Sharon Philip Lima
84 posts

Sharon Philip Lima
@sharonplima
Move it!
Bhubaneswar, Odisha Katılım Mayıs 2020
2.4K Takip Edilen329 Takipçiler

@moo9000 @pashov @trailofbits @cyfrin @0xKaden @QuillAudits_AI @archethect I made a Cosmwasm specific one but I’ll send once I fully test it out
English

Claude Code skill files for smart contract auditing
@pashov: github.com/pashov/skills
@trailofbits: github.com/trailofbits/sk…
@cyfrin: github.com/Cyfrin/solskill
@0xkaden: github.com/kadenzipfel/sc…
@QuillAudits_AI: github.com/quillai-networ…
@archethect: github.com/Archethect/sc-…
Did I miss any? 🧐
GIF
English
Sharon Philip Lima retweetledi
Sharon Philip Lima retweetledi

@ScrewCopper @AliX__40 do you still stand by this statement?
English

@AliX__40 Contests aren’t dead yet, phases or a month or two where there’s little contests happen a lot , and has happened around the same times the last two years
People are afraid of anything nowadays 🤷🏻♀️
English
Sharon Philip Lima retweetledi

Buckle up, the shitstorm is going to hit.
Threat actors are going use the knowledge that you don’t want to be left behind on the AI rush to target you.
Tech is being blindly trusted more and more, which means hacks are going to happen at alarming rates.
Keep yourself safe, keep your enterprise safe, here are a few tips:
1. Never run an AI agent on a device with sensitive information on it
2. Private keys are NEVER to be in plaintext
3. Be skeptical of everything AI gives you, you are to blame if it misbehaves
4. People will use AI to social engineer you, always verify the person who you’re talking to is who they say they are
5. Limit the scope of your API keys as much as possible. If your tool doesn’t need it, it must not have it
6. Anyone asking you for something urgent, downloading something, running a script, clicking a link - that’s a sign they are trying to phish you
7. Smart contract AI vulnerability scanners are still shit, if a report takes more than a few hours to generate, a human is probably doing it, but they want to upcharge you
8. As always, verify your calldata. It’s trivial to create malicious transactions that look real now. (Self plug) Use the Cyfrin Wise-Signer snap with the fox wallet to help decipher transactions.
Stay safe
English

@pashov @H4x0rUsman Pashov, I've been told the average auditor is ngmi. Ai is too powerful and quick. Please advise.
English

@muellerberndt Can someone please brief on the future of zk and if it's worth pursuing as a niche? Thanks.
I loved the website also!
English

A new company will appear.
This company will change how the game is played.
You will hear from us if you qualify.
floatingpragma.io

English

@0xaudron > 2️⃣ With the emergence of new tech, it won’t be really easy for AI to grasp everything
Can you please explain more? Because I have found AI doing well even with the esoteric languages like Move.
> 4️⃣ AI bluffed
Can you please elaborate this point too?
Thanks.
English

With AI being in security, your job as an SR/Auditor won’t be affected. Here’s why:
1️⃣ Attackers use AI too, threat is increasing not decreasing
2️⃣ With the emergence of new tech, it won’t be really easy for AI to grasp everything
3️⃣ SRs would private their reports/issues so that AI will not be able to detect it.
4️⃣ AI bluffed : AI could be bluffed and several campaigns could be launched against how AI functions. Humans are not that dumb either.
5️⃣ More software = more code = more bugs rule will still apply
6️⃣ Vulnerability chaining and creative exploitation require adversarial imagination.
Use AI in your favour, make it your intern, pay in the form of tokens and integrate it in your workflow, have an edge over things.
English
Sharon Philip Lima retweetledi

The most profound realization that changed my life was this:
You can just do things.
You can just start. You can just decide. You can wake up tomorrow and begin moving in a completely different direction. Most people live as if there’s some invisible authority that has to approve their ambition, as if mastery requires permission, It doesnt.
When I say believe, I don’t mean motivational quote belief. I mean the deep internal shift where you truly understand that almost everything you admire in other people was learned, built, and practiced.
There isn’t some hidden gate keeping you out, there’s only time, effort, and the willingness to try.
Once that clicks the world feels different. You stop asking “can I” and start asking “how long will it take”.
English
Sharon Philip Lima retweetledi
Sharon Philip Lima retweetledi


@PatrickAlphaC Great article. IMO Ai and web3 aren't juxtaposed, they can be integrated together, At least that's my thought.
English

Whether or not AI replaces auditors doesn’t matter. The truth is, AI is already augmenting auditors.
That’s why I see learning AI deeply as crucial for staying competent in security research going forward. You either adapt or fall behind. Someone who has a deep understanding of both security and AI will be in great demand.
If you’re serious about adapting, this is a solid place to start!
floatingpragma.io/awesome-ai-sec…
English

@YATPoaster @caleb_friesen Just looked up Wikipedia:
In 2017, leading machine-learning researcher Andrew Ng presented a "highly imperfect rule of thumb": "almost anything a typical human can do with less than one second of 'mental' thought, we can probably now or in the near future automate using AI."
English

@caleb_friesen Still think robotic automation of these tasks is not close. Moravec's paradox still appears true till date
English

Indian labourers are training themselves out of the job.
Here's the pipeline:
1. Strap a camera to a worker's cap
2. Capture hours of egocentric footage
3. Pay them for their time (very affordable compared to American data)
4. Process the data
5. Sell it to robot companies
Runtime@RuntimeBRT
It's Tech Tuesday! Here are the two updates that caught our attention in the last 24 hours: 1. @babugi28 shared what they're cooking up at Human Archive. 2. AquaAirX raised ₹12.5Cr to build drones that can dive underwater and fly in the air.
English

High-Paying Career Paths of 2026:
Path A:
Learn AI-native smart contracts, AI agents, oracle and LLM integrations, plus security basics. Join a serious AI x Crypto protocol. Earn $70k–$150k plus tokens.
Path B:
Go deep into infrastructure. Validators, nodes, DePIN, ZK, privacy layers, MPC, secure enclaves. Become hard to replace. Earn $120k–$200k plus leverage.
Path C:
Become a vibe coder. Ship fast using AI tools. Build one sharp dApp, AI tool, privacy-first app, or memecoin with real distribution. Get acquired or raise at a crazy valuation.
Path D:
Build a crypto-first brand on X. Focus on AI, crypto, and privacy narratives. Monetize with deals, advisory, tokens, and distribution. $50k–$250k with upside.
Path E:
Specialize in AI security, safety, and privacy. Audits, red teaming, governance, compliance. Not sexy, very paid. $120k–$250k as risk budgets explode.
Did I miss any?
English











