SteveD3 (Steve Ragan)
banner
steved3.io
SteveD3 (Steve Ragan)
@steved3.io
Father. Grandpa. Geek. Hacker. Former journalist. Security researcher. CMO @BSidesLV.org Member: Curated Intel
Pinned
Bluesky now has over 10 million users, and I was #52,068!
FTR, it was a great show. The whole cast was awesome. The lounge was really cool too. It was themed to look like the Slytherin common room. I wish all shows on Broadway had something like this.
Got tickets to go see Tom Felton in Harry Potter and the Cursed Child at the Lyric Theatre in November.

Should be a fun little pre-holiday trip.
November 29, 2025 at 6:19 AM
Reposted by SteveD3 (Steve Ragan)
It's 2025 and I am still emailing files to myself, and I still have three laptops, and three security logins, and three yubikeys, because identity segregation and security is still a complex mess, and I am tired
August 28, 2025 at 8:42 PM
Reposted by SteveD3 (Steve Ragan)
I wrote some mid-week words for my newsletter (and now blog!) ~this week in security~ on Google today sounding the alarm over a new "widespread" wave of Salesforce data thefts targeting customers of Salesloft Drift.

Excited to share this with premium tier subscribers. ❤️
Salesforce instances targeted in new 'widespread' wave of data thefts
Salesloft confirmed a security incident affecting customers who integrate its Drift product with Salesforce. It's the latest wave of data thefts targeting Salesforce's instances.
this.weekinsecurity.com
August 26, 2025 at 11:10 PM
I'm amused. Just finished moving 11k archives (~20GB). Went to do another backup.

rsync -avzP --delete

The script did what it was asked to do... now I get to move all 11k archives a second time b/c of --delete. Lesson? You can't copy and paste your way out of everything.
August 19, 2025 at 4:34 AM
*about them

Posting from my phone is hard.
Thank you @autorabit for being a Pool Party Sponsor!! 🤿🩱🩳

The party is so good, we are at capacity w/ a 45 minute wait.

Interested in learning more them?

Visit www.autorabit.com/ca...
August 7, 2025 at 6:34 AM
Got tickets to go see Tom Felton in Harry Potter and the Cursed Child at the Lyric Theatre in November.

Should be a fun little pre-holiday trip.
June 10, 2025 at 8:34 PM
Reposted by SteveD3 (Steve Ragan)
May 23, 2025 at 9:46 PM
Reposted by SteveD3 (Steve Ragan)
Dear New York Times:
Delete your account.

The New York Times Really Asked Ms. Rachel If She’s Paid By Hamas - defector.com/the-new-york...
The New York Times Really Asked Ms. Rachel If She's Paid By Hamas | Defector
The house style of the New York Times is severely outdated. Depending on the topic, the newspaper’s purportedly impartial tone instead reads as smug, self-amused, and deeply lazy. The results are disa...
defector.com
May 17, 2025 at 6:20 PM
Obfuscated JavaScript in Phishing Kits technicaloutcast.com...
Obfuscated JavaScript in Phishing Kits
While sorting phishing kits this morning, I discovered a clever use of JavaScript to hide an infostealer.
technicaloutcast.com
May 16, 2025 at 5:09 PM
Reposted by SteveD3 (Steve Ragan)
DEF CON legal update: Truth is a complete defense against defamation.

The Hadnagy lawsuit against us is over. Summary judgement. Dismissed, with prejudice.

You can read the judgment here storage.courtlistener.com/recap/gov.us... . Stay tuned for a more detailed report.

#defcon #legalupdate
May 13, 2025 at 9:36 PM
The moving walkway is coming to an end. Please watch your step. #RSAC
April 27, 2025 at 9:02 AM
Not mine, seen this in another part of the web. Caption was Chuck GPT lol
April 21, 2025 at 6:57 PM
Reposted by SteveD3 (Steve Ragan)
I've had a bunch of people ask me why I wasn't at #VulnCon, so I wrote a blog post about it

TL;DR - I don't think VulnCon should exist

Follow me for more security hot takes

opensourcesecurity.io/2025/04-why-...
Why I didn't go to VulnCon
VulnCon 2025 is over. I didn’t go. A bunch of people have asked me why, and rather than keep my answer to a small group, I thought it would make sense to write something public about it all. The TL;DR...
opensourcesecurity.io
April 11, 2025 at 3:36 PM
ChatGPT is generating some dark phishing images.
April 2, 2025 at 7:37 AM
March 27, 2025 at 8:06 AM
Pretty much me all the time these days.
March 27, 2025 at 8:01 AM
I got blocked by someone for posting this. Guess they don't like Star Wars. Oh well, can't please everyone.
March 27, 2025 at 7:58 AM
When I posted this, I forgot to add. While I laughed and was amused (still am, it's a funny image), my first thought was... how did it turn it on? Ole Chuck be a strong force user to maintain this.
March 27, 2025 at 3:08 AM
March 26, 2025 at 8:17 AM
When you get invited to the NatSec group chat....
March 25, 2025 at 1:59 AM
March 25, 2025 at 12:48 AM
Lol

The reporters who were invited to witness the planning behind a serious of anti-piracy raids reported the exact date and times the raids were to happen.

torrentfreak.com/sec...
March 23, 2025 at 6:01 AM
My milk man is better than your milk man....
March 19, 2025 at 11:17 PM
Reposted by SteveD3 (Steve Ragan)
🚨 The 2025 Ultimate Red Team Tool Showdown is here! 🚨

We’re putting the top offensive security tools head-to-head, but only ONE will take the crown. And it’s all up to YOU!

Check out the full bracket & cast your votes:

bishopfox.com/redteam-tool...
March 12, 2025 at 2:23 PM
Toll phishing attacks spike technicaloutcast.com...
Toll phishing attacks spike
The number of phishing attacks related to toll payments has spiked.
technicaloutcast.com
March 5, 2025 at 4:13 PM