Are humans really the weakest link in the chain

or is that just the incentives involved showing their true form?

@neurovagrant we were, but too many folks wanted to pass the buck vs fix it, so now we have vibecoding
@neurovagrant Weird how humans are always the weakest link in the chain where every other link has also broken. 
@cR0w @neurovagrant weird how all these human-crafted links broke well after the "AI" generated links. Clearly the problem is the humans in the chain.
@rootwyrm @neurovagrant I'm thinking before the AI bullshit with all the same ../ and BoFs everywhere. And the SEG that misses phishing emails. And the EDR that misses malware. And so on.

@cR0w @neurovagrant hang on, hang on, hang on... okay.
weird how all these human-crafted links that were supposedly machine checked broke well after the "AI" generated links followed by the human links. Clearly the problem is the humans in the chain.

(And if anyone needs me for the next 5 minutes, I will be screaming obscenities about static analysis tools being completely fucking worthless when you intentionally fucking cripple them and ignore their output.)

@rootwyrm @neurovagrant Okay yeah that's fair too. Either way, the weak link humans are the ones selling and buying the garbage tech that continues to fail before the people who rely on it.
@cR0w @neurovagrant oh, it's all fucking weak links all the fucking way down and then some. The immediate response to everyone pushing 'microservices' and 'containerization' and 'sandboxing' should have been to stab them.
A lot.
@rootwyrm @neurovagrant Segmentation works well but no one's interested in that. No blinky lights, no KPIs.
@cR0w hey mind if i quote this into my notes which will be publicly available for free at some point (as soon as i got a website up aaaa)
@multisn8 Sure. The toot will disappear in two weeks or so but go for it. Enough creepy companies scrape this stuff that I'm sure I can find an archive if necessary. ๐Ÿ˜†
@neurovagrant Always weakest link. Always.
@neurovagrant I'd say it's incentives and modalititesโ€ฆ

@neurovagrant

Ecch... humans made machines to deal with the rules. Humans are best when they're handling exceptions.

That will never, ever change. Forty years of consulting and automation - upon this you may rely - humans will always be better than the machines at exceptions.

@neurovagrant
No, billionaires, executives, and management are the weakest links in the chain?
@neurovagrant
Humans are still weakest link as a service though. Other parts of the chain move and evolve somewhat, but if you found humans weakchaining on something yesterday, you will still find them doing the same today or in a year or in a decade, because humanity is neigh inpatchable.
#infosec #security