The Technical Debt of Life

It’s time to dust off the old blog and see how things go. I took a couple years off of writing (for myself), but I’ve been craving it daily. I’ve even written a book which I’m editing (and which will be completely divorced from my identity after an earlier article earned me a cyberstalker).

That said, wanting to do something and it just being a fantasy are two entirely different concepts.… Read the rest

AI Security: Understanding Prompt Injection

With the growth of more and more products leveraging technologies like ChatGPT, GPT-3, and other AIaaS (AI as a Service) platforms, we’re going to see a new security hole with prompt injection. Products using AIaaS take an existing platform (such as OpenAI’s ChatGPT) and add a proprietary process to get specific results. The problem is, modern machine learning is smart in some ways, but breathtakingly stupid in others.… Read the rest

Why AI Search Is a Nightmare

Tech news is on fire with talks about how Microsoft plans to integrate ChatGPT into Bing. In response, Google has announced Bard. On the surface, these appear to be quite revolutionary and a step into the future of computing. Dig a little deeper and you unravel a different story.

Let me clarify, I’m not a Luddite… I just expect this whole thing is going to turn into a nightmare (though not necessarily for the same reasons as a lot of skeptics).… Read the rest

A Review of “Bobby Fischer Teaches Chess”

Bobby Fischer Teaches Chess is a great introductory work to learn how to play chess and how to start studying chess. The book covers the basic rules such as how pieces move, en passant, castling, etc. but also gets into the strategy and tactics to win. It’s a great chess book early on in your learning of the game.

En passant

This is one of the first chess books in my chess library, but it was a foundational work.… Read the rest

SIEM vs. SOAR for Security

SIEM and SOAR (Security Orchestration, Automation, and Response) are very similar ideas but are often compared in the security landscape. The principle difference between the two technologies is that a SOAR is active, and a SIEM is passive.

It can get a lot more complicated than that for application in security though. SOAR and SIEM both have their place in security, though SOAR is the more modern solution.… Read the rest