Zate
zate75.bsky.social
Zate
@zate75.bsky.social
Grumpy #Infosec & AI/ML Stuff.
I think this article: techcommunity.microsoft.com/blog/microso... is spot on. I'm working a lot on the intersection of AI Agents, MCP/A2A assistend code/security analysis tools and Identity and I am seeing a lot of concerning trends and problems with how AI Agents and MCP/A2A are using Identity.
The future of AI agents—and why OAuth must evolve | Microsoft Community Hub
Our industry needs to continue working together on identity standards for agent access across systems.
techcommunity.microsoft.com
June 5, 2025 at 12:44 AM
Holy crap, Claude 4, $15/mt input and $75/mt output. They are really trying to drive people to the big plans.
May 23, 2025 at 12:37 AM
Some days I think my biggest value add in the org is as a Adversarial Business Problems Oracle.

I can look at the current adversarial business problem(s) you are trying to solve and reason across multiple stakeholder perspectives to help determine what the overall solution might look like.
May 5, 2025 at 3:03 AM
Hey @anthropic.com if I was to even consider paying you $100 a month it would have to come with zero limits. No way I'm paying to just end up rate limited 5 days in.
April 11, 2025 at 8:51 AM
DOGE is going to vibe code a replacement. Hysterical amount of ineptitude on display.
March 29, 2025 at 8:15 AM
And then struggle to communicate those connections until everyone else gets there...
One autistic strength I haven't seen talked about is the ability to make logical and extremely convincing connections that most people wouldn't think of. Our brains automatically do this with our special interest. It literally makes everything related to it somehow. But the connections are sound.
March 28, 2025 at 11:36 AM
Yarp and if this worked it probably would have already.
I can't believe it's 2025 and we're still embracing "turn all your employees into infallible cybersecurity experts who can reliably identify 'suspicious links'" as a cybersecurity control. If a single employee clicking a link can bring down your entire org, you never had cybersecurity to begin with.
March 28, 2025 at 11:19 AM
Reposted by Zate
Wondering how and why your vulnerability management tools are failing you? My talk
"Your Next Incident Won't Have a CVE" is now live at www.runzero.com/resources/yo...

PS. runZero shipped coverage for Nutanix this week
Your Next Incident Won't Have a CVE
HD Moore dissects why your next breach won’t be tied to a CVE and reveal why your security stack is failing you through the lens of an attacker.
www.runzero.com
March 27, 2025 at 8:38 PM
Reposted by Zate
Big thanks to The Mark Thompson Show for having Nathan on again to breakdown the suspected vote manipulation in Pennsylvania!

Watch or re-watch HERE: buff.ly/5YIeyzM

#ElectionTruthAlliance #TheMarkThompsonShow #VerifyTheVote #TruthMatters #AuditPA #PAperballots
- YouTube
Enjoy the videos and music you love, upload original content, and share it all with friends, family, and the world on YouTube.
buff.ly
March 27, 2025 at 10:15 PM
The reason nothing will really happen is that their ultimate agenda needs people like this to succeed. The kind of people who lie to cover this up are needed to get to the ultimate goal: total takeover of the US from the inside.

If they remove them they might not get replacements who will comply.
“There is no administration in the world — beyond this one — where a blunder of these proportions happens and nobody gets fired or resigns. Not in London. Not in Moscow. Not in Tokyo. Not in Pyongyang. Nowhere.” www.politico.com/newsletters/...
What’s next for Waltz and Hegseth
www.politico.com
March 28, 2025 at 3:33 AM
@qantas-official.bsky.social still have never left on time Perth to Geraldton everytime I've flown in the last 18 months. What. The. Fuck.

Time to start my own airline with no lost luggage and punctuality.
March 27, 2025 at 9:26 AM
Reposted by Zate
Can we someone please focus on the fact that this, separate from anything else, is a crime?
Confirming, as was obvious from context already, that this wasn’t a one-off. They are routinely using Signal to evade statutory record retention requirements.
March 27, 2025 at 6:47 AM
Reposted by Zate
The government is teaching us in real time that no sophisticated “hacking” will ever match the level of risk that is human behavior.

Systems are only as secure as the people using them.
March 26, 2025 at 2:08 PM
Reposted by Zate
Wow. And the economic impacts will reverberate #econsky
Holy shit. April bookings for Canada -> USA flights down 900,000 passengers compared to at same time last year.

Well done, 🇨🇦

Lots of other places to visit and work with in the world.

Source: www.oag.com/blog/canada-...
March 27, 2025 at 2:07 AM
I feel like the media fanatical announcing that their passwords were online is fluff.

When you take up office there are procedures that happen because it's assumed previous shit is exposed and devices owned.

You get secure devices and have to follow strict rules for those exact reasons.
March 27, 2025 at 5:57 AM
I've been spanning bsky and threads and getting different things from them but today threads took a weird turn.

I saw a low effort set of posts in my timeline that were all exactly the same from accounts looking a bit boyish and without reading the comments under them basically just commented 1/n
March 27, 2025 at 3:30 AM
Reposted by Zate
March 26, 2025 at 4:12 AM
I so need this sticker, in the form of a signal type chat bubble.
Designing "WE ARE CLEAN ON OPSEC" stuff for DEFCON.
March 27, 2025 at 3:04 AM
Reposted by Zate
It's critical for everyone to remember what an Executive Order is. It is the President communicating orders to members of the executive branch. Policies to pursue, actions to take, etc. They are not laws. They are not close to being laws. They are formalized memos to employees. That's all.
March 25, 2025 at 11:53 PM
Reposted by Zate
Just make me SecDef, put me in coach, I can’t do worse.
March 24, 2025 at 5:49 PM
Reposted by Zate
What sort of campaigning involves "vote-counting computers"?

Our Pennsylvania analyses support the hypothesis of potential manipulation with vote tabulations.

Shouldn't we take a look into that? 🤔

#VerifyTheVote #AuditPA #PAperballots #TruthMatters
March 25, 2025 at 1:20 AM
Reposted by Zate
I have a Short Stack on BlueSky as well as Mastodon and you can use it to get some news n stuff about the ongoing cybersecurity apocalypse if you want bsky.app/profile/did:...
March 25, 2025 at 7:23 AM
Fucking gold!
TS/SCI means the information must be transmitted over Text or Signal with Some Civilians Invited
March 25, 2025 at 7:58 AM
Because it's as effective as thoughts and prayers?
is there any reason at all that the Democratic party should not immediately demand Hegseth's resignation?
March 25, 2025 at 7:57 AM
Reposted by Zate
This begins tomorrow and runs for 5 weeks

if you've wanted to sign up before, now is your chance - I have 2 spots left

there won't be another one until June - get your PAY-AS-YOU-CAN spot now!
Are you AuDHD and tired of fighting systems that weren’t built for you and burning out?

My workshop is designed specifically for AuDHD folx to tackle executive dysfunction, burnout, and masking while building strategies that work for YOU.

Ready to explore?

www.theautisticcoach.com/audhd-group-...
March 22, 2025 at 1:22 PM