Opens profile photo
Follow
Jonathan Leitschuh @ Open Source Summit
@JLLeitschuh
First Dan Kaminsky Fellow | Security Researcher securing the OSS Ecosystem | Dropper of 0days (Responsibly) | Star ⭐️ | Opinions=Mine | He/Him
Boston MAstars.github.com/profiles/jllei…Joined May 2010

Jonathan Leitschuh @ Open Source Summit’s Tweets

Pinned Tweet
This is my #ZeroDay #PublicDisclosure of a security vulnerability impacting 4+ Million of @zoom_us's users who have the Zoom Client installed on Mac. Zoom had 90-days + two weeks to resolve this #vulnerability and failed to do so. medium.com/@jonathan.leit
107
3,492
4,769
Show this thread
This year, I became the first ever Dan Kaminsky Fellow, a fellowship created to celebrate 's memory by funding a Fellow for a year to work on open-source projects that make the world a better (and more secure) place. It has been an honor to be that individual. 4/
Quote Tweet
It's been an absolute honor to be the 2021 Dan Kaminsky Fellow If you've got a project that you think will improve the security of the internet and want an incubator to work on that project for a year, consider applying! kaminskyfellowship2022.splashthat.com
1
Show this thread

Topics to follow

Sign up to get Tweets about the Topics you follow in your Home timeline.

Carousel

Is this MFA?
1
3
TIL: Pharmacy staff print out their passwords on barcodes they stick to their hands. Every time the get a prompt for their password, they just use the barcode scanner to enter it. "It saves us so much time every day" Never underestimate the end user
3
2
8
"It’s often that the security community blames the end-user for being uneducated or making mistakes that get them hacked or compromised, but doesn’t look inward to see how they can improve their own systems." on open source security.
3
13
55
That vulnerability in the AWS-sdk-java I found was just disclosed! CVE-2022-31159: Partial Path Traversal vulnerability in the AWS-sdk-java TransferManager (downloads the contents of S3 buckets).
2
4
17
Show this thread
What does it mean to be the first person chosen for the Dan Kaminsky Fellowship? talks about it all from his perspective and how his life has changed this year. Applications for the next fellowship recipient are open until Aug 15, 2022
1
4
🤦🏻‍♀️ we need to talk. You know where to find us for knowledgeable experts in this exact area to help your lawyers & execs understand that this isn’t serving your users or reducing your risk (& eventual legal liability for security holes) Info dot com
4
12
31