Sign in to view Cory’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Yorktown, Virginia, United States
Sign in to view Cory’s full profile
Cory can introduce you to 10+ people at Schellman
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
228 followers
213 connections
Sign in to view Cory’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Cory
Cory can introduce you to 10+ people at Schellman
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
View mutual connections with Cory
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Sign in to view Cory’s full profile
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Activity
228 followers
-
Cory Rey reposted thisCory Rey reposted thisSchellman is hiring! If you're passionate about hacking web applications, have your OSCP, and a couple years of experience, we'd love to hear from you. Please check out this post -- if you think you're a good fit, please apply and shoot me a LinkedIn message. Let's get the ball rolling and turbocharge your career! https://lnkd.in/dFEhmRfc #pentesting #owasp #oscp #cybersecurity
-
Cory Rey shared thisCory Rey shared thisWondering how a web application penetration test actually works? We overview the 4 steps of our process so that you can know what to expect from your engagement. Tap below to learn more. 📝: Cory Rey | #PenetrationTest #Web #SchellmanWhat Happens During a Web Application Penetration Test?What Happens During a Web Application Penetration Test?
-
Cory Rey shared thisCory Rey shared thisMalicious actors can still leverage XSS payloads to perform CSRF-type attacks to great effect. Learn how this threat works and how you can demonstrate its potential impact during penetration testing: https://hubs.ly/Q01sH6jW0 | 📝: Cory Rey
-
Cory Rey shared thisCory Rey shared thisSchellman's pen test team is always looking for good people that love hacking and want to join a team of like-minded. Hit me up if you're looking for a change!
-
Cory Rey liked thisCory Rey liked thisI stole an Outlook password with nothing but CSS inside an email 👀 Whitepaper in comments 👇
-
Cory Rey liked thisCory Rey liked this
-
Cory Rey liked thisCory Rey liked this🚨 **It's Here: The New OWASP GenAI LLM Top 10 for 2026 Has Arrived.** The list that helped kickstart defining GenAI and LLMs security is back with an update for 2026. The the guidance that started the global conversation around securing LLMs and Generative AI, is now available with updated rankings, new insights, and revised guidance reflecting today's rapidly evolving GenAI threat landscape. Whether you're building, deploying, governing, or securing AI applications, this is essential reading. ✅ Updated risk rankings ✅ Refined guidance and mitigations ✅ Reflects the latest real-world threats facing LLM and GenAI applications A huge thank you to the hundreds of security researchers, practitioners, developers, AI experts, and reviewers from around the world who contributed their time, expertise, and thoughtful feedback to make this latest release possible. This guide is a testament to the strength of the global open-source security community and the collaborative spirit that drives the GenAI Security Project. 📥 **Download the new OWASP Top 10 for LLMs:** 🔗 https://lnkd.in/eyZpPWD3 🌐 **Learn more about the OWASP GenAI Security Project and explore additional guidance, frameworks, and tools:** 🔗 https://genai.owasp.org/ Join thousands of security professionals, developers, architects, and AI leaders using the OWASP GenAI Security Project as the foundation for secure AI adoption. Become a contributor yourself. #OWASP #GenAI #AISecurity #LLMSecurity #ArtificialIntelligence #CyberSecurity #SecureAI #AppSec #DevSecOps #RiskManagement #LLM #GenerativeAI #AIGovernance #GenAISecurityProject
-
Cory Rey liked thisCory Rey liked thisCache Key Poisoning is such an overlooked vulnerability class, this talk from Alex B. at Bug Bounty DEFCON sounds really interesting!
-
Cory Rey liked thisCory Rey liked thisNext week I'll present "Can AI Do Novel Security Research? Meet the HTTP Terminator" at DEF CON & Black Hat USA! I'm really excited to share this one - got some spectacular outcomes from a wild research journey. See you there!
-
Cory Rey liked thisCory Rey liked thisI'm very happy to announce "Can AI Do Novel Security Research? Meet the HTTP Terminator" is coming to DEF CON 34! This research was a huge gamble and the result was glorious, can't wait to share!
-
Cory Rey liked thisCory Rey liked thisI'm thrilled to announce "Can AI Do Novel Security Research? Meet the HTTP Terminator" will premiere at Black Hat #BHUSA! Here's the abstract: We all know AI can find bugs. After a decade of research, I asked a harder question: can an autonomous system invent new attack techniques, and use them to hack live websites at scale? Building this sounded like a bad idea, so I did it. It worked - I'll share an arsenal of new HTTP desync triggers, gadgets, and exploits that compromised banks, security solutions, and government infrastructure. Then I'll trace each discovery chain back through the HTTP Terminator, showing how to turn your personal expertise into an autonomous weapon - and the dark arts required to make it lethal. I'll also share discoveries from beyond the autonomy horizon - some only reachable with a tight human/AI research loop, and others beyond AI's reach entirely. These include a powerful undisclosed recon technique, and anomalies that hint at new attack classes offering alternative paths to critical impact. I'll analyze the discovery process, sharing detailed experiments that probe the boundaries of what AI can and can't discover. You'll leave with new exploits from desync triggers to undisclosed attack classes, and a blueprint for turning your instincts into an autonomous research cascade. And yes, I'll open-source the HTTP Terminator.
-
Cory Rey liked thisCory Rey liked thisWe've launched a new Web Security Academy topic on exploiting AI-powered security scanners! Learn how to use indirect prompt injection to steal data, cause damage & trigger exploit chains!
-
Cory Rey liked thisCory Rey liked thisIt is an exciting day here at Schellman! We are welcoming Goldman Sachs Alternatives as our new investment partner and I could not be more excited about what this means for our future. Moments like this make you stop and think about how it all started. So let’s go back down memory lane. Schellman began in 2002 with two founders, one service, and a belief that the compliance world could be done differently. They wanted to disrupt the traditional model and build a firm focused on quality, trust, and doing right by clients. Fast forward to today and we are more than 500 people strong serving incredible clients around the world. We now offer hundreds of services and work with the who’s who of companies that trust us to help them build trust with their customers globally. When you stop and think about that journey…wow. It really is amazing to see how far this firm has come. I also want to take a moment to recognize Chris Schellman. Chris brought me into this firm many years ago, and at the time I had no idea what the future would look like. What I did know was that he had a vision to build something different. That vision still lives on in this firm today, and even in the name we proudly carry every day. Seeing how Schellman has grown from those early days into what it has become is truly remarkable. I will always be grateful for the opportunity he gave me and for the potential he saw in me before I fully saw it in myself. I’m also incredibly grateful to Lightyear Capital for their partnership over the last four years. They supported our growth and helped us reach this milestone and they will continue to be part of the journey ahead. And most importantly, to the #SchellmaNators. You are the fabric of this firm. The reason people come to work here. The reason our clients stay with us, trust us, and grow with us. That is because of you. You make my job easy, and I am incredibly grateful to work alongside all of you. With Goldman Sachs Alternatives joining the journey, we are super excited about what comes next. The future for Schellman is amazing and we are just getting started. We’ve shared the full announcement on our website. I’ve included the link in the comments below if you’d like to learn more.
Experience & Education
-
Schellman
**** *********** ******
-
********* * ******** ***
********* *********** ******
-
******** *******
****** *************
View Cory’s full experience
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
Welcome back
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
New to LinkedIn? Join now
Licenses & Certifications
Recommendations received
1 person has recommended Cory
Join now to viewView Cory’s full profile
-
See who you know in common
-
Get introduced
-
Contact Cory directly
Other similar profiles
Explore more posts
-
Cyber Tzar Intelligence
204 followers
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a medium-severity security flaw impacting Wing FTP to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. News brought to you by: cybertzar.com #cybersecurity https://lnkd.in/gHbcb4aF
2
-
ICCCSAI
198 followers
CISA Adds Four Vulnerabilities to KEV Catalog — Time to Act The U.S. Cybersecurity and Infrastructure Security Agency (CISA) recently updated its Known Exploited Vulnerabilities (KEV) catalog, adding four security flaws after confirming evidence of active exploitation in the wild. Staying informed and responding quickly to KEV additions is critical to reducing exposure and protecting your organization. Highlighted in the update: - CVE-2025-68645 (CVSS score: 8.8) — A PHP remote file inclusion vulnerability in Synacor Zimbra Collaboration Suite (ZCS) that could allow a What this means for security teams: - Treat KEV-listed vulnerabilities as high-priority. CISA adds entries based on observed exploitation, so rapid remediation is essential. - If you run Zimbra Collaboration Suite, prioritize verification, patching, or implementing vendor-recommended mitigations. - Inventory affected assets, apply patches or mitigations, and validate remediation through scans and tests. - Monitor logs and detection systems for indicators of compromise, and update IDS/IPS and EDR signatures. - Coordinate with incident response and business stakeholders to ensure continuity and communication. Next steps: 1. Review the full KEV update and CISA guidance. 2. Identify affected systems in your environment. 3. Apply patches or mitigations immediately, or implement compensating controls if patching isn’t possible. 4. Validate remediation and continue heightened monitoring. Read the full report and details here: https://lnkd.in/gWKuscKP Staying proactive, coordinated, and transparent is our best defense. If you need to prioritize actions across your estate, now is the moment to mobilize resources and reduce risk. #Cybersecurity #CISA #KEV #VulnerabilityManagement #Zimbra #ThreatIntel #PatchNow #Infosec #IncidentResponse #SecurityOps
1
-
Valorem Reply
30K followers
Your SOC team isn't losing to attackers, they're buried under volume. Microsoft screens ~5 billion emails daily for malware and phishing threats (per the 2025 Digital Defense Report). Most user-reported alerts? False positives. Manual triage? Often 20–30 minutes each. The numbers don't scale. Enter Security Copilot agents, included at no extra cost with Microsoft 365 E5. Since Ignite 2025, they're embedded directly in Defender XDR, Entra, Intune, and Purview. The Phishing Triage Agent in Defender autonomously classifies user-submitted phishing reports, resolves obvious false positives, explains verdicts in plain language, and escalates only real threats. From Microsoft's trials and early data: SOC analysts detected malicious emails up to 550% faster (or 6.5× in some scenarios), with major efficiency gains leading to freeing up teams to focus on genuine threats instead of noise. This augments your analysts, not replaces them and thereby letting them tackle complex issues they were hired for. Governance? Built-in: Every agent decision follows your policies, is documented as a transparent decision tree/log, audited in Purview, and keeps human-in-the-loop with overrides. If you're on E5, quick wins this week: - Check your tenant's Security Copilot activation status. - Enable the Phishing Triage Agent in the Defender portal. - Brief your CISO on the governance and auditing model - it's a strong shift to proactive, agent-assisted security. Your existing E5 license just unlocked faster, smarter SOC operations. What's your experience with the Phishing Triage Agent or Security Copilot agents so far? Learn more about optimizing your E5 license: https://hubs.la/Q0473gpt0 Shahid Mohammed I Matteo Migliori I Malissa Salzinger I Stephen Lazzara #CyberSecurity #MicrosoftSecurity #MicrosoftSentinel #XDR #SecOps #SecurityCopilot #M365Copilot
9
-
DNS-Consulting
188 followers
CISA Adds Gladinet and CWP Flaws to KEV Catalog Amid Active Exploitation Evidence The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added two security flaws impacting Gladinet and Control Web Panel (CWP) to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The vulnerabilities in question are listed below - CVE-2025-11371 (CVSS score: 7.5) - A vulnerability in files or directories accessible to #cisa #adds #gladinet #flaws #catalog #amid #active #exploitation #evidence More: https://lnkd.in/gYUpcsCG
-
AllSafeUs
93 followers
Windows Security Hardening: The January 2026 Update Explained As Senior Lead Security Analyst at AllSafeUs Research Labs, I'm issuing this critical alert regarding the significant security enhancements slated for the Windows January 2026 security update. This forthcoming update introduces substantial hardening measures that directly impact how applications interact with Windows authentication dialogs, specifically by restricting credential autofill capabilities. This change, while potentially disruptive to certain workflows, is a crucial step in mitigating a severe vulnerability, tracked as…...
-
AMS Networks
6K followers
If identities are compromised, perimeter controls won’t save you. Action step: Enforce least privilege. Review admin roles quarterly. Remove standing access. Identity is the new perimeter. #IdentityAccessManagement #ZeroTrust #FederalCloud #GovCon #CloudSecurity #AMSNetworks
-
ORDR
14K followers
Security teams are buried in dashboards, queries, and manual triage. ORDR IQ changes that. Ask a question or give a prompt in plain language: "Which devices are affected by this CVE?" or "Generate zero-trust policies for these pumps," and get verified, actionable answers in seconds. Built on our Asset Intelligence Graph spanning 100M+ devices, ORDR IQ turns insight into execution with full governance and audit trails built in. 🔗 https://bit.ly/48aQROh
9
-
CyberSync Hub
353 followers
A PenTest report alone doesn’t reduce risk, remediation does. At CyberSync Hub, we guide organizations through a structured remediation roadmap that prioritizes real threats, addresses root causes, and validates fixes through retesting. Because security isn’t about knowing your weaknesses, it’s about closing them. #CyberSecurity #PenTesting #Remediation #RiskManagement #InfoSec #CyberSyncHub
4
-
Dropzone AI
9K followers
Every SOC analyst knows the tension. Investigate alerts quickly to keep queues manageable, and risk missing critical context. Dive deep into every signal, and create latency that attackers exploit while other alerts wait uninvestigated. This impossible choice has defined security operations for years. Rush through investigations and threats slip past. Take your time and backlogs become dangerous blind spots. Security alert latency costs organizations 3-5 hours per incident in delayed response time. During this window, attackers move laterally, escalate privileges, and exfiltrate data while alerts sit unacknowledged. Dropzone AI eliminates this tradeoff entirely. Our AI SOC Analyst begins investigating the moment an alert arrives, delivering complete 3-10 minute investigations with 99.9% accuracy while reducing MTTA from hours to seconds. The outcome? 85-90% faster threat response, 100% alert coverage, zero added headcount. Speed and thoroughness no longer compete. They coexist. Link in the comments to read how we eliminated the tradeoff. #SecurityOperations #SOC #CyberSecurity #AISOC
23
2 Comments -
Code Defence
2K followers
Final remediation deadline for critical Roundcube Webmail RCE today. 🔓 Remediation Alert · CISA KEV deadline for CVE-2025-49113 (Severity 9.9). Today marks the final deadline for federal agencies to remediate the critical deserialization flaw in Roundcube Webmail software. This vulnerability, which had been hidden in the codebase for over 10 years, allows an authenticated attacker to execute arbitrary system-level commands without validation. Nation-state groups, including APT28 and Winter Vivern, have been observed weaponizing multiple Roundcube flaws for cyberespionage. Because webmail is a primary entry point for corporate data, an unpatched server allows for the silent exfiltration of entire executive communication histories. The uncomfortable truth: If your webmail interface is unpatched today, you should assume that your internal executive data is already being harvested by an automated botnet. → Update Roundcube Webmail to the latest stable release (1.6.11+) immediately. → Conduct a deep forensic audit of your mail server logs for unauthorized PHP object deserialization attempts. → Implement strict network segmentation to ensure mail servers cannot communicate with internal database segments. Have you confirmed that every legacy webmail instance in your environment has been patched or decommissioned? 👇 #Cybersecurity #EmailSecurity #ZeroTrust #VulnerabilityManagement #SOC #CodeDefence
-
In Time Tec
69K followers
Cybersecurity compliance shouldn't be scary - if it is, it doesn't have to be. We test following the NIST CSF 2.0 framework, validate for SOC 2/ISO, and pen-test apps/APIs so disclosures are timely and boring (the good kind). Want peace of mind? Schedule a compliance readiness review with us. Read more about our cybersecurity offerings here: https://hubs.la/Q03QBXC60 #InTimeTec #SOC2Compliance #Cybersecurity
16
Explore top content on LinkedIn
Find curated posts and insights for relevant topics all in one place.
View top content