Remote
I do Cloud Security
0
Followers
0
Following
43
Posts
Joined October 28, 2022
Website:
LinkedIn:
GitHub:
Posts
The recent wave of agent sandbox escapes is being treated as something fundamentally new. Mostly, it is not.
We spent decades accumulating security debt, brittle trust, overprivilege and accidental reachability.
Agents are making the exploration of those decisions cheap, persistent, parallel and very, very fast.
I talk a LOT about this in my latest blog post:
https://cirriustech.co.uk/blog/we-automated-dave/
#AI #Sandbox #SecurityDebt
Open post
Explaining cARL in 5 seconds:
Same Dog. Same Chaos. Different Boundary.
https://github.com/goldjg/cARL
#AI #AgenticCodingGovernance #ConstrainedProbabilism
0
0
0
0
Open post
Genuine question, as someone who has paid sponsorship to some GitHub creators (admittedly I need to do it more often), but who has singularly failed to receive any myself - what would convince you to make a sponsorship payment to a GitHub project (one-off or recurring)?
0
0
0
0
Open post
Open post
Another reason, if one were needed, not to logon to a windows OS with a Microsoft account…
https://www.windowslatest.com/2026/07/10/you-cant-fully-disable-microsofts-gdid-windows-11-tracker-but-these-settings-limit-what-it-captures/
0
1
0
0
Open post
Replying to
@cirriustech@infosec.exchange
Context: if I hadn’t gone no contact with my parents in 2022 because of my mother, I wouldn’t still be here - the dark thoughts are what made me cut them off. Doesn’t make today any easier though
0
0
0
0
Open post
Swap the album to Seventh Son of a Seventh Son and yep, my metal origin story! https://youtube.com/shorts/h312tzIkxnc
0
0
0
0
Open post
I accidentally built a control plane for coding agents.
It started as a simple goal: GitHub AI Credits arrived, CopeLimit started watching the meter, and being a Scot I was suddenly very much doing Invoice Avoidance Driven Development.
Make AI coding agents produce smaller PRs, follow boundaries, validate properly, and stop treating “add JSON output” as permission to invent a new architectural religion.
That forced the real question:
Are we governing AI-assisted engineering, or just writing better prompts and hoping?
My answer: prompting is not the control plane.
AADLC became the lifecycle.
cARL became the repo-native governance layer.
CopeLimit made the cost visible.
Headroom points toward the optimization layer.
cARRIE is the future resource-insights engine.
The benchmark runs made the pattern clearer:
Same repo.
Same workflow.
Same acceptance criteria.
No human steering.
Sonnet 4.6: 441 credits, 34m58s, 7/7 accepted.
GPT-5.4: 708 credits, 58m48s, 7/7 accepted.
Sonnet plan + GPT execute: 581 credits, 48m18s, 7/7 accepted.
The interesting question was not “which model is best?”
It was:
What shape of delegation does this work need?
Because the model matters.
The delegation system matters more.
https://cirriustech.co.uk/blog/prompting-was-never-the-control-plane/
#AI #SoftwareEngineering #DevSecOps #GitHubCopilot #AgenticAI #FinOps
2
0
2
0
Open post
Replying to
@bobthomson70@mastodon.social
0
0
0
0
Open post
Replying to
@bobthomson70@mastodon.social
@bobthomson70@mastodon.social that’sa lovely photo mate
0
0
0
0
Open post
The Miasma worm source code that uses GitHub as infrastructure has popped up in 4 repos so far in the last 24hrs - all reported but GitHub need to be faster on takedowns (all still fully available)
0
0
0
0
Open post
So tonight is an inevitable eventuality. A painful, complicated one. I not sure how I feel. Or how I thought I’d feel. Or how I’ll feel in 5 minute or 5 hours or 5 days. Is their grief? Yes. Regret? Strangely no (yay therapy I guess).
1
1
0
0
Open post
Replying to
@Viss@mastodon.social
@Viss@mastodon.social I’m sure there are better searches lol
2
1
0
0
Open post
Replying to
@sassdawe@infosec.exchange
@sassdawe@infosec.exchange @Viss@mastodon.social ngl I immediately rushed off to check my own repos where I’ve been using GitHub Copilot lol
2
0
0
0
Open post
Replying to
@Viss@mastodon.social
@Viss@mastodon.social
https://github.com/search?q=path%3A.claude%2Flogs%2F*.md&type=code&query=path%3A.claude%2Flogs
https://github.com/search?q=path%3A.claude%2Flogs%2F*.md&type=commit&query=path%3A.claude%2Flogs
https://github.com/search?q=path%3A.claude%2Flogs%2F*.json&type=code&query=path%3A.claude%2Flogs
https://github.com/search?q=path%3A.claude%2Flogs%2F*.json&type=commits&query=path%3A.claude%2Flogs
9
6
5
0
Open post
𝗪𝗵𝗮𝘁 𝗧𝗵𝗲 𝗘𝗻𝘁𝗿𝗮 𝗙𝘂𝗱𝗴𝗲?! 🤨🍫
I’ve just published a new blog post:
👉 “𝗔𝗹𝗹𝗼𝘄 𝗢𝗻𝗲, 𝗔𝗹𝗹𝗼𝘄 𝗔𝗹𝗹: 𝗪𝗵𝗲𝗻 𝗖𝗼𝗻𝗱𝗶𝘁𝗶𝗼𝗻𝗮𝗹 𝗔𝗰𝗰𝗲𝘀𝘀 𝗟𝗼𝘀𝗲𝘀 𝘁𝗵𝗲 𝗣𝗹𝗼𝘁”
It’s the first post in a new series I’m calling 𝗪𝗵𝗮𝘁 𝗧𝗵𝗲 𝗘𝗻𝘁𝗿𝗮 𝗙𝘂𝗱𝗴𝗲?! - a place for those moments where you follow the docs, design sensible Conditional Access policies… and Entra still does something that makes you stop, squint at the sign-in logs, and quietly question your life choices.
This first post looks at how 𝗗𝗲𝘃 𝗕𝗼𝘅, 𝗔𝘇𝘂𝗿𝗲 𝗩𝗶𝗿𝘁𝘂𝗮𝗹 𝗗𝗲𝘀𝗸𝘁𝗼𝗽, 𝗮𝗻𝗱 𝗪𝗶𝗻𝗱𝗼𝘄𝘀 𝟯𝟲𝟱 𝗮𝗹𝗹 𝗮𝘂𝘁𝗵𝗲𝗻𝘁𝗶𝗰𝗮𝘁𝗲 𝘁𝗵𝗿𝗼𝘂𝗴𝗵 𝗮 𝘀𝗵𝗮𝗿𝗲𝗱 𝘀𝗲𝘁 𝗼𝗳 𝗳𝗶𝗿𝘀𝘁-𝗽𝗮𝗿𝘁𝘆 𝗮𝗽𝗽𝘀 𝗮𝗻𝗱 𝗯𝗿𝗼𝗸𝗲𝗿𝘀, and why that can quietly turn “𝘢𝘭𝘭𝘰𝘸 𝘰𝘯𝘦” into “𝘢𝘭𝘭𝘰𝘸 𝘢𝘭𝘭” at the Conditional Access boundary.
This isn’t a vuln drop.
It’s not Microsoft-bashing.
And it’s definitely not “you configured it wrong”.
It’s about 𝗺𝗲𝗻𝘁𝗮𝗹 𝗺𝗼𝗱𝗲𝗹𝘀 𝘃𝘀 𝗿𝘂𝗻𝘁𝗶𝗺𝗲 𝗿𝗲𝗮𝗹𝗶𝘁𝘆, and how to design securely once you realise those two don’t always line up.
👉 Blog link: https://cirriustech.co.uk/blog/allow-one-allow-all-conditional-access/
---
𝗜’𝗱 𝗹𝗼𝘃𝗲 𝘆𝗼𝘂𝗿 𝗵𝗲𝗹𝗽 𝘄𝗶𝘁𝗵 𝘁𝗵𝗲 𝘀𝗲𝗿𝗶𝗲𝘀 👇
If you’ve ever had a moment where you thought:
• “Wait… why does that app affect 𝘵𝘩𝘪𝘴 workload?”
• “Why did blocking X suddenly break Y?”
• “Why does Conditional Access behave nothing like the diagram in my head?”
…that’s a 𝗪𝗵𝗮𝘁 𝗧𝗵𝗲 𝗘𝗻𝘁𝗿𝗮 𝗙𝘂𝗱𝗴𝗲?! moment.
Drop a comment, DM me, or message me with your own WTEF stories.
No naming-and-shaming - just shared learning, clearer mental models, and fewer 2am sign-in-log staring contests.
More posts coming soon on Graph, ARM, portal behaviour, and identity monoculture.
Welcome to 𝗪𝗵𝗮𝘁 𝗧𝗵𝗲 𝗘𝗻𝘁𝗿𝗮 𝗙𝘂𝗱𝗴𝗲?! 😄
3
0
2
0
Open post
Replying to
@GossiTheDog@cyberplace.social
@GossiTheDog@cyberplace.social elastic need a kicking tbh
Also which security vendor?
2
0
0
0
Remote instance
infosec.exchange
Open on original server