Category: Mix

Why I Think Karpathy is Wrong on the AGI Timeline
19
Oct
2025

Why I Think Karpathy is Wrong on the AGI Timeline

Andrej Karpathy came on Dwarkesh’s podcast recently, and I have a number of thoughts. Many are saying that Karpathy thinks…

[tl;dr sec] #301 - Security Leadership Master Class, DEF CON Cloud Village Talks, AI-Powered Honeypot
16
Oct
2025

[tl;dr sec] #301 – Security Leadership Master Class, DEF CON Cloud Village Talks, AI-Powered Honeypot

I hope you’ve been doing well! Reflections and Cooking First off, thanks so much to everyone who reached out with…

When Authentication Fails — Exposing APIs to Risk — API Security
16
Oct
2025

When Authentication Fails — Exposing APIs to Risk — API Security

Authentication issues seem like low-level attacks. But authentication today – especially API authentication – can be more difficult than people…

Extending your lifespan through attention
14
Oct
2025

Extending your lifespan through attention

One of the most surprising things I’ve ever learned is that novelty and attention extend your lifespan. Or, more precisely,…

Why API security is different (and why it matters)
14
Oct
2025

Why API security is different (and why it matters)

Two months in at Detectify and I’ve realized something: API security is a completely different game from web application security….

14
Oct
2025

The Government Solution to AI Inequality Might Be UBI + Really Good Games

Or maybe 99-1. UBI is an obvious choice for calming the masses when the world turns into a lopsided 90-10…

Teardown Front Without RF Shield
13
Oct
2025

Hacking the Nokia Beacon 1 Router: UART, Command Injection, and Password Generation with Qiling

ICYMI: My No Starch Press book “From Day Zero to Zero Day” is an Amazon bestseller – grab your copy…

Explore vs. Exploit: The Pattern-Novelty Balance
12
Oct
2025

Explore vs. Exploit: The Pattern-Novelty Balance

There’s a real cool concept that I always come back around to, which is the oscillation between “explore” and “exploit.”…

API Security Platform of the Year 2025 — API Security
10
Oct
2025

API Security Platform of the Year 2025 — API Security

2025 has been one of Wallarm’s biggest years yet.  In the last few months alone, we unveiled our industry-first API…

Product comparison: Detectify vs. Tenable
10
Oct
2025

Product comparison: Detectify vs. Tenable

Tenable Pros Holistic view of the entire IT estate, from external web servers to internal workstations and cloud infrastructure. Through…

[tl;dr sec] #300 - Security Headcount Ratios + Hiring Plan, MCP Security, Compliance
09
Oct
2025

[tl;dr sec] #300 – Security Headcount Ratios + Hiring Plan, MCP Security, Compliance

I hope you’ve been doing well! Episode 300 This issue will be a bit shorter as I’ve been in Tahoe…

HTTP/1.1 must die: Dafydd Stuttard on what this means for enterprise security
09
Oct
2025

HTTP/1.1 must die: Dafydd Stuttard on what this means for enterprise security

Andrzej Matykiewicz | 09 October 2025 at 14:06 UTC At Black Hat USA 2025 and DEF CON 33, PortSwigger’s Director…