Alex Macra
@alexmacra.bsky.social
🔐 Web Dev turned Security Researcher | Breaking down vulnerabilities through a developer's lens.
https://alexmacra.com
#CyberSecurity #EthicalHacking #webdev #blogger
https://alexmacra.com
#CyberSecurity #EthicalHacking #webdev #blogger
Do LLMs exhibit ideological biases? An experiment across today’s top models
anomify.ai/resources/ar...
anomify.ai/resources/ar...
Do LLMs exhibit ideological biases? An experiment across today’s top models
As more and more of us use Large Language Models (LLMs) for daily tasks, their potential biases become increasingly important. We investigated whether today's leading models, such as those from OpenAI...
anomify.ai
November 5, 2025 at 11:07 AM
Do LLMs exhibit ideological biases? An experiment across today’s top models
anomify.ai/resources/ar...
anomify.ai/resources/ar...
Signal calls on Germany to vote against ‘Chat Control,’ saying it would leave EU market
therecord.media/signal-calls...
therecord.media/signal-calls...
Signal calls on Germany to vote against ‘Chat Control,’ saying it would leave EU market
The head of the Signal Foundation raised concerns around Germany now refusing to say whether it will support Chat Control in an upcoming vote.
therecord.media
October 8, 2025 at 6:10 AM
Signal calls on Germany to vote against ‘Chat Control,’ saying it would leave EU market
therecord.media/signal-calls...
therecord.media/signal-calls...
CI/CD Security in Automotive Software: More Questions than Answers
alexmacra.com/insights/ci-...
#CyberSecurity #AutomotiveSecurity #DevSecOps #CICD #InfoSec
alexmacra.com/insights/ci-...
#CyberSecurity #AutomotiveSecurity #DevSecOps #CICD #InfoSec
CI/CD Security in Automotive Software: More Questions than Answers
There are many challenges in automotive software development. Not only with the need to deliver fast, while making sure that the software actually works as intended inside the car. Once it’s deployed…
alexmacra.com
October 7, 2025 at 1:13 PM
CI/CD Security in Automotive Software: More Questions than Answers
alexmacra.com/insights/ci-...
#CyberSecurity #AutomotiveSecurity #DevSecOps #CICD #InfoSec
alexmacra.com/insights/ci-...
#CyberSecurity #AutomotiveSecurity #DevSecOps #CICD #InfoSec
Pentesting a Web Application: A Case Study
alexmacra.com/career-hub/p...
#cybersecurity #PenetrationTesting
alexmacra.com/career-hub/p...
#cybersecurity #PenetrationTesting
Pentesting a Web Application: A Case Study
Following my previous case study on Windows application security testing, I returned to my area of expertise: web applications. Familiarity doesn’t guarantee ease, particularly when facing deadlines…
alexmacra.com
July 30, 2025 at 10:25 PM
Pentesting a Web Application: A Case Study
alexmacra.com/career-hub/p...
#cybersecurity #PenetrationTesting
alexmacra.com/career-hub/p...
#cybersecurity #PenetrationTesting
🛡️ Web App Security Architecture: Implementing Defense-in-Depth
alexmacra.com/cybersecurit...
#WebSecurity #DefenseInDepth #CyberSecurity #AppSec
alexmacra.com/cybersecurit...
#WebSecurity #DefenseInDepth #CyberSecurity #AppSec
Web App Security Architecture: Implementing Defense-in-Depth
In this article, we are going to explore the defense-in-depth principle applied to web applications. Actually, it can apply to most software. Nowadays, modern software is designed with an internet…
alexmacra.com
July 21, 2025 at 5:32 AM
🛡️ Web App Security Architecture: Implementing Defense-in-Depth
alexmacra.com/cybersecurit...
#WebSecurity #DefenseInDepth #CyberSecurity #AppSec
alexmacra.com/cybersecurit...
#WebSecurity #DefenseInDepth #CyberSecurity #AppSec
🚨 LLMs are becoming our biggest security threat 🚨
alexmacra.com/insights/llm...
#CyberSecurity #AI #LLM #InfoSec
alexmacra.com/insights/llm...
#CyberSecurity #AI #LLM #InfoSec
LLMs are on their way to becoming our greatest security vulnerability
LLMs are currently transforming all fields and are being weaponized by cyber attackers. In a brief span of time, GenAI has left its mark on cybersecurity as well. While gaining traction…
alexmacra.com
July 4, 2025 at 5:28 PM
🚨 LLMs are becoming our biggest security threat 🚨
alexmacra.com/insights/llm...
#CyberSecurity #AI #LLM #InfoSec
alexmacra.com/insights/llm...
#CyberSecurity #AI #LLM #InfoSec
🚫📱 WhatsApp gets the boot: House of Representatives bans the app from official devices
🔗 alexmacra.com/news/whatsap...
#WhatsApp #CyberSecurity #DataPrivacy
🔗 alexmacra.com/news/whatsap...
#WhatsApp #CyberSecurity #DataPrivacy
WhatsApp gets the boot: House of Representatives the app from official devices
The US Office of Cybersecurity finally banned WhatsApp on all staff devices, a move that has left many wondering why it took so long. The memo: Meta also confirmed this announcement…
alexmacra.com
June 26, 2025 at 1:03 PM
🚫📱 WhatsApp gets the boot: House of Representatives bans the app from official devices
🔗 alexmacra.com/news/whatsap...
#WhatsApp #CyberSecurity #DataPrivacy
🔗 alexmacra.com/news/whatsap...
#WhatsApp #CyberSecurity #DataPrivacy
Signal is in the news and for the wrong reasons, yet again
techsplicer.com/news/signal-...
#cybersecurity
techsplicer.com/news/signal-...
#cybersecurity
Signal is in the news and for the wrong reasons, yet again
“The human is the weakest link in the security chain.” Recent events in Washington have demonstrated this cliche with clarity. This week, we’ve all witnessed yet another high-profile security breach…
techsplicer.com
March 28, 2025 at 8:04 PM
Signal is in the news and for the wrong reasons, yet again
techsplicer.com/news/signal-...
#cybersecurity
techsplicer.com/news/signal-...
#cybersecurity
🔍 Just published my latest case study on pentesting a Windows application!
Read more: 🔗 techsplicer.com/career-hub/p...
#dev #cyber #pentest #infosec #windowssecurity
Read more: 🔗 techsplicer.com/career-hub/p...
#dev #cyber #pentest #infosec #windowssecurity
Pentesting a Windows Application: A Case Study
With time, pentesting develops into a somewhat predictable process. Years spent coding web applications now frequently result in web penetration testing assignments for me.
techsplicer.com
March 25, 2025 at 8:07 PM
🔍 Just published my latest case study on pentesting a Windows application!
Read more: 🔗 techsplicer.com/career-hub/p...
#dev #cyber #pentest #infosec #windowssecurity
Read more: 🔗 techsplicer.com/career-hub/p...
#dev #cyber #pentest #infosec #windowssecurity
Mitigation Strategies for Desktop and Web Applications" - practical security approaches for developers and architects to protect against common vulnerabilities.
Check it out here: techsplicer.com/career-hub/m...
#InfoSec #WebSecurity #AppDev #CyberSecurity 🛡️ #tech #dev
Check it out here: techsplicer.com/career-hub/m...
#InfoSec #WebSecurity #AppDev #CyberSecurity 🛡️ #tech #dev
March 11, 2025 at 4:00 PM
Mitigation Strategies for Desktop and Web Applications" - practical security approaches for developers and architects to protect against common vulnerabilities.
Check it out here: techsplicer.com/career-hub/m...
#InfoSec #WebSecurity #AppDev #CyberSecurity 🛡️ #tech #dev
Check it out here: techsplicer.com/career-hub/m...
#InfoSec #WebSecurity #AppDev #CyberSecurity 🛡️ #tech #dev
🔐 Deep Dive: Understanding Confidentiality in the CIA Triad
techsplicer.com/cybersecurit...
#Cybersecurity #InfoSec #tech
techsplicer.com/cybersecurit...
#Cybersecurity #InfoSec #tech
Cybersecurity 101: Understanding Confidentiality, in the CIA Triad
Continuing with our cybersecurity fundamental series, we’ll explore one essential concept in cybersecurity – the CIA Triad. While the acronym might evoke thoughts of a certain intelligence agency…
techsplicer.com
February 3, 2025 at 5:23 PM
🔐 Deep Dive: Understanding Confidentiality in the CIA Triad
techsplicer.com/cybersecurit...
#Cybersecurity #InfoSec #tech
techsplicer.com/cybersecurit...
#Cybersecurity #InfoSec #tech
🔐 The Mathematics of Password Security: A Simple Truth
techsplicer.com/cybersecurit...
🔑 Tl;dr: Length beats complexity!
#InfoSec #CyberSecurity #PasswordSecurity #dev #Tech
techsplicer.com/cybersecurit...
🔑 Tl;dr: Length beats complexity!
#InfoSec #CyberSecurity #PasswordSecurity #dev #Tech
January 22, 2025 at 8:53 PM
🔐 The Mathematics of Password Security: A Simple Truth
techsplicer.com/cybersecurit...
🔑 Tl;dr: Length beats complexity!
#InfoSec #CyberSecurity #PasswordSecurity #dev #Tech
techsplicer.com/cybersecurit...
🔑 Tl;dr: Length beats complexity!
#InfoSec #CyberSecurity #PasswordSecurity #dev #Tech
DORA 2025: Reshaping the financial sector's digital resilience landscape
Changes ahead for EU financial entities:
🔐 Enhanced ICT risk management
🚨 Incident reporting standards
🤝 Third-party risk oversight
📋 Testing requirements
🔗 techsplicer.com/career-hub/d...
#DORA #tech #Cybersecurity #dev
Changes ahead for EU financial entities:
🔐 Enhanced ICT risk management
🚨 Incident reporting standards
🤝 Third-party risk oversight
📋 Testing requirements
🔗 techsplicer.com/career-hub/d...
#DORA #tech #Cybersecurity #dev
DORA 2025: The Financial Sector’s New Cyber Reality
The Digital Operational Resilience Act (DORA) will apply as of 17 January 2025, marking another checkpoint in EU’s regulatory landscape. While organizations still struggle to adapt to NIS2…
techsplicer.com
January 10, 2025 at 8:20 PM
DORA 2025: Reshaping the financial sector's digital resilience landscape
Changes ahead for EU financial entities:
🔐 Enhanced ICT risk management
🚨 Incident reporting standards
🤝 Third-party risk oversight
📋 Testing requirements
🔗 techsplicer.com/career-hub/d...
#DORA #tech #Cybersecurity #dev
Changes ahead for EU financial entities:
🔐 Enhanced ICT risk management
🚨 Incident reporting standards
🤝 Third-party risk oversight
📋 Testing requirements
🔗 techsplicer.com/career-hub/d...
#DORA #tech #Cybersecurity #dev
🔐 Always On Guard: The Mental Health Cost of Cyber Threat Awareness
🧠 An important discussion on how constant #cybersecurity vigilance impacts our mental wellbeing.
techsplicer.com/insights/cyb...
#infosec #MentalHealth #tech #DigitalWellness
🧠 An important discussion on how constant #cybersecurity vigilance impacts our mental wellbeing.
techsplicer.com/insights/cyb...
#infosec #MentalHealth #tech #DigitalWellness
Always On Guard: The Mental Health Cost of Cyber Threat Awareness
Two years ago, I joined the cybersecurity field. I began on my own, but then pursued it as a career change, coming from development and tech lead role. What I completely did not foresee was how this…
techsplicer.com
January 8, 2025 at 8:08 PM
🔐 Always On Guard: The Mental Health Cost of Cyber Threat Awareness
🧠 An important discussion on how constant #cybersecurity vigilance impacts our mental wellbeing.
techsplicer.com/insights/cyb...
#infosec #MentalHealth #tech #DigitalWellness
🧠 An important discussion on how constant #cybersecurity vigilance impacts our mental wellbeing.
techsplicer.com/insights/cyb...
#infosec #MentalHealth #tech #DigitalWellness
🛡️ Security Scanner for Web Applications
🔒 Privacy-First Security Analysis 👩💻 Built by Developers, for Developers
Try it now: webscan.dev
#SecurityTools #WebSec #DAST
🔒 Privacy-First Security Analysis 👩💻 Built by Developers, for Developers
Try it now: webscan.dev
#SecurityTools #WebSec #DAST
webscan.dev | Comprehensive Web Security Scanner
Free instant security analysis for your website. Check headers, evaluate security posture, and get actionable recommendations.
webscan.dev
January 8, 2025 at 2:39 PM
🛡️ Security Scanner for Web Applications
🔒 Privacy-First Security Analysis 👩💻 Built by Developers, for Developers
Try it now: webscan.dev
#SecurityTools #WebSec #DAST
🔒 Privacy-First Security Analysis 👩💻 Built by Developers, for Developers
Try it now: webscan.dev
#SecurityTools #WebSec #DAST
📝 The Psychology of Phishing: Why Smart People Fall for Scams
🧠 Exploring how mental exhaustion makes us vulnerable to phishing attacks, with practical tips to protect yourself
🔗 techsplicer.com/insights/the...
#CyberSecurity #MentalHealth #PhishingAwareness #InfoSec #CognitiveFatigue
🧠 Exploring how mental exhaustion makes us vulnerable to phishing attacks, with practical tips to protect yourself
🔗 techsplicer.com/insights/the...
#CyberSecurity #MentalHealth #PhishingAwareness #InfoSec #CognitiveFatigue
The Psychology of Phishing: Why Smart People Fall for Scams
Do you know that feeling of dread when you realize you’ve clicked on a suspicious link? I know it perfectly. It has happened to me several times in the last year! The positive aspect of it is that it…
techsplicer.com
January 3, 2025 at 3:04 PM
📝 The Psychology of Phishing: Why Smart People Fall for Scams
🧠 Exploring how mental exhaustion makes us vulnerable to phishing attacks, with practical tips to protect yourself
🔗 techsplicer.com/insights/the...
#CyberSecurity #MentalHealth #PhishingAwareness #InfoSec #CognitiveFatigue
🧠 Exploring how mental exhaustion makes us vulnerable to phishing attacks, with practical tips to protect yourself
🔗 techsplicer.com/insights/the...
#CyberSecurity #MentalHealth #PhishingAwareness #InfoSec #CognitiveFatigue
🔄 Self-Designing Software
Code that learns to rebuild itself on the fly - hot-swapping pieces to match real-world conditions 🛠️
cacm.acm.org/research/sel...
#tech #coding #dev #software
Code that learns to rebuild itself on the fly - hot-swapping pieces to match real-world conditions 🛠️
cacm.acm.org/research/sel...
#tech #coding #dev #software
Self-Designing Software – Communications of the ACM
cacm.acm.org
December 19, 2024 at 6:17 PM
🔄 Self-Designing Software
Code that learns to rebuild itself on the fly - hot-swapping pieces to match real-world conditions 🛠️
cacm.acm.org/research/sel...
#tech #coding #dev #software
Code that learns to rebuild itself on the fly - hot-swapping pieces to match real-world conditions 🛠️
cacm.acm.org/research/sel...
#tech #coding #dev #software
Foreign hackers need to face real consequences, Mike Waltz says
www.politico.com/news/2024/12...
#cybersecurity
www.politico.com/news/2024/12...
#cybersecurity
December 15, 2024 at 9:03 PM
Foreign hackers need to face real consequences, Mike Waltz says
www.politico.com/news/2024/12...
#cybersecurity
www.politico.com/news/2024/12...
#cybersecurity
It's Surprisingly Easy to Jailbreak LLM-Driven Robots Researchers induced bots to ignore their safeguards without exception
spectrum.ieee.org/jailbreak-llm
spectrum.ieee.org/jailbreak-llm
It's Surprisingly Easy to Jailbreak LLM-Driven Robots
Researchers induced bots to ignore their safeguards without exception
spectrum.ieee.org
December 15, 2024 at 8:45 PM
It's Surprisingly Easy to Jailbreak LLM-Driven Robots Researchers induced bots to ignore their safeguards without exception
spectrum.ieee.org/jailbreak-llm
spectrum.ieee.org/jailbreak-llm
🛡️ Offensive Security Certified Professional (OSCP): Understanding the Technical Challenge
techsplicer.com/career-hub/o...
#OSCP #Cybersecurity #EthicalHacking #Pentesting #RedTeam #InfoSec
techsplicer.com/career-hub/o...
#OSCP #Cybersecurity #EthicalHacking #Pentesting #RedTeam #InfoSec
Offensive Security Certified Professional (OSCP): Understanding the Technical Challenge
The Offensive Security Certified Professional (OSCP) certification stands as one of the most demanding technical assessments in cybersecurity, as of today. Unlike other certifications that test…
techsplicer.com
December 14, 2024 at 9:15 AM
🛡️ Offensive Security Certified Professional (OSCP): Understanding the Technical Challenge
techsplicer.com/career-hub/o...
#OSCP #Cybersecurity #EthicalHacking #Pentesting #RedTeam #InfoSec
techsplicer.com/career-hub/o...
#OSCP #Cybersecurity #EthicalHacking #Pentesting #RedTeam #InfoSec
📊 NEW RESEARCH: Investigation uncovers sophisticated technical infrastructure behind Meta's influence operation in Romania's 2024 election.
🔗 techsplicer.com/news/metas-r...
#CyberSecurity #ElectionSecurity #digitalservicesact
🔗 techsplicer.com/news/metas-r...
#CyberSecurity #ElectionSecurity #digitalservicesact
Meta’s Infrastructure of Influence: Technical Analysis of Romania’s 2024 Election Campaign
Detailed technical investigation reveals sophisticated infrastructure behind Meta’s coordinated influence operation during Romania’s 2024 presidential election, highlighting cybersecurity implications...
techsplicer.com
December 11, 2024 at 9:12 AM
📊 NEW RESEARCH: Investigation uncovers sophisticated technical infrastructure behind Meta's influence operation in Romania's 2024 election.
🔗 techsplicer.com/news/metas-r...
#CyberSecurity #ElectionSecurity #digitalservicesact
🔗 techsplicer.com/news/metas-r...
#CyberSecurity #ElectionSecurity #digitalservicesact