Octane Security

675 posts

Octane Security banner
Octane Security

Octane Security

@octane_security

The AI-native security firm protecting mission-critical software.

New York Katılım Temmuz 2023
101 Takip Edilen5.7K Takipçiler
Sabitlenmiş Tweet
Octane Security
Octane Security@octane_security·
1/ Octane’s AI found a high-severity liveness bug in the @Nethermind execution client that could have stopped local block production for 38% of @ethereum mainnet validators. This bug was patched via the @ethereumfndn bug bounty program, with no exploitation observed.
Octane Security tweet media
English
22
27
207
57.4K
Octane Security
Octane Security@octane_security·
.@Code4rena gave security researchers a place to earn reputation the hard way: against real code, real competition, and with real stakes. It raised the bar for wardens, judges, and protocols. We’re grateful to have competed in that arena. End of an era.
Code4rena@code4rena

After careful consideration, we’ve made the decision to wind down @code4rena. This community has meant a great deal to everyone who has been part of building it, and sharing this news is not easy.

English
0
2
29
2.4K
Octane Security retweetledi
forefy
forefy@forefy·
@RobindesboisCT holy heck! well now it's up to you to prove it to the world by showing an accepted bug submission, so far @octane_security are the leaders afaik
English
1
1
6
492
Octane Security
Octane Security@octane_security·
At Octane, we combine the most capable Al models with experienced security researchers who work closely with clients from onboarding to remediation. Al may be the engine, but it's the human hand on the wheel that puts its power to work.
English
0
0
4
101
Octane Security
Octane Security@octane_security·
curl is among the most widely deployed codebases ever written. Its founder, Daniel Stenberg, ran Mythos by @AnthropicAl on 176k lines of curl's C code. Here's why the findings show that Mythos is just a model, not the end of cybersecurity. daniel.haxx.se/blog/2026/05/1…
English
1
4
15
883
defiprime
defiprime@defiprime·
@octane_security @Ashegan Readable permissions are the whole game. If users can't tell what an agent can touch, the security product is mostly theater.
English
1
0
0
9
Octane Security
Octane Security@octane_security·
@defiprime @Ashegan Octane's security analysis provides exactly that: transparent insights into a system's actual behavior, rather than just its theoretical outcomes
English
1
0
1
46
defiprime
defiprime@defiprime·
@octane_security @Ashegan trillions onchain only works if agent permissions are readable by humans too. otherwise it's just faster ways to sign bad txs. the constraint layer matters more than the agent demo, especially when treasury ops start using this stuff
English
1
0
1
31
Octane Security retweetledi
Gio
Gio@giovignone·
@asen_sec I think i've seen this like over 50 times at this point AI haters -> AI users -> AI evangelists Basically every crypto audit firm did this. Some faster than others, but all slower than those who saw it from the beginning
English
3
7
24
1.5K
Octane Security
Octane Security@octane_security·
We’re excited to announce that @securingdev is joining Octane as an advisor. Keith Hoodlet is Director of Security Research at @1Password and previously led AI/ML and AppSec at @trailofbits. He also placed 1st in the U.S. Department of Defense's first-ever AI Bias Bounty, a government-run contest for identifying bias and harm in deployed AI systems. Few people in security move as fluently between the theory of model behavior and the practice of real-world exploitation. That intersection is exactly where AppSec is heading. Keith has evaluated nearly every entrant in the AI security category. His read on what teams actually need is that black-box testing has its place, but it's critical to have exploit scenarios, source traces, and enough context to fix the underlying issue, not just flag it. That is exactly what Octane was built to deliver. Adversarial AI and traditional AppSec spent the last decade as separate disciplines, with different conferences, different vocabularies, and different threat models. But the wall separating AI and AppSec is now collapsing. The rise of generative AI coding, AI-assisted vulnerability research, and Octane’s own browser findings are proof that these attack surfaces are merging. The strongest defenses will combine frontier model capabilities with expert human direction, and Keith brings the latter at a level very few people in this industry can match. Welcome aboard, Keith. We’re proud to have you.
Octane Security tweet media
English
5
9
38
1.6K
Octane Security
Octane Security@octane_security·
"Octane is the first product I've seen that produces what security and development teams actually need: specific, exploitable vulnerabilities with demonstrated impact—along with the context required to fix the issues at the source. I wish I had something like this when I was building the DevSecOps program at Thermo Fisher Scientific." linkedin.com/posts/securing…
English
0
0
5
189
Octane Security
Octane Security@octane_security·
10: Agentic Security Is a $100 Billion Reallocation
English
0
0
6
1.2K
Octane Security
Octane Security@octane_security·
9: Security Belongs in the Pipeline, Not Just the Patch
English
1
0
5
139