Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Rob Pomeroy

@robpomeroy@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

TLDR: #infosec #cloud #devops #OpenSource #JC #MostlyHarmless

👋🏻🔒 Friendly British Security/Technology wonk.

😇🙏 Good guy wannabe.
✍🏻👽 Sci-fi author.
👦🏻👦🏻 Father to twins (one passed away 24 Feb 2024) with severe learning difficulties and other disabilities.
🦸🏻‍♀️ Husband to superhero wife.
⚖️ Solicitor (no longer practising law though).
✝️ To everything there is a season.

🔐👍🏻 Visit my website for secure/private methods of contacting me

800 Followers
898 Following
7 Posts
Joined June 14, 2019
Website 🌍:
https://pomeroy.me/about/
GitHub 👨🏻‍💻:
https://robpomeroy.github.io/mastodon.html
Keybase 🔑:
https://robpomeroy.keybase.pub/mastodon.html
BrightOS 💡:
https://github.com/robpomeroy/BrightOS
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
A patch-lag leaderboard is less useful than it looks. The vendor that publishes a discovery date is double-reporting; the one that doesn't shows a misleading zero. The metric that matters is disclosure-to-patch for known-exploited bugs. https://vulntrends.org/blog/which-vendors-patch-the-fastest/ #patching #vulnerabilities #msrc #mttp #infosec
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

2
1
1
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
I've released VulnTrends v1.2.0. Rather than adding lots of new features, this update focuses on improving the foundations: • Higher quality data • Better analysis • New explanatory pages describing each metric and its limitations • Greater transparency into how the charts are produced The aim is to make VulnTrends a useful reference for understanding vulnerability disclosure and remediation trends—not just another CVE counter. Feedback is always welcome. https://vulntrends.org Release notes: https://github.com/robpomeroy/vulntrends/releases/tag/v1.2.0 #cybersecurity #opensource #infosec #analytics #bugpocalpyse #vulnpocalypse
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

1
0
0
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
Some people spend their holiday time on the beach. I play with websites, apparently. Don't tell Mrs P. I've enhanced the data gathered for my open source project VulnTrends (v1.1.0), and the picture is even more pronounced than the project originally showed. It's impossible (and irresponsible) to ignore the impact of frontier (or well-harnessed) LLMs on vulnerability discovery. Will there be a growing disparity between discovery and remedation? That remains to be seen. What IS certain is that the severity and quantity of bugs now discovered place immense pressure on patching. The loop (download, test, pilot, release) needs to be tighter than ever. https://vulntrends.org #bugpocalpyse #ai #llm #vulnerabilities
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

1
0
1
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 45mo ago
Replying to
@elk Wow, looks nice!
1
0
0
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
We've all been talking about AI accelerating vulnerability discovery, but I hadn't seen a good way to visualise it. So I built https://vulntrends.org/ The "Vulnerabilities Discovered" graph, tracking major vendors over time, makes the recent acceleration very hard to ignore. Feedback welcome.
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

0
0
0
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
Is software security actually improving? It's tempting to judge by the ever-increasing number of CVEs, but vulnerability counts tell only part of the story. In this article I explore the difference between vulnerability discovery and software quality, why modern engineering practices have improved security, and how AI could fundamentally change the balance between finding and fixing bugs. I'd love to hear your thoughts. https://vulntrends.org/blog/software-security-actually-improving/
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

0
1
0
0
Open post
Rob Pomeroy @robpomeroy@infosec.exchange
· 2mo ago
The arrival of 622 CVEs in a single Patch Tuesday is the visible signal of something that has been happening for years: discovery is now machine-speed, and a once-a-month batched disclosure is straining to keep up. Read more: https://vulntrends.org/blog/the-evolution-of-patch-tuesday/ #vulnerabilities #PatchTuesday #AISecurity #Microsoft
VulnTrends — Vulnerability Patching Trends
VulnTrends

VulnTrends — Vulnerability Patching Trends

Tracking trends in vulnerability patching across major software manufacturers.

0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 04:51:03 UTC