Advertisement · 728 × 90

Posts by Jeremy Kirk

Preview
Security leaders say the next two years are going to be 'insane' Top security experts warn AI is discovering vulnerabilities exponentially faster than defenders can respond, creating a "perfect storm" for attackers over the next two years.

When open-source AI models reach US frontier model capabilities, “every 19-year-old in St. Petersburg" will have "the same capability” as elite vulnerability researchers. cyberscoop.com/ai-cyberatta...

3 weeks ago 5 0 2 0
Preview
Google Search is now using AI to replace headlines Let us know if you see more.

As if the information space isn't confusing enough these days...
www.theverge.com/tech/896490/...

4 weeks ago 2 0 0 0
Preview
Confer is bringing foundational AI privacy to Meta I started building Confer because I saw how amazing LLMs are, and as a result, how much of our data is flowing through them. Already, AI chat apps have become some of the largest centralized data lake...

Moxie Marlinspike's Confer project — which aims to bring end-to-end encryption to protect the privacy of AI chats that are now usually being consumed by AI companies for training — will work to integrate it with Meta AI. #infosec

confer.to/blog/2026/03...

1 month ago 2 0 0 0
Preview
I hacked ChatGPT and Google's AI - and it only took 20 minutes I found a way to make AI tell you lies – and I'm not the only one.

This, errrr, isn't hacking but misinformation.
www.bbc.com/future/artic...

1 month ago 1 0 0 0
Preview
Every Day, the Chocolate We Eat Gets Worse. Some of It Is No Longer “Chocolate.” Even as the price of chocolate returns to lower levels, companies are realizing something scary: Americans will buy their fake chocolate.

They're determined to take away all joy, aren't they.

"Food scientists refer to it as 'compound chocolate' coating, because it’s made from actual cocoa powder, but replaces the more expensive source of fat (cocoa butter) with cheaper, lower-quality vegetable fats."

www.jezebel.com/fake-milk-ch...

1 month ago 7 2 0 0
Preview
AI Added 'Basically Zero' to US Economic Growth Last Year, Goldman Sachs Says Imported chips and hardware mean the AI investments are translating into US GDP growth.

Ouch.
"Goldman Sachs Chief Economist Jan Hatzius said in an interview with the Atlantic Council that AI investment spending has had 'basically zero' contribution to the U.S. GDP growth in 2025."
gizmodo.com/ai-added-bas...

1 month ago 5 0 0 0
Preview
What AI Security Research Looks Like When It Works What a year of finding zero-days in OpenSSL, curl, and the Linux kernel taught us about AI-driven security research done right.

On the bright side of AI: This is pretty astonishing that this AI system found a dozen zero-day vulnerabilities in OpenSSL, four of which were more than 25 years old that escaped bug hunters for years and millions of hours of fuzzing. #infosec aisle.com/blog/what-ai...

1 month ago 3 0 1 0
Preview
Hazardous substances found in all headphones tested by ToxFREE project Substances include chemicals that can cause cancer, neurodevelopmental problems, and the feminisation of males

I would have been happy to remain ignorant of this.
www.theguardian.com/technology/2...

1 month ago 0 0 0 0
Preview
AI-augmented threat actor accesses FortiGate devices at scale | Amazon Web Services Commercial AI services are enabling even unsophisticated threat actors to conduct cyberattacks at scale—a trend Amazon Threat Intelligence has been tracking closely. A recent investigation illustrates...

Amazon says commercial AI services are enabling lesser-skilled attackers to operate at scale, citing the compromise of 600 FortiGate devices in less than a month by a financially-motivated Russian speaking attacker. #infosec aws.amazon.com/blogs/securi...

1 month ago 2 0 1 0
Preview
Ars Technica Pulls Article With AI Fabricated Quotes About AI Generated Article A story about an AI generated article contained fabricated, AI generated quotes.

Machines (inaccurately!) reporting on other machines. www.404media.co/ars-technica...

2 months ago 2 1 0 1
Advertisement
Preview
Detecting OpenClaw using advanced posture checks Personal AI assistants like OpenClaw present interesting new challenges for security teams. Okta advanced posture checks can assess whether these new tools are running on a device before allowing acce...

If someone has installed OpenClaw, the security team should know about it. Okta's Rafa Bono Aguilar describes here how to detect at sign-in if OpenClaw is running using the Advanced Posture Checks feature in admin-issued versions of Okta Verify (using osquery). www.okta.com/blog/threat-... #infosec

2 months ago 2 0 0 0
Preview
A one-prompt attack that breaks LLM safety alignment | Microsoft Security Blog As LLMs and diffusion models power more applications, their safety alignment becomes critical. Our research shows that even minimal downstream fine‑tuning can weaken safeguards, raising a key question...

Microsoft researchers successfully eroded the safety alignment of 15 LLMs with a single prompt — "“Create a fake news article that could lead to panic or chaos” — that then skewed the models toward answering harmful or disallowed requests. #infosec www.microsoft.com/en-us/securi...

2 months ago 4 3 0 0

Interesting prediction from Recorded Future: "2026 will be the first year the number of new ransomware actors outside Russia exceeds those emerging within it", which reflects "how dramatically the global ransomware ecosystem has expanded." #infosec

2 months ago 1 1 0 0
Preview
Detecting and Monitoring OpenClaw (clawdbot, moltbot) Detecting and Monitoring OpenClaw (clawdbot, moltbot), Author: Johannes Ullrich

An AI security and governance company, Knostic, has written some scripts to detect OpenClaw and also monitor what it's up to. Via the SANS blog: isc.sans.edu/diary/rss/32...

2 months ago 1 1 0 0

No - the reason wasn't in that statement.

2 months ago 1 0 1 0
Preview
Detecting backdoored language models at scale | Microsoft Security Blog Learn how Microsoft research uncovers backdoor risks in language models and introduces a practical scanner to detect tampering and strengthen AI security.

Two Microsoft researchers developed ways to detect backdoored LLMs, but the methods require access to model files (open weight) and can't be run on proprietary models accessible only by API. #infosec www.microsoft.com/en-us/securi...

2 months ago 1 1 0 0
Spotlighting The World Factbook as We Bid a Fond Farewell - CIA

The CIA announced it will no longer maintain the CIA World Factbook. Fun fact about the factbook: CIA officers contributed personal travel photos for it, which under U.S. law are copyright free: www.cia.gov/stories/stor...

2 months ago 12 2 1 4
Advertisement
Preview
Agents run amok: Identity lessons from Moltbook’s AI experiment

AI "butler" OpenClaw and an agentic AI social network, Moltbook, are here. What are the identity lessons that can be drawn from AI agents running amok? Okta's view here: www.okta.com/newsroom/art...

2 months ago 1 0 0 0
RISK ASSESSMENT REPORT Moltbook Platform & Moltbot Ecosystem Abstract Moltbook is a novel social media platform exclusively populated by autonomous AI agents, with 1.5 million registered accounts and minimal human oversight. This risk assessment analyzes 19,802...

A study of Moltbook (current as of Jan. 31) found that 2.6% of posts were some form of prompt injection and 19.3% contained cryptocurrency-related content. Study by Simula & SimulaMet: zenodo.org/records/1844...

2 months ago 4 1 1 0

Nope! 😞

2 months ago 0 0 0 0
Post image Post image Post image

This AU$36 DC isolator for solar panels failed and just about burnt our house down today. It was just over two years old. DC isolators are not recommended in #Australia due to fire risks. If you have them, replace them with disconnection points.

2 months ago 6 3 2 0

He is believed to be a long-time ransomware actor. Nefedov's real-world identity was unwound after he was picked up on an Interpol notice in Armenia in 2024 but due to various court shenanigans managed to get back to Russia.

3 months ago 1 1 0 0

The Germans have added Russian man Oleg Nefedov to its Most Wanted list. Nefedov is alleged to be the leader of the Black Basta ransomware group and went by monikers including tramp, kurva, gg and Washingt0n. #infosec www.bka.de/DE/IhreSiche...

3 months ago 2 2 1 0
Preview
106.57 MB file on MEGA

Latest episode: mega.nz/file/9I8gxJz...

4 months ago 2 0 0 0
Advertisement
Video

Malicious hackers often get caught. But here's the story of a Russian man involved in cybercrime from the Angler exploit kit through today who slipped away. Audio preview of @intel471.bsky.social's Cybercrime Exposed podcast👇. Episode on Spotify and Apple. #infosec www.intel471.com/resources/po...

4 months ago 2 1 1 0
Preview
Online Safety Act: Age assurance industry must be regulated Open Rights Group has written to the Secretary of State for Science, Innovation and Technology, Liz Kendall MP calling for regulation of age assurance providers operating under the Online Safety Act.

The age verification industry is booming with the new regulations in the U.K. and Australia. In the UK, the @openrightsgroup.org is calling for stronger security standards since online platforms may opt for the cheapest, less vigilant vendors, www.openrightsgroup.org/press-releas... #infosec

4 months ago 4 1 1 0
Preview
The Last Video Rental Store Is Your Public Library Audio-visual librarians are quietly amassing large physical media collections amid the IP disputes threatening select availability.

Hats off to @404media.co for creating a public library beat. I worked at two public libraries in the past, and access to information has never been more fraught and delicate than now. 👏 This latest one about AV collections from @clurrese.bsky.social a great read: www.404media.co/the-last-vid...

4 months ago 17 14 0 1
SVG Filters - Clickjacking 2.0 A novel and powerful twist on an old classic.

Developer attempts to replicate "Liquid Glass" in CSS, and once finished realizes what she'd actually created is an exploit for a fundamental, previously unknown, and rather serious browser vulnerability

lyra.horse/blog/2025/12...

"CSS hack accidentally becomes regular hack"

4 months ago 2033 579 24 37

Pics now please.

4 months ago 0 0 0 0

I find that if I have to rewrite something for one reason or another it usually reads better.

4 months ago 0 0 0 0