making things.

Joined September 2007
179 Photos and videos
11 Nov 2024
New LLM eval just dropped... first mover advantage still wide open on this skill.
2
82
14 May 2024
LOLZ for posterity cbfb15a2f9000f044da3eb6fcb049d95a0c30c1c39570b1b0c4db9ecc50e0425
2
54
17 Apr 2023
"ChatGPT may produce inaccurate information about people, places, or facts"
1
2
89
21 Mar 2023
“The security community will literally tell you what they want and don't want [from your product].” So much this. I’ve built software for a lot of industries, and the Infosec community is filled with the most thoughtful, collaborative potential customers I’ve ever worked with.
Lots of cyber security companies are going to fail this year. They will close their doors from running out of money or go to private equity asset sales. This is going to suck in the near term but be a good thing for the industry in the mid to long term. Many of these businesses *deserve* to die, but have subsisted on cheap/free outside capital since money has been free for a while and the new wave of more naive VCs are incredibly inexperienced at diligencing cybersecurity technologies. The companies that will fail will be the companies that are hemorrhaging cash and not providing enough customer security value to justify their existence. High marketing spend, low customer logo count, low renewal rate. All of those companies at the RSA and Blackhat vendor hall with gigantic booths that claim to solve problems that you as a security person ask constantly yourself: "is this really a problem???" have the largest targets on them and will represent the majority of companies that fail. The failures will start in earnest approximately 12 months after it became clear that money was expensive again (12 months from summer of 2022, which puts the crunch time at this summer). The failures will likely continue for at least one full year and slow down around summer of '24. If you are a founder or executive at one of these companies, my unsolicited guidance is as follows: - Get onto a cashflow break-even glide path with whatever money you have in the bank as soon as humanly possible. Stop tracking against future fundraises and start tracking against break-even. Do it now. - Revisit first-principles on your business (what problem are you solving, how are you solving it, what is the alternative to your technology). If what you're doing now isn't working, evaluate all other options. Evolve or die. - If you haven't found product market fit, give your product away for free and interview all of the users to figure out a new strategy for monetizing that you may not have considered. The security community will literally tell you what they want and don't want. All you have to do is listen. - Seriously consider consolidating with a partner, competitor, or larger technology provider.
2
233
16 Mar 2023
Feeling very thankful. GPT-4-generated code uses parameterized SQL inserts without being told to. Infosec peeps, #ThisIsTheWay
85
23 Feb 2023
Met with a great founder yesterday, interesting talk about bootstrap vs VC, market opp, etc. He said “I understand what has to happen in sales but I don’t want to do that part of the job.” Twitter reminds me why…
23 Feb 2023
my first sales job one of the best reps only came in like once a week. pissed leadership off so much when he randomly showed, he'd rip a fat line of white lighting, bang out 250 cold calls, talk at an obscenely loud volume, and hit quota the week 2 of the month then disappear
1
97
22 Nov 2022
It must be bad if #blockchain builders are following yours truly on Product Hunt, of all places. Long live the #w3b
Jonathan retweeted
In eastern Oregon, one strategy has proven effective at inoculating communities against extremist ideology. buff.ly/3SLI4rf

1
11
10
26 Jul 2022
If the Athenians has discovered blockchain, Theseus would have minted an NFT for every plank of his Ship. How would this change Western philosophy? What of the Macedonian and Roman empires?
2
19 Jul 2022
What fresh hell is this? Trade derivatives on flight delays? Why not 🤷
18 Jul 2022
Replying to @Kalshi
Still, we’ve got your back. We just launched markets on the number of delays and cancellations at three major US airports: JFK, ORD, and LAX. These daily markets are the best way to hedge against the risk of your flight getting delayed or canceled.
1
10 Jul 2022
If you’re a software leader (positional or influential), this here is a lifetime of work in 10 tweets. Best get moving…
10 Jul 2022
A ten-principle checklist for socio-technical design by Albert Cherns, quoted by Jackson in Critical Systems Thinking paraphrased by me, with commentary for software teams 🧵
1
3
10 Jul 2022
Good things today! @CautionFables latest finally landed. New stories to learn, new stories for kiddos and adults both.
28 Apr 2022
Does anyone even remember Soft Landing Systems?
Did everyone start their Linux journey with Ubuntu? 🤔
Where is the “extremely dislike yet need to reshare” button?!
1 Apr 2022
Amazon is mandating a shift to migrate off of Aurora / all other relational databases and over to to DynamoDB, because it doesn't support UNIONs.
19 Mar 2022
I’m software, no amount of fancy new tooling will eliminate the need to work with others…
Interesting techniques applied to wrong usages may hurt. A thread 🔽 Seems obvious in lots of domain but not in our Software development field (note: I didn’t talk about software Engineering on purpose) Me: Why do we have such an increase of infrastructure costs recently?
1
25 Feb 2022
They say people don’t leave bad companies, they leave bad managers. I think people join, stay, and leave for culture. A manager sets the cultural tone on the team but they can only bend the prevailing culture a certain amount.
2
2
25 Dec 2021
How’s your day going?
1
15 Dec 2021
There’s exploits and the there’s _exploits_!
15 Dec 2021
Today we're publishing a detailed technical writeup of FORCEDENTRY, the zero-click iMessage exploit linked by Citizen Lab to the exploitation of journalists, activists and dissidents around the world. googleprojectzero.blogspot.c…
1
1
15 Dec 2021
Once in a while I get to talk about work-work. I hope this one helps a few folks get a better handle on the #log4jshell excitement this week
15 Dec 2021
We’re pleased to report that New Relic can help you expedite your own response to the log4j incident in three ways, detailed below:
2
Whose been bedazzling the cephalopods?
A large strawberry squid, one of three caught on the last trawl of the Deep-See cruise. Photo: NOAA Fisheries