Michael

4.1K posts

Michael banner
Michael

Michael

@Michael__KV

🇮🇱 native living in 🇺🇸. Building AI products for Security Teams.

New York, NY Katılım Aralık 2017
309 Takip Edilen844 Takipçiler
Michael
Michael@Michael__KV·
@willchen500 Based on this logic, you should also have the “Cloud resell theory” that applies to all SaaS companies.
English
1
0
2
1K
WillC
WillC@willchen500·
Harvey and Legora are essentially sales organisations that resell tokens. They have hired legions of ex big law juniors and mid levels as sales people (“GTM”) along with some ex partners to wine and dine their former colleagues. They slap on a UI that makes them look different from ChatGPT but the product differentiation and vertical specific features are far and few in between. You could just as well use both for any white collar job. Their web apps are basically 1. A chatbot interface 2. A projects function where you can upload your files 3. A tabular review function where you can bulk review documents in a table 4. Workflows which are just custom prompts you write for the chatbot or tabular review. I was able to build everything plus some additional functionality they do not have like version control in mikeoss.com in two weeks. I call this the “token reseller theory”. They are like car dealers or real estate agents but for tokens. The model providers get them to do the selling to crack open the reticent legal market. What happens to H/L now that the model providers want the market for themselves? Does not bode well for them.
Bohan@loubohan

Heard that Harvey is slicing their wrapper even thinner by outsourcing their product to Anthropic Managed Agents as they realize there is no data/posttrain moat on top of the models Harvey/Legora will become a brand + sales team distribution channel for Anthropic until they get bought or give up

English
85
71
1.7K
543K
Michael
Michael@Michael__KV·
@ivanburazin All SaaS companies are organisations for reselling cloud compute and storage. And?
English
0
0
0
102
Michael
Michael@Michael__KV·
I am so confused about $veev. I get the SaaSpocalypse and friends. But come the fuck on people.... - They have a decent regulatory moat with Vault - Their buyers are not super tech savvy (low risk for home growns) - They are hard to rip out as they focus on the enterprise - Their migration from Salesforce will be accelerated with Agentic Development Maybe it’s pricing in SaaS multiple destruction across the board. But it can't be considered in the same bucket as Adobe, ServiceNow, etc.
English
0
0
1
163
Michael
Michael@Michael__KV·
@edsim The list of potential acquirers for smaller startups is shrinking…
English
0
0
1
66
Michael
Michael@Michael__KV·
Let’s see how good are the private debt guys at running software companies… more to come.
English
0
0
1
72
Michael
Michael@Michael__KV·
We live in a world of a SaaS Apocalypse flywheel, and we can't get off. The house always wins.
Michael tweet media
English
0
0
0
43
Michael
Michael@Michael__KV·
@drpezeshkian At least remove the dashes before copy pasting from you tier 3 Iranian LLM.
English
0
0
0
533
Masoud Pezeshkian
Masoud Pezeshkian@drpezeshkian·
To the people of the United States of America
Masoud Pezeshkian tweet mediaMasoud Pezeshkian tweet mediaMasoud Pezeshkian tweet mediaMasoud Pezeshkian tweet media
English
8.5K
47.9K
168.2K
18.1M
Michael
Michael@Michael__KV·
@wquist @McclaneDet @slowventures Every single software segment will be impacted by AI. I still stand behind what I said that I think cyber will be the least impacted.
English
0
0
0
7
Will Quist
Will Quist@wquist·
A few of us @SlowVentures have become increasingly convinced that AI's first major victims will be the cybersecurity oligarchs—Palo Alto, Crowdstrike, Zscaler, etc. Here's a take on why the current security stack might not survive in an AI-native threat world:
Will Quist tweet media
English
34
10
261
68.3K
Trace Cohen
Trace Cohen@Trace_Cohen·
New York is about to make a $28.5B mistake #QSBS NY Senate Bill S8921 would tax startup gains that are tax-free federally and in most states. Retroactive to Jan 1, 2025. The data on what's at stake: 1. $28.5B in NYC VC investment in 2024 (2nd in the US) 2. $174.5B in startup exit value over 6 years 3. 809,000 ecosystem jobs, $291B in economic output 4. A founder with a $10M exit would owe $1.48M in new state/city tax 5. NY already lost $111B in AGI to interstate migration over the past decade 6. The feds just EXPANDED QSBS benefits. NY wants to eliminate them. 7. NJ just adopted QSBS conformity. NY would move against its own neighbor. I built a full research-backed analysis with interactive stress testing (not perfect but good enough to show the impact and make a point) valueaddvc.com/ny-qsbs
Trace Cohen tweet media
English
62
78
394
109.7K
Michael
Michael@Michael__KV·
@Trace_Cohen Retroactively from 2025 😭🤦‍♂️
English
1
0
2
100
Michael
Michael@Michael__KV·
Can someone start a Polymarket on which 30u30 founder will be accused/convicted of fraud? There might be one on every list.
English
0
0
2
53
Michael
Michael@Michael__KV·
@scottastevenson I’ll push back on that. Never used a single one of them, but considering adding one, now that we have done it for the 3rd time. It can help with ongoing monitoring.
English
0
0
0
72
Scott Stevenson
Scott Stevenson@scottastevenson·
Is it time to talk about how all the major SOC2 providers are borderline fraudulent or is there too much market cap at stake?
Ryan@ohryansbelt

Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown: > 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in > Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions > All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client > Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months > The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done > Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author > Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper" > When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams > Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved > When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance > Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor

English
15
3
167
28.4K
Michael retweetledi
Michael
Michael@Michael__KV·
@JoelWBerry On Monday schools will be shut down in respect of Khamenei's death.
English
3
0
47
5.6K
Joel Berry
Joel Berry@JoelWBerry·
Mayor Mamdani announcing he will be conducting retaliatory strikes against 2nd Avenue Kosher Deli
Joel Berry tweet media
English
332
1.7K
26.3K
1M
benny bakalo
benny bakalo@BakaloBenny·
הבן שלי שולח לי מברצלונה עכשיו. מדהים
עברית
8
59
1.7K
90.2K
Michael
Michael@Michael__KV·
@jamesacowling I will quietly wait here until everyone starts talking about the security review bottleneck...
English
0
0
1
11
James Cowling
James Cowling@jamesacowling·
Every senior engineer I know is currently bottlenecked by code review, correctness, and trying to wrangle the output of their team in sound architectural directions
James Cowling@jamesacowling

If you haven't read about The Software Crisis of the 60s/70s you should: en.wikipedia.org/wiki/Software_… Productivity ground to a halt before they developed good abstractions for managing software complexity in software. Without good platforms it'll happen again.

English
59
83
1.9K
239.9K
Zach DeWitt
Zach DeWitt@ZacharyDeWitt·
Countless examples of the #2 overtaking the market-leading startup: Ramp vs Brex Figma vs InVision/Sketch Cursor vs GitHub Copilot Google vs Yahoo Zoom vs WebEx Don't assume the early market leader ultimately wins the market.
English
30
12
393
41.6K
simp 4 satoshi
simp 4 satoshi@iamgingertrash·
@AGDugin Today China realized that Iran cannot fall Today the Americans assumed they were invincible One will be more aggressive than the other The entire calculus around taiwan has changed
English
28
19
649
123.5K
Alexander Dugin
Alexander Dugin@AGDugin·
Now China is challenged. Russia is drawn in Ukrainian war. But if China let Venezuela and Iran fall China itself will be the next. And nobody will come to help.
English
1.8K
3.5K
17.6K
1.9M