A developer attending GISEC conference discusses eyebrow, a security tool for monitoring AI agents. The tool inventories agent artifacts, validates content hashes, maps host access, and flags unauthorized changes to prevent malicious code execution in both web2 and web3 environments. Presentations from Google Cloud Security and Microsoft highlighted similar concerns about autonomous exploitation and supply chain risks.
A Twitter thread discussing the evolution of authentication and authorization in backend engineering, from basic passwords and sessions through JWTs, OAuth 2.0, and OpenID Connect, explaining how each approach solved specific scaling and security challenges in web application development.