I'm Winston Wolfe. I solve problems. Yersinia author. Founder, CounterCraft countercraftsec.com @countercraftsec

Joined January 2009
269 Photos and videos
Pinned Tweet
Muchas gracias, es un honor recibir este Premio. Es fantástica y puntera la comunidad de ciberseguridad en España y no cabe duda que el @CCNCERT ha sido uno de los principales contribuidores. Vaya sorpresa más bonita!
28 Nov 2023
Replying to @dsn
Finalmente, se ha hecho entrega del Premio a la Trayectoria Profesional en Favor de la Ciberseguridad a David Barroso @lostinsecurity, CEO de @countercraftsec #XVIIJornadasCCNCERT #VJornadasESPDEFCERT ¡Enhorabuena!
26
9
116
10,250
David Barroso retweeted
anthropic won't let you use fable for biology, chemistry, ai research, or anything that accelerates human progress. that makes it the perfect tool for developing blockchains
151
554
12,383
455,214
David Barroso retweeted
Our statement on the UK government’s demand that all content on all devices sold or used in the country be scanned, on the presumption of nudity, using a dystopian combination of age verification and content scanning. This proposal will not safeguard children. It endangers us all. signal.org/blog/pdfs/2026-06…

738
8,541
41,296
2,719,106
David Barroso retweeted
I'm finally reading Dune. This quote, which is in the first few pages, hits hard: "Once men turned their thinking over to machines in the hope that this would set them free. But that only permitted other men with machines to enslave them."
722
21,528
121,531
2,113,812
David Barroso retweeted
Massive output uptick due to agentic AI. Complete flat adoption.
456
964
7,260
2,215,779
David Barroso retweeted
MSRC couldn’t possibly do anything worse this week… oh. Oh ok.
36
65
661
105,544
David Barroso retweeted
Que partida memorável. O lindo gol de Sócrates, Hegel e Kant correndo para refutar, Confúcio impassível na arbitragem, o júbilo final dos clássicos e pré-socráticos.

53
478
1,793
130,758
David Barroso retweeted
12
305
9,025
121,344
David Barroso retweeted
The A-Team saves the day.
388
4,721
26,439
2,673,248
David Barroso retweeted
236
1,852
31,913
1,185,116
David Barroso retweeted
I’ve mentioned this before: this is one of the oncoming trains for corp-security. We’ve long failed at least-privilege, but weren’t often punished for it. Helen in HR (or Bob in accounts) didn’t know what to do with the extra perms they didn’t know they had. Their agents will.
Codex just found a “workaround” of not having sudo on my pc…
24
197
2,427
163,541
David Barroso retweeted
Earnings Before Tokens
52
742
6,116
1,512,566
David Barroso retweeted
glad to know Mythos' safety concerns have been addressed right as Anthropic also secured tens of billions in inference compute 👍
JUST IN: Anthropic announces it will roll out Claude Mythos “in the coming weeks” despite growing fears over the model’s cyber capabilities.
52
258
7,118
407,207
David Barroso retweeted
We've raised $65 billion in Series H funding at a $965 billion post-money valuation, led by @AltimeterCap, Dragoneer, @Greenoaks, and @sequoia. This investment will help us advance our research and expand our capacity to meet growing demand for Claude.
1,206
1,699
22,341
7,811,434
David Barroso retweeted
Opus 4.8 is live in Claude Code today. A few things worth knowing: 🧵
May 28
Introducing Claude Opus 4.8: it builds on Opus 4.7 with sharper judgment, more honesty about its own progress, and the ability to work independently for longer than its predecessors. Available today at the same price.
377
844
10,210
1,310,039
David Barroso retweeted
Very interesting data across 2,444 companies. 82% of tokens are spent on AI-generated bugs, rework and review friction.
This is what we've been seeing with every company we work with. Try justifying spending 100k on token spend when only 18k even makes it to a stable prod feature. In the rush to maximize AI token spend, companies are wasting over 44% on bug fixes
94
454
2,820
636,146
Me parece excelente por fin discutir sobre tecnología en Europa, pero nos estamos pasando un poco usando las palabras 'soberanía digital,' 'soberana', etc. Muy similar a lo que ocurrió con 'cooperación público-privada' :)
2
1
2
583
David Barroso retweeted
GPT 5.5 found a 27-year-old RCE introduced in April of 1999. I've triple-checked the flow and commit history, it's real. Can't wait to responsibly disclose!
39
25
1,359
249,472
This
AI attackers have terrible OPSEC. Use it against them. Hallucinate exposed services. Waste their tokens. Seed prompt-injection traps, canaries, and honeytokens where attacker LLM will read them. Have fun.
2
147
David Barroso retweeted
Periodic reminder: the Shadow Brokers, masterful curators of one of the most devastating technical intelligence leaks ever, will turn ten years in August — and we still don't know who they were.
17
62
399
84,034
David Barroso retweeted
May 26
Google announces it will now prioritize AI-generated answers in search results over human-written website articles • Search will be centered around a reimagined ‘intelligent search box’ • Starts next Tuesday (via @TechCrunch)
473
11,978
117,651
2,853,677