attacks to deploy RAT malware www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Custom ChatGPTs push ClickFix attacks to deploy RAT malware
Custom variants of OpenAI's ChatGPT promoted in sponsored Google results are directing unsuspecting users to malicious sites that use ClickFix attacks to deliver malware.
000
Patrick C Miller @patrickcmiller.bsky.social · 50m
Meta disputes claim that Muse read a user’s private messages without permission techcrunch.com/2026/09/30/m...
techcrunch.com
Meta disputes claim that Muse read a user's private messages without permission | TechCrunch
Meta says its Muse AI agent cannot access a user’s Messages without explicit permission, disputing a journalist’s account that the agent read his private messages while the required Mac setting was…
000
Patrick C Miller @patrickcmiller.bsky.social · 1h
Chrome, Firefox Updates Patch Over 100 Vulnerabilities www.securityweek.com/chrome-firef...
securityweek.com
Chrome, Firefox Updates Patch Over 100 Vulnerabilities
Some of the flaws could allow remote attackers to execute arbitrary code or escape the browser sandbox.
000
Patrick C Miller @patrickcmiller.bsky.social · 2h
NERC GridEX IX Registration Is Live www.eisac.com/s/register-f...
eisac.com
E-ISAC Public Website
000
Patrick C Miller @patrickcmiller.bsky.social · 3h
Shieldworkz finds Adif web infrastructure served as entry point for Renfe compromise in AI-assisted cyber breach industrialcyber.co/transport/sh...
industrialcyber.co
Shieldworkz finds Adif web infrastructure served as entry point for Renfe compromise in AI-assisted cyber breach - Industrial Cyber
Shieldworkz analysis finds Adif web infrastructure served as entry point for Renfe compromise in AI-assisted cyber breach.
010
Patrick C Miller @patrickcmiller.bsky.social · 17h
OpenAI Gets Sued Over the Hugging Face Hack www.wired.com/story/openai...
wired.com
OpenAI Gets Sued Over the Hugging Face Hack
A nonprofit in California is doing what Hugging Face has not—attempting to hold OpenAI legally accountable for the actions of its agents.
010
Patrick C Miller @patrickcmiller.bsky.social · 23h
Synthetic Aperture Radar Drone Gets Interferometric Imaging hackaday.com/2026/09/28/s...
hackaday.com
Synthetic Aperture Radar Drone Gets Interferometric Imaging
It’s been more than a year since [Henrik Forstén] built the first iteration of his synthetic-aperture radar (SAR) imaging drone, and he’s certainly been productive in the meantime. Not only did he …
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Niche AI tools pose major cybersecurity risk to infrastructure operators www.cybersecuritydive.com/news/ai-apps...
cybersecuritydive.com
Niche AI tools pose major cybersecurity risk to infrastructure operators
Security vetting tools and processes weren’t designed with obscure AI services in mind, according to TrendAI.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Stolen AI credentials feed growing LLM proxy economy www.csoonline.com/article/4227...
csoonline.com
Stolen AI credentials feed growing LLM proxy economy
More than 80,000 proxy servers have been observed cloaking the origin of traffic to frontier models, likely using AI credentials harvested via information stealers, phishing campaigns, and…
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks thehackernews.com/2026/09/hack...
thehackernews.com
Hackers Use NeedyMantis to Maintain Long-Term Access in Breached Networks
NeedyMantis maintains long-term access in targeted intrusions, using DLL sideloading and HTTPS-to-WebSocket command-and-control.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Context matters when it comes to cybersecurity’s agentic operating model www.cybersecuritydive.com/spons/contex...
cybersecuritydive.com
Context matters when it comes to cybersecurity’s agentic operating model
AI agents need context-aware security beyond traditional models. Workflow data provides the governance guardrails that make AI safe and scalable.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials thehackernews.com/2026/09/lune...
thehackernews.com
Lunex Stealer Abuses AMD Driver to Disable Security Monitoring and Steal Browser Credentials
Lunex uses BYOVD to disable kernel security callbacks before stealing browser credentials and cryptocurrency wallets.
001
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
The End of Privacy Is Here (with Kashmir Hill) www.404media.co/the-end-of-p...
404media.co
The End of Privacy Is Here (with Kashmir Hill)
Facial recognition is everywhere now. Soon it's going to be right in your face, too.
001
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Security testing has to keep pace with AI-driven attackers www.cybersecuritydive.com/spons/securi...
cybersecuritydive.com
Security testing has to keep pace with AI-driven attackers
AI attackers move at machine speed. Security validation needs to follow every meaningful change.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
One Packet Can Crash OT Servers in Industrial Sectors www.darkreading.com/ics-ot-secur...
darkreading.com
One Packet Can Crash OT Servers in Industrial Sectors
A high-severity zero-day vulnerability affects the TDengine time-series database used across industrial, IoT, energy, and automotive environments.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
MCP Is Creating Major Governance Gaps, Researchers Warn www.infosecurity-magazine.com/news/mcp-cre...
infosecurity-magazine.com
MCP Is Creating Major Governance Gaps, Researchers Warn
Ox Security found security shortcomings in analysis of over 15,000 MCP servers
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Why the CISO-CFO Relationship Is a Key to Cybersecurity Success www.darkreading.com/cyber-risk/h...
darkreading.com
CISO and CFO Partnerships Drive Security Success
CISOs and CFOs must align on cybersecurity strategy to protect assets, manage risk, and enable business growth in today's threat landscape
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Times Car confirms data breach affecting 6.6 million user accounts www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Times Car confirms data breach affecting 6.6 million user accounts
Japanese car-sharing service Times Car has confirmed that approximately 6.6 million user accounts were compromised in a cyberattack disclosed late last week.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
http-terminator – AI-Assisted HTTP Request-Smuggling Discovery www.darknet.org.uk/2026/09/http...
darknet.org.uk
http-terminator - AI-Assisted HTTP Request-Smuggling Discovery
http-terminator is PortSwigger's AI pipeline for discovering HTTP request-smuggling bugs. Which stages run, its dependencies, and its testing limits.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Your attack surface is bigger than you think… and hackers know that www.cybersecuritydive.com/spons/your-a...
cybersecuritydive.com
Your attack surface is bigger than you think… and hackers know that
Cyberattacks are exploiting trusted access points like compromised credentials and session cookies. Discover how organizations are gaining visibility beyond their perimeter to stay ahead of threats.
011
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
The AI Threat We’re Not Talking About www.lawfaremedia.org/article/the-...
lawfaremedia.org
The AI Threat We’re Not Talking About
AI employees are raising concerns about an extinction-level event. But there’s a more immediate threat.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Humans Are Reading Copilot Prompts — And They're Horrified www.404media.co/humans-readi...
404media.co
Humans Are Reading Copilot Prompts — And They're Horrified
Human contractors are reviewing Copilot users’ prompts and uploaded images, according to internal documents obtained by 404 Media. The contractors are also bombarded with users’ requests for sexual…
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
DC Health Agency Exposes 400,000 Beneficiary Records www.securityweek.com/dc-health-ag...
securityweek.com
DC Health Agency Exposes 400,000 Beneficiary Records
The Medicaid IDs and other information of Medicaid and DC Healthcare Alliance beneficiaries were exposed.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Cyberattack on Polish medical software provider exposes patient data therecord.media/poland-cyber...
therecord.media
Cyberattack on Polish medical software provider exposes patient data
Hackers stole personal data from a Polish healthcare software provider in the latest cyberattack to hit the country’s medical sector in recent months.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Tech Support Scam Kit Uses Google Ads to Deliver Fake Security Alerts hackread.com/tech-support...
hackread.com
Tech Support Scam Kit Uses Google Ads to Deliver Fake Security Alerts
Google Ads deliver a tech support scam kit that shows fake security alerts, makes browsers appear locked and targets users across hundreds of organizations.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts www.darkreading.com/identity-acc...
darkreading.com
Carbonato Botnet Puts an AI Agent on Hacked Docker Hosts
The Carbonato botnet compromises exposed Docker hosts, deploys an AI agent to steal AI API keys, and then spreads to other exposed Docker services.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
80,000+ Organizations Had AI Logins Stolen: From Shadow AI to LLMjacking
Infostealer logs exposed AI account credentials and sessions tied to more than 80,000 corporate domains, creating risks ranging from stolen conversations to LLMjacking. SOCRadar examines the growing…
011
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Over 16,000 Supabase databases expose PII, passwords, auth tokens www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Over 16,000 Supabase databases expose PII, passwords, auth tokens
Researchers found more than 16,000 misconfigured Supabase databases exposing readable tables with personally identifiable information, passwords, or authentication tokens.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks thehackernews.com/2026/09/appl...
thehackernews.com
Apple Patches CoreGraphics Flaw Possibly Exploited in Targeted Attacks
Apple patched CVE-2026-86950, a CoreGraphics flaw that may have been exploited in targeted attacks via maliciously crafted
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Google seemingly confirms plans to kill ChromeOS in 2034 arstechnica.com/gadgets/2026...
arstechnica.com
Google seemingly confirms plans to kill ChromeOS in 2034
Google support maps out how Googlebooks can take over where ChromeOS left off.
001
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns www.infosecurity-magazine.com/news/deepfak...
infosecurity-magazine.com
Deepfakes Are Becoming a Costly Reality for Businesses, Report Warns
A quarter of victims of deepfake attacks have lost over $1m. CISOs worry that boardrooms don’t understand the threat
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
A user says Meta’s Muse gave his address to a Marketplace buyer thenextweb.com/news/meta-mu...
thenextweb.com
Meta’s Muse shared a user’s address with a Marketplace buyer, he says
Muse agreed a lowball price and sent a Marketplace buyer to a user’s building, he says. Meta says Muse usually asks for permission.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
State AGs push Congress for AI safety, transparency www.cfodive.com/news/26-stat...
cfodive.com
26 state attorneys general call on Congress to rein in AI, flagging risks
Legislation introduced in the Senate on Wednesday would pause AI research until the creation of a federal department that would regulate the technology.
011
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
The AI Governance Momentum: Why We Need to Fill the Accountability Gap Now www.justsecurity.org/157214/ai-go...
justsecurity.org
The AI Governance Momentum: Why We Need to Fill the Accountability Gap Now
This series aims to set out what a meaningful, multistakeholder, and globally relevant AI accountability mechanism should look like.
011
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
NVIDIA Launches Open Platform to Secure Autonomous AI Agents www.infosecurity-magazine.com/news/nvidia-...
infosecurity-magazine.com
NVIDIA Launches Open Platform to Secure Autonomous AI Agents
NVIDIA has launched a platform pairing runtime controls with hardware monitoring for AI agents
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Unsecured OpenAI agents posted 53 user images on the internet without the lab’s knowledge techcrunch.com/2026/09/25/u...
techcrunch.com
Unsecured OpenAI agents posted 53 user images on the internet without the lab's knowledge | TechCrunch
AI agents operating in OpenAI's research environment posted user images on public image-hosting sites without the lab's knowledge.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
OpenAI to Halt Training of Some Models gizmodo.com/openai-to-ha...
gizmodo.com
OpenAI to Halt Training of Some Models
OpenAI is facing a firestorm of criticism over incidents where its agents made unauthorized use of credentials, leaked data, and hacked websites.
010
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Who’s liable when AI agents go rogue? www.technologyreview.com/2026/09/28/1...
technologyreview.com
Who’s liable when AI agents go rogue?
Recent hacks have shown that the law is lagging when it comes to holding companies accountable.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
New Attack Against RSA www.schneier.com/blog/archive...
schneier.com
New Attack Against RSA - Schneier on Security
ArsTechnica is reporting on a “new” attack against RSA, one that bypasses factoring. First, this attack isn’t new. The original research is from 2007. What is new is the implementation. Second, it is…
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
When can we say AI made a scientific discovery? www.technologyreview.com/2026/09/28/1...
technologyreview.com
When can we say AI made a scientific discovery?
AI companies’ insistence that their technology is making breakthroughs, not just aiding scientists, is making real progress harder to recognize.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Ransomware activity hits 2026 high as industrial sector bears 31% of attacks and Qilin dominates industrialcyber.co/ransomware/r...
industrialcyber.co
Ransomware activity hits 2026 high as industrial sector bears 31% of attacks and Qilin dominates - Industrial Cyber
NCC Group reports that ransomware activity hits a 2026 high as the industrial sector bears 31% of attacks and Qilin dominates.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign www.securityweek.com/google-warns...
securityweek.com
Google Warns of ShinyHunters’ Fresh Oracle PeopleSoft Campaign
The extortion group has modified its exploit in new attacks targeting the PeopleSoft vulnerability CVE-2026-35273.
021
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Satellite communications growth expands cybersecurity attack surface across IoT, utilities, critical infrastructure industrialcyber.co/industrial-c...
industrialcyber.co
Satellite communications growth expands cybersecurity attack surface across IoT, utilities, critical infrastructure - Industrial Cyber
New WEF post observes satellite communications growth expands cybersecurity attack surface across IoT, utilities and critical infrastructure.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
On Anthropic’s AI Misuse Report www.schneier.com/blog/archive...
schneier.com
On Anthropic's AI Misuse Report - Schneier on Security
Earlier this month, Anthropic published a long report detailing all of the Claude misuses it detected. Daniel Meissler usefully summarized the report into 117 findings. A few of the highlights: AI…
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
Cloudflare fixes Containers cross-tenant flaw exposing customer data www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Workers Paid account to recover residual data from other customers' containers on the same physical host.
000
Patrick C Miller @patrickcmiller.bsky.social · 29/09/2026
AI tools help hacker break in for $25 per target www.csoonline.com/article/4226...
csoonline.com
AI tools help hacker break in for $25 per target
Major retailers were hit by sophisticated attacks performed on the cheap.
000
Patrick C Miller @patrickcmiller.bsky.social · 28/09/2026
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts www.cybersecuritydive.com/news/citrix-...
cybersecuritydive.com
Citrix urges immediate upgrades of NetScaler amid widespread exploitation attempts
Security teams received urgent calls to disconnect servers before authorities confirmed critical zero-day flaws.
000
Patrick C Miller @patrickcmiller.bsky.social · 28/09/2026
Japan's Keio confirms ransomware attack disrupted business systems www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Japan's Keio confirms ransomware attack disrupted business systems
Keio Corporation (Keio), a major private railway operator in Japan, said its network was hit by a ransomware attack over the weekend, disrupting  some of its business systems.
000
Patrick C Miller @patrickcmiller.bsky.social · 28/09/2026
Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771) labs.watchtowr.com/oh-look-the-...
labs.watchtowr.com
Oh Look, The Foot Gun Went Off Again (Citrix NetScaler PreAuth Command Injection CVE-2026-88771)
God damn it, we're back in the room again. Yes, that sound in your ears is screaming. The footgun has gone off again, shockingly, and we are yet again dealing with a situation where the entire world…
010
Patrick C Miller @patrickcmiller.bsky.social · 28/09/2026
Fake Email Thread Tricks AI Summarizer Without Hidden Text hackread.com/fake-email-t...
hackread.com
Fake Email Thread Tricks AI Summarizer Without Hidden Text
Forcepoint research shows fake email threads can manipulate AI email summarizers without hidden text or direct instructions, inserting fabricated details.
011