Advertisement · 728 × 90

Posts by erbbysam

This is so, so well-articulated.

2 weeks ago 10717 3901 98 353
VRP @ Google -- a look inside a large self-hosted VRP

VRP @ Google -- a look inside a large self-hosted VRP

What's strange about go.dev/play/p/4fc3Y... 👀

Attend my presentation in the Bug Bounty Village @ DEFCON today at 5pm to learn more!

8 months ago 2 0 0 0
Post image

PhD Timeline xkcd.com/3081

11 months ago 60067 20550 590 831

I missed the "Top Secret//ORCON//Signal" banner, my bad

1 year ago 1 0 0 0

Quick question -- in Signal, how do I differentiate my EZpass scam messages from those sent by the Pentagon?

1 year ago 1 0 0 1
Call for Proposals 2025 – BSides CambridgeMA

BSides CambridgeMA CFP is open!!! bsidescambridgema.org/call-for-pro... 👀🎉

1 year ago 0 0 0 0

To answer your first question -- yes, we would accept submissions for golang.org/x repos

1 year ago 1 0 1 0

🤦‍♂️ amazing spot. Our intention was to only remove it for one-liner changes as reflected on the rules page. We updated the blog post to match!

1 year ago 1 0 1 0

Good question, let me check with our team and I'll get back to you

1 year ago 1 0 1 0
Preview
Blog: Level Up Your Open Source Karma (And Your Wallet) by Improving Security This blog post takes you through everything you need to know about the Patch Rewards Program, including our newly introduced focus on memory safety (including reward multipliers!), recently increased ...

🛡️💸 We've revamped our Patch Rewards Program, extending its scope and increasing rewards for security patches – with a particular focus on memory safety, including bonus multipliers!

bughunters.google.com/blog/5273064...

1 year ago 5 2 1 0
Advertisement
My Bitcoin wallets on Google Drive from ~2013

My Bitcoin wallets on Google Drive from ~2013

🎵Should I open it? Or should I keep it sealed?

1 year ago 6 0 2 0
Preview
Blog: The Great Google Password Heist: 15 years of hacking passwords to test our security (and build team culture!) The Leaving Tradition in Google's security team, which could be described as a type of small-scale offensive security exercise, is a great (and fun) example of team culture. Curious? See this blog pos...

I don't often post about my work but bughunters.google.com/blog/6355265... is actually super cool thing my team is doing. These short term redteams focused on just stealing our passwords were always amazing to highlight how severely broken complex systems are. The internal writeups are so, so fun!

1 year ago 18 9 0 1

Reported, thanks for the headsup

1 year ago 1 0 0 0

Check out the OSS Fuzz projects scope line :) github.com/google/oss-f...

1 year ago 1 0 1 0
Preview
Open Source Security Patch Rewards The Patch Rewards program rewards proactive improvements to security in open source projects.

bughunters.google.com/open-source-... for fixing?

1 year ago 2 0 1 0
Digital equipment corporation inter-departmental correspondence envelope

Digital equipment corporation inter-departmental correspondence envelope

Going to start posting here more often. If this doesn't work out, I found a good fallback.

1 year ago 4 0 0 0

Hello w̶o̶r̶l̶d̶ blue sky!

1 year ago 7 0 0 0
Advertisement