Aseem Shrey (@aseemshrey) 's Twitter Profile
Aseem Shrey

@aseemshrey

๐Ÿค– Founder - SecureMyOrg
๐Ÿ‘จโ€Teaching people get into Security
๐Ÿ“น youtube.com/c/HackingSImplโ€ฆ
Talk about #cybersec #privacy

ID: 880863186936750082

linkhttps://securemyorg.com calendar_today30-06-2017 18:58:44

982 Tweet

8,8K Followers

2,2K Following

Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

๐Ÿš€๐—•๐˜‚๐—ถ๐—น๐—ฑ๐—ถ๐—ป๐—ด ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฎ๐˜ ๐—ฆ๐˜๐—ฎ๐—ฟ๐˜๐˜‚๐—ฝ๐˜€ โ€” Part 4: Container Vulnerabilities ๐Ÿ” ๐—ฃ๐—ฟ๐—ผ๐—ฏ๐—น๐—ฒ๐—บ: Base images with known CVEs slip into prod containers. โ€ข Fast builds โ†’ skipping scans โ€ข No image registry policy โ†’ any image is OK โ€ข Manual patch cycles โ†’

๐Ÿš€๐—•๐˜‚๐—ถ๐—น๐—ฑ๐—ถ๐—ป๐—ด ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฎ๐˜ ๐—ฆ๐˜๐—ฎ๐—ฟ๐˜๐˜‚๐—ฝ๐˜€ โ€” Part 4: Container Vulnerabilities

๐Ÿ” ๐—ฃ๐—ฟ๐—ผ๐—ฏ๐—น๐—ฒ๐—บ: Base images with known CVEs slip into prod containers.
 โ€ข Fast builds โ†’ skipping scans
 โ€ข No image registry policy โ†’ any image is OK
 โ€ข Manual patch cycles โ†’
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

๐Ÿš€๐—•๐˜‚๐—ถ๐—น๐—ฑ๐—ถ๐—ป๐—ด ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฎ๐˜ ๐—ฆ๐˜๐—ฎ๐—ฟ๐˜๐˜‚๐—ฝ๐˜€ โ€” Part 5: Real-Time Detection ๐Ÿ” ๐—ฃ๐—ฟ๐—ผ๐—ฏ๐—น๐—ฒ๐—บ: You donโ€™t know what you canโ€™t seeโ€”until a breach alert arrives. โ€ข No runtime monitoring โ†’ lateral movement missed โ€ข Alert fatigue โ†’ critical events drown in noise โ€ข

๐Ÿš€๐—•๐˜‚๐—ถ๐—น๐—ฑ๐—ถ๐—ป๐—ด ๐—ฆ๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—ฎ๐˜ ๐—ฆ๐˜๐—ฎ๐—ฟ๐˜๐˜‚๐—ฝ๐˜€ โ€” Part 5: Real-Time Detection

๐Ÿ” ๐—ฃ๐—ฟ๐—ผ๐—ฏ๐—น๐—ฒ๐—บ: You donโ€™t know what you canโ€™t seeโ€”until a breach alert arrives.
 โ€ข No runtime monitoring โ†’ lateral movement missed
 โ€ข Alert fatigue โ†’ critical events drown in noise
 โ€ข
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

๐—›๐—ผ๐˜„ ๐—ฎ ๐—ง๐—ฒ๐˜€๐˜ ๐—ฃ๐—ถ๐—ฝ๐—ฒ๐—น๐—ถ๐—ป๐—ฒ ๐—–๐—ผ๐—บ๐—ฝ๐—ฟ๐—ผ๐—บ๐—ถ๐˜€๐—ฒ๐—ฑ ๐—ฃ๐—ฟ๐—ผ๐—ฑ ๐—ถ๐—ป ๐Ÿฑ ๐— ๐—ถ๐—ป๐˜€ ๐—ฆ๐˜๐—ผ๐—ฟ๐˜†๐˜๐—ถ๐—บ๐—ฒ โš ๏ธ A developer added an unvetted npm package to the CI tests. That package contained hidden malwareโ€”running under the ๐šœ๐š๐šŠ๐š๐š’๐š—๐š service account. Since the same CI role had

๐—›๐—ผ๐˜„ ๐—ฎ ๐—ง๐—ฒ๐˜€๐˜ ๐—ฃ๐—ถ๐—ฝ๐—ฒ๐—น๐—ถ๐—ป๐—ฒ ๐—–๐—ผ๐—บ๐—ฝ๐—ฟ๐—ผ๐—บ๐—ถ๐˜€๐—ฒ๐—ฑ ๐—ฃ๐—ฟ๐—ผ๐—ฑ ๐—ถ๐—ป ๐Ÿฑ ๐— ๐—ถ๐—ป๐˜€
๐—ฆ๐˜๐—ผ๐—ฟ๐˜†๐˜๐—ถ๐—บ๐—ฒ โš ๏ธ
A developer added an unvetted npm package to the CI tests. That package contained hidden malwareโ€”running under the ๐šœ๐š๐šŠ๐š๐š’๐š—๐š service account. Since the same CI role had
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

We've been quietly building ShipSecAI - your AI security engineer - and it's time for a first look. ๐ŸŒ’ Dark mode is the default. โš™๏ธ Stability upgrades in progress. ๐Ÿ‘€ More updates soon. #buildinpublic #infosec #startups #Cybersecurity

We've been quietly building <a href="/ShipSecAI/">ShipSecAI</a> - your AI security engineer - and it's time for a first look.

๐ŸŒ’ Dark mode is the default. 
โš™๏ธ Stability upgrades in progress.
๐Ÿ‘€ More updates soon.

#buildinpublic #infosec #startups #Cybersecurity
Pranjal Paliwal (@betterclever) 's Twitter Profile Photo

cooking something... ๐Ÿง‘โ€๐Ÿณ if you're looking for no-fuss ai powered security which feels like having a security engineer in your team, reach out in DMs

Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

Does anyone know how to do LLM evals ? Use case : 1. Prompt with file upload => Test across different models => Figure out best output 2. Update Prompt and repeat๐Ÿ” Things I've tried - 1. Langfuse 2. Latitude 3. Promptlayer Any suggestions? #llm

Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

Got rejected from YC but building this now. Share the same feeling , not enough people from the bbty community are actually building these agents. Keep a lookout for ShipSecAI , soon to be launching ๐Ÿ˜€

Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

You can download a free checklist with ~30 checks to make a secure launch ๐Ÿš€ One of the checks from there. Get your free copy today - lite.shipsec.ai

You can download a free checklist with ~30 checks to make a secure launch ๐Ÿš€

One of the checks from there.
Get your free copy today - lite.shipsec.ai
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

Couldn't be a better time to launch lite.shipsec.ai ๐Ÿš€ A one-time fee for stress free launch. For the #Builders and #indiedev community, go get your free checklist here. Please, let us know if you're launching a new product ๐Ÿ™Œ

Couldn't be a better time to launch lite.shipsec.ai ๐Ÿš€

A one-time fee for stress free launch.

For the #Builders and #indiedev community, go get your free checklist here.
Please, let us know if you're launching a new product ๐Ÿ™Œ
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

One-time checkup. Zero stress. Instant credibility. This week we launched ๐Ÿ‘‰ lite.shipsec.ai For the #Builders and #indiedev community, go get your free checklist here.

One-time checkup. Zero stress. Instant credibility.

This week we launched
๐Ÿ‘‰ lite.shipsec.ai 

For the #Builders and #indiedev community, go get your free checklist here.
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

One-time checkup. Zero stress. Instant credibility. This week we launched ๐Ÿ‘‰ lite.shipsec.ai For the #Builders and #indiedev community, go get your free launch security checklist here. #security #buildinpublic #startup

One-time checkup. Zero stress. Instant credibility.

This week we launched
๐Ÿ‘‰ lite.shipsec.ai 

For the #Builders and #indiedev community, go get your free launch security checklist here. 

#security #buildinpublic #startup
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

In the last 12 hours we got 60 signups on ๐Ÿ‘‰ lite.shipsec.ai Go and get your Free Security Launch checklist today ๐Ÿ™Œ

In the last 12 hours we got 60 signups on 
๐Ÿ‘‰ lite.shipsec.ai

Go and get your Free Security Launch checklist today ๐Ÿ™Œ
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

In the last 12 hours we got 60 signups on ๐Ÿ‘‰ lite.shipsec.ai Go and get your Free Security Launch checklist today ๐Ÿ™Œ

In the last 12 hours we got 60 signups on
๐Ÿ‘‰ lite.shipsec.ai

Go and get your Free Security Launch checklist today ๐Ÿ™Œ
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

Something's brewing up ๐Ÿต โœ๏ธIt's been a very long time, since I published a writeup. #bugbounty #Hacked #Security

Something's brewing up ๐Ÿต 

โœ๏ธIt's been a very long time, since I published a writeup.

#bugbounty #Hacked #Security
Aseem Shrey (@aseemshrey) 's Twitter Profile Photo

About to reach a 100. If you haven't downloaded your security launch checklist, please use this link to get the same - ๐Ÿ‘‰ lite.shipsec.ai

About to reach a 100. If you haven't downloaded your security launch checklist, please use this link to get the same -
๐Ÿ‘‰ lite.shipsec.ai