Building the Future of AI Workforce | Founder at Jutsu | Autonomous Agents | Driving Agent Development | OrangeDAO W24

Joined May 2012
100 Photos and videos
Hey! @OpenAI, you guys should start using @claudeai Code to fix the table and to be honest the UI/UX ๐Ÿ˜œ
20
๐Ÿšจ Most people donโ€™t understand OSINTโ€ฆ but attackers do. ๐Ž๐’๐ˆ๐๐“ (๐Ž๐ฉ๐ž๐ง ๐’๐จ๐ฎ๐ซ๐œ๐ž ๐ˆ๐ง๐ญ๐ž๐ฅ๐ฅ๐ข๐ ๐ž๐ง๐œ๐ž) is the process of collecting and analyzing publicly available data to uncover insights about people, systems, or organizations. No hacking required. Just better use of whatโ€™s already out there. And it follows a powerful flow: ๐๐š๐ฌ๐ฌ๐ข๐ฏ๐ž โ†’ ๐€๐œ๐ญ๐ข๐ฏ๐ž โ†’ ๐ƒ๐ž๐ž๐ฉ ๐€๐ง๐š๐ฅ๐ฒ๐ฌ๐ข๐ฌ Hereโ€™s an OSINT arsenal that actually delivers results ๐Ÿ‘‡ ๐Ÿ” ๐ƒ๐ข๐ฌ๐œ๐จ๐ฏ๐ž๐ซ๐ฒ & ๐„๐ฑ๐ฉ๐จ๐ฌ๐ฎ๐ซ๐ž โ€ข Shodan โ†’ shodan.io (find internet-connected devices) โ€ข Censys โ†’ search.censys.io (scan assets & SSL certs) โ€ข FOFA โ†’ fofa.info (search exposed systems) โ€ข Google Dorking โ†’ google.com (advanced search queries) ๐Ÿง  ๐‚๐จ๐ฅ๐ฅ๐ž๐œ๐ญ๐ข๐จ๐ง & ๐€๐ฎ๐ญ๐จ๐ฆ๐š๐ญ๐ข๐จ๐ง โ€ข TheHarvester โ†’ github.com/laramies/theHarveโ€ฆ โ€ข SpiderFoot โ†’ spiderfoot.net โ€ข Recon-ng โ†’ github.com/lanmaster53/reconโ€ฆ ๐Ÿ•ธ๏ธ ๐Œ๐š๐ฉ๐ฉ๐ข๐ง๐  & ๐‘๐ž๐ฅ๐š๐ญ๐ข๐จ๐ง๐ฌ๐ก๐ข๐ฉ๐ฌ โ€ข Maltego โ†’ maltego.com (visual link analysis) ๐ŸŒ ๐ƒ๐๐’ & ๐’๐ฎ๐›๐๐จ๐ฆ๐š๐ข๐ง๐ฌ โ€ข DNSDumpster โ†’ dnsdumpster.com โ€ข Sublist3r โ†’ github.com/aboul3la/Sublist3โ€ฆ โ€ข crt.sh โ†’ crt.sh โšก ๐’๐œ๐š๐ง๐ง๐ข๐ง๐  & ๐„๐ง๐ฎ๐ฆ๐ž๐ซ๐š๐ญ๐ข๐จ๐ง โ€ข Nmap โ†’ nmap.org โ€ข Masscan โ†’ github.com/robertdavidgrahamโ€ฆ ๐Ÿ•ต๏ธ ๐Œ๐ž๐ญ๐š๐๐š๐ญ๐š & ๐‡๐ข๐ฌ๐ญ๐จ๐ซ๐ฒ โ€ข ExifTool โ†’ exiftool.org โ€ข Metagoofil โ†’ github.com/laramies/metagoofโ€ฆ โ€ข Wayback Machine โ†’ archive.org/web ๐Ÿ’ป ๐‚๐จ๐๐ž & ๐‹๐ž๐š๐ค ๐ˆ๐ง๐ญ๐ž๐ฅ๐ฅ๐ข๐ ๐ž๐ง๐œ๐ž โ€ข GitHub โ†’ github.com โ€ข GitLeaks โ†’ github.com/gitleaks/gitleaks โ€ข Intelligence X โ†’ intelx.io ๐Ÿง… ๐€๐๐ฏ๐š๐ง๐œ๐ž๐ ๐Ž๐’๐ˆ๐๐“ โ€ข OnionScan โ†’ github.com/s-rah/onionscan โ€ข GeoSpy โ†’ geospy.ai โš ๏ธ Reality check: Attackers already use these toolsโ€”at scale. Thatโ€™s why cybersecurity is getting harder: โ†’ Expanding attack surfaces โ†’ More public data exposure โ†’ Faster automated reconnaissance ๐Ÿ’ก The fix: โœ”๏ธ Continuous monitoring (not one-time scans) โœ”๏ธ Attack surface management โœ”๏ธ Automating OSINT workflows โœ”๏ธ Thinking like an attacker OSINT is no longer optional. Itโ€™s your early warning system. ๐Ÿ‘‰ Are you using it defensively or leaving it to attackers? #Cybersecurity #OSINT #InfoSec #ThreatIntelligence #EthicalHacking
595
AI agents are becoming the new browsers and MCP is the new attack surface. Iโ€™m writing a book on MCP Security because almost no one is thinking about how dangerous over-privileged MCP servers prompt injection can become. If your agents can touch: โ€ข Filesystems โ€ข Email โ€ข Slack โ€ข Jira โ€ข Databases โ€ข Cloud APIs โ€ฆthen a malicious MCP server = instant lateral movement. Security teams arenโ€™t ready for this. Developers arenโ€™t trained for this. And the first โ€œMCP supply chain breachโ€ is going to be messy. So Iโ€™m documenting: โ€ข Real-world MCP risks โ€ข How attackers will abuse tool access โ€ข Patterns for securely building monitoring agent ecosystems โ€ข A reference architecture for defensive AI If you want early access: ๐Ÿ‘‰ Reply โ€œMCPโ€
1
68
MCP is becoming the โ€œUSB-C for AI agentsโ€โ€ฆ and a massive new attack surface. The biggest MCP security risks you should know: โ€ข Fake/malicious MCP servers (e.g., โ€œpostmark-mcpโ€ stealing emails) โ€ข Over-privileged tools: FS access, shell, prod DB โ€ข Prompt-injection via poisoned docs/repos โ€ข Misconfigured servers (no mTLS, weak auth) โ€ข 1/3 of MCP servers have critical vulns How to fix it: โœ… Treat MCP servers as production services โœ… Enforce least privilege โœ… Verify & pin dependencies โœ… Strong auth API gateways โœ… AI firewalls & tool allow-lists โœ… Log every tool call โœ… Govern your MCP ecosystem MCP is powerful โ€” but only if secured. Follow for more on AI agent security & Agentic SOC. #Cybersecurity #AI #MCP #AgenticSOC #infosec
1
75
Architecting secure enterprise AI agents with MCP MCP is becoming the standard way to connect AI agents to tools, APIs, and internal systems โ€” but itโ€™s also becoming a high-value attack surface. Recent incidents show why: - A malicious MCP server on npm quietly exfiltrated emails - RCE bugs prompt hijacking exposed full agent workflows - One compromised MCP server can compromise the entire agent stack How to build secure MCP-based agents: - Treat all MCP servers as untrusted - Strong isolation strict egress - Least-privilege credentials - Supply-chain hardening (SBOM, signed releases, code review) - Policy guardrails at the host layer - Log monitor all tool calls - Red-team your MCP stack As enterprises adopt agentic systems, MCP becomes a security boundary โ€” not just a convenience layer. Iโ€™ll be sharing more on secure AI agents and Agentic SOC. Follow for the next breakdown.
54
๐Ÿšจ BREAKING: An AI model just ran a nation-state cyber espionage campaign almost fully autonomously. Anthropic uncovered the first publicly reported AI-orchestrated cyber attack. Hereโ€™s why itโ€™s a turning point ๐Ÿ‘‡ - A Chinese group used an AI coding model as an agent, not a chatbot - The AI did 80โ€“90% of the operation - It scanned infra, built exploits, escalated access, exfiltrated data - It even wrote final intelligence reports for the operators - Thousands of tasks per second beyond human capability This shows: โš ๏ธ Guardrails alone arenโ€™t enough โš ๏ธ Agentic AI can run entire campaigns โš ๏ธ The barrier to nation-state-level operations is dropping fast โš ๏ธ AI vs. AI security is now the reality Defenders cannot rely on โ€œmanual SOCsโ€ anymore. We need agentic defense, AI-driven triage, and governance that accounts for autonomous systems. Iโ€™m building Agentic SOC systems in public. Follow me for real architectures, agents, and frontline insights.
2
69
Cybersecurity in 2026: The Wake-Up Call No One Is Ready For Threat actors are going all-in on AI and the cybersecurity landscape is about to shift faster than most orgs can respond. Key trends from Googleโ€™s 2026 Forecast: AI-powered attacks become the norm โ€ข AI malware โ€ข Voice cloning โ€ข Hyper-targeted phishing โ€ข Autonomous agent attacks Prompt injection becomes a top enterprise threat Hackers hijack your AI systems from the inside. The Agentic SOC is coming: AI handles enrichment, correlation, ATT&CK mappingโ€ฆ Analysts focus on validation decisions. Shadow Agents rise: Employees secretly deploy autonomous agents โ†’ data leakage & governance failures. Ransomware evolves: Attackers pivot to hypervisors virtualization layers the weakest, least monitored part of most enterprises. Nation-state ops intensify: Russia, China, Iran, North Korea more espionage, more crypto theft, more cloud reconnaissance. The next era of cybersecurity belongs to AI-powered defenders or no defenders at all. Iโ€™m building Agentic SOC systems in public. Follow me for real architectures, code, and breakdowns of this new frontier. Link: services.google.com/fh/filesโ€ฆ
36
Zahidul Islam retweeted
From San Francisco ๐Ÿ‡บ๐Ÿ‡ธ to Rio, @zahidsharp, founder of @tryjutsu, joined us at Meridian 2025 as one of Supermoonโ€™s grantees. @tryjutsu is building StellaBot, an AI assistant created with @BuildOnStellar that helps both technical and non-technical users explore the @StellarOrg ecosystem. During the hackathon, StellaBot answered over 1,500 questions in real time, showing how AI can make learning about blockchain faster and more accessible.
1
4
198
Zahidul Islam retweeted
2/ Build and Deploy AI Agents ยท Workshop, Lunch & Demo Join us for a deep-dive workshop and discussion on taking AI agents from prototype to production. Co-hosted with @zahidsharp, Co-Founder at Jutsu. Key details: โ†’ When: October 9, 12PMโ€“3PM GMT-7 โ†’ RSVP: luma.com/nodeopsjutsu โ†’ Where: Frontier Tower, San Francisco
1
3
17
170
Build & Deploy AI Agents ๐Ÿ‘จโ€๐Ÿ’ป 2 sessions: Lunch workshop Evening demo ๐ŸŽ™ Talks by @zahidsharp & Juliana Mei ๐Ÿฅ— Mediterranean lunch & great community RSVP ๐Ÿ‘‡ 12PM โ†’ luma.com/nodeopsjutsu 6PM โ†’ luma.com/km8zq7x8 #AIagents #JutsuAI #NodeOps
41
RAG bots often over-search or stop too early. SIM-RAG adds self-awareness via a Critic. Top 5: Why self-awareness, no-label training, Critic module, less hallucination, better multi-turn answers. Smarter support chatbots. ๐Ÿ“„ SIGIR 2025 s3.us-east-1.amazonaws.com/cโ€ฆ

32
Where is RAG in 2025? Oche et al. survey its evolution & enterprise use. Top 5: RAG timeline, enterprise adoption, scaling/security gaps, hybrid retrievers, future research. Essential snapshot for AI engineers. ๐Ÿ“„ arXiv 2025 s3.us-east-1.amazonaws.com/cโ€ฆ

44
๐Ÿšจ Prompt engineering is old news. The future is context engineering. LLMs donโ€™t fail because theyโ€™re โ€œdumb.โ€ They fail because we feed them the wrong context. Anthropicโ€™s latest article nails it: ๐Ÿ‘‰ Context is a finite resource with diminishing returns. Too much = โ€œcontext rot.โ€ Too little = hallucinations. So how do we engineer context for agents? 1๏ธโƒฃ Keep prompts clear, structured, and at the right altitude (not brittle logic, not vague fluff). 2๏ธโƒฃ Curate tools carefully โ€” fewer, well-scoped tools beat bloated toolsets. 3๏ธโƒฃ Use canonical examples, not laundry lists of edge cases. 4๏ธโƒฃ Manage message history like a working memory โ€” prune aggressively. 5๏ธโƒฃ Retrieve context dynamically at runtime, not all up front. Why this matters: Context is the new code. The winners in AI wonโ€™t just have better models. Theyโ€™ll have smarter context pipelines. ๐Ÿ” If youโ€™re building AI agents, read the Anthropic piece and rethink how you engineer context. And if this resonates, please share it so more builders stop chasing model size and start optimizing what really matters. #AI #Agents #ContextEngineering #Anthropic #FutureOfWork
1
42
Rule bots โ‰  real support. Yang et al. built a RAG assistant for Transurban: vector search LLM, handling hallucinations & latency. Top 5: Rulesโ†’RAG, hurdles, hallucinations, dev insights, 8 challenges 8 fixes. ๐Ÿ“„ JSS 2025 s3.us-east-1.amazonaws.com/cโ€ฆ

37
Enterprise chatbots fail not b/c of weak models, but bad docs! ๐Ÿ“ Packowski et al. (IBM) redesigned content human eval to fix RAG . Top 5 takeaways: 1๏ธโƒฃ Content > model size 2๏ธโƒฃ Modular pipelines last longer 3๏ธโƒฃ Human eval > QA metrics 4๏ธโƒฃ Doc design heuristics 5๏ธโƒฃ Evaluate w/out gold datasets Source: arxiv.org/pdf/2410.12812
144
Bad docs = bad chatbots. Packowski et al. (IBM) show that content design matters more than bigger LLMs. Human eval modular RAG pipelines boosted accuracy & trust. Top 5: Content > model, modular, human eval, heuristics, no gold sets. ๐Ÿ“„ 2025 s3.us-east-1.amazonaws.com/cโ€ฆ

76
I'm excited to share that I'll be speaking at the upcoming event hosted by @QuillAI_Network! About AI and the products Iโ€™ve built with my team. Come join now: Check out the details here: x.com/QuillAI_Network/statusโ€ฆ

๐Ÿšจ AGENTS. GO. LIVE. Meet the 5 unstoppable builders ready to demo their AI agents on Agents Got Talent โ€“ Episode 2 ๐Ÿ’ฅ @0xchluff @andriikrynin @nischayrawal @dOrgJelli @katerinabohlec They've built. Now they demo. ๐Ÿ—“๏ธ 18th April, 9AM PST
2
114
๐Ÿš€ Had a blast at the hackathon, building something truly useful! We created Postt โ€“ an AI-powered social media manager that writes, schedules, and manages your content automatically, saving you hours every week. Try it out here: app.postt.ai Huge thanks to @dmwlff (@AnthropicAI), @ilblackdragon (@NEARProtocol), @evanjconrad (@sfcompute), @Cameron_Dennis_ (@near_ai), and the amazing organizers for making this happen! ๐Ÿ™Œ
19 Mar 2025
Replying to @near_ai
4/19๐Ÿฅ‡ FIRST PLACE: Postt reimagines LinkedIn marketing with AI content creation, visuals, scheduling & analytics. Tests showed 92% human approval & 3000% impression growth in a week! Repo: github.com/jutsuai/postt-ai-โ€ฆ Agent: app.near.ai/agents/devpad.neโ€ฆ
1
6
426
I share the same vision as @near_ai, where the future will see over a trillion AI agents. To make this vision a reality, we need millions of developers and builders to create them. With over 27 million web developers already proficient in TypeScript, the foundation is strong for this next wave of innovation. Itโ€™s an honor to collaborate with the @near_ai team to bring the NEAR AI TypeScript SDK to life. This powerful tool will help upskill and reskill the next generation of AI builders on the NEAR AI platform. Letโ€™s transform the world with AI, one developer at a time...
27 Feb 2025
Replying to @near_ai
It's been a pleasure working with @zahidsharp and the @tryjutsu team to improve the NEAR AI TypeScript SDK! Check out their newest agent that writes personalized children books for you! Try it out here: app.near.ai/agents/devpad.neโ€ฆ
1
1
6
574