Catherine Norcom (@thingmakerq) 's Twitter Profile
Catherine Norcom

@thingmakerq

Hardware hacker, reverse engineer, circuit board surgeon, and micro-soldering pro. Conference speaker. Combat veteran.

ID: 247237753

calendar_today04-02-2011 11:29:14

537 Tweet

834 Followers

251 Following

Google VRP (Google Bug Hunters) (@googlevrp) 's Twitter Profile Photo

Did you know that we leaked tokens that could compromise our Golang mirrors on GitHub? 😱 Since Google OSS VRP launch 3 months ago, we rewarded nearly $90K for bugs just like that one. Keep them coming! goo.gle/oss-vrp

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

This is why bug bounty programs are such a great idea. Having a third party do security testing over a short period of time is not going to find everything. bleepingcomputer.com/news/security/…

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

When you've been asked to hack some hardware thing and suddenly realize you have all the tools required right there in your toolkit. 🏴‍☠️🛠️ #hacker #WomenInSTEM

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

I've been talking about this for years now! If you've attended an IoT security talk of mine you've heard me say this. Medical IoT - where a device is on or in your body and also on the internet - is often developed with little to no security testing. cnn.com/2023/03/29/tec…

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

You never can just install open-source programs for testing. No, that would be too easy. You always have to fix them first. I'm looking at you, #Ubertooth... 👀

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

I told somebody I was "pen testing a Bluetooth device". They apparently told that to a colleague; who minutes later asked me, "Are you testing Bluetooth pens? 🖊️".

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

A short in my new GPU 💥 my PC so I'm rebuilding from scratch. The new motherboard wouldn't post. After troubleshooting I called @asus. Turns out it requires a BIOS update to run the CPU. Can't update if it won't post. They want me to ship it back for the update. 🤦‍♀️ #brandnew

Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

We're nearing the end of the second day here at hardwear.io and decided to live stream some microsoldering I've been doing! m.twitch.tv/thingmakerq

tihmstar (@tihmstar) 's Twitter Profile Photo

Hey Google VRP (Google Bug Hunters) and hardwear.io I propose that Catherine Norcom (who helped everyone with crazy soldering skills) and Dennis Giese (who brought a shitton of hardware/tools which people borrowed more than hwio stuff) should get included in every bug bounty by default

Hey <a href="/GoogleVRP/">Google VRP (Google Bug Hunters)</a> and <a href="/hardwear_io/">hardwear.io</a> 
I propose that <a href="/thingmakerQ/">Catherine Norcom</a> (who helped everyone with crazy soldering skills) and <a href="/dgi_DE/">Dennis Giese</a> (who brought a shitton of hardware/tools which people borrowed more than hwio stuff)
should get included in every bug bounty by default
Catherine Norcom (@thingmakerq) 's Twitter Profile Photo

Having fun soldering all teh things at #hardpwn this year! Stop by and say "hi"! You might even see a microsoldering demo or two 😉. hardwear.io