My feed is awash with โinnovativeโ โthought leadershipโ pieces about the impact of Fable/Mythos being restricted.
If youโre doing security research and are looking for a portable skill that you can use to discover new vulnerabilities, check out the creatively named Vulnerability Validation skill :
https://t.co/9soyvW2A9i
It supports Codex, Claude Code, Gemini CLI, GitHub Copilot, Google Antigravity. It has unofficial support for anything that can read an AGENT.md
Check it out, tell me what I got wrong. Pull requests are welcome.
PS Knicks in 5
Mythos/Fable is out...
Before the thought leaders start publish whitepapers, or hosting "CISO dinners" etc, I'll offer some boring/sobering advice:
1. Make sure you know where all your stuff is - ya even that 3rd party software that the person in accounting bought on a credit card in 2016.
2. Make sure you understand how to patch / update all of your stuff as fixes come out. Quickly. Bad guys have no respect for risk acceptances and patch windows.
3. Make sure that you've hardened anything external facing as best you can.
4. Hydrate, get sleep. It's a marathon not a sprint
5. As per Jurassic Park...
Wu-Tang said it in '93: protect ya neck. You've been doing it for the rest of us ever since. No royalties, no panels, no merch.
Just the work.
Back to research and helping fix upstream.
#opensourcesoftware#cybersecurity
Mee-thos? Meye-thos? Mi-thos?
A month in, I still couldn't tell you.
The loudest opinions on AI vulnerability research almost never come from the people actually using it or contributing to making the world more secure.
One thing I won't wait to say:
To the open source maintainers who've fielded our reports, triaged with patience, and shipped fixes through what has genuinely been an unprecedented stretch, thank you. I owe you many coffees/beers/waters. Much love.
โI went from negative to positive.โ - Biggie Smalls, BedStuy Motivational Speaker
That came up near the end of my conversation with Cameron on The Defenderโs Journal, and it probably says more about my career than any title ever has.
The thread through all of it: Iโm still happiest building things at scale, with smart people, where security, software engineering, and productivity are treated as one system.
The correct step is a step. When you come to a fork in the road, take it.