Thanks, I'll take a look
16.08.2025 05:00 β π 2 π 0 π¬ 0 π 0
Im curious if they have patterns or commone use case examples using their platform. I use N8N for some automation, but feel like we're all independently reinventing useful patterns and keeping them to ourselves.
16.08.2025 01:51 β π 2 π 0 π¬ 1 π 0
YouTube video by virtual savage
Most Brutual Self-Driving Test by Chinese Company #tesla #huawei #china #byd #car #fsd
Wow, this is incredible! We need governments or large orgs to do broad research tests like these.
youtube.com/shorts/GAdhl...
16.08.2025 01:50 β π 0 π 0 π¬ 0 π 0
Exactly! LLMs will not lead to AGI.
www.instagram.com/reel/DMVO5nT...
Study referenced:
arxiv.org/abs/2507.06952
23.07.2025 04:36 β π 0 π 0 π¬ 0 π 0
To be clear, I'm not saying this to name and shame. It's common enough, that I hope people will learn from real life examples. I also just really wish people will stop doing it!
Come on all, let's be smart about this.
16.07.2025 04:46 β π 0 π 0 π¬ 0 π 0
When AI Has Root: Lessons from the Supabase MCP Data Leak
Last year, I presented one of the top presentations on AI security at RSAC 2024.
In there I explicitly said "do not give your AI root access. It will be a confused deputy, I will add you to my list of examples".
Well, guess who got added to the list?
www.pomerium.com/blog/when-ai...
16.07.2025 04:46 β π 0 π 0 π¬ 1 π 0
YouTube video by AI Engineer
Prompt Engineering and AI Red Teaming β Sander Schulhoff, HackAPrompt/LearnPrompting
Awesome presentation from HackAPrompt.
youtu.be/_BRhRh7mOX0
15.07.2025 00:51 β π 0 π 0 π¬ 0 π 0
YouTube video by Will Francis
ChatGPT Adding Watermarks to Text Output? #ai #chatgpt
Think something was written with ChatGPT? Turns out the latest models have an unintentional watermark.
youtube.com/shorts/qt4r_...
24.05.2025 03:50 β π 1 π 0 π¬ 0 π 0
I've always been a fan of building a yardstick and then seeing how you and your organization measure up against it. My question is what are the yardsticks that you use to measure how well a security team is doing?
So glad you take write ins.
22.05.2025 22:37 β π 1 π 0 π¬ 0 π 0
Quick poll for a security friend. If you are a dev:
Do you know what threat modeling is?
Do you do it?
Why or why not?
If so what does that look like for you?
09.05.2025 22:18 β π 7 π 4 π¬ 7 π 0
He must not have very many friends IRL, because I can't even think of a single one I'd replace with a chat bot.
09.05.2025 20:51 β π 0 π 0 π¬ 0 π 0
YouTube video by ThePrimeTime
AI Money Glitch
Someone mentioned this in my comments the other day, but I didn't even think about the possibility of a deluge of bad/false AI generated bug reports being a problem in AppSec. and yet, here we are.
youtube.com/shorts/BInml...
09.05.2025 20:48 β π 0 π 0 π¬ 0 π 0
I think it will primarily settle into being a copilot, a quick research and problem solving tool for technical issues.
What I do worry about is when a new technology comes out (like Rust), the AI won't have the millions of Stack Overflow posts to pull from.
08.05.2025 19:05 β π 3 π 0 π¬ 1 π 0
Sending you good vibes!
08.05.2025 19:02 β π 2 π 0 π¬ 0 π 0
That's the ideal, but I'm worried about rent seeking behavior. Gatekeeping info and capital to charge at a premium. There's been a lot of talk about technofeudalism lately. There's even prominent figures in the administration that have stated they want to use AI and automation to replace labor.
08.05.2025 07:20 β π 1 π 0 π¬ 0 π 0
YouTube video by TrojAI
AI Red Teaming: Breaking AI to Build a Secure Future
About a month ago, I was asked to hop on a panel with some very talented people to discuss our thoughts on the state of AI security and red teaming. Check it out!
www.youtube.com/watch?v=HzqK...
08.05.2025 07:17 β π 0 π 0 π¬ 0 π 0
Congrats! What did you do to monetize your skills for those 10 days? Bug bounty, speaking, social media, etc.?
06.05.2025 07:41 β π 1 π 0 π¬ 0 π 0
YouTube video by Netsec Explained
Get Started in AI CTFs
AI isn't just LLMs. Here's all the places to go to learn how to hack more traditional AI/ML. Inspired by the AI Village challenges at Defcon.
www.youtube.com/watch?v=hnNZ...
06.05.2025 07:39 β π 0 π 0 π¬ 0 π 0
YouTube video by Netsec Explained
Real-world Attacks on LLM Applications
If you want to learn how to hack AI, I have a video for that. Check it out!
www.youtube.com/watch?v=_4Q9...
05.05.2025 20:35 β π 0 π 0 π¬ 0 π 0
No friends? No problem.
01.05.2025 17:15 β π 0 π 0 π¬ 0 π 0
This made me feel good! The perfect compliment from someone on my talks:
"You've made a difficult topic interesting, and explained it in a way that's memorable"
30.04.2025 22:42 β π 0 π 0 π¬ 0 π 0
I'm curious. How would you define or describe the following?
* AI red teaming
* AI pentesting
* jailbreaks vs prompt injections
* AI agents
With all the semantic games in the AI+security space, let's settle on some common definitions and descriptions.
27.04.2025 19:11 β π 0 π 0 π¬ 0 π 0
Going to #RSA? Iβll be speaking at Aegis of Tomorrow: An AI & Security Summit on Monday, April 28 from 3β5pm.
Iβll be sharing a framework for cutting through AI hype and prioritizing cybersecurity investments based on how attacker capabilities are actually evolving.
π Register here: lu.ma/9j1p8ixj
17.04.2025 04:06 β π 2 π 1 π¬ 0 π 0
Holy shit, holy shit, holy shit.
15.04.2025 18:19 β π 1 π 0 π¬ 0 π 0
YouTube video by Sabine Hossenfelder
New Research Reveals How AI βThinksβ (It Doesnβt)
You've heard of "Vibe Coding", now let me introduce you to "Vibe mathematics"!
Some think in the next 2 years, we'll have AGI. I think it'll discover astrology instead. Do you think it's a Cancer, or Sagitarios?
youtu.be/-wzOetb-D3w?...
08.04.2025 22:32 β π 1 π 0 π¬ 0 π 0
Web Application Pentesting and the Importance of Specialization with Tib3rius by Phillip Wylie Show
About The Guest:Tib3rius is a penetration tester with over ten years of experience, specializing in web application security. He is the creator of the popular tool Autorecon, which is widely used for enumeration in the OSCP exam and CTF challenges. Tib3rius also offers courses on Udemy and Hackers Academy, focusing on privilege escalation techniques for Windows and Linux.
Summary:Tib3rius joins Phillip Wylie on The Phillip Wylie Show to discuss his background in penetration testing and his specialization in web application security. He shares insights into the development of his tool Autorecon, which was initially created for the OSCP exam but gained popularity in the community. Tib3rius also talks about the importance of specialization in offensive security and offers advice for those looking to start a career in penetration testing. He highlights the value of bug bounty hunting as a way to gain practical experience and shares his thoughts on the OWASP Top Ten and the future of web application security tools.
Key Takeaways:
Autorecon, a tool created by Tib3rius, is widely used for enumeration in the OSCP exam and CTF challenges.
Specializing in a specific area of penetration testing, such as web application security, can lead to becoming a subject matter expert and increase value to a company.
Bug bounty hunting can provide practical experience and count as valuable experience in the field of penetration testing.
The OWASP Top Ten has evolved from a list of the top ten vulnerabilities to a list of categories, covering a wide range of web application security issues.
The future of web application security tools, such as Kaido, remains to be seen, but competition in the field can lead to improvements and alternatives to existing tools.
Quotes:
"I think specialize in something and learn that thing well, and you'll be fine." - Tib3rius
"Bug bounty hunting is a great thing to go into because you'll get some experience actually testing real applications." - Tib3rius
"The OWASP Top Ten has become a catch-all category that covers almost every vulnerability." - Tib3rius
Socials and Resources:
https://twitter.com/0xTib3rius
http://youtube.com/Tib3rius
https://tib3rius.com/
https://courses.tib3rius.com/
https://linktr.ee/tib3rius
Web Application Pentesting and the Importance of Specialization with Tib3rius podcasters.spotify.c...
05.04.2025 01:55 β π 7 π 3 π¬ 0 π 0
Dr, apparently. Security Adovcate @semgrep & Hacker. #BugBounty hunter & #infosec YouTuber. APIs & Interlinked OffSec, PhD in AI+Sec @hacknotcrime. she/her
Web App (mostly) Hacker | Cybersecurity Educator | Content Creator | Ex-Brit | Links: http://linktr.ee/tib3rius (he/him) πΊπΈ A mostly unserious person. @therealc3rul34n.bsky.social is bae π₯°
AI / Security Researcher and Entrepreneur.
Founder/CEO of Unsupervised Learning.
Building AI that upgrades humans.
An actual Talking Sasquach teaching tech stuff to skids and kids of all ages! Check me out on YouTube!! https://www.youtube.com/@TalkingSasquach
Networking β’ Hacking β’ Hacking Networks (she/her)
shenet.works
πrockit network engineer
π©πΌβπ»ethernet fangirl
π weird use cases & silly tech!
π tracket@tracketpacer.com
π tracketpacer.com
I accidentally became the CISO. I didn't want this job, but the job chose me. I'm scared, and I want to go home.
https://www.accidentalciso.net
Secure Code Trainer - Best-selling author of Alice and Bob Learn Secure Coding & Alice and Bob Learn Application Security. #AppSec she/her
https://shehackspurple.ca π»
CEO, CISO, Trainer, Hacker, and Speaker.
AI + hacking + sec leadership.
ex:BuddoBot-Ubisoft-Bugcrowd-Fortify-HP-Redspin-Citrix.
Open-source tool maker/hacker. Author of gron, anew, and a dozen dinky security tools. He/him. Tools: http://github.com/tomnomnom
Security researcher with a focus on hardware & firmware. I occasionally publish stuff on YouTube. Co-founder of
hextree.io. Contact: contact@stacksmashing.net
Security researcher/programmer β Managing director @ HexArcana β @DragonSectorCTF founder β he/him
Cybersecurity Specialist, Public Speaker, Ex-Hacker.
https://marcushutchins.com
Hacker & CEO @SocialProofSec security awareness/social engineering training, videos, talks | 3X @DEFCONπ₯ | Chair @WISPorg | @CISAgov Technical Advisory Council under Director Jen Easterly
Friendly neighborhood cybersecurity guy | expect infosec news, appsec, cloud, dfir. | Long Island elder emo in ATX.
vulnu.com <- sign up for my weekly cybersecurity newsletter
computer whisperer π§ββοΈ internet person πΈ https://lowlevel.tv
software engineer @ fintech- content creator @ http://links.ali.dev - threatwire host @hak5 - @breakingthepod - nyc - ex @miteecs - jewish
I hack stuff (legally). | co-founder boring.co
Twitter: https://twitter.com/hacker_