Rob Joyce
@RGB_Lights
Cyber guy. These are my personal tweets.
On Volt Typhoon and Salt Typhoon, Rob Joyce @RGB_Lights tells @SangerNYT: "The response from us being on the receiving end of those successful operations was not to...cower because of the cyber power coming at us. It was to get angry and to start to push back."
If you think you aren’t capable, I want you to know that you are. If you think you can’t hack, please understand that you can. If you think you don’t belong, let me assure you that you do. Let’s talk. Hack the Planet. @RGB_Lights @stokfredrik @JackRhysider @MalwareJake
I am doing several “meet and greets” during DEFCON, and I will have special guests at each. Friday 13:37 [REDACTED] featuring special guest [REDACTED]- come to [REDACTED} Saturday 11:37 [REDACTED] featuring [REDACTED]. Saturday 13:37 ICS village featuring [REDACTED]
It’s that time of the year when the Joyce Clan converges on Aspen to think big thoughts about cybersecurity. Happy to join Sandra Joyce and Sean Joyce and all the Aspen Digital team! @JumpforJoyce @Sean_M_Joyce @AspenDigital
Google has just used AI and threat intel to foil a zeroday before it could launch. Working from artifacts gathered by GTIG, Big Sleep was used to identify a vuln before actors could ramp up exploitation. It doesn’t get much better than this in intel. blog.google/technology/saf…
Wow. Spain is putting salt typhoon out of business. They are just going to hand it all to them: Huawei contracted to manage their wiretaps…. therecord.media/spain-awards-c…
Have you thought about your company’s Agentic AI as a possible insider threat? Try this new perspective that I co-authored. explore.pwc.com/autonomous-ai-…
Appears Maryland doesn’t want Tech Companies to be founded here. Short term budget relief for long term tax base loss as it drives away founders who have options. New tech services tax: thebaltimorebanner.com/politics-power…
Iran is now officially in the club of few countries in the world that has death penalty for cyber attacks*, right next to DPRK, Pakistan and Saudi Arabia**. This push comes specifically to harshly suppress and contain the situation surrounding the IL/IR war, and to be able to…
Sounds like banking services in Iran are still significantly disrupted.
📹 The Governor of Iran’s Central Bank, Mohammad Reza Farzin, responded today for the first time to the recent wave of cyberattacks targeting banks in Iran and stated: "Cyberattacks have intensified in recent days, and two banks — Sepah and Pasargad — were targeted. The attack…
Predatory Sparrow strikes again. This time they drained funds from an Iran-based crypto exchange. Beyond theft, they targeted trust, undermining a key tool Iran uses to evade sanctions. Nobody with options will keep crypto assets there now.
BREAKING 🔴🔴🔴 Israeli-linked hacker group “Predatory Sparrow” wiped out 95% of assets on Iran’s Nobitex crypto exchange. Nobitex was reportedly used by Tehran to evade sanctions through crypto. Wallet balances plunged from $1.8 billion to just $100 million.
Times Square cleared out. Should I be nervous?? Didn’t stay to find out why.

Lead by @rjjoyce8 , #EMBER24 has arrived @kdd_news #KDD25, the best, most open, and versatile malware detection benchmark ever! w/ @rjzak @mrphilroth @drhyrum & others, let's try to barely summarize all the new things you can do now! @BoozAllen @CrowdStrike @Cisco 🧵👇
China’s Tech Invasion is a National Emergency. See my op Ed here: washingtonexaminer.com/restoring-amer…
Large data set of labeled malicious and benign files for your AI training pleasure….
I'm excited to announce the EMBER2024 dataset, created in collaboration with @mrphilroth, @drhyrum, @EdwardRaffML, @rjzak, and others. The dataset brings an update of 3.2 million malicious and benign files first seen between Sep. 2023 and Dec. 2024. arxiv.org/pdf/2506.05074
today we are introducing codex. it is a software engineering agent that runs in the cloud and does tasks for you, like writing a new feature of fixing a bug. you can run many tasks in parallel.