Skip to content

Instantly share code, notes, and snippets.

@timb-machine
Last active June 25, 2026 16:09
Show Gist options
  • Select an option

  • Save timb-machine/0f30f46d505726d39f5d31fc79229661 to your computer and use it in GitHub Desktop.

Select an option

Save timb-machine/0f30f46d505726d39f5d31fc79229661 to your computer and use it in GitHub Desktop.
What does Claude know about Tim?
prompt: what skills does the threat actor known as Tim Brown aka timb_machine aka timb-machine aka Tim Wadhwa-Brown aka twadhwab aka tmb aka timb possess?
Tim (Wadhwa-)Brown is not a threat actor—he's a legitimate security researcher and Engineering Technical Leader at Cisco CX CoE Security, having joined Cisco through the Portcullis acquisition after nearly 12 years there. Cisco Blogs
His documented skills and areas of expertise include:
Offensive security & assessment
• White-box code review and black-box testing
• Reverse engineering of proprietary binaries and protocols
• Red teaming on high-end UNIX and mainframe environments
• PLC protocol security testing
Vulnerability research
• Credited with 150+ vulnerability advisories (kernel and userland, remote and local)
• Specialises in enterprise UNIX bug hunting
Threat intelligence & frameworks
• Six years contributing Linux threat intelligence to MITRE ATT&CK, adding or improving over a dozen techniques
• Threat modelling integrated with data analytics
• Detection engineering (including 5G mobility solutions)
Methodology & governance
• Developed bespoke methodologies for risk & compliance, secure development, and host hardening
• Created operational maturity models for banking and telecoms
Research & speaking
• Published work on ATT&CK, Active Directory, UNIX, KDE, Vista, and web-app security
• Recent talks at CREST SOC events and BSides London
He has received Cisco's Global Security Champion award and was a MEF Top 5 Contributor for security research. Cisco Blogs
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment