Jon McCoy Profile Banner
Jon McCoy Profile
Jon McCoy

@thejonmccoy

4,610
Followers
816
Following
9,118
Media
64,395
Statuses

.NET developer with a focus on security; We/r/n build your fire walls, we clean your logs, we guard your databases while you sleep. +my posts are CC-0

Code Land
Joined June 2015
Don't wanna be here? Send us removal request.
Pinned Tweet
@thejonmccoy
Jon McCoy
3 years
Security Unit Validation #appsec @owasp Sec Checklist: API Json input Tests: *Sanitizer pre JSON deserialization *Type restrictions *Basic data types of possible *Lock down scheme *Data type specific bounds checking *String most limited char set *Json & string size limits
28
51
208
@thejonmccoy
Jon McCoy
4 years
@David_Leavitt @Costco you allow this to happen?? You allow him to remain a member??
45
362
3K
@thejonmccoy
Jon McCoy
4 years
@BillyCorben @profjaffar @Costco you allow this to happen?? You allow him to remain a member??
24
194
1K
@thejonmccoy
Jon McCoy
2 years
17
258
1K
@thejonmccoy
Jon McCoy
3 years
Hacking is a skill set Hacking is a employable skill set Hacking is a career path Hacking is a culture Hacking is a critical part of tech Hacking is a type of innovation
16
166
672
@thejonmccoy
Jon McCoy
6 years
My proTip if you speaking at @DefCon Make time to talk to the little people that come up and want to talk, if a big name $$vendor comes up and wants to have a long discussion->tell them to meet you tomorrow over lunch Hold space and time for the young hackers : )
8
64
352
@thejonmccoy
Jon McCoy
4 years
Because
Tweet media one
5
139
331
@thejonmccoy
Jon McCoy
4 years
@David_Leavitt @Costco Thank you @Costco for escorting him out Will you also prevent him from being a member while masks are required as he can't control him self
@BillyCorben
Billy Corben
4 years
This occurred at the Gulf Coast Town Center location on 6/27 and one of the customers targeted said: "To give Costco the credit, they escorted him out and made me wait inside and monitored him until he left and then they send someone with me to the care to make sure I'm okay."
676
4K
43K
4
56
296
@thejonmccoy
Jon McCoy
13 days
Imagine looking at this and being told you should attack them : )
@FilmThePoliceLA
Film The Police LA
13 days
2:19 AM Quite a sight
92
2K
7K
6
64
302
@thejonmccoy
Jon McCoy
6 years
@MalwareTechBlog @k8em0 A: fairly sure it is a nation state... B: how do you know?? A: the code is super advanced but the operator seems to be legit retarded...
2
24
245
@thejonmccoy
Jon McCoy
15 days
@lauriewired We set the SMB port by the time It is 18:27 now....
5
4
219
@thejonmccoy
Jon McCoy
5 years
Julian Assange was taken into British custody WikiLeaks posted videos/documents of USA solders murdering/torture people WikiLeaks exposed the banking collapse was fake in Iceland, and was about to show it was fake in the US... #FBI Truth is now a revolutionary act #Unity4J
4
87
167
@thejonmccoy
Jon McCoy
7 years
@doubleasterisk @comcast @taylorgilbs @comcastcares @comcast hates freedom of choice and freedom of content on the internet
1
7
157
@thejonmccoy
Jon McCoy
4 years
0
16
134
@thejonmccoy
Jon McCoy
6 years
@captainsafia The best part about UDP jokes is that I don't care whether you get them or not : )
2
14
134
@thejonmccoy
Jon McCoy
5 years
#Monday I am ready for you!!
3
35
124
@thejonmccoy
Jon McCoy
5 years
@doktorpaine @Esquiring @lukeisamazing "Am I being detained?" "Am I free to go?" "I will use my right to remain silent"
1
2
119
@thejonmccoy
Jon McCoy
7 years
@thejonmccoy
Jon McCoy
7 years
Help fund "Dan" to leak @comcast emails, he is forced to type propaganda all day, see this thread #SaveDan2017 = 100 BitCoin
4
12
34
2
8
111
@thejonmccoy
Jon McCoy
4 years
@shoe0nhead Totally what police are paid todo ... Just like they are paid to murder innocent people Maybe we need to change the system...
7
1
114
@thejonmccoy
Jon McCoy
3 years
@StatusCoup @JonFarinaPhoto Making a good case for ending the police
0
5
107
@thejonmccoy
Jon McCoy
3 years
I am glad to see security controls at @defcon
@Jun34u_sec
Jun34u
3 years
Tweet media one
16
18
449
4
12
116
@thejonmccoy
Jon McCoy
1 year
@mattjay Reduce the risk by 50% and execute 3 of the new hires. Then accept the risk at CISO level : )
3
1
112
@thejonmccoy
Jon McCoy
5 years
@WPLGLocal10 @iElijahManley How about jail time??
1
1
102
@thejonmccoy
Jon McCoy
2 years
If anyone is wondering about the infoSec drama : ) @AlyssaM_InfoSec is a long-term good security community person, she is a hands on industrial power house. Jonathan is known for making multiple fake security Reports/Research creating "fake news" used in main stream propaganda.
@AlyssaM_InfoSec
👑 Alyssa Miller 🦄🛩️
2 years
So this dude ignores that the guy who touched off this thread attacked women, said they can't be technical, then when he challenged me I went technical with him and he plagiarized a response. I didn't bring any mob, he created it himself. This is his "research".
Tweet media one
47
37
416
4
11
86
@thejonmccoy
Jon McCoy
2 years
Who would be into talking about Security + NFT? Saturday, pass it along : )
12
26
75
@thejonmccoy
Jon McCoy
2 years
Crypto Sec: Hacker uses flash loan to buy a ton of tokens -> uses tokens to vote -> votes to steal all the money -> repays the loan with the tokens BeanStalk hack
@peterwsinger
Peter W. Singer
2 years
Beanstalk cryptocurrency project robbed after hacker votes to send themself $182 million The attacker used a flash loan to obtain a controlling stake in the project, which runs on a majority vote governance system, a core feature of many DeFi protocols.
6
16
39
10
22
71
@thejonmccoy
Jon McCoy
2 years
A thread about Random Number Generators(RNG) This applies to Seed/Key creation
@VitalikButerin
vitalik.eth
2 years
What's even more interesting is that tan(int) is *not* a random number generator. There's fascinating patterns in the data. One way to look at it is: if tan(x) is very high, x is very close to a 90' or 270' angle. So if tan(x) and tan(y) are high, tan(x + 2y) is also high.
Tweet media one
173
63
583
12
6
56
@thejonmccoy
Jon McCoy
6 years
@Smashtastic1 @DerpStevens2 @elonmusk It is the number of times this simulation has been run #42
7
0
70
@thejonmccoy
Jon McCoy
6 years
@shenanigansen Can we also reduce the volume for $1??
2
1
65
@thejonmccoy
Jon McCoy
5 years
Every system has weak points : )
1
12
64
@thejonmccoy
Jon McCoy
5 years
@bertjwregeer @MalwareTechBlog Do it break infoSec It will free us!!!
1
4
57
@thejonmccoy
Jon McCoy
6 years
@shenanigansen Good : ) $1 = DB++ $1,000 everyone dies : )
0
0
56
@thejonmccoy
Jon McCoy
6 years
We did it @DefCon + @OWASP DefCon 26 Sold all the swag! Talked to tons of young hackers! Encouraged people down the WhiteHat road! Connected with a ton of @OWASP 'ers that are core @DefCon 'ers
Tweet media one
2
14
55
@thejonmccoy
Jon McCoy
5 years
All the kind people at @DefCon and @OWASP helped me get to where I am. Some with big legs up like training or support, some being kind and setting a good example, some just by researching and showing me what exploring is. Community is how we built security : )
2
9
52
@thejonmccoy
Jon McCoy
4 years
@hacks4pancakes @3mm4h3ff Areas of general knowledge Development TLS and web protocols Web page design Owasp top 10 (Targeted at web pages) Local OS, setup lockdown computer Forensic Networking File storage Encryption 2F4 Web auth trust Wifi Malware & Totally do focus on your area Me AppSec/Re/Mal/....
0
5
51
@thejonmccoy
Jon McCoy
5 years
Some awesome new @defCon art for hacker outreach. Thanks to the amazing @1dark0ne Want to sign up to support at the table -> ?? @owasp @DefConOwasp
Tweet media one
4
7
52
@thejonmccoy
Jon McCoy
7 years
@HCov1232 @comcast @comcastcares This is why everyone hates @comcast , well that and the attack on #NetNeutrality , well and the monopoly price gouging, look on @YouTube : )
2
6
41
@thejonmccoy
Jon McCoy
7 years
@thejoseph100 @AnythingBUT_CNN @Airreck @comcast Hay Dan, if we got you 100 bitcoin think you could leak all the internal @comcast emails Helps us stop them : )
0
2
42
@thejonmccoy
Jon McCoy
3 years
It is #Caturday Remember you can do anything
Tweet media one
1
7
46
@thejonmccoy
Jon McCoy
2 years
Small breach Only $350k lost
@BoredApeYC
Bored Ape Yacht Club 🍌
2 years
Our Discord servers were briefly exploited today. The team caught and addressed it quickly. About 200 ETH worth of NFTs appear to have been impacted. We are still investigating, but if you were impacted, email us at discord @yugalabs .io.
371
361
2K
4
6
44
@thejonmccoy
Jon McCoy
5 years
@KyleKulinski It would be nice if the Democrats promised to not cheat and rig the primary.... But the promises only seem to go one way...
0
1
39
@thejonmccoy
Jon McCoy
2 years
Tweet media one
Tweet media two
Tweet media three
Tweet media four
3
10
43
@thejonmccoy
Jon McCoy
2 years
@ethereumlodge @SleepyKangaroos @abudabu_dot_eth @NFTherder @discord @princess_nft Top recommendations to Secure your Discord: No user posted links Limit bot&mods rights Only Discord verified bots Disable web hooks 2FA Disable DM Turn off friend requests Don't use Discord for team coms We will post mint on all Twitter(@ ex) & website(ex .io) & Discord(ex)
4
18
34
@thejonmccoy
Jon McCoy
3 years
Corporate security be like
@philthese
Phil™️
3 years
He posted up by the door with the lint roller and no one questioned a thing...
2K
20K
61K
0
17
42
@thejonmccoy
Jon McCoy
2 years
Security Saturday topic What are the Scams, how to defend your self.
4
15
39
@thejonmccoy
Jon McCoy
3 years
@Infosec_Taylor I use "Laundry facilities" I get paid by the hour here, tell me more, I could use a rest Where are you from, is the weather nice, it is always hot here
0
1
38
@thejonmccoy
Jon McCoy
2 years
@H3KTlC You are fighting a fight, most don't want to, and most can't You are jumping into the Software Development Life Cycle SDLC, you are doing what must be done, you are asking the questions no one wants asked : ) You are Security Engineering
2
1
39
@thejonmccoy
Jon McCoy
5 years
@IanColdwater I agree infoSec twit is nice : ) We have cleaned house a few times and now it is fairly kind If your a newB people help lift you up and encourage you If you are inside crew and have a hard day, the love comes out hard to support you Closest thing to a support group we have: )
3
2
36
@thejonmccoy
Jon McCoy
4 years
@morphonios @Onenerdylady Seems like the city is safe But now they have someone that will hate the police for life...
0
2
33
@thejonmccoy
Jon McCoy
5 years
Next @DefCon plague is in Dev
@SeamusBlackley
Seamus Blackley
5 years
Just now, the dormant yeast I collected this week from Ancient Egyptian artifacts (with help from @drserenalove and @rbowman1234 ) is being fed grain for the first time in four and a half thousand years. Here is the story: #AncientBaking @ClubYeast
Tweet media one
144
1K
4K
0
8
39
@thejonmccoy
Jon McCoy
2 years
@ethereumlodge No user posted links Post main website Limit bot rights Disable web hooks 2FA Disable DM Turn off friend requests Use non-Discord chat app for primary team commands. Am I missing any Discord Security Tips? -> @SleepyKangaroos @abudabu_dot_eth @NFTherder @discord @princess_nft
7
13
39
@thejonmccoy
Jon McCoy
2 years
Much love @defcon
Tweet media one
5
2
37
@thejonmccoy
Jon McCoy
5 years
Hey everyone Nikita -> @Niki7a Is a core of our hacker community, and has done more than anyone I know to support new people, keep kind people, fight the bad Would love to see a love interview/article: ) On how much of a light in our dark community she has been @violetblue ?: )
3
9
36
@thejonmccoy
Jon McCoy
7 years
Help fund "Dan" to leak @comcast emails, he is forced to type propaganda all day, see this thread #SaveDan2017 = 100 BitCoin
@comcast
Comcast
7 years
Title II ≠ #netneutrality . Comcast continues to support open internet protections:
Tweet media one
2K
2K
5K
4
12
34
@thejonmccoy
Jon McCoy
4 years
@BillyCorben Well that was fast
0
9
35
@thejonmccoy
Jon McCoy
2 years
No one cares about security. Until they do : )
5
5
37
@thejonmccoy
Jon McCoy
4 years
@jimmy_dore Yep, we will remember
Tweet media one
1
6
33
@thejonmccoy
Jon McCoy
4 years
Anyone want 30-60 min of expert security chat/advice/data? Giving back to the community. I am up to donate some time to you.
6
8
36
@thejonmccoy
Jon McCoy
6 years
Honey pot Is it unfair to attack your pen-testers?? Is it a valuable???
5
6
34
@thejonmccoy
Jon McCoy
4 years
@dpakman I shit... It was a joke... It worked!!!
Tweet media one
0
1
34
@thejonmccoy
Jon McCoy
3 years
Conspiracy Theory: You know all the hacker @DefCon talks that say the patch is in place, and the vuln is closed.... What if there never was a vuln, but we all accept it is closed now : )
0
13
36
@thejonmccoy
Jon McCoy
3 years
@MalwareTechBlog PowerShell is a OS running a like .NET framework that compiles code on the fly. It is legit crazy awesome And once you flip it to code input, you realize it is a JIT compiler, and that is what .NET/C# is : )
0
1
35
@thejonmccoy
Jon McCoy
4 years
@WiiCrew @chadloder Making the world a better place : )
0
0
27
@thejonmccoy
Jon McCoy
2 years
I have been blocked by @jonathandata1 for a long time Anyone else getting weird DM's from him? Maybe fighting @defcon finally got to him : )
Tweet media one
5
1
35
@thejonmccoy
Jon McCoy
4 years
@GregMannarino Guess who the winners they picked are
@SenSanders
Bernie Sanders
4 years
This is what our government is paying to develop a COVID19 vaccine: - $1.2 billion to AstraZeneca - $483 million to Moderna - $500 million to Johnson & Johnson - $30 million to Sanofi Once a vaccine is approved by the FDA, it must be available to all for free. No profiteering.
455
4K
15K
5
6
32
@thejonmccoy
Jon McCoy
4 years
@ZackBornstein @0DDJ0BB Also look for florescent lights and paint... They like to mark protesters they want to "get" later...
0
5
31
@thejonmccoy
Jon McCoy
2 years
Blockchain Sec Recommendation: Moving MetaMask ETH network off infura (ConSensys) Change to -> Alchemy Step: *Make a Alchemy account *Get API key *Move MetaMask ETH network over How to web guide:
7
7
32
@thejonmccoy
Jon McCoy
4 years
@pgarapon
Pierre G.
4 years
2K
34K
76K
3
5
28
@thejonmccoy
Jon McCoy
4 years
@chadloder @AOC The happens every day on the streets of America, but now the world is watching
1
1
30
@thejonmccoy
Jon McCoy
4 years
@chadloder He should have quit yesterday...
0
1
32
@thejonmccoy
Jon McCoy
7 years
@united @BoeingAirplanes Are you going to help him??
@JayseDavid
Jayse D. Anspach
7 years
@United overbook #flight3411 and decided to force random passengers off the plane. Here's how they did it:
6K
121K
113K
3
4
31
@thejonmccoy
Jon McCoy
6 years
My security animal this week #AppSec
Tweet media one
1
14
32
@thejonmccoy
Jon McCoy
5 years
How I help @owasp I give focused support to NewB's I reach out to them, I loop them in conversations at Cons I help them get a foot hold to the next level I support their efforts I am a on the ground friend I try to be the community that helped me come up in Security : )
3
7
32
@thejonmccoy
Jon McCoy
4 years
Hey @Pornhub We are going to have protest videos removed from other video sites Would you open a hidden riot porn area for us to upload to?? Thanks for the idea @stimulator We need you @Pornhub
3
10
31
@thejonmccoy
Jon McCoy
6 years
@alicegoldfuss @TerribleDev I think/hope we have better acceptance for gender choices then OS I still don't respect Mac people, gay sure no problem, but a Mac come on, but I can't say I like Windows any more .... A-OS
4
0
29
@thejonmccoy
Jon McCoy
6 years
We had a number of fathers at @appsecusa asking how the diversity & @OWASPWIA projects could help support their daughters to attending @appsecusa : ) I was happy to tell them of all that we have to support them : ) Thanks @owasped and larger team : )
5
8
30
@thejonmccoy
Jon McCoy
3 years
@archillect Growing up poor$$ it is not called hacking, it is called making it.
Tweet media one
0
2
29
@thejonmccoy
Jon McCoy
5 years
@Gravel551 @BrandonVanB @coinbase Can't double spend if banks own 100% of the network
3
0
28
@thejonmccoy
Jon McCoy
8 months
@FilmThePoliceLA So the robot is as useful/useless as the real human police.... A waste of money, because the police do not serve or protect, they only enforce and abuse
2
0
30
@thejonmccoy
Jon McCoy
2 years
Welcome to Doom!! Hacker toy controls/hacks wireless
@flipper_zero
Flipper Zero
2 years
We all knew this was going to happen Credit:
40
442
3K
1
4
30
@thejonmccoy
Jon McCoy
7 years
Reminder to my work-a-day friends, every min of commute time is one day lost a year. (260days*1min*2ways)=520 min spent 520/60=8.7 hours
3
27
29
@thejonmccoy
Jon McCoy
2 years
How to become a community leader? Do something amazing Do something hard Do something that takes a ton of time Do something that drains energy Do something scary ..... -> then Make it easy for someone else to pick it up. Help someone quickly do what you did. Show someone how-to
3
6
30
@thejonmccoy
Jon McCoy
5 years
Connected with some amazing hackers and whiteHats from around the world!!! Thanks @DefCon and @OWASP for making it possible : ) Thanks @OWASPWIA for leading the amazing Diversity projects in @owasp : ) I look forward to more next year #hackerFam : ) -> @DefConOWASP : )
Tweet media one
2
4
28
@thejonmccoy
Jon McCoy
5 years
@justicedems After Clinton.... I would vote for Trump over Bidden
26
0
15
@thejonmccoy
Jon McCoy
4 years
@jandersen @migueldeicaza Best reply "It would hurt my career to work at FB, you understand..."
0
1
29
@thejonmccoy
Jon McCoy
2 years
1
3
29
@thejonmccoy
Jon McCoy
2 years
Hey friends People will find things to criticize you about. They are judging you by their life, and any difference is how you did it wrong. Don't judge yourself by other's views : ) Find your strengths and focus on them
3
7
28
@thejonmccoy
Jon McCoy
3 years
Know your threat model
Tweet media one
0
5
29
@thejonmccoy
Jon McCoy
3 years
@AriDrennen @kim_crawley Would this art valid if it was sold at a art house? Is this art invalid if it is sold as an NFT?
Tweet media one
26
0
26
@thejonmccoy
Jon McCoy
6 years
At @DefCon for the first time, come by the @OWASP table and say hi to a WhiteHat, we have skills and training and resources for you : )
3
10
27
@thejonmccoy
Jon McCoy
11 months
84
5
25
@thejonmccoy
Jon McCoy
5 years
I am so happy to see this!!! Podcast link to awesomeness : ) -> interview with meZ : )
@AppSecPodcast
The Application Security Podcast
5 years
S05E06 - " @thejonmccoy is someone we can all learn from about giving back to our community." #OWASP #AppSec #DefCon #HackerOutreach
0
6
13
6
7
27
@thejonmccoy
Jon McCoy
3 years
@IanColdwater ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎ ︎
4
3
27
@thejonmccoy
Jon McCoy
4 years
@shoe0nhead Police are all Karens with guns If you talk back to them they will scream "stop resisting" while they attack. Police will call your manager and "report" you Police == Karens
1
1
24
@thejonmccoy
Jon McCoy
4 years
@dpakman I would guess not a actually police officer, and infact someone that is probably a threat to the community. No badge number, not a officer
1
1
25