Dev Dua (@dev0x01) 's Twitter Profile
Dev Dua

@dev0x01

Infrastructure Engineer @ThinkstCanary. @[email protected] on Mastodon

ID: 1032115339

linkhttps://devdua.github.io/ calendar_today24-12-2012 06:55:01

618 Tweet

259 Followers

762 Following

haroon meer (@haroonmeer) 's Twitter Profile Photo

One of the reasons Thinkst Canary is so effective, is because it’s entry-vector-agnostic. Attackers phished a user & are now in ur infra? Attackers spent years building credibility to commit to an OSS project u use? They still have objectives on ur infra & then u discover em.

Kubernetes Pune (@kubernetes_pune) 's Twitter Profile Photo

The agenda for Security Samvad is out🎉👏 Check out the amazing sessions and insightful talks where experts will dive into all things security🛡️ Register to learn some new stuff, hang out, and meet like-minded people!👇 forms.gle/iQLM8eNcupAxvy… #punemeetup #pune #techmeetup

The agenda for Security Samvad is out🎉👏 

Check out the amazing sessions and insightful talks where experts will dive into all things security🛡️

Register to learn some new stuff, hang out, and meet like-minded people!👇

forms.gle/iQLM8eNcupAxvy…

#punemeetup #pune #techmeetup
Kubernetes Pune (@kubernetes_pune) 's Twitter Profile Photo

So much has been said about the XZ Utils backdoor & how it could have compromised all Linux systems😱 At Security संवाद, Dev Dua from Thinkst Canary will shed light on it & how to avoid such attacks, specifically for container workloads🛡️ Register now👇🏽 forms.gle/iQLM8eNcupAxvy…

So much has been said about the XZ Utils backdoor & how it could have compromised all Linux systems😱

At Security संवाद, <a href="/dev0x01/">Dev Dua</a> from <a href="/ThinkstCanary/">Thinkst Canary</a> will shed light on it &amp; how to avoid such attacks, specifically for container workloads🛡️

Register now👇🏽
forms.gle/iQLM8eNcupAxvy…
haroon meer (@haroonmeer) 's Twitter Profile Photo

This year Thinkst Canary cleared $19m in ARR. - We still have less than 40 people... - We still do "no" outbound sales... We believe more security-product companies can do this too, by focusing a little more on customer-love. We spoke about it at the Decibel event at RSAC.

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

We’ve revamped Canarytokens.org A new interface, new functionality, and the results of our latest security assessment¹ You can read more at: blog.thinkst.com/2024/07/refres… __ ¹ Still completely free

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

Our Leighton Dawson just pushed out a brand new Canarytoken. 1) Visit canarytokens.org; 2) Create a fake app¹; 3) Download it to your home-screen; 4) Get an alert when anyone else opens it! Read more about it at blog.thinkst.com/2024/08/introd… __ ¹ Still completely free

haroon meer (@haroonmeer) 's Twitter Profile Photo

Academic work on honeypots and deception are often kinda disappointing, but this paper by Debi Ashenden and Reeves is worth the skim (especially since it confirms lots of our Thinkst Canary takes 😉) tl;dr : Canaries work, Use ‘em. — ¹ scholarspace.manoa.hawaii.edu/server/api/cor…

Academic work on honeypots and deception are often kinda disappointing, but this paper by <a href="/debi_ashenden/">Debi Ashenden</a> and Reeves is worth the skim (especially since it confirms lots of our <a href="/ThinkstCanary/">Thinkst Canary</a> takes 😉)

tl;dr : Canaries work, Use ‘em.

—
¹ scholarspace.manoa.hawaii.edu/server/api/cor…
Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

1) This would be funny if it wasn’t kinda annoying; 2) This definitely isn’t us, don’t fall for it; 3) Crypto stands for cryptography 💪💚

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

This Valentines your Canary Console offers you a walk down memory lane, with our homage to flappy-bird.. It's a bit of a distance from what we do.. but.. it's also totally what we do 💪💚

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

When we first built Thinkst Canary we were proud that it took less than 4 minutes to be useful when bought. Now it takes less than two... Catching attackers is the game the whole family can play...

When we first built <a href="/ThinkstCanary/">Thinkst Canary</a> we were proud that it took less than 4 minutes to be useful when bought.

Now it takes less than two...

Catching attackers is the game the whole family can play...
TechCrunch (@techcrunch) 's Twitter Profile Photo

A decade in, bootstrapped Thinkst Canary reaches $20M in ARR without VC funding | TechCrunch techcrunch.com/2025/05/29/a-d…

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

In April this year, Grafana had a security incident due to an insecure GitHub Action. The attackers even tried covering their tracks. How were they discovered? Canarytokens.. Check out their (super transparent) post¹ on how they use our tokens at scale.. __ ¹ link follows

In April this year, <a href="/grafana/">Grafana</a> had a security incident due to an insecure GitHub Action. The attackers even tried covering their tracks.

How were they discovered? Canarytokens..

Check out their (super transparent) post¹ on how they use our tokens at scale.. 

__
¹ link follows
Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

It's our birthday, so we created a tiny skunk(worksy) game for you to play.. Complete all 7 continents, and we will send you a limited-edition, 10-year t-shirt. Have fun!! (but watch out for the Canaries) canary.tools/10-year

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

Today we released our new (free) AWS Infrastructure Canarytoken. It catches attackers in your AWS account by putting tempting assets in their way and alerting you if they get probed. Extending our old work on fake AWS assets, this makes it even easier to deploy juicy S3

Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

We are currently experiencing alerting failures on our Azure login certificate Canarytoken. This affects both free and paid Consoles. The problem appears to be due to changes on Azure - but we are still investigating. We will update with more information when we have it.

We are currently experiencing alerting failures on our Azure login certificate Canarytoken.

This affects both free and paid Consoles. The problem appears to be due to changes on Azure - but we are still investigating.

We will update with more information when we have it.
Thinkst Canary (@thinkstcanary) 's Twitter Profile Photo

You can grab the latest copy of our quarterly security research roundup at thinkst.com/ts¹ For this issue, we selected work from over 1,370 talks & 1,200 blog posts. Available as PDF, ePUB (or audio highlights) __ ¹ As always, completely free

You can grab the latest copy of our quarterly security research roundup at thinkst.com/ts¹

For this issue, we selected work from over 1,370 talks &amp; 1,200 blog posts.

Available as PDF, ePUB (or audio highlights)

__
¹ As always, completely free