
watchTowr, a leader in External Attack Surface Management (EASM), has appointed Ryan Dewhurst as Head of Threat Intelligence to enhance its proactive capabilities. With over 15 years of cybersecurity expertise, Dewhurst will drive rapid, actionable threat intelligence to protect Fortune 500 and critical infrastructure organizations.
Ryan Dewhurst named Head of Threat Intelligence at watchTowr.
Brings 15+ years of experience, including founding DVWA and WPScan.
Will lead proactive threat intelligence, focusing on attacker TTPs and vulnerabilities.
Enhances watchTowr’s Attacker Eye honeypot network and Instinct predictive engine.
Recent platforms include CyberAlerts.io and KEVIntel for real-time threat data.
Aims to outpace adversaries like ransomware gangs and APTs.
Ryan Dewhurst, an award-winning cybersecurity researcher, joins watchTowr to spearhead its Proactive Threat Intelligence capabilities. “Threat intelligence is at its best when it drives fast, confident, and actionable decisions,” said Dewhurst. “watchTowr already delivers vulnerability and exploit intelligence at a pace most teams only aspire to, rapidly identifying and reproducing emerging vulnerabilities to enable organizations to get ahead of in-the-wild exploitation.” His role will focus on analyzing novel attacker tactics, techniques, and procedures (TTPs) and vulnerabilities, translating them into actionable insights to counter threats from nation-state actors, APT groups, and ransomware gangs.
The watchTowr Platform excels at analyzing and operationalizing emerging threats faster than industry peers, often within hours. Dewhurst’s leadership will integrate intelligence into watchTowr’s Attacker Eye honeypot network, a telemetry-enabled system capturing real-world attacker behavior, including zero-day and N-day exploits. This data powers watchTowr Instinct, a predictive engine that forecasts exploitable vulnerabilities, giving clients a critical edge. “Ryan brings deep technical expertise and a strategic mindset to watchTowr at a critical moment,” said Benjamin Harris, CEO and Founder, watchTowr. “His proven track record and leadership will help us move even faster, turning raw threat intelligence and real-world attacker data… into smarter, earlier warnings.”
Dewhurst’s career includes founding Damn Vulnerable Web App (DVWA), a widely used security training platform, and WPScan, a WordPress vulnerability scanner acquired by Automattic. Most recently, he launched CyberAlerts.io, a real-time cybersecurity news aggregator, and KEVIntel, a database of Known Exploited Vulnerabilities (KEVs) recognized for outpacing many government and commercial feeds. “I look forward to continuing to beat the odds,” Dewhurst said, emphasizing his goal to enhance watchTowr’s ability to deliver rapid, precise threat intelligence for clients facing sophisticated cyber threats.
In today’s cybersecurity landscape, attackers exploit vulnerabilities in as little as four hours, often before organizations are aware. watchTowr’s platform, enhanced by Dewhurst’s expertise, enables rapid detection and response, critical for Fortune 500 and critical infrastructure clients. The appointment aligns with industry trends, such as the growing focus on OT security under CISOs and the escalation of cyberattacks targeting critical sectors, as noted in recent reports. Dewhurst’s work will ensure watchTowr remains ahead of adversaries, providing unmatched speed and accuracy in threat prioritization.
Ryan Dewhurst’s appointment as Head of Threat Intelligence positions watchTowr to lead in proactive cybersecurity. His expertise in vulnerability research and real-time threat intelligence will enhance the platform’s ability to protect clients from rapidly evolving threats. As cyberattacks grow in sophistication, watchTowr’s focus on speed and precision, led by Dewhurst, ensures defenders stay one step ahead.
watchTowr is redefining External Attack Surface Management with its Continuous Automated Red Teaming technology, built by offensive security experts and backed by real-world vulnerability research. Critical infrastructure and Fortune 500 companies globally trust watchTowr to continuously validate and strengthen their security postures. If there’s a way to compromise an organization, the watchTowr Platform will find it.