● ONLINE · SAN DIEGO / 2026.08.29FT3 · github.com/stripe/ft3● UPLINK · TX 38.4 KB/S
//● onlineSTATUS · 2026.08.29 · SAN DIEGO

find what breaks. build what holds.

Systems fail when the stakes are real. Passaro’s work follows one pattern: find the failure point, understand it completely, and build what should have existed all along.

Cinematic monochrome portrait of Vincent Passaro in a dark hoodie. Shadows and white technical schematics symbolize the intersection of leadership and systems.
LAT 32.7157° NLON 117.1611° WUPTIME · 25ySECTOR · CYBERSECURITY / ENGINEERING● CA
// trajectory · 2001 → presenthover any node for detail
//project spotlight · ft3
repository · open sourcegithub.com/stripe/ft3

FT3 is the operational backbone of Stripe's attacker engineering work — open-sourced so defenders everywhere can plan, stage, execute, and triage adversary emulation against the systems they're paid to protect.

Recognized as the first fraud ATT&CK-style framework, FT3 defines the standard for categorizing financial exploitation. By translating established adversary emulation concepts into a specialized fraud taxonomy, it empowers engineers and threat intelligence teams to map complex financial abuse vectors with the same rigor historically reserved for network intrusions.

// receipts — precedence trailfour tracks · nine commits · one record
$ git log --graph --decorate --oneline ft3-precedence
FT3 / DARKSHEER · FS-ISAC · RH-ISAC + TARGET · MITRE CTID
$

FT3 authored Feb 2024. Proposal submitted Oct 2024. CFPF launched Apr 2025. FT3 public Jul 2025. Fraud Taxonomy created Aug 2025. F3 public Nov 2025. Precedence is a fact of the record, not a claim in a deck.

//projects · selected work

github.com/darksheer ↗
CLOSED
Redacted project name
ARC (Advanced Research Capability) is a threat investigation platform for hypergraph databases. It helps analysts query, enrich, visualize, and automate complex threat relationships with agentic AI—accelerating intelligence operations while preserving vital context.
23 commits in the last 12 weeks.
// activity classified · 23 commits in window
AI · Threat Intel · Hyper-Graph · MCPclassified
CLOSED
Redacted project name
ft3-source is the FT3 Catalog — the authored source of truth for the fraud framework behind ft3.io.
309 commits in the last 12 weeks.
// activity classified · 309 commits in window
FT3 · Fraud · Threat Intel · AIclassified
CLOSED
Redacted project name
npm-style package management for the ARC hypergraph. Handles the full power-up lifecycle— from authoring to production promotion
AI · Threat Intel · Hyper-Graphclassified
CLOSED
Redacted project name
FT3c brings coherence to the fragmented world of fraud and security frameworks—relating competing standards to a single unifying taxonomy so analysts can see how frameworks correspond, where they overlap, and where gaps remain, all in one connected, machine-readable view.
424 commits in the last 12 weeks.
// activity classified · 424 commits in window
FT3 · Graph · Crosswalk · AIclassified
CLOSED
Redacted project name
The research engine behind FT3. Acheron identifies fraud techniques at scale, extracts grounded behavior observations, and challenges them against current taxonomy coverage
60 commits in the last 12 weeks.
// activity classified · 60 commits in window
FT3 · AI · Python · Threat Intelclassified
CLOSED
Redacted project name
A two-hour instructor-led workshop teaching threat intelligence analysts to build TI workflows with Claude Code and the Team Cymru Scout API & MCP.
Scout · Claude Code · Threat Intel · AIclassified
CLOSED
Redacted project name
The public home of FT3 — a structured taxonomy of fraud techniques, crosswalked to MITRE ATT&CK and D3FEND. Built over a generated, version-pinned dataset so the taxonomy stays the single source of truth.
337 commits in the last 12 weeks.
// activity classified · 337 commits in window
AI · FT3 · Webclassified
darksheer/aqueductcompliance-as-code · disa stig · compliance

Aqueduct

Aqueduct pioneered open-source STIG compliance automation years before the term 'compliance-as-code' existed — its one-script-per-finding architecture and multi-framework coverage became the blueprint the industry eventually standardized around.

Shell★ 0updated 108d ago
0 commits in the last 12 weeks for darksheer/aqueduct.
//writing

Things worth writing down.

Essays, field notes, technical teardowns, and interviews on attacker engineering, fraud defense, and operational systems.

Essays · Field notes · Technical teardowns · Interviews

Selected writing

4 selected posts

//media

Showing 15 transmissions.
SEP · 2026
UPCOMING
TRAININGUNDERGROUND ECONOMYStrasbourg4 HOURS

Zero to Hero: Threat intelligence with Claude Code & Scout

A hands-on workshop where defenders will leverage Claude Code + the Pure Signal Scout MCP to conduct a real threat intelligence investigations, using live Team Cymry data in a TLP:RED environment.

SEP · 2026
UPCOMING
HackathonUndergound EconomyStrasbourg4 HOURS

AI Hackathon

A hands-on hackathon for threat hunters and cyber investigators focused on using threat intelligence to track and investigate real-world threat and fraud actors. Participants analyze OSINT to uncover malicious operations and connect intelligence into actionable findings.

// log · descending13 ARCHIVED

//training & collaborations

TRAINING/02PRIVATE · BY REFERRAL

Agentic CTI// Operationalizing AI in Defense

LVLINTERMEDIATEDURFULL DAY

Full-day hands-on intensive for TI teams moving past chat interfaces into agentic workflows. Build operational pipelines integrating Claude Code and live telemetry via MCPs. Focus: automating IOC enrichment, mapping adversary infrastructure, accelerating triage at machine speed.

FORMATFull-day intensiveSTACK
Claude CodeMCP
TRAINING/03BY REFERRAL · ENTERPRISE

Agentic Engineering// Architecture and Scale

LVLADVANCEDDURMULTI-DAY

Engineering complex autonomous systems beyond chat interfaces. Build deep-research pipelines for context gathering, translate concepts into machine-enforceable PRDs/ARDs, equip agents with custom execution skills, and design testing harnesses to iterate and deploy agentic workflows reliably.

FORMATEngineering intensiveSTACK
Claude CodeCodex
MENTOR/ENGAGEMENTPRIVATE · VETTED ONLY

Joint Adversary Analysis// TLP:RED Operations

TLPREDDURONGOING

Closed-circle, onsite intelligence fusion. Working with unsanitized telemetry and live campaign data to map adversary infrastructure, classify typologies, and engineer coordinated cross-industry defense.

FORMATOnsite · closed circle
4 OFFERINGS · INDEXED 2026.08.29

//live signals

polled · last 24h
3d POST
I never got around to my post-trip notes from Black Hat (RSA: Summer Camp Edition). Instead, I was building this. FT3 2.0 isn't a bigger list—it's a different shape. Flat fraud taxonomies force one label to carry three separate facts: where the behavior sits in the lifecycle, who or what was authorized to act, and what was actually abused. Pick one; the other two never get written down. That shows up downstream as duplicate techniques, false coverage confidence, and crosswalks that don't translate. FT3 2.0 records all three independently. 261 techniques, 119 analytics, 105 detection strategies, 69 controls, 3,100+ relationships. You can walk from behavior to the telemetry that exposes it, to the analytics, to the control. That turns FT3 from a catalog into an operating layer, one agents can reason over rather than a framework analysts just read. Full writeup: https://lnkd.in/gbhKBiZM Black Hat notes: pending. Possibly forever.
10d POST
FT3 2.0 is here. It will not be published on GitHub. In May, I wrote about why FT3 had to be open. I still believe that. Those positions sound like they conflict. They do not. FT3 1.0 needed to be open because the fraud industry needed a shared language. It could not be a private diagram understood by only one team. It had to be visible, inspectable, and extensible. It had to move across teams and institutions without depending on one person being in the room to explain it. Open source gave it that path. People found it. They used it. They built on the ideas. Other frameworks emerged. The industry started treating fraud tactics and techniques as a category worth developing. That was meaningful. Open access made FT3 available. It did not create the contribution loop required to keep it moving. Lesson learned: Distribution is not community. The meaningful contributions came another way: through direct relationships, partnerships, and trust groups. They came from people willing to share what they were seeing because they trusted that the people on the other side would do the same. That matters because FT3 2.0 is not simply the next version of a static matrix. It is becoming a living, agentically driven operating layer: a system that can ingest intelligence, reason across techniques and relationships, identify gaps, and propose changes for practitioners to review. A system like that cannot improve through passive consumption alone. Use has to produce evidence. Evidence has to produce learning. And some of that learning has to come back into the system. That changes what distribution needs to mean. FT3 2.0 will remain free. No paid membership. No paywall. No industry tier decides whether your organization belongs in the room. And contribution does not only mean writing code. It can mean bringing forward a technique the framework cannot describe, sharing operational evidence, challenging a definition, contributing a detection, or showing where the model breaks when it reaches real work. A community you can only buy into is a market. A community defined by who you are is a club. A trust group is defined by what you give. FT3 1.0 will remain open on GitHub. Anyone can use it, fork it, or build on it. FT3 2.0 will remain free to the people doing the work and willing to improve the system as they use it. The mission did not change. The mechanism did. I wrote the full explanation here: https://lnkd.in/gQk5wsiv
Jun 2026 POST
Amazing presentation from Roman Y. Sannikov at RISE-X NYC hosted by Team Cymru and JPMorganChase.
About

A career spent at the seam of high-pressure security reality and systems defenders rely on.

In the 82nd Airborne, Vince Passaro learned early that systems fail under pressure, and someone has to understand why. That has always been the work. From Fort Bragg to Booz Allen, General Atomics, Fotis Networks, Buddha Labs, AWS, and Stripe, the pattern has stayed the same: understand how adversaries win, find where defense breaks, and build what should have existed all along.

At AWS, that meant response and cyber intelligence systems built for failure at global scale. At Stripe, it means attacker engineering, FT3, and frameworks that give defenders a shared operating language for fraud and adversary behavior. The logos are not the story. The pattern is: find what is broken, understand it completely, and build what fixes it properly. No theater. No abstractions. Just the work.

CURRENTLY · STRIPE

ENGINEEROPERATORINTEL// THE CRAFT
Contact

Speaking, advisory, training and select consulting.

Inquiries are read personally. Lead with the problem, the system under pressure, and what outcome needs to change.

// also reachable
direct
click to copy

response window · 5 business days
signal preferred for sensitive matter
pgp upon request

//off-clock

What keeps the work sustainable: signal, solitude, discipline, and the people worth building for.

Ducati Streetfigther V4s on the track
Ducatisti
Tuscany farmhouse at sunset
A NERD ABROAD
Jeff Walker Tattoos - Dragon
Mythical Things
Strasbourg Cathedral Strasbourg France
WUNDERLUST