Website: https://omkhar.net
Scholarship: https://skscholarship.com
Twitter/X: https://x.com/_omkhar
Mastodon: https://infosec.exchange/@Omkhar
Bluesky: https://bsky.app/profile/omkhar.net
LinkedIn: https://linkedin.com/in/omkhar
Let’s treat it — and the people behind it — like the $8.8 trillion miracle it is.
#aislop #opensourcesoftware #security #cybersecurity #touchgrass
Let’s treat it — and the people behind it — like the $8.8 trillion miracle it is.
#aislop #opensourcesoftware #security #cybersecurity #touchgrass
* Using AI to vibe-code security bugs? Please stop. Seriously. Shut the laptop. Go touch grass. Maybe talk to a human.
* Using AI to vibe-code security bugs? Please stop. Seriously. Shut the laptop. Go touch grass. Maybe talk to a human.
1. HackerOne cURL Hacktivity hackerone.com/curl/hacktiv...
2. Filter by: status = not applicable
3. Feel: 😬 existential dread
This is what happens when people feed vibe-code into an LLM, squint, and hit “submit.”
1. HackerOne cURL Hacktivity hackerone.com/curl/hacktiv...
2. Filter by: status = not applicable
3. Feel: 😬 existential dread
This is what happens when people feed vibe-code into an LLM, squint, and hit “submit.”
Take Daniel Stenberg — creator and lead maintainer of cURL and libcurl — two of the most widely used OSS projects in existence. Instead of sipping margaritas on a beach somewhere (as he should be), he's busy triaging nonsense AI-generated “exploits” reported via HackerOne.
Take Daniel Stenberg — creator and lead maintainer of cURL and libcurl — two of the most widely used OSS projects in existence. Instead of sipping margaritas on a beach somewhere (as he should be), he's busy triaging nonsense AI-generated “exploits” reported via HackerOne.
And how do we reward open source maintainers, the unsung heroes keeping the digital world upright?
And how do we reward open source maintainers, the unsung heroes keeping the digital world upright?
* Supply-side value of creating and maintaining popular open source software? About $4.15 billion.
* Demand-side replacement cost if companies had to rebuild that OSS themselves? A casual $8.8 trillion.
* Supply-side value of creating and maintaining popular open source software? About $4.15 billion.
* Demand-side replacement cost if companies had to rebuild that OSS themselves? A casual $8.8 trillion.
David Fraser has an excellent YouTube play list regarding C-2, and his concerns here : www.youtube.com/playlist?lis...
#canadaday #civilrights #privacy
David Fraser has an excellent YouTube play list regarding C-2, and his concerns here : www.youtube.com/playlist?lis...
#canadaday #civilrights #privacy
If you're a Canadian resident, contact your Member of Parliament : www.ourcommons.ca/members/en - remember, it's their elected job to represent you.
I've posted more about C-2 here: bsky.app/profile/omkh...
If you're a Canadian resident, contact your Member of Parliament : www.ourcommons.ca/members/en - remember, it's their elected job to represent you.
I've posted more about C-2 here: bsky.app/profile/omkh...
I don’t expect legislators to understand software engineering, that’s why software engineers need to advocate against this.
I don’t expect legislators to understand software engineering, that’s why software engineers need to advocate against this.
You can read the full bill here:
www.parl.ca/DocumentView...
Let’s not sleepwalk into surveillance. We deserve better.
You can read the full bill here:
www.parl.ca/DocumentView...
Let’s not sleepwalk into surveillance. We deserve better.
Let me be clear: that’s not how rights work.
Let me be clear: that’s not how rights work.
As a person who’s been accosted based on “reasonable suspicion” due to…. existing, I’m concerned that this bill expands surveillance powers and erodes due process protections that Canadians have long relied on.
As a person who’s been accosted based on “reasonable suspicion” due to…. existing, I’m concerned that this bill expands surveillance powers and erodes due process protections that Canadians have long relied on.