2 hours ago · Tech · hide · 0 comments

If you are building stuff with AI I have a critical security recommendation for you.Create a continuously-running security testing system that:Maintains a list of all the public stuff you have deployed onlineConstantly probes those properties with basic security testingWhat I mean here is ensuring that:The application's stack is not running on known-vulnerable techYour authentication is in place, and working properlyYou don't have any glaring security issues in your applicationFor your most important applications you can add full testing to your harness as well. Or you could do it constantly for all applications if you have the funds to do that.But the most important thing to do, especially as AI gets more and more competent at security testing, is to MAKE SURE YOU HAVE A LIST OF EVERYTHING YOU HAVE PUBLIC.Never let that list get stale.And then use AI to continuously ensure you're not leaving something broken out there.I think the main way personal AI builders (and companies) will get…

No comments yet. Log in to reply on the Fediverse. Comments will appear here.