1. X
  2. depthfirst
Log inSign up
depthfirst
102 posts
depthfirst profile banner
user avatar

depthfirst

@depthfirstlabs
The Operating System for Modern Security
San Francisco
depthfirst.com
Joined April 2025
41
Following
1,548
Followers
1
Subscription
AffiliatesAffiliatesRepliesRepliesArticlesArticlesMediaMedia

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
  • user avatar
    depthfirst
    @depthfirstlabs
    Aug 27
    Thank you for leading this initiative @OpenAI @gdb, we're proud to support
    user avatar
    Greg Brockman
    OpenAI
    @gdb
    Aug 27
    An open letter for a global surge in cyber defense, signed by over 100 organizations including Anthropic, AWS, Google, Microsoft, OpenAI, and Oracle.
    Article cover image
    Article
    A call for collective action on cyber defense
    An open letter for a global surge in cyber defense, signed by over 100 organizations including Anthropic, AWS, Google, Microsoft, OpenAI, and Oracle. We have a limited window to strengthen cyber...
  • user avatar
    depthfirst
    @depthfirstlabs
    Aug 26
    Introducing Bug Bounty Verification: forward any vulnerability report to depthfirst to validate them against the running application and check if they’re already in your queue. AI can produce a convincing vulnerability report with a single prompt. Validating whether the finding
    Image
  • user avatar
    depthfirst
    @depthfirstlabs
    Aug 24
    Reachability made software composition analysis more useful. Instead of stopping at “you have this CVE,” it asks whether the application can invoke the vulnerable behavior. But knowing the vulnerable behavior can execute does not tell you whether an attacker can exploit it.
    Image
  • user avatar
    depthfirst
    @depthfirstlabs
    Aug 19
    Today we are announcing dfbench, a cybersecurity benchmark we developed to evaluate frontier models and agentic systems. A few weeks ago we posted about how it is time to graduate from CyberGym Level 1 as the primary measure of cyber capability, in favor of newer benchmarks.
    Image
  • user avatar
    depthfirst
    @depthfirstlabs
    Aug 13
    Introducing Threat Model: living security artifacts that capture each repository’s architecture, trust boundaries, attacker-controlled inputs, and assumptions so vulnerability discovery reflects how your application actually works. Most security tools start every finding from
    Image
Advertisement
Advertisement