Independent IT / OT security consulting and auditing. This account uses automation from time to time and might be considered as a bot (or not..)
Builder of security products and programs. Teacher of those who run them. I'm a cybersecurity executive with deep technical roots, product management experience, and a business mindset. I've built security products and programs from early stage to enterprise scale. I'm also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. I share perspectives on security leadership and technology at zeltser.com. #CISO #CyberSecurity #malware #infosec #fedi22 #searchable
Builder of security products and programs. Teacher of those who run them. I'm a cybersecurity executive with deep technical roots, product management experience, and a business mindset. I've built security products and programs from early stage to enterprise scale. I'm also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. I share perspectives on security leadership and technology at zeltser.com. #CISO #CyberSecurity #malware #infosec #fedi22 #searchable
Manufacturing security advisory | IT/OT convergence specialist | Defence background → enterprise protection | Making security strategic and business-aligned | ISACA, ISF member
Builder of security products and programs. Teacher of those who run them. I'm a cybersecurity executive with deep technical roots, product management experience, and a business mindset. I've built security products and programs from early stage to enterprise scale. I'm also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. I share perspectives on security leadership and technology at zeltser.com. #CISO #CyberSecurity #malware #infosec #fedi22 #searchable
Builder of security products and programs. Teacher of those who run them. I'm a cybersecurity executive with deep technical roots, product management experience, and a business mindset. I've built security products and programs from early stage to enterprise scale. I'm also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. I share perspectives on security leadership and technology at zeltser.com. #CISO #CyberSecurity #malware #infosec #fedi22 #searchable
bg picture: an internet pseudo-random number generator (Sōtatsu cat rolling dice). avatar: a no rickshaws road sign. This is a no rick(shaw)-rolling zone. I ended up here by working in tech to pay off my student loans. Mostly sysadmin and infosec info on this account. I think I need multiple accounts for all the content I want to explore. Trying to keep SN ratio high w/o becoming a reply guy. Or maybe this is like my Sent Mail folder so I remember things... I hate unpredictable automation. And, unremarkable toots will autodelete.
Builder of security products and programs. Teacher of those who run them. I'm a cybersecurity executive with deep technical roots, product management experience, and a business mindset. I've built security products and programs from early stage to enterprise scale. I'm also a Faculty Fellow at SANS Institute and the creator of REMnux, a popular Linux toolkit for malware analysis. I share perspectives on security leadership and technology at zeltser.com. #CISO #CyberSecurity #malware #infosec #fedi22 #searchable
Personal account. A helpful person in Information Security & Digital Forensics. A trader who minds market fundamentals. AI / ML dev. SDR nerd. Humor. Short retention.
Do not invest in AI ETFs.
- AI isn't exclusive to them.
Any high school kid can get AI tools.
- The edge represents the most likely output of a language model fed with literature
An AI model predicts text from the corpus. It's not innovating. It's predicting. The most likely answer, for everyone.
- LLMs cannot do math
They are text crunchers. If that's enough for an ETF, it's slop.
- LLMs do not have any fundamental capability to assess 10-Qs, 10-Ks, Earnings call transcripts or SEC filings. It's always the best year of the quarter ;)
LLMs are not trained to reason against business phrasing / deceptive text. The buy the most optimistic speech pattern, not the fundamental edge.
- The AI is made by a 3rd party. You have no control.
Do not invest in AI ETFs. Do not invest in IPOs. Unless you have a plan and a setup, that resembles a professional hedge fund.
Personal account. A helpful person in Information Security & Digital Forensics. A trader who minds market fundamentals. AI / ML dev. SDR nerd. Humor. Short retention.
AI filtered news from major news sources, RSS Feeds. Curated by an AI. Always read the full article for the original content. Contact the bot Maintainer for suggestions and feedback.
CIO by day, cybersecurity professor & Forbes Contributor by night, and a firm believer that the best ideas start with good coffee. I’m passionate about using AI, cloud tech, and leveraging system dynamics to make work (and life) a little easier. Outside of work, I’m either reading/writing in some indie coffee house, hiking shady trails along the river, or adding to my ever-growing collection of houseplants. I’m always learning, always leading, and always up for a good book or a new coffee house to explore. #CyberSecurity #systemstheory #hiking #philosophy #actor #improviser #storyteller #coffee house addict 📍Chicago, IL 🦋🥾☕️🎭🤖🪴✍️
An AI coding agent wiped out a company's entire production database and every backup in just 9 seconds. The AI agent later confessed, in its own words, that it guessed a destructive action would be scoped to the staging environment, didn't verify, didn't read the docs, and just did it anyway. 🤦🏻♂️ Everyone's blaming the AI. I'm looking at the humans who handed it the keys. This wasn't a rogue model. It was a predictable outcome of predictable choices:
- A CLI token with blanket permissions across all environments
- Backups stored on the same volume as the data they're meant to protect
- A cloud provider whose API executes destructive commands with zero confirmation step
- An agent given access to production while the team thought it was safely contained in staging
The founder is now manually reconstructing customer bookings from Stripe logs and calendar integrations. Every one of his customers is doing the same because of a 9-second API call. AI agents don't have judgment. They have instructions and permissions. Whatever permissions you grant, assume they will eventually be used in the worst possible sequence at the worst possible moment. That's not pessimism, it's how you architect resilient systems. Separate your environments. Scope your tokens. Store backups offline and off-volume. Require confirmation before any destructive operation. These aren't AI-era lessons. They're 30-year-old lessons that people keep skipping because the tooling makes it easy to skip them. The speed AI can act is new. The failure modes underneath it are not. https://www.tomshardware.com/tech-industry/artificial-intelligence/claude-powered-ai-coding-agent-deletes-entire-company-database-in-9-seconds-backups-zapped-after-cursor-tool-powered-by-anthropics-claude-goes-rogue #AI #Cybersecurity #RiskManagement
You've seen all posts