Image
user avatar
ᴅᴀɴɪᴇʟ ᴍɪᴇssʟᴇʀ 🛡️
@DanielMiessler
Building AI that upgrades humans and companies. - PAI: ourpai.ai - Human 3.0: human3.ai - Surface: thesurface.ai
San Francisco Bay Area
Joined March 2007
  • Pinned
    user avatar
    I'm increasingly rating the AI we're all chasing on a few major axis: 1. How CUSTOMIZED is the harness to you, e.g., how deeply aware is it of your past, present, and desired future states 2. How INTEGRATED is it into everything you do, e.g., can you whisper to it wherever you
    Image
  • user avatar
    Image
  • user avatar
    Someone shared this in our community just now. Genius.
    Image
  • user avatar
    Replying to @squatsons
    Maybe it’s a bad precedent to allow people to attack you and then “make a deal” where they get to keep some of what they stole.
  • user avatar
    Most companies are not Uber this morning as a matter of luck, not skill. This could easily have been ~90% of organizations. Don’t point and laugh. It could be you next time, and it might be already.
  • user avatar
    We just trained millions of people to scan arbitrary QR codes.
  • user avatar
    This week the internet has learned—once again—that asset management is the center of security. It’s hard to patch what you can’t find.
  • user avatar
    Google's search engine is jumping the shark. 1. Half the page is ads. 2. There's one result on the page. 3. Then recommendations for more questions. It's almost like their mission is to sell ads rather than organize information. What's better? Startpage? Kagi? Something else?
    Image
  • user avatar
    Every Sunday I put out a curated list of the most interesting stories in infosec, technology, and humans. cards.twitter.com/cards/x2oh/2z9…
  • user avatar
    This is why you don't build secretive, all-powerful surveillance tools. You never know who's going to get keys.
  • user avatar
    This is the best security tool released in probably 10 years. Maybe longer. It’s Nessus—except transparent and automatable—and for AppSec as well.
    Using wildcard glob support in nuclei, you can quickly scan for CVEs of specific years, for example, 𝗻𝘂𝗰𝗹𝗲𝗶 -𝘁 '𝗰𝘃𝗲𝘀/𝗖𝗩𝗘-𝟮𝟬𝟮𝟬*' will scan for all the CVEs assigned in 2020 from nuclei templates project. #nucleitips #hackwithautomation
    Image
  • user avatar
    Image
  • user avatar
  • user avatar
    🪳👀🚨DEVELOPING: A potential data exposure issue within ServiceNow's built-in capability has been identified. This could allow unauthenticated users to extract data from records.
    Image