Harsh Methwani

455 posts

Harsh Methwani

Harsh Methwani

@KernelHarsh

AI Research & Engineer @QuillAudits_AI, @IITKanpur , Web3 Security, Learning, Tinkering

शामिल हुए Temmuz 2017
469 फ़ॉलोइंग86 फ़ॉलोवर्स
Harsh Methwani रीट्वीट किया
QuillAudits
QuillAudits@QuillAudits_AI·
Today marks 8 years of QuillAudits. Most Web3 security firms didn't exist 8 years ago. Most won't exist 8 years from now. We've built through 3 bear markets, 2 exploit waves, and the full evolution of smart contract attacks from simple reentrancy to cross-protocol economic exploits. 1,500+ protocols. $3B+ protected. The biggest lesson from 8 years and 1,500+ engagements : One team, one method, one pass doesn't cut it when you're protecting hundreds of millions in user funds. So we rebuilt the model. Multi-Layer Audit → four independent security layers, delivered in the same timeline as a traditional audit: > Senior auditors who've collectively reviewed 1,500+ protocols > AI security agents trained on 5,000+ real exploits since 2017 > Independent bug bounty through curated security researchers > Continuous monitoring, because threats don't stop at deployment 4 layers. Each one catches what the others miss. Web3 has a $100T addressable market if institutions show up. They won't show up until security is embedded in every layer, every transaction, every deployment, the way HTTPS is embedded in the internet. That's the problem worth solving for the next 8 years. QuillAudits built the foundation, QuillShield is the next chapter — an AI security agent that brings what we learned from 1,500+ manual audits into every developer's workflow, before code ever hits mainnet. 8 years in. Still early.
English
17
23
56
10.9K
Harsh Methwani
Harsh Methwani@KernelHarsh·
If vibe coding is the future Code security scanning is the first step for any IDE/CLI before taking any step
English
0
0
2
66
Harsh Methwani
Harsh Methwani@KernelHarsh·
@PatrickAlphaC This is a pretty serious thing the impact can be much wider, with prompt injections forcing the AI to run tools, delete databases, make transactions, and through some specific strategies even conceal what the AI is doing so that it gets ignored by users.
English
1
0
2
190
Patrick Collins
Patrick Collins@PatrickAlphaC·
"but ser, if you ask your claude/openai/chatgpt/cursor/windsurf/openclaw to ignore sensitive files, it will - use the .cusorignore/rules/llm.md/etc file" If that is your security posture, you've already lost. Private keys should never be in plaintext
English
17
19
143
10K
Harsh Methwani
Harsh Methwani@KernelHarsh·
Idk after trying Codex I’ve stopped using Claude for coding. The speed of Codex is addictive thinking, asking, reviewing all fast. I still have Claude open in another tab, but my brain automatically jumps to Codex. TBH, I’m asking way more with Codex than actually building.
English
0
0
0
171
Harsh Methwani
Harsh Methwani@KernelHarsh·
Bullish on oil 🥹
English
0
0
2
155
Harsh Methwani
Harsh Methwani@KernelHarsh·
I think Grok should automatically flag all videos that appear suspicious and are not real, rather than people tagging and asking, "What do you say about this feature, @grok?"
English
2
0
0
164
Harsh Methwani
Harsh Methwani@KernelHarsh·
No-one wins in war
English
0
0
0
68
0xMarioNawfal
0xMarioNawfal@RoundtableSpace·
AI MODELS RUMORED TO BE RELEASING THIS MONTH: - DeepSeek V4 - GLM-5-Code - GPT-5.4 - GPT-5.3 Garlic - Gemini 3.1 Flash - Claude Sonnet 4.7 - Meta Avocado Which one are you most excited for?
English
220
59
1.6K
128.1K
Harsh Methwani
Harsh Methwani@KernelHarsh·
@PatrickAlphaC A prompt injection in any file of a codebase, with medium or low reasoning/safety model, can wreck lives.
English
0
0
0
89
Patrick Collins
Patrick Collins@PatrickAlphaC·
"Oh, it won't access the files in your .gitignore" People. People. People... "Won't" is VERY different from "can't". Prompt injection is real. If your AI "can" access the data, you "can" get your shit rekt.
English
16
6
150
6K
Harsh Methwani
Harsh Methwani@KernelHarsh·
@pratyush_r8 A laptop with ban on claude still hire for Agentic/AI Engineers
English
1
0
1
113
Pratyush Rai
Pratyush Rai@pratyush_r8·
strange that its 2026 and there are still some "big tech" cos not offering claude code or their alternatives to all their employees ngmi
English
3
0
13
709
Harsh Methwani
Harsh Methwani@KernelHarsh·
Imagine vibe directing a movie
English
0
0
0
79
Harsh Methwani
Harsh Methwani@KernelHarsh·
WW3 on X >>> any news channel
English
0
0
0
88
Harsh Methwani
Harsh Methwani@KernelHarsh·
Building the next B2B or B2C SaaS is definitely a gamble. OpenAI, Anthropic, and Chinese labs won’t leave any market untapped. Relying only on LLM APIs and a few tools won’t justify such crazy valuations. If adoption is slow, they might build more tools to drive adoption faster.
English
0
0
1
89