φ□triϕk

14.1K posts

φ□triϕk banner
φ□triϕk

φ□triϕk

@0xsecondsample

Computer Science 💚 Linux, Python, Thermo and Hydrodynamics, Quantum and Continuum Mechanics, Cyber Security💡 💫 Supercomputer operator/prompt engineer 🌐

matrix 가입일 Şubat 2016
105 팔로잉47 팔로워
고정된 트윗
φ□triϕk
φ□triϕk@0xsecondsample·
5D Imagen Insight - gain valuable multi-dimensional insights for your products and designs - most supercomputers are evasive and will lead you in the wrong direction. My app is designed for truthful insights with a re-imagined 5D render to keep you on track with projects Try it TODAY! link below opal.google/?flow=drive:/1…
English
1
1
4
2.6K
Ryan
Ryan@ohryansbelt·
Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown: > 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in > Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions > All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client > Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months > The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done > Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author > Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper" > When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams > Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved > When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance > Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor
Ryan tweet media
erin griffith@eringriffith

A detailed and brutal look at the tactics of buzzy AI compliance startup Delve "Delve built a machine designed to make clients complicit without their knowledge, to manufacture plausible deniability while producing exactly the opposite." substack.com/home/post/p-19…

English
261
427
5.1K
2.5M
φ□triϕk
φ□triϕk@0xsecondsample·
"We'll see you on the dark side of the moon"
φ□triϕk tweet media
English
1
0
1
7
Nicki Sanders
Nicki Sanders@nickisanders·
Hey guys my parents are going out of town this weekend so I’m having a party
English
22
0
59
1.4K
φ□triϕk
φ□triϕk@0xsecondsample·
Not sure what's going on w the people who pull the strings on crypto but it's time to set it off so we can make bank and head for the hills The whole dmn world is about to tear each other apart with AI agents and quantum processors
GIF
English
0
0
0
5
φ□triϕk
φ□triϕk@0xsecondsample·
Here me out - we took it too far w the tech and shyts never gonna be the same again
English
0
0
0
4
φ□triϕk
φ□triϕk@0xsecondsample·
drop the 'truck,' just keep the 'cyber' - its cleaner 2027 Cyber EVTOL @teslaownersSV
English
1
0
1
14
φ□triϕk
φ□triϕk@0xsecondsample·
this an example of pen testing in quantum cyber security
φ□triϕk tweet media
English
1
0
1
11
INFOSEC F0X 🔥
INFOSEC F0X 🔥@infosec_fox·
Just think about this, in the Matrix they called the bad guys “Agents”.
INFOSEC F0X 🔥 tweet media
English
25
48
291
8K