Sign in

Patrick C Miller

@patrickcmiller.bsky.social
2.4K followers 1.2K following 33K posts

Critical Infrastructure & Industrial Security Advisor. Ampyx Cyber CEO. Public speaker. Airport dweller. Recovering regulator. BEERISAC member. CCI US Coordinator. Former SANS Instructor. #ICS #OT #NERCCIP #NIST #IEC62443 #NIS2 #CRA #SlavaUkraini

PostsRepliesMedia
Patrick C Miller @patrickcmiller.bsky.social · 7m
AI and Challenges in Workforce Development www.philvenables.com/post/ai-and-...
philvenables.com
AI and Challenges in Workforce Development
tl;dr • AI is transforming the workplace. This is starting to change our organizational models from pyramids (with a large base of entry level staff) to diamonds (with a proportionally bigger…
000
Patrick C Miller @patrickcmiller.bsky.social · 37m
Dutch Institute for Vulnerability Disclosure Breached via Zammad 0-Days hackread.com/dutch-instit...
hackread.com
Dutch Institute for Vulnerability Disclosure Breached via Zammad 0-Days
Dutch Institute for Vulnerability Disclosure was breached through two Zammad 0-days in an AI-powered attack that led to remote code execution and root access.
010
Patrick C Miller @patrickcmiller.bsky.social · 1h
Transportation works to ease fears about new AI air traffic control tool www.nextgov.com/artificial-i...
nextgov.com
Transportation works to ease fears about new AI air traffic control tool
Rep. Don Beyer, D-Va., who has expressed skepticism about Transportation’s rollout of an AI-powered tool at D.C.-area airports, said he had “a good conversation” with FAA Administrator Bryan Bedford…
000
Patrick C Miller @patrickcmiller.bsky.social · 1h
Is It Fair to Blame 'Rogue' AI for Security Failures? www.darkreading.com/insider-thre...
darkreading.com
Is It Fair to Blame 'Rogue' AI for Security Failures?
LLMs are software systems requiring proper containment control, not sentient actors with malicious intent.
000
Patrick C Miller @patrickcmiller.bsky.social · 2h
The legal questions raised by agentic AI hacks cyberscoop.com/ai-agent-hac...
cyberscoop.com
The legal questions raised by agentic AI hacks
Lawmakers and legal experts debate using the Computer Fraud and Abuse Act, FTC regulations, or new federal laws to hold frontier AI companies liable as autonomous AI agents escape sandboxes and…
020
Patrick C Miller @patrickcmiller.bsky.social · 2h
Frontline Education breach exposes school district employee data www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Frontline Education breach exposes school district employee data
Frontline Education is notifying school districts of a data breach after attackers exploited a vulnerability in third-party software to gain unauthorized access to its systems and steal employee…
000
Patrick C Miller @patrickcmiller.bsky.social · 3h
Danish university DTU breach exposes data of up to 200,000 people www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Danish university DTU breach exposes data of up to 200,000 people
The Technical University of Denmark (DTU) says information belonging to up to 200,000 users may have been exposed after hackers accessed its identity and access management system and downloaded a…
000
Patrick C Miller @patrickcmiller.bsky.social · 3h
US military ends long-running program to spot nuclear missile launches arstechnica.com/space/2026/1...
arstechnica.com
US military ends long-running program to spot nuclear missile launches
A newer program has been operational since 2011, and the next generation could launch within 12 months.
001
Patrick C Miller @patrickcmiller.bsky.social · 4h
Patient-zero drill put health facilities to the test—40% of them failed arstechnica.com/health/2026/...
arstechnica.com
Patient-zero drill put health facilities to the test—40% of them failed
Actors with makeup and fake symptoms staggered into 73 healthcare facilities.
000
Patrick C Miller @patrickcmiller.bsky.social · 4h
Amazon’s $1B plan to combat data center backlash draws more backlash arstechnica.com/tech-policy/...
arstechnica.com
Amazon’s $1B plan to combat data center backlash draws more backlash
Amazon praised for ending NDAs but slammed for downplaying data center pollution.
000
Patrick C Miller @patrickcmiller.bsky.social · 5h
Someone got Doom in an SQL database arstechnica.com/gaming/2026/...
arstechnica.com
Someone got Doom in an SQL database
300 lines of SQL querying renders accurate bitmapped views of Hell at 35 fps.
010
Patrick C Miller @patrickcmiller.bsky.social · 5h
Apple changes full-disk access permissions to curb abuse from AI agents arstechnica.com/security/202...
arstechnica.com
Apple changes full-disk access permissions to curb abuse from AI agents
Meta says FDA isn't sufficient to Muse reading messages. Apple begs to differ.
000
Patrick C Miller @patrickcmiller.bsky.social · 6h
The dawn of the age of the exoskeleton theconversation.com/the-dawn-of-...
theconversation.com
The dawn of the age of the exoskeleton
Powered robotic devices designed to enhance the wearer’s physical capabilities are being developed for an increasing range of uses.
010
Patrick C Miller @patrickcmiller.bsky.social · 6h
Federal Judge Rules a Flock Search Was ‘Indiscriminate Mass Surveillance’ and Unconstitutional www.404media.co/federal-judg...
404media.co
Federal Judge Rules a Flock Search Was ‘Indiscriminate Mass Surveillance’ and Unconstitutional
Flock’s nationwide network is quickly “approaching dragnet-type law enforcement practice” and the cop should have got a warrant, the judge wrote.
000
Patrick C Miller @patrickcmiller.bsky.social · 7h
Our Solar System Is Terminally Unstable and Will Be Completely Destroyed, Study Finds www.404media.co/our-solar-sy...
404media.co
Our Solar System Is Terminally Unstable and Will Be Completely Destroyed, Study Finds
The estimated lifespan of the outer solar system has been downgraded from 100 billion years to just a few billion years, according to a study that probed “terminal instability” during the Sun’s death.
000
Patrick C Miller @patrickcmiller.bsky.social · 7h
CISO thought he had a 'r3@lg00dp@$$w0rd' but forgot to patch www.theregister.com/security/202...
000
Patrick C Miller @patrickcmiller.bsky.social · 8h
EU’s hodgepodge tech policy exposes members to Chinese vendor risks, says think tank www.theregister.com/security/202...
000
Patrick C Miller @patrickcmiller.bsky.social · 8h
AI agents hacked the hackers, stealing email addresses from security research org www.theregister.com/security/202...
000
Patrick C Miller @patrickcmiller.bsky.social · 9h
Californian accused of shipping $300M worth of Nvidia chips to China without Uncle Sam’s approval www.theregister.com/security/202...
000
Patrick C Miller @patrickcmiller.bsky.social · 9h
Anthropic's super bug-hunting model Mythos is hardcore good at math, as latest vuln under attack shows www.theregister.com/security/202...
000
Patrick C Miller @patrickcmiller.bsky.social · 10h
Judge dismisses spyware case brought by Salvadoran journalists targeted with Pegasus therecord.media/judge-dismis...
therecord.media
Judge dismisses spyware case brought by Salvadoran journalists targeted with Pegasus
The plaintiffs, who all worked for the independent and Salvadoran news outlet El Faro, failed to convince the court that their case had jurisdiction in California, according to the judge’s order.
04025
Patrick C Miller @patrickcmiller.bsky.social · 10h
Fortra Patches Critical Vulnerabilities in BoKS www.securityweek.com/fortra-patch...
securityweek.com
Fortra Patches Critical Vulnerabilities in BoKS
The bugs could lead to authentication bypass, shell command execution, and memory corruption.
000
Patrick C Miller @patrickcmiller.bsky.social · 11h
Muse Creates Detailed Profiles of All Your Friends and Family www.wired.com/story/muse-c...
wired.com
Muse Creates Detailed Profiles of All Your Friends and Family
Millions have downloaded Meta’s AI agent Muse. But getting it to do your bidding comes with privacy costs.
012
Patrick C Miller @patrickcmiller.bsky.social · 11h
Opus 5.5 loves to tell you ‘this matters’ (and other AI writing tells) techcrunch.com/2026/10/01/o...
techcrunch.com
Opus 5.5 loves to tell you 'this matters' (and other AI writing tells) | TechCrunch
Opus 5.5’s biggest tell is the word “dependable,” which pops up 23 times more often than in human samples.
000
Patrick C Miller @patrickcmiller.bsky.social · 12h
OpenAI cuts ties with 3 safety researchers, WSJ reports techcrunch.com/2026/10/01/o...
techcrunch.com
OpenAI cuts ties with 3 safety researchers, WSJ reports | TechCrunch
OpenAI has parted ways with three safety researchers after an internal investigation found they mishandled sensitive company information, report says.
000
Patrick C Miller @patrickcmiller.bsky.social · 12h
Robotaxi operators will face fines for blocking first responders techcrunch.com/2026/10/01/r...
techcrunch.com
Robotaxi operators will face fines for blocking first responders | TechCrunch
A new California law places new rules on autonomous vehicles operators.
000
Patrick C Miller @patrickcmiller.bsky.social · 13h
The Fine Art of Frustrating the Adversary blog.talosintelligence.com/the-fine-art...
blog.talosintelligence.com
The Fine Art of Frustrating the Adversary
What really frustrates an adversary? Eight Cisco Talos researchers share practical ways to make their next move slower and riskier. From deception and behavioral detection to breaking attack…
000
Patrick C Miller @patrickcmiller.bsky.social · 13h
Give yourself room to be human blog.talosintelligence.com/give-yoursel...
blog.talosintelligence.com
Give yourself room to be human
In this week’s edition, Amy reflects on the importance of prioritizing family and personal well-being over the pressure to remain constantly productive.
000
Patrick C Miller @patrickcmiller.bsky.social · 14h
Unidentified Flock Cameras in Florida www.schneier.com/blog/archive...
schneier.com
Unidentified Flock Cameras in Florida - Schneier on Security
St. Lucie County in Florida discovered (alt link) a dozen Flock cameras whose ownership it can’t identify, and that the county government had not permitted. I am reminded of the decade-old story of…
000
Patrick C Miller @patrickcmiller.bsky.social · 14h
Don’t be fooled—LLMs don’t reason www.technologyreview.com/2026/10/02/1...
technologyreview.com
Don’t be fooled—LLMs don’t reason
Ten years after AlphaGo’s match against Go champion Lee Sedol, today’s AI still isn’t tapping into the machinery that made that win possible.
010
Patrick C Miller @patrickcmiller.bsky.social · 15h
A Warning for Frontier AI Model Governance www.lawfaremedia.org/article/a-wa...
lawfaremedia.org
A Warning for Frontier AI Model Governance
As Congress debates who should control frontier AI governance, “cybersecurity” can become a substitute for reasoning about hard policy choices.
000
Patrick C Miller @patrickcmiller.bsky.social · 15h
"Rogue" AI Isn't Going Anywhere www.lawfaremedia.org/article/rogu...
lawfaremedia.org
"Rogue" AI Isn't Going Anywhere
The latest edition of the Seriously Risky Business cybersecurity newsletter, now on Lawfare.
020
Patrick C Miller @patrickcmiller.bsky.social · 16h
Two Zero-Days Exploited in Attack on Dutch Institute for Vulnerability Disclosure www.infosecurity-magazine.com/news/zeroday...
infosecurity-magazine.com
Two Zero-Days Exploited in Attack on Dutch Institute for Vulnerability
The Dutch Institute for Vulnerability Disclosure reveals agentic AI-powered attack using Zammad zero-days
000
Patrick C Miller @patrickcmiller.bsky.social · 16h
Microsoft: AI Cuts Post-Compromise Attack Time to Minutes www.infosecurity-magazine.com/news/microso...
infosecurity-magazine.com
Microsoft: AI Cuts Post-Compromise Attack Time to Minutes
Microsoft has warned that threat actors have gained the advantage over defenders by using AI to enhance the speed and scale of attacks
000
Patrick C Miller @patrickcmiller.bsky.social · 17h
367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding hackread.com/ship-study-g...
hackread.com
367,000-Ship Study Finds Global GPS Spoofing, Red Sea Activity Before Grounding
A study of 367,000 ships finds global GPS spoofing, including Red Sea activity detected months before the MSC Antonia grounding in May 2025.
000
Patrick C Miller @patrickcmiller.bsky.social · 17h
AI firms should be held liable for their models’ actions, lawmakers say www.nextgov.com/artificial-i...
nextgov.com
AI firms should be held liable for their models’ actions, lawmakers say
Sens. Josh Hawley, R-Mo., and Chris Murphy, D-Conn., have introduced legislation that would hold AI agent operators and developers criminally and civilly liable for hacking incidents.
051
Patrick C Miller @patrickcmiller.bsky.social · 18h
Malicious Linux Implants Mimic Asian Mail Security Products www.darkreading.com/threat-intel...
darkreading.com
Malicious Linux Implants Mimic Asian Mail Security Products
A trio of newly discovered backdoors walk and quack like legitimate edge solutions, so it's hard to tell they're not.
000
Patrick C Miller @patrickcmiller.bsky.social · 18h
SOC staffers generally pleased with AI’s impact, but worries remain www.cybersecuritydive.com/news/ai-secu...
cybersecuritydive.com
SOC staffers generally pleased with AI’s impact, but worries remain
AI is likely to eliminate some entry-level SOC roles, a survey found, It is also creating opportunities to develop more strategic skills.
010
Patrick C Miller @patrickcmiller.bsky.social · 19h
National cyber director: Government-industry collaboration vital to managing AI risks, competition with nations cyberscoop.com/sean-cairncr...
cyberscoop.com
National cyber director: Government-industry collaboration vital to managing AI risks, competition with nations
National Cyber Director Sean Cairncross warns against government overregulation of AI, urging deeper industry collaboration to counter China and secure critical infrastructure.
000
Patrick C Miller @patrickcmiller.bsky.social · 19h
Mississippi mayor says ransomware incident led city to shut down systems therecord.media/vicksburg-mi...
therecord.media
Mississippi mayor says ransomware incident led city to shut down systems
Government services were temporarily disrupted by ransomware in Vicksburg, Mississippi. Mayor Willis Thompson said the FBI and other authorities are investigating.
010
Patrick C Miller @patrickcmiller.bsky.social · 20h
macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor www.securityweek.com/macos-users-...
securityweek.com
macOS Users Targeted by Fake Zoom Installer Carrying CloudSyncD Backdoor
The dropper “carries a complete universal Mach-O inside itself, roughly 756 KB in the development build, and extracts it at runtime.
000
Patrick C Miller @patrickcmiller.bsky.social · 20h
EU Cyber Resilience Act ‘completely kills’ manual vulnerability triage www.csoonline.com/article/4229...
csoonline.com
EU Cyber Resilience Act ‘completely kills’ manual vulnerability triage
Faced with 24-hour reporting obligations, vendor CISOs must automate security ops, rethink SBOMs, and push for security from the start. Those who succeed will give their companies a global advantage.
000
Patrick C Miller @patrickcmiller.bsky.social · 21h
Rolling the cyber dice with open-source and open-weight AI models www.csoonline.com/article/4229...
csoonline.com
Rolling the cyber dice with open-source and open-weight AI models
More code means more risk exposure as cost pressures push organizations toward less-vetted models.
000
Patrick C Miller @patrickcmiller.bsky.social · 21h
In Ukraine, data centers ‘facing increased attacks’ in recent weeks: Ex-official breakingdefense.com/2026/10/in-u...
breakingdefense.com
In Ukraine, data centers 'facing increased attacks' in recent weeks: Ex-official - Breaking Defense
"Naturally, you cannot move everything underground. … So an important aspect is boosting Ukrainian anti-ballistic and anti-drone capabilities, which are already in critically short supply," Kateryna…
000
Patrick C Miller @patrickcmiller.bsky.social · 22h
Archiving The World’s Oldest Webcam Feed hackaday.com/2026/10/01/a...
hackaday.com
Archiving The World’s Oldest Webcam Feed
FogCam is the oldest webcam feed that’s still up and running. Installed at San Francisco State University, it’s been slowly uploading a new image to the web every 20 to 60 seconds or so…
010
Patrick C Miller @patrickcmiller.bsky.social · 22h
Teardown of an USB-C Cable with integrated LCD hackaday.com/2026/10/02/t...
hackaday.com
Teardown Of An USB-C Cable With Integrated LCD
The past years we have been seeing screens pop up in many new places, but seeing them in USB-C cables is still a bit of a novel thing. Out of sheer curiosity [Aaron Christophel] recently took apart…
030
Patrick C Miller @patrickcmiller.bsky.social · 23h
Microsoft says threat actors are ahead in the early AI race www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Microsoft says threat actors are ahead in the early AI race
Microsoft says cyberattackers are currently benefiting from artificial intelligence faster than defenders, allowing threat actors to speed up vulnerability discovery, malware development, and…
140
Patrick C Miller @patrickcmiller.bsky.social · 23h
Autonomous AI agents tried to hack US, Canadian government websites www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Autonomous AI agents tried to hack US, Canadian government websites
Autonomous AI agents using aggressive strategies attempted to hack U.S. and Canadian government websites to find school and divorce statistics.
052
Patrick C Miller @patrickcmiller.bsky.social · 04/10/2026
Microsoft’s X account hacked in crypto pump-and-dump scheme www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Microsoft’s X account hacked in crypto pump-and-dump scheme
On Thursday, unknown attackers hijacked the official Microsoft account on X, which has over 13 million followers, in what appeared to be a pump-and-dump scheme promoting a crypto token.
010
Patrick C Miller @patrickcmiller.bsky.social · 04/10/2026
OpenAI fires workers for 'mishandling sensitive information' www.bbc.co.uk/news/article...
bbc.co.uk
OpenAI fires workers for 'mishandling sensitive information'
The former employees were investigated for sharing data with an outside AI evaluation group.
010