co-founder @Cloudanix | #programmer

Joined July 2011
30 Photos and videos
Have you ever filled out hundreds of security questions for procurement? This discussion between G Mark Hardy and Nate Lee in a recent episode of @cisotradecraft highlights few ways to improve this. #GRC #ThirdPartyRisk #TPRM #DevSecOps #CyberSecurity cisotradecraft.substack.com/…
29
Security friction isn’t the enemy - meaningless friction is. Friction without context or ownership becomes noise. Security is a culture where teams pause to understand risk, not just tick boxes. Ariel Shin & Rahul Zhade #SecurityCulture #AppSec #DevSecOps appseccouncil.substack.com/p…
13
Authorization hierarchy decides what an identity can do. For AI agents calling APIs at machine scale, flat scopes = over-privilege and blind spots. @aaguiar from @auth0 details the layers of API Authorization. #APISecurity #AISecurity #ZeroTrust #DevSecOps auth0.com/blog/api-authoriza…
1
19
SPIFFE gives each workload a cryptographic identity, enables mTLS, and supports least privilege across distributed AI services. Pablo Diaz from @HashiCorp shows how Identity is the control plane for AI security. #AISecurity #SPIFFE #ZeroTrust #AgenticAI medium.com/@pablogd/identity…
32
Validate tool-call origin, require consent for invocations, and flush stale context between turns to reduce injection attacks for agents. Clinton Carpene, Alex Rosenzweig @blocks #AISecurity #AgenticAI #Guardrails #ThreatModeling block.github.io/goose/blog/2…

20
Purusottam retweeted

50
142
966
138,044
In AI systems, the prompt is the attack surface. NOVA by @fr0gger_ is a prompt pattern matching engine - lets you hunt and detect suspicious prompts using keyword, semantic, and LLM-based rules. blog.securitybreak.io/introd… #AISecurity #PromptPatterns #DevSecOps #ThreatHunting
1
39
AI code generators produce fast results - but they also repeat insecure patterns. Fix it with structured prompt patterns like Anti-Pattern Avoidance and Secure/Insecure Diff. @EndorLabs endorlabs.com/learn/structur… #PromptPatterns #SecureCoding #AISecurity #DevSecOps
13
Prompt patterns make AI responses predictable and safe. Context engineering = structured prompt blocks hard constraints reusable patterns. Read the research paper here by researchers at Vanderbilt University. #PromptEngineering #AISecurity #AgenticAI dre.vanderbilt.edu/~schmidt/…
33
From confused deputy to MCP auth flaws, prompt injection, in 2026, we see agentic ops, multi-agent platforms, sandboxes, identity complexity, prompt guardrails, and standardized AI IR. Hiroki Akamatsu shares hi120ki.github.io/blog/posts… #AISecurity #AgenticAI #CyberSecurity #DevSecOps
40
Purusottam retweeted
Are your Postgres servers melting down right now? Congratulations AND you need PG Dog - the founder Lev is one of the world's experts at scaling and sharding databases - he did it for Instacart and his software can do it for you. If your replicas are falling behind and your IOPS are pegged, it's time. pgdog.dev/
40
30
579
135,003
Purusottam retweeted
The amount of crap I get for putting out a hobby project for free is quite something. People treat this like a multi-million dollar business. Security researchers demanding a bounty. Heck, I can barely buy a Mac Mini from the Sponsors. It's supposed to inspire people. And I'm glad it does. And yes, most non-techies should not install this. It's not finished, I know about the sharp edges. Heck, it's not even 3 months old. And despite rumors otherwise, I sometimes sleep.
1,214
921
20,527
1,128,864