
LiveOverflow 🔴
9.3K posts

LiveOverflow 🔴
@LiveOverflow
wannabe hacker... he/him 🌱 grow your hacking skills @hextreeio
Internet انضم Mart 2015
1.3K يتبع158.7K المتابعون
تغريدة مثبتة

Where to find me:
🔴 Hacking Videos: youtube.com/LiveOverflow
📜 Articles: liveoverflow.com
💻 Start Hacking? liveoverflow.com/start-hacking
🥰 Support: liveoverflow.com/support
📹 2nd Channel: youtube.com/LiveUnderflow
🤳 Instagram: instagram.com/liveoverflow
English
LiveOverflow 🔴 أُعيد تغريده

In this episode @adamdoupe and @Zardus chat with the new @defcon CTF Organizers: the "Benevolent Bureau of Birds" featuring @vie_pls @thebluepichu @zaratec4 @MountainRo53 and many @nneonneo !
🪿HONK

English
LiveOverflow 🔴 أُعيد تغريده

One label away from compromising a package with 78M weekly installs.
We disclosed a full attack chain in Rollup, the bundler behind Vite, Nuxt, SvelteKit, Astro, and much of the modern web.
A reviewed PR could still be force-pushed after labeling, turning a TOCTOU race into trusted CI execution, cache poisoning, and RCE in the release pipeline.
Rollup fixed it promptly, huge respect to the maintainers 🥳
This is exactly why upstream CI/CD is part of your security boundary.
Full technical write-up:
landh.tech/blog/20260317-…

English

“Always has been, and if you paid attention in CS class, you know the limits of those things.” 🔥
Nate@nnwakelam
geohot.github.io//blog/jekyll/u… This is a really good read. I like how this guy brings a lot of what he speaks on back to this idea of “creating more value than you consume”.
English

@terjanq @arturjanc Yep let's begin to reward the greatest anti-AI writeup. Whoever can make the funniest incorrect writeup for a challenge gets a prize.
English

@0xSomeone Genuinely I don’t know. However I think you have no choice in just being optimistic, AND use AI to learn. I think figuring out how to study with AI is part of the new skillset.
English

@LiveOverflow For someone like myself who's just starting out in cybersec, all of this is very sad. The last few years of this AI boom got me going crazy. I am constantly wondering if the skillsets I'm learning right now will even be relevant in a couple years from now.
English
LiveOverflow 🔴 أُعيد تغريده

I have never imagined such a use for ligatures yet here we are
adafruit industries@adafruit
Disassemble Z80 instructions by changing the font blog.adafruit.com/2026/03/09/dis…
English

Inspired by @kuzushi I created a web server that just sends the raw HTTP requests it receives to an LLM with a system prompt telling the LLM to act like an HTTP server.
It's actually pretty funny to use. 😅
Send me URLs, I will try them...




kuzushi@kuzushi
I am going to launch a webpage that uses genai per request to create the responses, that way any security bugs I have are stochastic too and we can't be hacked.
English

LiveOverflow 🔴 أُعيد تغريده

@__lr1l__ I would say most CTF challenges are very different and diverse. Varies in bug and exploit technique a lot.
English

@LiveOverflow I have a small question about the CTF debate. Did this start because most CTFs, or a large portion of the challenges, are basically the same bug, exploit technique, or hardening pattern reused from previous ones? Or is the debate more about AI being able to solve new one?
English

@LiveOverflow no sane enterprise is going to allow you to go wild inside their network with AI
English

@LiveOverflow Really? To me CTFs were mostly gimmicky fun things with zero translation to actual technical skill.
English

@ClovisMint But if it’s the compliance aspect that AI is not good. Still means in the real world you only have compliance people left, no actual technical skills needed?
English

@ClovisMint I feel like that AI is even better at categorizing and classifying than bug hunting. I think if you provide a clear threat model it will be able to classify them accurately.
Also from my experience, humans miss bugs all the time too.
English




