This article @forbes.com has now been updated with an interesting counterpoint from @paulwalsh.bsky.social.
#Infosec
www.forbes.com/sites/daveyw...
@paulwalsh.bsky.social
Most top security firms license my patents for mobile app security. Pioneered zero trust for anti-phishing. Helped to launch @AIM @MetaCert Founder. Co-invented the concept of labeling user accounts on the web at the W3C in 2004. Expert in SMS security.
This article @forbes.com has now been updated with an interesting counterpoint from @paulwalsh.bsky.social.
#Infosec
www.forbes.com/sites/daveyw...
Hey Matt, I have detailed reports you might be interested in, that explains *why* SMS surpassed email as the number 1 vector on mobile for phishing and why phishing is still the main entry point for almost all fraud and attacks. Itโs not sophisticated. www.which.co.uk/news/article...
11.08.2025 10:26 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0I havenโt signed into this site for quite some time - is it worth it?
04.07.2025 22:44 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0Most phishing links arenโt flagged as dangerous because theyโve never been seen before. 
We donโt need more, or better awareness. We need better systems to protect people.
Hereโs how MetaCert stops phishing without the need to train people:
๐ www.linkedin.com/pulse/phishi...
In addition to the good detail contained in this article, do NOT trust any person who calls you, even if it comes from a legitimate number because theyโre easy to spoof.
07.05.2025 15:04 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0MetaCert has built a new solution that helps banks protect their brand, reduce liability, and stop this type of fraud before it happens โ using tech that wasnโt possible until now. Hoping to see it adopted in Ireland soon. @bankofireland @AIBIreland โ๐
www.rsvplive.ie/news/irish-n...
My open letter to the security industry โ and MetaCertโs U.S. SMS security test report โ is featured in this Forbes article.
Huge thanks to @happygeek for giving the underdog a voice. The best solution means nothing if no one hears about it.
www.forbes.com/sites/daveyw...
I just wrote this: "Zero Trust Is Broken at the URL โ And Thatโs Where Most Attacks Begin (Phishing)"
www.linkedin.com/pulse/zero-t...
paul-walsh.medium.com/zero-trust-i...
Lots of people are talking about Zero Trust at  #RSAC2025  but not one person has mentioned zero trust for URLs. ๐
Itโs just basic phishing. Time to ask the question: โWhy hasnโt the security world tried a different approach in the past 20 years?โ Itโs time to move away from threat โintelligenceโ as it doesnโt work - period. Time to move to zero trust for URLs/web links.
25.04.2025 12:23 โ ๐ 3 ๐ 1 ๐ฌ 0 ๐ 0๐ Are you brave enough to give it a go? Whatโs the right answer?
Even the most skilled & experienced security pros fail my tests 99% of the time โ so thereโs no need to feel afraid or embarrassed. Feel free to share it too โ the more awareness, the better
I donโt get much engagement on here so...
I just received this SMS scam. This oneโs from a lazy attacker โ strange ID, sloppy text. But donโt let it fool you into thinking theyโre all this obvious. Many are highly convincing and look exactly like the real messages youโre expecting โ from deliveries to security alerts.
23.04.2025 16:59 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0I just wrote this:
www.linkedin.com/pulse/lie-we...
๐ก Just dropped: how I turned ChatGPT into my expert collaborator โ not just a generic assistant.
Includes the exact prompt I use + how to apply it across product, sales, hiring, comms, and more.
www.linkedin.com/pulse/how-tr...
SMS phishing isnโt clever โ just easy
Criminals test fake messages on their own SIMs
If the link gets through, they send it to you
If it doesnโt, they swap it until it does
This is why traditional security fails
Only trusted link authentication stops smishing before it starts.
AI isnโt just fun โ itโs a serious business tool. I still had to finesse and shape things, but ChatGPT did most of the heavy lifting behind the scenes.
#SMSFraud #Phishing #Smishing
Already sparked a few great conversations from my LinkedIn post. It wasnโt a call for work โ just holding myself accountable by not procrastinating. ๐ค
www.linkedin.com/posts/paulwa...
OpenAI now holds detailed insight into peopleโs jobs and interests โ all exchanged for a bit of entertainment. ๐ค
09.04.2025 15:22 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0If you know anyone at banks or payment providers in Ireland, Iโd appreciate an intro. Iโm in touch with the Banking Federation but keen to connect with more of the right people โ hoping Ireland can lead the way in stopping SMS fraud.
03.04.2025 11:42 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0All we need now is anti-phishing protection. ๐ค
02.04.2025 16:11 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0Thank you, ChatGPT. I made several edits, but the AI handled most of the heavy lifting.
MetaCert has developed a short code specifically for Ireland, where current privacy regulations prevent mobile operators from implementing network-based anti-phishing security.
LinkedIn engagement has fallen off a cliff since the start of 2025. Iโm not sure what they changed, but itโs obvious somethingโs different. If I wasnโt writing for a handful of very specific people, Iโd have stopped posting altogether. And itโs even worse on here. Not a single engagement.
02.04.2025 11:55 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0I just wrote this: The security industry widely acknowledges smishing as one of todayโs most serious cybersecurity threats. So why is it that no legacy vendor offers a network-based solution for mobile operators to protect...
LinkedIn: t.co/XpVg2498Cw
Medium: paul-walsh.medium.com/from-aol-ins...
I made this emoji using ChatGPT โ with a transparent background!
Itโs wild how fast this is evolving. Tools like this wonโt replace great designers โ but they will wipe out tedious work and make everyday tasks way faster and easier.
Troy Hunt has spent his career teaching people how phishing works and how to avoid it. He knows the tactics, he understands the risks โ and he still got caught.
LinkedIn: www.linkedin.com/pulse/troy-h...
Medium: paul-walsh.medium.com/troy-hunt-fe...
Google is flagging MetaCertโs anti-phishing emails as โdangerousโ โ the same emails that highlight Googleโs failure to detect phishing apps on Google Play. Ironic, but not even slightly funny.
๐ค
@gmail
โA World Without ADHD and Dyslexia"
I just wrote this for Neurodiversity Celebration Week.
#NeurodiversityCelebrationWeek #NeurodiversityWeek #NCW #ThisIsND #ADHD #Dyslexia
cc @NCWeek
LinkedIn: www.linkedin.com/pulse/world-...
Medium: paul-walsh.medium.com/a-world-with...
Itโs 2025, and the security industry still hasnโt solved phishing. Itโs time for a new approach - itโs time for Zero Trust for URLs.
Assume every site, login page, app, API, user account, and AI chatbot is dangerous unless explicitly verified as legitimate.
www.securityweek.com/300-maliciou...
35% of entrepreneurs have dyslexia, 40% of self-made millionaires have ADHD. 30% - 40% have both. Yet, most investors & corporate execs donโt fully understand how they think or communicate.
Iโm writing a book to explain why neurodivergent founders thrive and where they struggle.
This article explains why AI fails at detecting fake (dangerous) email links, SMS links, WhatsApp links, websites, login pages, apps, QR codes, AI chatbots, or any other web resource โ and why relying on it for security is dangerous. #Smishing #Phishing
www.linkedin.com/pulse/google...
I asked ChatGPT to generate an image for my Dublin tech networking event, and of course, I got lots of white people holding pints of Guinness. At least it didnโt throw in a leprechaun pitching a blockchain idea. Progress. ๐
14.03.2025 13:56 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0