Jim Manico from Manicode Security

43.7K posts

Jim Manico from Manicode Security banner
Jim Manico from Manicode Security

Jim Manico from Manicode Security

@manicode

AI and AppSec Educator. Secure coding system prompts. https://t.co/gbW3ZLhURT

Kauai, HI and Cobb, CA Katılım Temmuz 2009
6.1K Takip Edilen17.2K Takipçiler
Sabitlenmiş Tweet
Jim Manico from Manicode Security
From my experience all software developers are now security engineers wether they know it, admit to it or do it. Your code is now the security of the org you work for. #GoldenAgeOfDefense
Wat Ket, Thailand 🇹🇭 English
35
245
593
0
Jim Manico from Manicode Security retweetledi
Joseph Thacker
Joseph Thacker@rez0__·
okay im calling it officially. codex is cracked. if you're a bb hunter and you dont have a hackbot set up yet, i recommend codex with gpt5.5 over claude code.
English
38
25
488
56K
Jim Manico from Manicode Security retweetledi
xAI
xAI@xai·
An early beta of Grok Build, an agentic CLI for coding, building apps, and automating workflows is now available for SuperGrok Heavy subscribers. Through this early beta, we will improve the model and product based on your feedback. Try it at x.ai/cli
xAI tweet media
English
1.4K
1.4K
9.4K
51.1M
Jim Manico from Manicode Security retweetledi
Critical Thinking - Bug Bounty Podcast
- @Adobe just rolled out an AI Bonus Tier that pays more than their already well-paying Tiers 1 and 2 at every severity, with up to $15k for crits. Prompt injection, model abuse, data leakage and more are all explicitly listed, so plenty of room to go crazy on the new AI scope. blog.adobe.com/security/adobe…
Critical Thinking - Bug Bounty Podcast tweet media
English
0
2
14
4.2K
Roy🇨🇦
Roy🇨🇦@GrandpaRoy2·
A kit available on the internet turns an ordinary paper airplane made from a sheet of A4 paper into a real mini-drone. I can’t help looking at this whimsical little thing and picturing how it could be scaled up and weaponized for use in Ukraine.
English
99
352
2.5K
176.1K
Jim Manico from Manicode Security retweetledi
ᴅᴀɴɪᴇʟ ᴍɪᴇssʟᴇʀ 🛡️
What if the American companies are walking a tightrope named token subsidies, and beneath them a net awaits their fall. And that net is Chinese cloud-based opensource models that are 1/100th the cost. Then they parse every request for data and ideas.
English
12
6
43
5.1K
Jim Manico from Manicode Security retweetledi
Gareth Heyes \u2028
Gareth Heyes \u2028@garethheyes·
Github made Github actions require approval before being run...I think that's a good move for obvious reasons
English
2
2
16
2.6K
Jim Manico from Manicode Security retweetledi
OWASP_AISVS
OWASP_AISVS@OWASP_AISVS·
One of the features of the OWASP AISVS standard is a research wiki explaining all of our requirements in detail. @manicode keeps this updated after each major change. github.com/OWASP/AISVS/tr…
English
0
3
4
290
Theo - t3.gg
Theo - t3.gg@theo·
Security things from the last few days: - CopyFail (linux pwn'd) - CopyFail 2/Dirty Frag - 13 advisories in Next.js - Over 70 CVEs addressed in MacOS 26.5 - ~50 CVEs addressed in iOS 26.5 - YellowKey (Windows Bitlocker pwn'd entirely) - GreenPlasma (Windows privilege escalation) - CVE-2026-21510 and CVE-2026-21513 confirmed to be used by Russia for Windows RCE - CVE-2026-32202 separately confirmed to be used by Russia for sensitive document access - Mini-Shai Hulud (over 300 JS and Python packages compromised via GitHub Action cache poisoning) - Google confirms they have identified AI-powered exploitation of zero days in an unidentified "open-source, web-based system administration too" - Canvas (popular LMS used in most schools) pwn'd entirely - PAN-OS (palo alto networks) pwn'd with a 9.3 severity CVE-2026-0300 Are you scared yet?
English
348
999
6.9K
758.6K
Bearly AI
Bearly AI@bearlyai·
Someone made a small hardware device for the desk that monitors Claude token usage. Calls it Clawdmeter. Kinda genius.
Bearly AI tweet media
English
42
49
793
137K
Jim Manico from Manicode Security retweetledi
vx-underground
vx-underground@vxunderground·
Shai-Hulud, that spoopy Git worm thingy everyones been yapping about, was open-sourced. Unfortunately, GitHub has removed the repo. This is terrible news. It can no longer be studied... unless there was someone who collected this sort of thing and has a local copy...
English
54
178
4.1K
155.4K
Jim Manico from Manicode Security
I'm delivering a free 60-min webinar on Fri May 29 @ 10 AM PT. I'll be doing a live demo on setting up a secure Claude Code setup with the Manicode Secure Coding Prompts, and Claude Code + Codex side by side. 100% live demo + open Q&A. Register: us06web.zoom.us/meeting/regist…
English
0
1
3
175