Painful, I know. It's a security hardening, every dependency is a vector, so had to minimize.
CYBERSECURITY
-
Privacy and Trust Concerns Running AI on Main Machine
By
–
It is a lot of privacy and trust for sure. Running it on my main machine.
-

Unauthorized Discord Users Access Anthropic’s Mythos AI Model
By
–
What? Although Mythos was "too powerful for public use" (Anthropic), several Discord users had access to the model from day one! A small group of "unauthorized discord-users" reportedly accessed Anthropic’s powerful Mythos AI model, exploiting a mix of insider access and online
-
LLMs for Permission Control and Secret Blocking
By
–
We been testing llms to judge permissions, and proxies to block secrets. Interesting approach!
-
APIs Limited Releases Business Model Not Safety Policy
By
–
APIs and limited releases for AI models are not a safety policy, they’re a business model (which is totally ok as long as you’re transparent about it). Especially on cyber-security, they give a false impression of control and safety whereas in reality they massively increase the
-
Never Run Applications as Root: Security Best Practice
By
–
There should not ever be a reason to run this as root.
-
CTO Notes on Securing Every Layer of the Vibe Coding Stack
By
–
How we secure every layer of the vibe coding stack- a note from our CTO
-
Anthropic Mythos AI Model Breached by Unauthorized Users
By
–
Big scoop from me: Anthropic's Mythos AI model — the cybersecurity model it says is so powerful it can enable dangerous cyberattacks — is being accessed by unauthorized users. Gift link!
-

Meta CTO No Opt-Out Policy Raises Privacy Ethics Concerns
By
–
“There is no option to opt out” – Meta’s CTO “There was no option to opt out” – epigraph for life as we knew it?
-

Government data compromise: security implications and risks
By
–
At this point, you can safely assume that any data the government has about you is compromised.