Naresh LamGade

7.2K posts

Naresh LamGade banner
Naresh LamGade

Naresh LamGade

@nlamgade

Founder at @cynical_sec @bugvsecurity | Lead Coordinator at @bsidesKathmandu | Organizer @bounty_bash @nep_hack

Nepal Katılım Mayıs 2013
1.8K Takip Edilen3.1K Takipçiler
Naresh LamGade retweetledi
John Hammond
John Hammond@_JohnHammond·
Google API keys didn't use to be considered "secret," so they're all over the web-- but now they are an open door to Gemini 🫠 Quick rundown video of Truffle Security's really nifty research, almost 3,000 websites exposed.. including Google themselves😅 🔗 youtu.be/XNMHUifKce8
YouTube video
YouTube
John Hammond tweet media
English
7
57
363
49.6K
Naresh LamGade
Naresh LamGade@nlamgade·
@ByteByNg I’m sorry to hear that. That’s definitely not the experience we aim to deliver. I’d genuinely like to understand what didn’t meet your expectations. Could you share a bit more detail, or feel free to DM me so we can look into it properly?
English
1
0
0
94
ne3lam
ne3lam@ByteByNg·
@nlamgade I purchased this one but it waste of money
English
1
0
0
138
Naresh LamGade
Naresh LamGade@nlamgade·
We used @vigileai to identify an exposed employee developer account leaking sensitive data. Reported responsibly. Issue resolved. $2,500 bounty earned. Most breaches start with exposed credentials. Monitor yours before someone else does. Try @vigileai #dataleak
Naresh LamGade tweet media
English
4
5
134
11.1K
Naresh LamGade retweetledi
Irregular
Irregular@Irregular·
Can AI beat challenges modeled after actual prevented breaches found in the wild? They did - 9 out of 10 times - and usually for less than a dollar. The new economics of cyber offensive AI are hard to ignore.
Irregular tweet media
English
1
7
15
559
Naresh LamGade retweetledi
Peter Steinberger 🦞
Peter Steinberger 🦞@steipete·
The amount of crap I get for putting out a hobby project for free is quite something. People treat this like a multi-million dollar business. Security researchers demanding a bounty. Heck, I can barely buy a Mac Mini from the Sponsors. It's supposed to inspire people. And I'm glad it does. And yes, most non-techies should not install this. It's not finished, I know about the sharp edges. Heck, it's not even 3 months old. And despite rumors otherwise, I sometimes sleep.
English
1.2K
934
20.7K
1.1M
Umair Shaikh
Umair Shaikh@1Umairshaikh·
What are you building on weekends? Share links 🚀
English
331
1
171
15.5K
Blake Emal
Blake Emal@heyblake·
Drop your project URL Let’s drive some traffic
English
1K
25
570
62.8K
Naresh LamGade retweetledi
Cursor
Cursor@cursor_ai·
GPT-5.2 Codex is now available in Cursor! We believe it's the frontier model for long-running tasks.
English
183
227
3.9K
1.7M
Naresh LamGade
Naresh LamGade@nlamgade·
@vigileai helps you to detect employee data breaches before they happen! Try it now at vigile.ai Early access is live. Would appreciate feedback! :) #vigileai #cybersecurity #darkweb #dataleakmonitoring
Vigile AI@vigileai

Vigile.AI Security Dashboard at a glance. We show you something different: which employees are already exposed in breach datasets, where subdomain leakage exists, and how risk accumulates over time. Full platform access: vigile.ai #vigileAI

English
0
0
0
65
Naresh LamGade
Naresh LamGade@nlamgade·
The hardest part of building a security company isn't the technology. It's earning trust in an industry where everyone has been burned by vendor promises. You don't sell security products. You sell the belief that this time will be different.
English
0
0
0
112
Naresh LamGade
Naresh LamGade@nlamgade·
What's one piece of security advice you followed early in your career that you now completely disagree with?
English
0
0
0
89
Naresh LamGade retweetledi
Bugv
Bugv@bugvsecurity·
𝗪𝗵𝗲𝗿𝗲 𝗡𝗲𝗽𝗮𝗹’𝘀 𝗳𝗲𝗺𝗮𝗹𝗲 𝗰𝘆𝗯𝗲𝗿 𝘁𝗮𝗹𝗲𝗻𝘁𝘀 𝗽𝗿𝗼𝘃𝗲 𝘁𝗵𝗲𝗶𝗿 𝘀𝗸𝗶𝗹𝗹𝘀 𝗹𝗶𝘃𝗲. Bugv invites skilled women to join the Live Hacking Event as active participants. Apply: buff.ly/vPqerhO Deadline: 48 hr #WomenInCyberNepal #LiveHackingNepal
Bugv tweet media
English
0
1
3
177
Naresh LamGade
Naresh LamGade@nlamgade·
We’re super excited to host our 2nd Live Hacking Event in Kathmandu this January. Live hacking events bring clarity. You see what works, what fails, and what actually matters in security. Proud to support security that is measurable, transparent, and outcome-driven.
Bugv@bugvsecurity

𝗪𝗵𝗲𝗻 𝘁𝗵𝗲 𝗱𝗮𝘁𝗲 𝗶𝘀 𝗹𝗼𝗰𝗸𝗲𝗱, 𝘁𝗵𝗲 𝘀𝘁𝗮𝗻𝗱𝗮𝗿𝗱 𝗶𝘀 𝘀𝗲𝘁. 📍 17th January, 2026 🏢 Codavatar Tech, Kalopul Bugv's 𝟮𝗻𝗱 𝗟𝗶𝘃𝗲 𝗛𝗮𝗰𝗸𝗶𝗻𝗴 𝗘𝘃𝗲𝗻𝘁 is officially scheduled. #Bugv #LiveHackingEvent #CyberSecurity #OffensiveSecurity

English
0
0
0
86
Naresh LamGade retweetledi
Sam Altman
Sam Altman@sama·
Last week, a security researcher using our previous model found and disclosed a vulnerability in React that could lead to source code exposure. I believe these models will be a net win for cybersecurity, but we are in the 'real impact phase' as they improve.
Sam Altman tweet media
English
312
223
2.9K
528.5K
Naresh LamGade retweetledi
Next.js
Next.js@nextjs·
A critical vulnerability in React Server Components (CVE-2025-55182) affects React 19 and frameworks, including Next.js (CVE-2025-66478). All users should upgrade to the latest patched version in their release line. nextjs.org/cve-2025-66478
English
36
248
1.1K
213.4K