Trending
Sean Gallagher :verified: πŸ€ :donor:'s Avatar

Sean Gallagher :verified: πŸ€ :donor:

@thepacketrat.infosec.exchange.ap.brid.gy

Principal Threat Poker @ Sophos X-Ops. Natsec/Infosec Editor Emeritus and now infrequent contributor @ Ars Technica. Ex Navy officer and actual […] [bridged from https://infosec.exchange/@thepacketrat on the fediverse by https://fed.brid.gy/ ]

366
Followers
2
Following
109
Posts
01.01.0001
Joined
Posts Following

Latest posts by Sean Gallagher :verified: πŸ€ :donor: @thepacketrat.infosec.exchange.ap.brid.gy

Synapse, you're killing me.

11.03.2026 20:56 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

#cyberwarneverchanges

A breach story I wrote 10 years ago.
Best practices. Who's got 'em?

https://arstechnica.com/information-technology/2016/03/after-an-easy-breach-hackers-leave-tips-when-running-a-security-company/

10.03.2026 22:05 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0

Also, 10 years ago, one of my many conversations with John McAfee. Love him, loathe him, whatever, nobody deserves the ending John got. #mentalhealthawareness

10.03.2026 22:02 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

A decade ago in my Ars Technica history: https://arstechnica.com/information-technology/2016/03/dam-you-justice-dept-to-indict-iranians-for-probing-flood-control-network/

Dammit.

10.03.2026 21:51 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Original post on infosec.exchange

This weekend, I demonstrated to my dad that passwords on MacOS are no barrier to someone with physical access (he forgot his password he set the last time he opened his computer to do his taxes).

On a related note, I am hoping he doesn't connect that to my statement that I could not get into my […]

10.03.2026 17:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Proof AI is not ready for CTI #36,453,325:

Prompt: Here is some base64-encoded text. Can you extract the URL for me?

AI: (gives an actual URL to an example from an unrelated source)

Me: You hallucinated that didn't you?

AI: Please do your own Cyberchef-ing, I don't deobfuscate malware asshole

10.03.2026 17:15 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

It’s been a long winter.

03.03.2026 01:42 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Red throated loon in non-breeding plumage

Red throated loon in non-breeding plumage

Surf Scoters and Black Scoters hanging out in the surf

Surf Scoters and Black Scoters hanging out in the surf

Northern Shovelers in flight.

Northern Shovelers in flight.

Brace yourselves for critical birb updates.

02.03.2026 15:58 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Looks like someone on RAMP had a thing about Louai Abboud

27.02.2026 17:35 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Went in today, there was a lunch scheduled, got to see people I haven’t seen since September, was super productive, and no cats walked across my keyboard.

27.02.2026 01:06 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

This is going to sound weird, but I am actually excited at the opportunity to work from the office occasionally.

27.02.2026 01:03 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

They’re being led by Ulysses S Brant

13.02.2026 17:31 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Canada[s] in control at Ft McHenry

13.02.2026 17:20 πŸ‘ 1 πŸ” 0 πŸ’¬ 4 πŸ“Œ 0

@thepacketrat.net tried to post this with my mobile mastodon client and it failed. 🀷

12.02.2026 03:40 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

House of Pidge. #birds

12.02.2026 03:36 πŸ‘ 14 πŸ” 4 πŸ’¬ 3 πŸ“Œ 0

Apple iOS facial recognition fails when you have a tissue stuffed up your nose to stop a nose bleed.

10.02.2026 23:18 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Video thumbnail

The lunch crowd at my place is a little more polite these days

10.02.2026 23:14 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
A photo of a Red-Shouldered Hawk, his/her head turned to viewer's right.

A photo of a Red-Shouldered Hawk, his/her head turned to viewer's right.

Murderkeet

10.02.2026 22:28 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
A screenshot of an Outlook phishing site with a "made with Softr" graphic and an advertisement popping up at the bottom for some game.

A screenshot of an Outlook phishing site with a "made with Softr" graphic and an advertisement popping up at the bottom for some game.

When the phishing adversary uses a free platform to create a phishing page but forgets all the flare (and monetization) the platform provider injects...

And people still give their credentials.

10.02.2026 21:49 πŸ‘ 2 πŸ” 1 πŸ’¬ 3 πŸ“Œ 0
A downy woodpecker looks a little overwhelmed but is hanging in there.

A downy woodpecker looks a little overwhelmed but is hanging in there.

Hey, everyone!

Sorry for the extended period of silence. A lot of stuff has been going down irt dealing with aging and ailing parents, and since the start of the new year I have been focusing on getting back to work. The infosec and bird-related content feed is now ready to resume.

10.02.2026 21:24 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

My pottery efforts have taken a strange turn.

13.12.2025 12:40 πŸ‘ 3 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Original post on infosec.exchange

Hey all. I have been quiet on this channel for a minute , because, well, things. My parents both have had health crises in the last six months and in October I relocated them to Baltimore for surgery and memory care, respectively. My dad’s now a below-knee amputee and a few weeks away from […]

07.12.2025 22:06 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Original post on infosec.exchange

The complexities of caring for a parent you don’t like.

I just spent five days on a rescue mission. Immediately after returning home from a business trip, my wife and I loaded up and drove to distant upstate NY to retrieve my parents to bring them back with us for medical reasons. The primary […]

02.10.2025 01:26 πŸ‘ 2 πŸ” 0 πŸ’¬ 2 πŸ“Œ 0

I have been trying to get a document signed with my dad’s lawyer for nearly six months.
First draft: my first name was misspelled.
Second draft: my last name was misspelled.
Third draft: reviewed whole doc, my first name was misspelled and my address was in the wrong state.
πŸ« πŸ€¦πŸ»β€β™‚οΈπŸ€¦πŸ€¦β€β™€οΈπŸ™ˆ

28.07.2025 21:44 πŸ‘ 12 πŸ” 1 πŸ’¬ 3 πŸ“Œ 0

@Prometheus πŸ€ͺ

28.07.2025 20:21 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Original post on infosec.exchange

Spilling the Tea

A security failure in a safety app creates the opposite of safety (thx 4Chan) What Happened? Last week one of the more dangerous hacks happened. Tea, an application used by women to trade information on potential harms and dangers, had a major security lapse. Their database was […]

28.07.2025 19:43 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
A screen shot with the following text:
CyberThreaterator
The APT/Cyber Threat Name Generator
Your APT name is:
Doom Metal PotatoBeetle
Sandals based Jeff Bezos-worshipping religious cul
Motivation: will hack for food
Modus operandi: fake malware alert scamming

A screen shot with the following text: CyberThreaterator The APT/Cyber Threat Name Generator Your APT name is: Doom Metal PotatoBeetle Sandals based Jeff Bezos-worshipping religious cul Motivation: will hack for food Modus operandi: fake malware alert scamming

I've made various improvements to CyberThreaterator over lunch breaks, while watching TV, and other non-work brain cycles. There's a plan here: eventually, I want to produce full threat briefs on demand for imaginary actors with IoCs and the rest of what […]

[Original post on infosec.exchange]

09.07.2025 19:27 πŸ‘ 2 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image Post image Post image Post image

Night Herons nesting in Fells Point have gotten…numerous.

21.06.2025 22:47 πŸ‘ 3 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image Post image

Team building exercise.

21.06.2025 10:56 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0