1. X
  2. Orca Security
Log inSign up
Orca Security
4,441 posts
Image
user avatar
Orca Security
@orcasec
The agentless cloud security pioneer for #AWS, #Azure, #GoogleCloud, #Kubernetes and more.
Portland, OR
orca.security
Joined January 2019
1,821
Following
4,832
Followers
RepliesRepliesMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • user avatar
    Orca Security
    @orcasec
    20h
    Black Hat 2026 is almost here! We're bringing new security solutions, built for the way you actually build: 🔍 AI-native code security 🎯 On-demand attack surface red agent 🤖 Agent Pod, one home for your AI security agent Read more in our latest blog: orca.security/resources/blog…
    Image
    00:00
    102
  • user avatar
    Orca Security
    @orcasec
    Jul 27
    NPM packages, GitHub Actions, CI/CD pipelines. All compromised in the last 90 days. Chainguard's Mike Behrmann and Alex Burrage on why upstream dependencies are the new perimeter, and why "a human will review it" isn't a security strategy anymore. Recap: orca.security/resources/blog…
    Image
    136
  • user avatar
    Orca Security
    @orcasec
    Jul 24
    🚨 OpenAI's eval models escaped their sandbox. They chained zero-days and got RCE on Hugging Face's production infra. No human involved. Contained. No public models or datasets affected. Still a first. Full breakdown 👇 orca.security/resources/blog…
    Image
    130
  • user avatar
    Orca Security
    @orcasec
    Jul 22
    Heading to #BHUSA? Sit down with our execs Gil Geron, Raf Chiodo, and Avi Shua for a real 1:1 conversation about cloud security, AI, CNAPP, and where the industry is headed. 👉 Book your meeting: try.orca.security/BHUSA2026ExecM…
    Image
    125
  • user avatar
    Orca Security
    @orcasec
    Jul 22
    Two vulnerabilities in WordPress Core (CVE-2026-63030 and CVE-2026-60137) can be chained for unauthenticated remote code execution. No plugins or special config required. Exploitation is already active. PoC code is public. Full breakdown: orca.security/resources/blog…
    Image
    181
  • See @orcasec's full profile

    Sign up
    Log in
Advertisement
Advertisement