lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

64
active users

#aisecurity

1 post1 participant0 posts today

🚨 NEW Weekly Series Alert! 🚨

I’m excited to launch the Cybersecurity Weekly Roundup—a new series where I’ll share the top cybersecurity news stories every Friday.

Each week, I’ll curate the biggest incidents, emerging threats, critical vulnerabilities, and key industry insights—all from trusted cybersecurity sources like CISA, MITRE, The Hacker News, and more.

🛡️ Whether you're a cybersecurity pro, IT leader, or just security-curious, this roundup will help you:

Stay ahead of ransomware trends

Monitor critical vulnerabilities and patch releases

Learn about new threat actor campaigns

Track shifts in AI, ICS/OT, and post-quantum security

Every article includes a concise, expert-written summary designed to save you time and deliver actionable insights.

👉 Check out the first edition on the blog today!
🔗 weblog.kylereddoch.me/2025/07/

Follow me for weekly updates and stay cyber-resilient! 🔒

weblog.kylereddoch.me🛡️ Welcome to the Cybersecurity Weekly Roundup - Kyle's Tech Korner
More from CybersecKyle

🎉 A new Brand Story is live — this time with eSentire!

We sat down with Dustin Hillard, CTO at #eSentire, for a powerful conversation about #AgenticAI and what it really means to reach human equivalency in security operations.

From decision-making to autonomous action, this isn’t just theory — it’s a real-world look at outcomes when AI is trained and tuned with purpose.

🎥 Watch the video:
youtu.be/qmca7RCzSAQ

📝 Read the full story:
itspmagazine.com/their-stories

🔎 Learn more about eSentire here:
itspm.ag/esentire-sorry4ek

Thanks to eSentire for supporting the conversation and helping us explore where AI meets security in the real world.

Sean Martin, CISSP & Marco Ciappelli
Co-Founders at ITSPmagazine

This is about to happen! Join us!

How To Detect And Mitigate Non-Human Identity And Crytographic Vulnerabilities — An ITSPmagazine Webinar With SandboxAQ
Thursday, May 15, 2025 | 1:00 PM 2:00 PM EST

Unmanaged cryptographic assets and non-human identities have left security teams blind to critical risks. These gaps have fueled vulnerabilities, breaches, compliance challenges, and operational drag across enterprise environments.

Join us to see how #AQtiveGuard transforms this landscape.

✨ crowdcast.io/c/how-to-detect-a

More than just visibility, AQtive Guard unifies your non-human identities and cryptographic assets into a single inventory to deliver end-to-end visibility, deeper risk analysis, and streamlined compliance in a single pane of glass—with automated discovery, real-time threat detection, and root cause analysis powered by their unique LQM.

Seamlessly integrated into your existing stack, it’s the AI-driven SaaS platform built to secure today’s systems—and tomorrow’s.

By attending, you will get to:
Discover how to gain unified visibility into cryptographic assets and non-human identities —including API keys, certificates and service accounts—in cloud environments

Explore how AQtive Guard empowers security teams with automated discovery, threat detection, and root cause analysis—enabling faster remediation, reduced risk, and stronger compliance without disrupting existing workflows.

Learn how to future-proof your security posture, with a platform designed for AI Security Operations, Post-Quantum Cryptography readiness, and seamless integration into your existing security stack.

PANELISTS
Marc Manzano
General Manager of Cybersecurity, SandboxAQ
MODERATORS
Sean Martin, CISSP Co-Founder, ITSPmagazine
Marco Ciappelli Co-Founder, ITSPmagazine

Can’t attend the live webinar? All registrants get exclusive access with a link to rewatch the recording.

Register To Attend: crowdcast.io/c/how-to-detect-a

#cybersecurity, #cryptography, #AIsecurity, #infosec, #webinar, #securitytools, #threatdetection, #cloudsecurity, #sandboxAQ, #ITSPmagazine #tech #technology #quantum

crowdcastHow To Detect And Mitigate Non-Human Identity And Crytographic Vulnerabilities — An ITSPmagazine Webinar with SandboxAQRegister now for How To Detect And Mitigate Non-Human Identity And Crytographic Vulnerabilities — An ITSPmagazine Webinar with SandboxAQ on crowdcast, scheduled to go live on May 15, 2025, 01:00 PM EDT.

Monday news from ITSPmagazine 🙂 #happymonday!

Join Marc Manzano, Sean Martin, CISSP and me on this week SandboxAQ Webinar!

After an incredible conversation with Marc on the #RSAC floor in San Francisco — where Sean and I used every second of our time and still had more to explore — I knew the #Sandbox Story couldn’t stop there.

If you missed that on-location episode from #RSAC2025, catch it here:

👉 Security at the Edge of Change – A Brand Story with Marc Manzano from SandboxAQ

itspmagazine.com/their-stories

Now, we’re keeping the momentum going with a live ITSPmagazine webinar you don’t want to miss — and I won’t either. 🤘😬

🔐 How To Detect And Mitigate Non-Human Identity And Cryptographic Vulnerabilities | An ITSPmagazine Webinar with SandboxAQ

Join Marc, Sean, and me as we dig deeper into how SandboxAQ is tackling one of today’s most urgent security challenges.

Unmanaged cryptographic assets and non-human identities have left security teams blind to critical risks. These gaps have fueled vulnerabilities, breaches, compliance challenges, and operational drag across enterprise environments.

By attending, you’ll:

🔸 Gain visibility into cryptographic assets and non-human identities like API keys, certificates, and service accounts

🔸 See how #AQtiveGuard enables automated discovery, threat detection, and root cause analysis without disrupting workflows

🔸 Learn how to future-proof your security with Post-Quantum Cryptography readiness and AI-powered #SecOps

📌 Learn more:

👉 itspmagazine.com/itspmagazine-

📅 REGISTER NOW:

Can’t attend the live webinar? All registrants get exclusive access with a link to rewatch the recording.

👉 crowdcast.io/c/how-to-detect-a

Share the news and join us!

See you live on Thursday!

#infosec

#cybersecurity

#technology

#tech

#infosecurity

#AIsecurity

#postquantum

#cryptography

#identitymanagement

🎙️ When AI writes code, builds models, and simulates threats… who checks the checker?

In this last On Location Conversation from #RSAC2025, Alex Kreilein and John Sapp Jr. join Sean Martin, CISSP to explore what trust actually means in the age of AI-generated security tooling — and how modern #AppSec teams must rethink validation, #resiliency, and #risk.

This episode cuts deep into:

Why “trust the output” is not enough in AI-driven workflows
How #AI security debt is becoming the new tech debt
Why we need #zerotrust thinking applied to models and agents
The real shift: from patching CVEs to building resilient architecture
The role of traceability, governance, and context-driven decision-making

If you’re serious about secure AI, application security, and shifting AppSec left (the right way), this conversation will challenge what you think you know — and help reframe what secure development actually looks like.

🎥 Watch the full video:
👉 youtu.be/kJdQz9LmT6s

🎧 Listen to the audio podcast:
👉 eventcoveragepodcast.com/episo

✨ Thank you to our Full Coverage Sponsors:
ThreatLocker 👉 itspm.ag/threatlocker-r974
Akamai Technologies 👉 itspm.ag/akamailbwc
BLACKCLOAK 👉 itspm.ag/itspbcweb
SandboxAQ 👉 itspm.ag/sandboxaq-j2en
Archer Integrated Risk Management 👉 itspm.ag/rsaarchweb
ISACA 👉 itspm.ag/isaca-96808
Object First 👉 itspm.ag/object-first-2gjl
Edera 👉 itspm.ag/edera-434868

🎙️ Explore more RSAC 2025 coverage:
👉 itspmagazine.com/rsa-conferenc

🎧 Catch all of our event conversations:
👉 itspmagazine.com/technology-an

🎤 Want to tell your Brand Story Briefing as part of our coverage?
👉 itspm.ag/evtcovbrf

📆 Want Sean Martin, CISSP and Marco Ciappelli to cover your event or moderate your panel?
👉 itspmagazine.com/contact-us

Microsoft Copilot for SharePoint just made recon a whole lot easier. 🚨
 
One of our Red Teamers came across a massive SharePoint, too much to explore manually. So, with some careful prompting, they asked Copilot to do the heavy lifting...
 
It opened the door to credentials, internal docs, and more.
 
All without triggering access logs or alerts.
 
Copilot is being rolled out across Microsoft 365 environments, often without teams realising Default Agents are already active.
 
That’s a problem.
 
Jack, our Head of Red Team, breaks it down in our latest blog post, including what you can do to prevent it from happening in your environment.
 
📌Read it here: pentestpartners.com/security-b

🎙️✨ New Episode!
A Brand Story from the Road to #RSAC 2025 — Featuring Akamai Technologies

Every year, as we get ready for RSA Conference, we fire up the engine and the mics—not just to cover the #tech, but to capture the #business, the strategy, and most importantly, the human side of #cybersecurity.

Our latest Brand Story does just that.

In this pre-conference conversation, we sit down with Rupesh Chokshi, SVP & GM of Application Security at #Akamai, to talk about the shifting cybersecurity landscape as we move deeper into the #AI era. From #APIattacks and #LLM scraping to hybrid infrastructures and #zerotrust environments, it’s clear that security is no longer just a barrier—it’s a business enabler.

And Akamai is right at the center of that transformation.

We explore what it means to build real #cyberresilience, how organizations can rethink their security strategy in an AI-driven world, and why this year’s #RSAC2025 Conference is set to be a defining moment for both innovation and trust.

🫶 A special thank you to Akamai for sponsoring our RSAC 2025 coverage and continuing to support conversations that matter.

🎥 Watch the teaser: youtu.be/NH4APVuZfRc
📺 Full episode: youtu.be/DMm6INJ_2Z8
🎧 Listen on the podcast: brand-stories-podcast.simpleca
📌 Learn more about Akamai: itspmagazine.com/directory/aka
🌐 Follow all of our RSAC 2025 stories: itspmagazine.com/rsac

We’ll see you in San Francisco for more conversations to share with your audience!

— Marco Ciappelli & Sean Martin, CISSP
ITSPmagazine Co-Founders

The replay of our session at Forum INCYBER Europe (FIC) is now online 🎬

Watch our CTO present the initial Phare results - our multilingual and independent LLM benchmark that evaluates hallucination, factual accuracy, bias, and harm potential.

The session features Matteo Dora and Elie Bursztein (Google DeepMind).

Full recording linked below 👇

New On Location Coverage with Sean & Marco on ITSPmagazine

🚨 Cybersecurity in #Italy 🇮🇹 : A Niche Topic No More... 🤔

Not too long ago, if you mentioned #cybersecurity in Italy, you’d get a lot of blank stares. Today, it’s everywhere—boardrooms, government agencies, and, of course, #ITASEC, Italy’s official cybersecurity conference.

This year, #ITASEC2025 took over Bologna, bringing together researchers, policymakers, and industry leaders to discuss what’s next for digital security. AI security, regulatory shifts, #cybereducation — yes, even the Digital Operational Resilience Act (#DORA) that’s reshaping financial sector security—were all on the table.

Unfortunately I wasn’t in Italy at the time of the event, but that didn’t stop me from having a fascinating conversation with Professor Alessandro Armando, one of the key organizers and a leading voice in cybersecurity research. In this latest On Location episode. Of course, Sean Martin joined me and we spoke about:

🔹 How cybersecurity went from an afterthought to a national priority in Italy

🔹 Why companies are (finally) realizing that #security is an #investment, not just a cost

🔹 The rise of Cyber Challenge IT—Italy’s initiative to build the next generation of cybersecurity experts

🔹 And, of course, the big reveal… ITASEC 2026 is heading to Sardinia!

📺 Watch the Full Video: youtu.be/NsdkYAYZANc

🎧 Listen to the Full Podcast: eventcoveragepodcast.com/episo

🔔 Subscribe to On Location Podcast: eventcoveragepodcast.com

Cybersecurity isn’t just about stopping threats—it’s about shaping the future of how we live, work, and trust #technology.

What’s your take? Are we heading in the right direction, or are we still playing catch-up?

#InfoSec, #CyberRisk, #AIsecurity, #CyberThreats, #CyberEducation, #CyberWorkforce, #ThreatIntel, #EthicalHacking, #PenTesting, #RiskManagement, #CyberResilience, #DataProtection, #DigitalSecurity, #CyberLaw, #TechnologyNews, #OnLocationPodcast

The Power of Words: Prompt Engineering and Jailbreaks

"Think of it like this: in social engineering, using the right words can open doors, build trust, and unlock information. Similarly, with LLMs, which are trained on vast amounts of human language, choosing the right words in your prompts is key to “opening the door” to clear, insightful, and truly valuable answers."
#AI #PromptEngineering #LLM #AICommunity #AISecurity #AIRedTeaming #AIJailBreaks

medium.com/@yetkind/the-power-

Medium · The Power of Words: Prompt Engineering and JailbreaksBy Yetkin Degirmenci

I am reading up on abliterations:
huggingface.co/blog/mlabonne/a

Still trying to wrap my head around the consequences of this. But...

...I kinda feel like abliterations have implications also for prompt injections?

As in, it feels like abliterations could mean that it is simply impossible to secure an LLM from prompt injection?

I'm sure I am misunderstanding stuff here. Anyone any input on this?

huggingface.coUncensor any LLM with abliterationA Blog post by Maxime Labonne on Hugging Face

Holy crap there are a lot of #AI #Risk Frameworks, #AISecurity guides, papers, PDFs, websites, tools, opinions etc etc etc.

90% of it is pure intellectual wankery or thinly disguised "buy our snakeoil" stuff. The pathway to actionable useful information is very narrow. I'll post my list of stuff I think is worth a look once I get through reading it all.

I'm also trying to distil down the common themes, approaches, processes etc that seem to be recurring. Those are likely useful.