Image
user avatar
Nico Waisman
@nicowaisman
CISO at @XBOW. Former CISO @Lyft. Binary entomologist
Buenos Aires, Argentina
Joined January 2009
  • Pinned
    user avatar
    Excited to join @lightspeedvp , @FortuneMagazine , and @awscloud at the NYSE opening bell ceremony this morning!
    Image
    00:00
    Honored to see our hard work recognized! Huge credit to our engineering, security, and AI teams for their relentless effort in building the most advanced autonomous pentester on the market.
  • user avatar
    Some personal news: I have been appointed CISO at @lyft last week. Super excited to continue growing our security & privacy program. If you are interested, we have openings in many areas
  • user avatar
    Super excited about this new chapter in my career, I join @lyft as the new head of security and privacy! We have openings in our team (US & Mexico). Please DM if you are interested.
  • user avatar
    I’m excited to announce the GitHub Security Lab! Our mission is to inspire and enable the global security research community to secure the world's code. Check out!
  • user avatar
    Image
  • user avatar
    Hey all! I decide to offer public Office Hours. If you are interested to talk about security careers, mentorship, discuss your security startup or anything else, please reach out! calendly.com/nico_waisman/n…
  • user avatar
    This is my last week at Immunity. It’s been some of the most amazing 16 years of my life, I’m very proud of what we have built but it’s time for me to move on!
  • user avatar
    Can we stop with "Human is the weakest link!" please? It's a debt security people have, not a people problem. Everyone can be fooled into clicking a malicious link, we owe people to built better system to prevent/detect those actions to happen.
  • user avatar
    In other bittersweet news, this is my last week at @GitHub. I had a fantastic time working for such a great company, where I help built a Security Research team focus on helping secure OSS. (1/n)
  • user avatar
    Found this bug on Monday. An overflow on the linux rtlwifi driver on P2P (Wifi-Direct), while parsing Notice of Absence frames. The bug has been around for at least 4 years
    Image
    CVE-2019-17666 rtl_p2p_noa_ie in drivers/net/wireless/realtek/rtlwifi/ps.c in the Linux kernel through 5.3.6 lacks a certain upper-bound check, leading to a buffer overflow. cve.mitre.org/cgi-bin/cvenam…
  • user avatar
    Natalie's (@natashenka ) Infiltrate 2019 talk on her video conferencing application research was just released. She did research on WebRTC, Whatsapp, Facetime, etc.
  • user avatar
    This CVE thingy has gone a little far. This dude wrote a shitty http server for a college course. Someone found a basic stack overflow and assign a CVE to it (CVE-2019-12198)
  • user avatar
    Five minutes before a call I obsessively look at the clock to avoid missing it, and then suddenly i jump into a timeless task to realize I'm late. Anyone else experience that?
  • user avatar
    Start-up idea: A Google Meet plug-in that connect with your HR software and tell you the cost of a meeting based on the participants hourly rate.