
Zack Korman
@ZackKorman
Followers
3K
Following
17K
Media
1K
Statuses
18K
CTO @ Pistachio. I build AI cybersecurity stuff.
Oslo, Norway
Joined January 2014
Microsoft isn’t disclosing this so: M365 Copilot allowed users to access files without producing an audit log. All you had to do was ask Copilot to not link to the file. You don’t even have to ask; it sometimes just happens. If your org uses Copilot your audit log is likely wrong
28
582
4K
Don’t worry SOC analysts, AI isn’t going to take your job just yet.
10
8
168
Every single person who replied “guide” to this should be permabanned to the shadow realm (LinkedIn)
This is the most valuable resource I have ever created I wrote a brand new, extremely detailed Notion guide on every single strategy to save money on taxes The best of my content in a single place Want a free copy? - Like / RT this post - Reply with "GUIDE" and I'll DM you
2
0
15
Think you’re going to exfiltrate company data from the inside? This guy and a couple billion Gemini tokens are going to catch you.
6
0
35
If you don’t know how, it’s a button in Purview that always seems to move every time I look. Just go there and click around randomly until you find it.
2
1
19
Please turn on automatic sensitivity labels for emails. The “cost” is that users will see a little orange shield in Outlook. The benefit is that your audit log becomes actually useful.
7
8
132
Ngl, all the other parts of cybersecurity I’ve come across are lowkey easy. I thought it’d be the same for malware. It’s just code, and I know code. Turns out they don’t even give you the code!
5
0
39
I’ll go first. Today Presence used about 60m tokens so far. Not a lot, but enough to prove we’re doing a real thing given that we launched only a few days ago.
1
0
2
Any cybersecurity vendor claiming “AI threat detection” should have to post their token usage.
2
1
24
Never make a joke about AI or they’ll ruin your feed with whatever the hell this is until you repent. I’m sorry @nikitabier I promise I won’t do it again I just want cybersecurity content back.
4
0
27
Copilot in Excel is a global financial crisis waiting to happen.
462
4K
61K
People are worried about protecting against prompt injections while using MCP tools. My brother in christ, MCP is a prompt injection.
5
6
58
The design team has figured out that if they ask permission I’ll say no, but if they just do it I’ll appreciate it. (Mine has blue Powerade because that’s the only thing I drink)
1
0
10
The end. I think of this every single Christmas now, and probably will for many years to come.
0
0
10
After that, I put down some serious processes. One person takes lead. Another takes communication. Designated people who can report issues, to avoid the flood of chaos. We ran those processes dozens of times after, and never had an issue like this again.
1
0
14