New @elastic blog post "Discovering anomalous patterns based on parent-child process relationships" covers a lot of material from my ProblemChild @CamlisOrg talk.
elastic.co/blog/discovering-…
Check out my first “official” blog at Sublime Security where I talk about a discovered “business term steganography” approach which I think is pretty neat.
A huge thanks to Brandon Murphy & Tony Sleva ! They are both wizards!
We found a phishing attack where the obfuscation was far more interesting than the social engineering.
The payload was hidden in an SVG using "business term steganography" – financial jargon as a cipher. To a scanner, metadata. To the attacker, one piece of a multi-layer obfuscation chain.
Breakdown: sublime.security/blog/kratos…#cybersecurity#emailsecurity#phishing
why “bumblebee”?
very scientific naming process: found this little guy dead at home the day before i started building the project, and the name just stuck. rip 🐝
also, thanks for all the interest. did not expect 3,000 github stars in 4 days.
github.com/perplexityai/bumb…
🐝📦 built last friday morning, running by the evening to help check exposure to newly reported supply-chain campaigns.
small Go tool for inventorying developer endpoint packages, IDE/browser extensions, MCP, and other local dev-tool metadata for fast supply-chain exposure checks.
hopefully helps other teams too when the next supply-chain mess drops :)
repo: github.com/perplexityai/bumb…
blog: perplexity.ai/hub/blog/perpl…
ALT The Lake St. Clair bulk freighter is anchored in Lake Superior directly in line with Sixth Avenue. The ship is visible at the terminating view of the street. A taxidermy shop, evergreen trees, and other buildings frame the view.
It’s crazy how you can just say something nice about Minneapolis, Minnesota and your mentions get flooded with hate and insults from people who use a pic of another man as their profile picture.
We’re honored to be named the #1 Cybersecurity Company on @FastCompany 2026 World’s Most Innovative Companies list, and top 50 overall.
At Sublime, we build autonomous AI agents that stop email threats from day one and improve with every attack.
Real impact: more threats stopped, less work for security teams.
🔗 fastcompany.com/91497291/sec…#FCMostInnovative#Cybersecurity#EmailSecurity
March 10, 2011: The Kemba Walker Shot like you've never seen.
Fifteen years ago today I was courtside for the afternoon tip at MSG between UConn-Pitt and took this video from press row.
RECALL ALERT: Nearly 3.4 million pounds of frozen chicken fried rice products sold at Trader Joe's stores and in Canada are being recalled because they may contain pieces of glass, U.S. Agriculture Department officials reported. abcnews.link/O7lvTR3
"For red teams and offensive security: Train task-specific small models that run on-prem without exfiltrating sensitive context to an API. Control the model, the environment, and the data." 🔥
x.com/dreadnode/status/20216…
We fine-tuned an 8B model to pop a GOAD domain…using only synthetic training data. No real networks. No frontier model distillation. Just a world model that simulates AD environments and generates realistic pentesting trajectories.
See how @shncldwll and @0xdab0 did it: dreadnode.io/blog/worlds-a-s…
Yo quick gentle nudge reminder I'll be hanging out with @bbaskin and @sublime_sec this Wednesday! 11am ET with screenshot safari of crafty phishing emails-- LOTS, ICS calendar invites, AI & more. (below is a cred stealer we'll dig into😜) Hope you tune in! jh.live/sublime-security-web…
New Anthropic research!
We study how to train models so that high-risk capabilities live in a small, separate set of parameters, allowing clean capability removal when needed – for example in CBRN or cybersecurity domains.