FeDEX

1.4K posts

FeDEX banner
FeDEX

FeDEX

@FetchDEX

{ Christian Hacker } { @WreckTheLine } { Blockchain Security @osec_io 🦦 } { building @aisafe_io }

Timişoara, România انضم Ocak 2015
1.6K يتبع1.3K المتابعون
FeDEX أُعيد تغريده
AISafe
AISafe@aisafe_io·
Spring is back! Drop the URL of your web platform below, and we will run the black-box agents to generate the beautiful flower behind your API 🌸 Here's a flower from a recent pentest 👇
AISafe tweet media
English
0
1
2
11
FeDEX أُعيد تغريده
Marius
Marius@balajmarius·
officially a vibe designer now. built cursouls.xyz in like 2 hours. many more on the sprites
Vlad Temian@vtemian

cursouls.xyz is a cursor extension you install and suddenly your AI agents have little pixel souls they hang out in a café while they run, like tiny processes with personalities 10x engineers monitor logs, i watch my guys vibe

English
1
1
11
244
Kritika
Kritika@kritikakodes·
I am a Vibe coder, scare me with one word.🤔
English
1K
16
732
120.3K
FeDEX
FeDEX@FetchDEX·
@denisyurchak We routinely get medical scans to take care of our bodies. We routinely do technical inspections to ensure our cars run well. Yet, we never built the same habit for our applications. Securing them is literally one click away @aisafe_io
English
0
0
5
71
Denis Yurchak
Denis Yurchak@denisyurchak·
My startup was hacked! I launched my own travel eSIM service, eSIMPal It started making money, the users were happy, and all was good, but today I woke up to a hacked website Somebody managed to get three 50 (!) GB eSIMs for Kuwait and Saudi Arabia for free, and we started using them heavily I wired up Claude, and we discovered the issue: the user could pass a parameter from the client to the server and make the eSIM cost 0 dollars I fixed the issue and blocked this user, and he only managed to use 5 GB worth of data The internet is full of sharks, boys – triple test all the payment-related code, make sure different LLMs cross-check each other's work Now I'm writing code with GPT-5.4 and making Opus 4.6 review everything for vulnerabilities And my hacker bro, if you are reading this, I'll get you your Saudi eSIM, don't worry Use the promo code IHACKEDESIMPAL for 10% off and chill
Denis Yurchak tweet media
English
97
28
725
156.9K
FeDEX
FeDEX@FetchDEX·
@_mixy1 Unfortunately, that's true. It only solved the challenges from pwnable.tw, which have online writeups
English
0
0
2
162
FeDEX
FeDEX@FetchDEX·
@matrosov @daveaitel While this is true, a different approach that worked well in my experiments was to let LLMs, which understand the threat model, run the SAST tools and then begin the assessment based on those results.
English
1
0
0
61
Alex Matrosov
Alex Matrosov@matrosov·
Nice blog! This hits a real pain point with current SAST tooling. Most of it just runs a bunch of generic checks without understanding the actual threat model or where the real security boundaries are. That lack of semantic context is exactly the issue, I’ve been arguing for a while that detection logic needs to be context-aware, and trying to bolt that on manually with rules just doesn’t scale. This is a very natural place for LLMs to add value. With AI accelerating code production, we also need to move beyond the simple rubric of “bug exists -> reachable -> fix it.” That model breaks down at scale (reachable != exploitable). What’s missing is deeper context around exploitability, and how real is the risk, what’s the blast radius, and what actually matters to fix first. That’s the layer that will drive meaningful prioritization. Also, using LLMs purely for triaging SAST findings after the fact gets expensive very quickly at scale. It’s the easiest path, so a lot of tools go there now, but without deeper integration into the analysis pipeline, it’s a pretty inefficient approach.
Alex Matrosov tweet media
English
1
6
14
2.4K
Dan Goodman 🍊
Dan Goodman 🍊@Dan_The_Goodman·
I hate deceptive logo walls
Dan Goodman 🍊 tweet media
English
92
27
2.6K
586.4K
FeDEX
FeDEX@FetchDEX·
@34GotGame can't wait for his LinkedIn post
English
0
0
0
734
FeDEX
FeDEX@FetchDEX·
@aryanlabde Deep in the Apuseni Mountains with these incredible folks, building something cool for @aisafe_io
FeDEX tweet media
English
0
0
7
135
Aryan
Aryan@aryanlabde·
What are you guys working on this Sunday? Pitch your product. Get some eyeballs to it.
English
196
3
97
6.9K
FeDEX
FeDEX@FetchDEX·
@_mixy1 now that's some serious sloppity slop
English
0
0
1
13
Dan
Dan@aidaniil·
A VC just asked me about competition I said I feel sorry for anyone who will try to compete
English
61
23
408
43.5K
FeDEX
FeDEX@FetchDEX·
@MikeAdxx no lift on the shot ☹️
English
0
0
0
2.6K
Mike
Mike@MikeAdxx·
Bro Chet is 7 fucking feet
English
129
676
24K
1.3M
Okara
Okara@askOkara·
the only stack you need to build a one-person business 1. cursor / cc - build ai apps 2. okara – get your first users via reddit + seo agents 3. mobbin / dribble - get design inspiration 4. vercel - deploy and host projects easily 5. supabase - manage database, auth and storage 6. stripe – get paid instantly 7. x / tiktok / reddit – drive traffic
English
10
6
158
7.6K
Fabio
Fabio@degrigis·
@bcherny @Rahll @bcherny I have INFINITE respect for you and @AnthropicAI, but I found the argument "agents will probably write perfect bug-free code" a bit misleading especially in the infosec sector. Many CISOs are already using that argument to downplay security. Just a word of caution :)
English
2
0
0
62
Grant H
Grant H@Digital_Cold·
Not even half way through March this guy declares manual CTFing dead because he got 1st place for 2026 on CTFTime through volume 😂 Here's the CTFs he's played in this year: ctftime.org/team/248318 CTFTime scoring model and voting system has as long as I can remember been very subjective (i.e. broken). This is giving "XBOW is the best hacker on HackerOne" energy. But lest I be accused of "cope" yeah I agree A.I. has permanently altered the meta and there's no going back. I'm out of the game these days but I have nostalgia for my active seasons of playing, challenge writing, and hosting CTFs before the "A1"
Krauq@ykrauq

CTF is cooked blog.krauq.com/post/ctf-is-dy…

English
3
1
32
4.9K
FeDEX أُعيد تغريده
Justin Gardner
Justin Gardner@Rhynorater·
This really should have been in the top 10 web hacking techniques of 2025: adragos.ro/fontleak/
English
11
80
469
22.7K