Chandrapal Badshah's Avatar

Chandrapal Badshah

@badshah.io.bsky.social

Cloud Security Researcher Building https://cloudsecurity.club Blog https://badshah.io

127 Followers  |  466 Following  |  46 Posts  |  Joined: 26.11.2024  |  1.9834

Latest posts by badshah.io on Bluesky

Post image Post image Post image

Cursor suggestions are interesting at times.

15.02.2025 04:59 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

The count problem is still not solved.
There are 27 "r"s in the made up word (strawberrrrrrrrrrrrrrrrrrrrrrrrrry). Not 28.

10.02.2025 16:47 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

When you ask an LLM to reason, its not going to tell what it's about to do and why.

Rather it just predicts tokens that translate to some reason in English and continue to predict next steps (doesn't guarantee that it follows its own statement that it gave as "reason"). πŸ™ƒ

10.02.2025 10:08 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I liked how Tony Stark in Iron Man talks to his assistant Jarvis.

I tried living a day like that by chatting with LLMs to do certain tasks.

Found out that I'm not articulate enough and there are times when I thoughts change faster/go blank. πŸ˜“

05.02.2025 13:27 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Also another problem is "LinkedIn Top Voices" badge.

There are few LI questions that doesn't make sense, not sure of other domains but at least cloud security. Trying to add my thoughts after painstaking effort for these Qs, found that some folks get away with AI generated content. Then I gave up.

03.02.2025 06:40 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

Maybe to increase their LinkedIn family πŸ˜†
I'm skeptical of anyone adding "Xk+ LinkedIn family" (where X is integer) in their description and commenting on my posts with irrelevant comments (or looks like AI generated).

03.02.2025 06:34 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

Weird that bruno is not in the list

30.01.2025 16:47 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
GitHub - usebruno/bruno: Opensource IDE For Exploring and Testing Api's (lightweight alternative to postman/insomnia) Opensource IDE For Exploring and Testing Api's (lightweight alternative to postman/insomnia) - usebruno/bruno

Thanks. Didn't know about this project
github.com/usebruno/bru...

29.01.2025 08:19 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
GitHub - hoppscotch/hoppscotch: Open source API development ecosystem - https://hoppscotch.io (open-source alternative to Postman, Insomnia) Open source API development ecosystem - https://hoppscotch.io (open-source alternative to Postman, Insomnia) - hoppscotch/hoppscotch

Postman free version is useless without signing into an account.

Simple features like creating a collection needs signup. πŸ€¦β€β™‚οΈ

Found a pretty good alternative. And its open source.

github.com/hoppscotch/h...

29.01.2025 02:53 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Post image

Nothing is a better motivation than this visual writing stats!!

My memory says I wrote last content a week/10 days ago. But in reality it's more than that. This graph helps me with my memory and produce more content.

27.01.2025 09:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Video thumbnail

The entire tech industry right now

25.01.2025 16:30 β€” πŸ‘ 4182    πŸ” 1271    πŸ’¬ 62    πŸ“Œ 78
Post image

deepseek-r1:1.5b - Tell me about Arunachal Pradesh

Outright stupid answer. It's like typing "Arunachal Pradesh" in your mobile keyboard and then keep clicking the first/middle suggestion a 100 times.

26.01.2025 11:09 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

I'm not going to ask smaller distilled Deepseek models about regions πŸ€¦β€β™‚οΈ

Pretty crazy answers.

deepseek-r1:7b - Tell me about Arunachal Pradesh

26.01.2025 11:04 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Serious question.

If consulting firms provide fully-compliant report despite knowing customer company is insecure and non compliant, what happens to those consulting firms if customer is breached?

20.01.2025 11:05 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0
Preview
Stop Trying To Schedule A Call With Me Stop Trying To Schedule A Call With Me - The harassment by SaaS

"I’ll ask about compliance and security, prompting you to send over a pile of meaningless certifications. These documents DON'T actually prove you did the things outlined in them; they just demonstrate that you could plausibly fake having done them." 🀣🀣🀣

matduggan.com/stop-trying-...

20.01.2025 10:56 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 1
Preview
What's New in Prowler v5 In-depth review of Prowler v5's new features, improvements, and capabilities as an open-source cloud security assessment tool for AWS environments. Explores key functionalities, current limitations, a...

What's New in Prowler v5

#awscommunity #CSPM

cloudsecurity.club/p/whats-new-...

15.01.2025 11:47 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0

I think since I work on Obsidian almost everyday I am desensitized to looking, reading, and writing on my laptop.

I might be able to correlate ideas between digital notes.

But, the magic with physical books is I often get "Oh, I was so and so, did so and so, in past" when rereading

12.01.2025 05:44 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

While I want to optimize my book reading and notes recollection using digital means (read on Kindle and save notes on Obsidian) there's one this so interesting about books.

It reminds you of your older self most times you re-read a book.

12.01.2025 05:44 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

Yes. But didn't publish it though.

Was part of The Artist's Way journal. The writing paved path to write other interesting stuff that I can publish.

11.01.2025 12:53 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

LLM generated BS on "Ways to minimize pricing of GuardDuty".

What made me furious is "Use Reserved Instances: If you plan to use GuardDuty for an extended period, you can consider purchasing Reserved Instances to save costs." 😠

09.01.2025 10:15 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Preview
Hacking AI Applications: From 3D Printing to Remote Code Execution The blog post examines methods for hacking AI-native applications by detailing vulnerabilities discovered while building KachraCraft, a 3D design generation tool, including techniques for revealing sy...

TIL there's a new term - Agentic Code Execution (ACE)

Good read on KachraCraft :) and associated LLM hacks

www.securityrunners.io/post/hacking...

08.01.2025 09:22 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image

#AWS is a trap

06.01.2025 08:19 β€” πŸ‘ 60    πŸ” 12    πŸ’¬ 1    πŸ“Œ 1
Preview
ShareChat and Moj Blogs - Artificial Intelligence Share & Chat on India's own social network. Available in Tamil, Telugu, Hindi, Punjabi, Gujarati, Bengali, Kannada, Malayalam, Odia, Marathi, Assamese, Bhojpuri, Rajasthani & Haryanvi

ShareChat has some good ML blog posts

sharechat.com/blogs/artifi...

07.01.2025 12:38 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

That's it in the thread.

(Even this thread was a burst of thoughts - thank you Muse)

Now, how do you come up with your research ideas/blog posts?

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

I didn't create a blog post of this thread because its not a streamlined process. I can't regularly produce everyday/week.

I have a lot of notes sitting in my Obsidian. Haven't found a way to synthesize it.

Some ideas, I didn't note it and forgot it completely. Or noted it somewhere and lost it.

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

6.1. One interesting side effect: After I do the task and produce it to the world, one find day, when I completely forgot about it, someone reaches out to me.

Asks me more details.
Tells me they like/love my work.
Asks me if we can collaborate.

So my work led me to met interesting people.

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

6. Publish it. Execute the automation.

Good or bad. Win or lose. Doesn't matter.

Even in this so called "AI age" I feel execution matters a lot.

Ironically, some of the best research (I feel I did) doesn't get reach or traction.

Again, doesn't matter.

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

5. I sit down, ignore all thats urgent/important on my plate, focus only on that. It's like executing on the research/writing draft is the only important thing in my life at the moment.

Call it flow state. Call it the Muse has placed her hand over my shoulder. πŸ€·β€β™‚οΈ

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

- Few automations (which aren't open sourced) came up when I was taking bath.
- Blog post "So called AI-Powered Cloud Security" came due to frustration (I actually named it Fricking AI-Powered CloudSec but toned down the title)
- A lot of LinkedIn posts I made come up during some kind of downtime πŸ₯ƒ

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

4. After sometime, my brain comes up with something interesting or an interesting combination. It's not a periodic creative process happening 6AM everyday. Rather it's bursts of ideas.

Few examples:
- I got the Rootconf CFP idea "With infinite scale comes infinite bankruptcy" when I was hiking.

04.01.2025 05:31 β€” πŸ‘ 0    πŸ” 0    πŸ’¬ 1    πŸ“Œ 0

@badshah.io is following 20 prominent accounts