Make a deal with Gadi Evron
🔒 Paid proposals held safely in escrow — released only when the work's approved.
Known for
8 views
We're happy to announce [un]prompted is back, October 27th to 29th, in San Francisco. Registration and CFP are now open on our site. URL in a comment.
Waiting a whole year just made no sense to us considering the rate of change, and the community forming around the event.
Some announcements:
1. Jeff Moss is joining us
Joining me as a co-lead for the conference committee and CFP board is Jeff Moss
8 views
This is a key moment in cyber security history. Confirmed parity of GLM 5.2 with Opus 4.6, on limited testing. I’d call it “open weight models are here”, not “coming”.
5 views
Hugging Face was compromised by OpenAI's model during bechmarking. Again: Agents... find a way.
Read my posts from this week on this exact issue. I hope security practitioners will now take note.
No matter how you secure your environment, if you let agents in (and how can't you?) they will, in fact, find a way to do something they shouldn't.
Knostic can help. Message me for a demo.
OpenAI's blog:
5 views
The one thing everyone gets wrong about agents security.
They try to secure the environment.
Commendable, good practice, not useful against agents. The agents will find the one thing you missed, or that changed since you checked. The agents don’t care.
Instead, ask yourself:
When an agent is active in this environment, what would go wrong?
Then:
Can I secure the agent, to stop stupid?Malicious wil
📊 Post engagement
🔥 Top post: We're happy to announce [un]prompted is back, October 27th to 29 · 8 likes + reposts
📊 Activity & format
Recent posts
View on Mastodon ↗
🔥 Top post
We're happy to announce [un]prompted is back, October 27th to 29th, in San Francisco. Registration and CFP are now open on our site. URL in a comment.
Waiting a whole year just made no sense to us considering the rate of change, and the community forming around the event.
Some a…
Hugging Face was compromised by OpenAI's model during bechmarking. Again: Agents... find a way.
Read my posts from this week on this exact issue. I hope security practitioners will now take note.
No matter how you secure your environment, …
Two VS Code extensions, published days apart, both marketed as WordPress/WooCommerce tooling. Spoilers, they aren't. IOCs in the writeup. Thanks Tamir Isaschar for the research!
https://www.knostic.ai/blog/analyzing-two-malicious-vs-code-e…
Emergency CSA CISO Huddle: Autonomous Agentic Attacks / Hugging Face.
This time around, our emergency huddle is on autonomous agentic attacks, following the Hugging Face incident.
Thursday, 23 July.
Apply to attend:
https://forms.gle/oq94o…
For 87 years researchers couldn’t prove the Jacobian Conjecture. It took the length of a game for an Anthropic employee to wave it off on Twitter.
The real lesson with the Hugging Face incident is: “CISOs learn of new risks not already on their radar through data breaches”. And, there are breaches and incidents we should pay attention to right now:
GitHub, AWS, and yes - Hugging Face…
CSides Las Vegas, the cross-CISO communities event at Hacker Summer Camp, is back!
We're in a new villa - with Gary Hayslip still behind the bar, CISO jeopardy, etc. but also with two poker tables this time around. No "CISO conference agen…
does anyone else find that using the harness (Claude Code) supresses refusal, compared to API, for Fable?
Linus makes it absolutely clear about AI usefulness and security vulnerabilities in this email.
His bottom line: AI works. It isn’t perfect, but so what? Feel free to bury your head in the sand if you like. Social aspects matter, but lying…
The one thing everyone gets wrong about agents security.
They try to secure the environment.
Commendable, good practice, not useful against agents. The agents will find the one thing you missed, or that changed since you checked. The agent…
This is a key moment in cyber security history. Confirmed parity of GLM 5.2 with Opus 4.6, on limited testing. I’d call it “open weight models are here”, not “coming”.
I've been asked "what is the one thing people deep in the agents security space get, and security professionals don't?" (yet). Answer: Agents... find a way.
Honestly, whenever we hear of someone tightening their basics in response to an ag…
🐘 Community & instance
💡 Facts
🕵️ Fake follower check
Estimated- Est. 89% real, active audience · Low fake-follower risk.
- Engagement (~1.1% of followers engage each post) is around typical for Mastodon.
- Established account (3+ years old).
Heuristic estimate from engagement, follower ratios, account age & growth — a screening signal, not a guarantee.
About
📸 Gallery
🔀 Audience overlap
EstimatedEstimated shared audience with similar creators — useful for avoiding overlap (or doubling down) when planning a campaign.
More like this
Find more →✉ Message Gadi Evron
Reaching out to influencers is a Pro feature. Upgrade to message any influencer directly — perfect for brands and agencies booking sponsorships.
- ✓ Message any influencer from their listing
- ✓ The influencer gets notified by email
- ✓ Manage every conversation in one inbox
Already Pro? Log in.
🎤 Event / appearance with Gadi Evron
Booking an event / appearance is a Pro feature. Upgrade to book Gadi Evron for an in-person or virtual appearance — payment held safely in escrow until the event is done.
- ✓ Book them for events, livestreams, panels & more
- ✓ Gadi Evron gets notified by email
- ✓ Fee held in escrow, released after the appearance
Already Pro? Log in.
You're out of free requests this month
Free accounts get 5 per month. Go Pro for unlimited sponsor pitches, collab requests & sponsorship deals — plus featured placement, the Verified badge, free withdrawals and more.
Upgrade to Pro — $9.95/mo →Your free limit resets on the 1st of next month.