Sign in to view Katie’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Katie’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Kirkland, Washington, United States
Sign in to view Katie’s full profile
Katie can introduce you to 9 people at HackerOne
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
9K followers
500+ connections
Sign in to view Katie’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Katie
Katie can introduce you to 9 people at HackerOne
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Katie
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Katie’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Websites
- Company Website
-
https://hackerone.com
About
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Activity
9K followers
-
Katie Moussouris shared thisWhile I agree in general, this open letter from frontier models and tech companies is giving some heavy AI adoption vibes https://lnkd.in/gGfu9Apf
-
Katie Moussouris shared thisI’m on the CFP review board for [un]prompted . Submit your talks ASAP - don’t make us pull any all-nighters to read your abstractKatie Moussouris shared this[un]prompted, where the AI security community converges, is happening again at the end of October. Have you submitted your CFP yet? You have two weeks left! :) [un]prompted is the place to be: - It's about that community feel of old - Killer quality talks - And taking part in the formation of the AI security industry itself 40% of the talks in March were submitted during the last four days of the CFP, which put a significant burden on the review board. Submitting sooner rather than later gives you an advantage. The conference will happen in person and online, and we promise new surprises! :) Come and show us what you prompt! https://unpromptedcon.org/
-
Katie Moussouris shared thisFollow the money, ignore the manifesto. My thoughts on the GTA VI leaks shared with Matt Kapko for CyberScoop along with comments from Cynthia Kaiser Zach Edwards and Ben BernsteinKatie Moussouris shared thisGrand Theft Auto VI, widely heralded as the game event of the decade, took a significant hit last week after a cybercriminal sent much of the internet into pandemonium after publishing gameplay footage a week before the game’s publisher planned to reveal core portions of the game to the public. The files posted by the online persona “CyberLeek” indicate either a hacker had direct access to Rockstar Games’ most sensitive systems or was given proprietary data by an insider, eventually becoming one of the highest-profile data extortion attacks of the year — a vexing, almost-daily occurrence hitting industries of all types. A memecoin, a manifesto, and a week of daily leaks — but to researchers, it's a familiar extortion playbook with an unusually large audience. Hat tip to Cynthia Kaiser at Halcyon, Zach Edwards at Infoblox, Katie Moussouris at Luta Security, and Ben Bernstein at Huntress for sharing their perspectives. https://lnkd.in/gQA27K8GThe GTA VI leaks are breaking the internet. Security researchers have seen this before.The GTA VI leaks are breaking the internet. Security researchers have seen this before.
-
Katie Moussouris shared thisIt was great to catch up with Tod Beardsley at the runZero booth at #BlackHat . Even as we embrace AI, aren’t we all still on team human ✊🏼Katie Moussouris shared thisIf you were at Black Hat, you know it was wall-to-wall AI. 💻 From the products to the presentations, you couldn’t escape it. runZero’s Tod Beardsley had the opportunity to interview Luta Security CEO Katie Moussouris about this timely topic during the conference. If you’re ready for sharp AI insights and entertaining quotes, don’t miss this conversation. 👀 Check out the interview below! #AI #AIsecurity #BHUSA
-
Katie Moussouris shared thisThe Dark Reading News Desk at #BlackHat is such a fixture and it was my pleasure to be there again, this time with Rob Wright as we discussed AI agentic containment & this remarkable point in history we’re living thoughKatie Moussouris shared thisThe one and only Katie Moussouris dropping knowledge about AI's impact on vulns during her appearance on the Dark Reading News Desk at Black Hat with Rob Wright. Check it: https://lnkd.in/emTfzrjcAgentic AI Presents New Insider Threat Model for OrgsAgentic AI Presents New Insider Threat Model for Orgs
-
Katie Moussouris shared thisI had fun speaking about the AI present and future with Tom Field at the Information Security Media Group (ISMG) studio in Vegas during #BlackHat The technical debt repo man is powered by AIKatie Moussouris shared thisOne of the true pleasures at Black Hat 2026 was the opportunity to sit in Information Security Media Group (ISMG) Studio with Katie Moussouris of Luta Security and discuss #AI frontier models, vulnerabilities at machine speed and how we must nurture the next generation of #cybersecurity talent. Watch here: https://lnkd.in/edkFeDRT
-
Katie Moussouris shared thisNot only should you take Joe FitzPatrick’s hardware hacking training wherever and whenever possible, but ask him to tell you about that time returning from CanSecWest when we had to cross the US/Canadian border on foot🦶🏼Katie Moussouris shared thisCome build some malicious hardware implants with me at CanSecWest in Vancouver next month! Applied Physical Attacks: Rapidly Prototyping Hardware https://lnkd.in/gWQttMZA Content: We'll design and build, from scratch, circuit boards and physical devices to connect to and interact with multiple target systems. This will allow us to monitor, intercept, and inject payloads on various hardware interfaces. Prerequisites: familiarity interacting with embedded devices over a serial consoles, or having taken an intro hardware hacking class, is sufficient background. Takeaway: Knowing what *you* can accomplish in 4 days helps you grasp what to expect from an adversary with skills, funding, and time. This will inform how you think about your supply chain, threat model, and more.Applied Physical Attacks by Joe FitzPatrick at CanSecWest 2026 — CanSecWest 2026 RegistrationApplied Physical Attacks by Joe FitzPatrick at CanSecWest 2026 — CanSecWest 2026 Registration
-
Katie Moussouris shared thisHaving created Microsoft Vuln Research, the first multiparty vuln disclosure org at a vendor, I shared my practical advice with Eric Geller on Gold Eagle, the AI vulnerability clearinghouse initiative by the US government. Comments also from Alex Stamos and Dan Lorenc. https://lnkd.in/grHWS4A9AI-powered vulnerability clearinghouse faces deep skepticism, major challengesAI-powered vulnerability clearinghouse faces deep skepticism, major challenges
-
Katie Moussouris shared thisLove this new book by Steven L. Dawson (Luta Security is in it!). The labor market is changing with the pressures of AI plus late stage capitalism. Many orgs aren’t investing in growing their talent bench, eliminating many entry level roles due to AI. So finding and retaining the expert human talent of tomorrow will be extremely challenging. This book can help. Link below and in the first comment.Katie Moussouris shared thisRather timely for anyone hiring, my father Steven L. Dawson has recently released a book about how hard it is to find and keep talent. Katie Moussouris was gracious enough to offer her perspective for a section of the book! (Thanks again Katie!) https://lnkd.in/gmrMuNsB
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisDear Iceland, Thank you for letting me visit your beautiful, delicious, and amazingly unique country. I hope I have the chance to return again someday. Maybe then I will be brave enough to eat the fermented shark! Tanya 💗
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisScoop: SpaceX's Cursor AI tool is being abused by cybercriminals to hack into companies across Europe and the United States. 👇 Drawing on work from Gambit Security, this Reuters story (in the first comment) shows how commercial agentic AI solutions are being leveraged by rogue actors to claim victims online. Thanks to Eyal Sela & Curtis Simpson for their assistance with this one!
-
Katie Moussouris liked thisI cannot tell you how profoundly depressing and disappointing this era of cybersecurity has been in terms of protecting people. There's a complete lack of voices of people who operationally do cybersecurity, it's been hijacked by vendors and orgs that directly stand to profit (or lose) due to GenAI. Cybersecurity has always been full of snakeoil, and outcomes have always got worse due to orgs not focusing on foundations. GenAI hype by vendors has basically pushed it over the cliff.Katie Moussouris liked thisPeak cybersecurity is reading an open letter from AI companies about how their AI models (which they could shut down at any time) threatens critical infrastructure. Meanwhile Iranian hackers are attacking critical infrastructure because the providers didn't change their default passwords. Please listen to established cybersecurity professionals rather than the AI snake oil salesman. A bot that autocompletes text isn't going to solve cybersecurity for you. Change your default passwords, segment your networks, adopt passkeys and two-factor authentication, enable automatic update when possible, and install mitigations for critical security vulnerabilities. I'd also not personally advise making your cybersecurity dependent on wildly unprofitable companies that will likely collapse within the next 2 years. There's already plenty of established cybersecurity vendors who have been around for over a decade and already implement AI as and when needed. This PSA is brought to you by: Common Sense & A Lack of AI Psychosis.
-
Katie Moussouris reacted on thisI've said this before but straight up: Andrew Morris and the GreyNoise Intelligence crew are at the very pointy end of the kind of problems we're about to deal with.Katie Moussouris reacted on thisWe're working on lots of cool new stuff at GreyNoise Intelligence. I'm really proud of our engineering team, currently blasting out new features and collection methods faster than our product team is able to keep up. Some examples from our internal demos today (fresh off the press): - Platform and OS agnostic telemetry collection from compromised sensors - Support for running vulnerable embedded systems, like routers and modems, by running the firmware itself (and pulling the malware off of it 👀) - Windows support: we're running old ass versions of Windows and collecting the malware that's dropped on them from stuff as old as Windows XP and as new as Server 2022. Excited to see what ETERNALBLUE is dropping all these years later. - Joining botnets- we're operating long-running instances that deliberately infect themselves with malware to join botnets and just ... sit there, and get instructions from them. Snitching on a whole nother level. - Retrohunts: customers can pass us a Suricata signature and we'll run it on all of our historical data and surface any matches. Cool for figuring out whether a Mythos-era bug is really Mythos-era at all, or if some dude knew about it already years ago. Super fast too- they finish in a few minutes. - Sensor rentals: If you want to run honeypot sensors at massive scale (maybe in a specific country 👀) but you don't want to deploy the infrastructure yourself, you can spin up as many as you want on our infrastructure, easy peasy. Create your own thousand sensor fleet in an afternoon, and tear it down the next week. Only pay for what you use. ...and much more. If any of this sounds cool to you, get in touch with us.
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisUS military officials are set to brief a House oversight committee next week as part of lawmakers’ examination of an unusually high number of deaths by suicide among personnel of US Cyber Command as its workload has surged because of conflicts abroad, by Jake Bleiberg and me https://lnkd.in/gnVCVYbECyber Command to Brief Congress Military Committee On SuicidesCyber Command to Brief Congress Military Committee On Suicides
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisToday is my last day with Google. After 7+ amazing years (2,629 days … anybody cares?), my Google journey is officially coming to a close! From Chronicle Security (circa 2019) to Cloud Security Podcast by Google to Autonomic Security Operations (ASO) to SAIF to AI governance, and way too many CISO meetings to count, it’s been an incredible ride. I was happy to share parts of it with incredible people. May your logs always be centralized (or: federated, when necessary) and your detections autonomic! The new journey begins ... soon!
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisUnfortunately had to withdraw my talk from Crowdstrike's Day Zero conference. Apparently ignoring an ear infection can lead to you sneezing and rupturing your eardrum. So, that was a fun experience, but now I can't fly for a little bit. I hope I will be able to submit again next year. It was going to be the first time I've spoken publicly about any of my significant cybersecurity work in the past 9 years. So kind of a big deal for me.
-
Katie Moussouris reacted on thisKatie Moussouris reacted on thisi just saw a clickbait headline "copilot became microsoft's most hated product, ever." i dunno, that seems like a pretty high bar.
Experience & Education
-
Luta Security
******* *** ***
-
*********
***** ****** *******
-
*********
****** ******** ********** ****
View Katie’s full experience
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Recommendations received
-
LinkedIn User
“Katie has pit bull persistence, angelic patience, and nearly perfect comedic timing, which means she can get almost anything done, even in political mine fields, and everyone involved is onboard with her.”
6 people have recommended Katie
Join now to viewView Katie’s full profile
-
See who you know in common
-
Get introduced
-
Contact Katie directly
Other similar profiles
-
Gary Fish
Gary Fish
Secure Passage : Operational Intelligence for the Physical World
17K followersKansas City, MO
Explore more posts
-
Jym Cheong
ST Engineering • 816 followers
Smart contracts are essentially ways to host code via the blockchain, which enables all kinds of decentralized Web3 technologies, from NFTs to peer-to-peer lending. But, in this case, the threat actor has designed their smart contract to enable storing and retrieval of arbitrary data. Specifically, they’re using the smart contract to store Base64 encoded JavaScript...
-
Leon Poggioli
NetSeg.io • 6K followers
CISA, NSA, FBI, DOE and the EPA released a joint advisory yesterday (AA26-231A) warning of an active threat to Siemens S7 Series PLCs. Not to pick on an individual vendor - similar challenges are going to appear for everyone. A lot of the commentary I am already seeing is focused on attackers using AI to write the exploitation scripts. That is interesting, but it is not the part that should change what you do this week. The attack path is a familiar one. Threat actors are finding Internet-exposed Siemens S7 PLCs (S7-200 through S7-1500, including the F-series safety CPUs), talking S7comm on TCP port 102, and using publicly available libraries like python-snap7 to read and write data blocks and ladder logic. They are disguising those scripts as legitimate monitoring tools. AI has just made it cheaper and faster to produce the scripts. It has not created a new way into the plant. Many organisations I have spoken to since founding NetSeg do not have a clear OT inventory, who can reach those devices, or whether an integrator’s remote access has left something exposed. CISA called that last point out specifically. And if you don't have a good working relationship between OT and Cyber, you won't be able to effectively protect your critical OT systems. You need asset inventory, connectivity (especially the external connections) and continuous monitoring to identify threat IOCs.
5
-
Mark Thomasson
Cyber Threat Intelligence… • 13K followers
Insider risk resources are often scarce, and many large organizations, such as Google, tend to address these issues only after well-publicized incidents. -https://lnkd.in/gxyAny7a. Marshall Heilman and the folks from DTEX partnered with the Ponemon Institute to release the "Cost of Insider Risk 2026 Global Report" - https://ponemon.dtex.ai/. This report is the gold standard in providing trends to evaluate and budget for your own Insider Risk program. Share it with your chronically underappreciated Insider Risk folks Key Insights - Total average annual cost of insider security incidents is US$19.5M - Companies with an insider risk management program save themselves from 7 incidents a year, saving on average 8.2 million dollars - Time to Containment is reduced with a commitment to budgeting for Insider Risk, with an average of 67 DAYS to contain, down from 86 in 2023 - They address the rising COST OF SHADOW AI with cost of $10.3M due to negligent insiders
19
-
Tim Callan
7K followers
In this Root Causes Podcast episode, Jason Soroko and I define Cryptographic Bill of Materials (CBOM), which is more than a list of your cryptography and where it is. A CBOM need also include information about the PQC readiness of environments, availability of updates, and the importance of secrets. Audio: https://lnkd.in/gJC5y3at Video: https://lnkd.in/gHuXd69B
22
2 Comments -
Richard Staynings
Cylera • 27K followers
CISA is sounding the alarm over a critical vulnerability in GeoServer that is being actively exploited in the wild, ordering federal agencies to patch immediately. The flaw, tracked as CVE-2025-58360, is an unauthenticated XML External Entity (XXE) vulnerability affecting GeoServer versions 2.26.1 and earlier. When exploited, the bug lets attackers retrieve arbitrary files from vulnerable servers, allowing data theft, denial-of-service attacks, or server-side request forgery (SSRF) that can expose internal systems. GeoServer, an open-source platform for publishing and sharing geospatial data, is widely used across civilian, scientific, and defense-linked federal environments. “GeoServer is widely used across federal agencies that manage land, water, and geoscience data,” said Louis Eichenbaum, federal CTO of ColorTokens, noting that it often runs alongside ArcGIS and remains connected back to enterprise GIS systems, even in otherwise segmented or air-gapped deployments. CISA added CVE-2025-58360 to its Known Exploited Vulnerabilities (KEV) catalog this week, citing active exploitation. Advisories from Wiz and the Canadian Centre for Cyber Security indicate that exploit code has circulated since late November, giving attackers a head start before coordinated patching could happen. https://lnkd.in/gRqEs5Dg
7
-
Alexandre Dulaunoy
OASIS • 7K followers
After lengthy late-night discussions with Cédric Bonhomme on sightings and KEV formats, we produced a first draft of a generic format for Known Exploited Vulnerabilities (KEV). Initially, we considered extending GCVE BCP-05 using the CVE Record format. However, we ultimately concluded that it may be more appropriate to define a standalone format, allowing sources to publish their KEV data independently. Feel free to comment on the discourse link below. KEV Assertion Format – Draft Specification (potential BCP?) This format describes a generic KEV (Known Exploited Vulnerability) assertion format. The goal is to express who claims exploitation, when, based on what, where it was observed, and with which level of confidence, without turning KEV into full threat intelligence. A KEV assertion is usually very binary and lacking some meta-information. The format adds some information which could better capture details about the exploitation. A majority of the fields are optional except vulnerability, status and evidence.[].source which are recommended. 🔗 https://lnkd.in/eaBUFXie GCVE-EU CIRCL (Computer Incident Response Center Luxembourg) CVE Program
144
11 Comments -
Nick Haan
12K followers
🔬 Team82 has published a new report addressing one of the major challenges in CPS today: understanding precisely what's in your environment. When assets are not accurately identified, risk increases, and visibility decreases. This report details the true effects of these gaps and how Claroty's new CPS Library offers a solution. 📘 Get your copy: https://gag.gl/3isbOQ
12
-
Ian Walters
Walters GRC Advisory • 1K followers
#CMS continues to fine-tune the #ARCAMPE. This time with some extra guidance on audit log capacity and retention. Coalfire keeps an eye on the changing landscape of compliance in the world of #ACA and #Medicaid 10-year retention seems a long time when compared to #HIPAA (not #HIPPA) requirements (6 years). How are you handling the increase in audit log storage required for compliance? https://lnkd.in/ejgZ4hYE
3
Explore top content on LinkedIn
Find curated posts and insights for relevant topics all in one place.
View top content