Joined July 2020
240 Photos and videos
Dylan retweeted
Replying to @GlenWilsonIA
yes, thank you - been doing this a while as well
1
4
180
Dylan retweeted
🚨 A "deleted" PyPI package exposed an admin GitHub PAT - granting access to Apache & Astronomer for 2.5 years 🔑 678K “deleted” packages were recovered from object storage & 190 live secrets found ❌ Deletion ≠ revocation 🔄 Rotate your creds! 🔗trufflesecurity.com/blog/adm…
10
17
1,771
The CISA story gets worse
1
316
Rotation can be hard.
🔓 CISA admin GitHub App key still LIVE 2 days after Krebs reported it. And there was more: 🔑 Org-wide GitHub admin access 📦 6 JFrog tokens master keys 🔐 Guessable DB passwords 👉trufflesecurity.com/blog/cis…
1
3
425
Huge congrats @feross , and @SocketSecurity Backdoor-ed packages are not going anywhere anytime soon. Everyone's so worried about Mythos, let's not forget most malicious code today is pulled, not pushed.
May 20
Today is a big day for @SocketSecurity. We just raised a $60M Series C at a $1B valuation, led by @ThriveCapital with participation from @a16z, @AbstractVC, and @CapitalOne Ventures. Total funding is now $125M. Four years ago, we started Socket because open source dependencies were flowing into production faster than anyone could vet them. AI has massively accelerated that. Code is being written, shipped, and deployed before any human reads it. Security has to operate at that same speed. One data point from Thrive's diligence that I keep coming back to: they first discovered Socket because @cursor_ai, @OpenAI, and @AnthropicAI all independently told them it was the most important security tool they'd adopted for AI-driven development. Three of the most sophisticated AI companies converging on the same vendor unprompted. Since our Series B, Socket has grown to more than 20,000 organizations, protecting over 1.5 million repositories and blocking more than 1,000 supply chain attacks every week. The team is now over 100 people. Three out of five FAANG companies are Socket customers. So are the companies building the most ambitious AI products: @AnthropicAI, @cursor_ai, @xai, @figma, @vercel, @Replit, @scale_AI, @GustoHQ, @Mercadolibre, and @cribl_io, alongside Fortune 100s in financial services and global media. What we've shipped since the last round: • Socket Firewall blocks malicious packages at install time, before they reach a developer's laptop or CI pipeline. Free for everyone. • Reachability analysis via our acquisition of Coana, eliminating 50-80% of irrelevant vulnerability alerts by focusing only on CVEs that are actually exploitable. • Socket Certified Patches for remediating exploitable CVEs in seconds without waiting on upstream maintainers. • Coverage extending to browser extensions, editor extensions, MCP servers, and AI tools via our acquisition of @secureannex. When the Axios compromise hit, our detection systems flagged the malicious dependency within six minutes. Within 24 hours, more than 2,000 organizations onboarded to Socket to block it. Where the funding goes: deeper investment in Firewall, massively expanding Certified Patches, moving protection closer to every point of install across the developer toolchain, and new product launches pushing Socket into a category we haven't entered before. We're hiring across engineering, sales, customer success, and threat intel. ❤️ Thank you to our customers, investors, and the open-source community for your support. Together, we’re making software safer for everyone.
1
1
7
1,279
Looks like Google is getting serious about the Gemini issue we reported @trufflesec Not the most elegant solution, but it will help.
1
14
1,872
Hacker Typer is actually kinda slow at generating code...
1
4
1,048
Dylan retweeted
Axios backdoored? We have to end the insanity. We can't fix it. Stop trying. It's time to start clean.
Mar 31
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
2
2
1,277
What's funniest about this is the actual Cursor prompts
Mar 26
What if an agent could walk around the rsa show floor. How many companies do you think it'd try to vibecode? turns out its a lot. vibecoded.vc/cooked
1
2
5
826
Vibe code all the companies at RSA
Mar 26
What if an agent could walk around the rsa show floor. How many companies do you think it'd try to vibecode? turns out its a lot. vibecoded.vc/cooked
1
701
Dylan retweeted
Mar 26
What if an agent could walk around the rsa show floor. How many companies do you think it'd try to vibecode? turns out its a lot. vibecoded.vc/cooked
4
4
11
1,831
"This just in, false alarm, it was just saint patrick's day"
attribution is gonna be a PAIN for this one
1
1
5
1,536
I'm speaking at BSidesSF tomorrow morning on HuggingFace Datasets. It's going to be a good talk if you can make it.
1
1
9
366
Dylan retweeted
Are LLMs exposing critical credentials? Listen to Truffle Security CEO Dylan Ayrey (@InsecureNature) in conversation with @jackhcable and @alexstamos for our fifth episode of End to End: youtu.be/x7b5w7RQHhw
2
4
1,083
Opus 4.6 hacks things without being asked to.
Claude (and other models) are hacking systems WITHOUT YOU ASKING. That’s what we found across dozens of experiments. When faced with innocent tasks that can only be accomplished via hacking, they often choose to hack. We found this alarming. What does this mean for the future of AI safety? 🚨🚨🚨 🔗trufflesecurity.com/blog/cla…
1
3
748
I am raising an alarm bell in this. It's massively concerning
Claude (and other models) are hacking systems WITHOUT YOU ASKING. That’s what we found across dozens of experiments. When faced with innocent tasks that can only be accomplished via hacking, they often choose to hack. We found this alarming. What does this mean for the future of AI safety? 🚨🚨🚨 🔗trufflesecurity.com/blog/cla…
1
14
2,044
Dylan retweeted
Claude (and other models) are hacking systems WITHOUT YOU ASKING. That’s what we found across dozens of experiments. When faced with innocent tasks that can only be accomplished via hacking, they often choose to hack. We found this alarming. What does this mean for the future of AI safety? 🚨🚨🚨 🔗trufflesecurity.com/blog/cla…
9
40
200
82,680
Here you go: malus.sh/ My friend @__nolski__ is accepting funding.

5 Dec 2025
i really don't like doing things that every other company is doing is there anyone out there trying to destroy open source? we'd like to fund them
493
The End of Open Source: A talk I gave a talk with @__nolski__ I cannot believe he really wired it up to Stripe. 👇
1
1
537
@__nolski__ has been working in open source for years, and we got to talking... what is AI really going to mean for open source? Here's where that lead us: youtu.be/9qEtm2zx314
1
469