Category: Mix

AI Models Are Not Safety-Tuned for Kids · Joseph Thacker
20
Aug
2025

AI Models Are Not Safety-Tuned for Kids · Joseph Thacker

It hit me like a lightning bolt during a casual conversation about AI safety: we’re tuning these models for adults,…

The Quest for the Shortest Domain · Joseph Thacker
20
Aug
2025

The Quest for the Shortest Domain · Joseph Thacker

In the world of bug bounty hunting, having a short domain for XSS payloads can be the difference in exploiting…

18
Aug
2025

The Third Limitation to Creativity

The moment when you realize what was previously impossible is now trivial I just wrote a new piece about the…

strategic guidance for CISOs and cybersecurity leaders
18
Aug
2025

strategic guidance for CISOs and cybersecurity leaders

If you are a CISO or cybersecurity leader looking to scale your bug bounty program but are not sure when the right time to do…

17
Aug
2025

Who’s Not Getting Laid Off?

Who is not being laid off? That’s the question. I’m thinking about all these layoffs. I’m trying to figure out…

17
Aug
2025

Two Creativity Barriers | Daniel Miessler

I think there are two primary ways we limit our own creativity. What I’ll call Type 1 is the inability…

16
Aug
2025

Our 20,000 Eyes and Hands

Here’s a different way to think about the change coming to the workforce and economy from AI. Imagine everyone in…

15
Aug
2025

Intigriti Bug Bytes #227 – August 2025

Welcome to the latest edition of Bug Bytes! In this month’s issue, we’ll be featuring:  Evading WAFs like Cloudflare, Akamai…

15
Aug
2025

Stop Judging AI Using Standards You Don’t Apply to Humans

I know AI is stupid because it can’t count the b’s in “blueberry” the same way I know Einstein was…

14
Aug
2025

AI Might Make Everything Amazing

The incredible benefits that could arrive within 5-10 years August 14, 2025 What I wanna talk about is: if we…

[tl;dr sec] #292- HTTP/1.1 must die, AI + SAST, Google's Insider Threat Detection Tool
14
Aug
2025

[tl;dr sec] #292- HTTP/1.1 must die, AI + SAST, Google’s Insider Threat Detection Tool

James Kettle argues HTTP/1.1 can never be fully secured, augmenting static analysis with LLMs, Google’s talk + OSS tool for…

14
Aug
2025

Lessons for API and AI Security

IBM’s 2025 Cost of a Data Breach Report offers one of the clearest and most comprehensive views yet of how…