Dhruv AHUJA

49 Followers
37 Following
276 Posts

Making network egress filtering effective, reliable and usable.

Founder & Chief Engineer at @ChaserSystems

bloghttps://www.new23d.com/

RE: https://infosec.exchange/@ChaserSystems/116594784736742406

Supremely excited about we're building next 🚀 This is a foundational first step towards the infra needed 🏗️

AI Agents are the newest entrant to Insider Threat.

RE: https://infosec.exchange/@ChaserSystems/116539334474822242

Our #egress filtering solution for containing agent behaviour in the cloud appears to be hardened enough as of today 🤞 . Of course, it is not a system you log into or get shell access during the course of work. And all input is first sanitised by the cloud APIs and then our own logic.

"Weekends are the untapped frontier. Still room to scale." [1]

Superb insight on the Show HN thread for a satirical GitHub outages contributions chart 🟥🟧🟨 😇

[1] https://news.ycombinator.com/item?id=48034863
[2] https://red-squares.cian.lol/

Agentic red teaming (or malicious activity) have lowered the bar for their human actors when it comes to #evasion around #egress #filtering tech; and raised the bar for vendors making such tech 🙋‍♂️

<insert bittersweet meme>

GitHub RCE Vulnerability: CVE-2026-3854 Breakdown | Wiz Blog

A CVSS 8.7 vulnerability in GitHub Enterprise Server allows remote code execution. Read the threat brief and find vulnerable GHES instances from Wiz.

wiz.io

GitHub down again. I guess I will finally have dinner at a sensible time today 😅

https://www.githubstatus.com/incidents/ql942tw29yl6

In #Sonnet vainqueur de #Opus hung at the Louvre, the former empirically wins IMO.

Been playing around with SOTA models vs their cheaper, faster and less verbose counterparts from top 4 vendors to build a new test harness for DiscrimiNAT Firewall. The Goliaths have way too many ideas and go down rabbit holes consuming a lot of tokens at a higher price point too. The Davids are better at precision, have narrower choices (but high-quality, refined) and get the job done with less course-correction from their human operator. Even with Post-Quantum Cryptography #PQC algorithms, Sonnets et. al had higher precision with the IANA identifiers I was after.

So, is Mythos really going to get the cryptographic details right? 🤔

RE: https://infosec.exchange/@ChaserSystems/116443708944432111

We may be the first to bring to the user this level of detail. Whether their apps used a Quantum-safe key exchange or not while #egressing to the Internet. At this time, it doesn't distinguish between Hybrid/Pure #PQC but that may change before the release in a couple of weeks.

RE: https://infosec.exchange/@ChaserSystems/116368493417491546

Very fulfilling to see deep engineering, security rollout and developer experience considerations being appreciated by a customer. Another 5-star G2 review has come through. ⭐⭐⭐⭐⭐