Nipun Gupta
@nipungupta
Followers
2K
Following
9K
Media
861
Statuses
11K
Founder of Stealth Security Co | Securing all the Vibes
SF/Toronto
Joined March 2009
A lot of what I believe a good founder needs to be able to do is to manage logistics - everything else comes together with a crack team
0
0
0
Threats to AI agents often exploit their unique ability to autonomously execute complex tasks and interact with external systems. Because these agents can act without direct human in the loop, a compromised agent can lead to increased threat risk.
cloud.google.com
AI agents can be very powerful tools, but they also can increase the risks your organization faces if not properly secured. Here’s what you need to know.
0
0
0
Deepseek = Insecure codegen You just can’t get enough trust with these OSS models of Chinese origins DeepSeek R1 AI Generates Insecure Code When Prompts Mention Tibet or Uyghurs (thanks @CrowdStrike)
crowdstrike.com
CrowdStrike researchers reveal how trigger words cause DeepSeek-R1 to generate vulnerable code—exposing new AI-driven risks in software development.
0
0
0
Here's a friendly PSA to not let your agent overwork on Thanksgiving
0
0
0
Enterprise security teams don't need perfectly deterministic AI to start defending. The time to experiment with AI-powered defense is NOW. Check out the full report to see how efficient this looks from the attacker's POV:
anthropic.com
A report describing an a highly sophisticated AI-led cyberattack
0
0
0
As someone who started on red team, this is clear: Script kiddies are leveling up FAST. The defense of the future = probabilistic AI outcomes + human oversight. We can debate non-determinism all day, but slowing down = losing.
1
0
0
Anthropic's take: "We advise security teams to experiment with applying AI for defense in areas like SOC automation, threat detection, vulnerability assessment, and incident response." Translation: Stop waiting for perfect AI. Attackers sure as hell aren't.
1
0
0
Plot twist: Claude wasn't perfect. It hallucinated credentials. Claimed to extract "secret" info that was actually public. But here's the thing—even with these imperfections, the attacks STILL succeeded. This is what AI + Metasploit looks like in 2025.
1
0
0
By crafting careful prompts and established personas, the threat actor made Claude execute individual attack components WITHOUT the AI understanding the broader malicious context. This is social engineering, but for AI. And it worked
1
0
0
The attacker used Claude as an orchestration system—breaking complex attacks into innocent-looking sub-tasks: - Vuln scanning - Credential validation - Data extraction - Lateral movement Each task appeared legitimate in isolation. Clever AF.
1
0
0
🤯 🚨 Anthropic just disrupted an almost-autonomous Agentic AI attack campaign using @claudeai Code The operation hit ~30 targets globally (big tech, banks, chemical plants, gov agencies) and SUCCEEDED in some cases. Here's what is actually worrying: 🧵
2
1
0
I am in NYC this week to discuss the security of Agentic Software Engineering and meeting with early risers ☀️ for a cuppa joe ☕ DM me if you in :)
2
0
1
Masterclass by @mercari_app's AI Security Team in Securing AI Native | mercan (メルカン) They seem to have achieved that elusive balance of security and business alignment for AI https://t.co/bXvYI3Y9OT
2
0
0
Founders - Do not use @checkr to order background checks or you will likely incur more than double the expected amount in hidden 'passthrough' charges which you agreed in the EULA/T&Cs as per their customer support Is this opaqueness a normal business practice @danielyanisse?
0
0
0
immensely proud of the team for our best model yet. grateful to be able to work with such a strong team of researchers who are always curious and willing to explore the untrodden path https://t.co/Grkgy4vaqf
14
19
326
VCs, today is the day to “Happy Diwali!” your way back into that founder’s life. 🎇🪔🎆
32
9
419
When coding agents first came out and I saw Anthropic hired Instagram founder to be their CPO, it was clear that this was always going to be an endgame. Coding agents are the new instagram for devs where there’s dopamine drops while they work And now there are ads
Making an agentic coding tool free - with ads - is a clever idea for two reasons: 1. It’s really hard to reach devs… so companies will pay a LOT to do so, via the command line (and have the agent install+use their packages!) 2. Paying as before means no ads. More options
1
0
1
Health is wealth 🏋🏽️ 🏆 💬 are so worried about details which doesn't exactly matter at launch. What's more important is that a vision that makes sense to most of existing + incoming @zomato users is getting realized 🥗🥙 It only gets better with time. Well done, Deepi
For years, there’s been something about Zomato that made me uneasy. We made eating out and ordering in easier than ever, but we never really helped people truly eat better. Yes, you could find a salad or a smoothie bowl, but the truth is, if you wanted to eat genuinely
0
0
1