Not Afraid

810 posts

Not Afraid banner
Not Afraid

Not Afraid

@ohyeah_xdd

Full time Backend & Postgres. Part time Infra & Web Security hobbyist!

🌎 Beigetreten Haziran 2017
980 Folgt87 Follower
Aditya 🦀
Aditya 🦀@ItsAditya_xyz·
Creating a fun discord server for AI, crypto and tech. Who is in?
English
3
0
1
268
sidharth
sidharth@sidharthify·
aa gaya IT cell
A aravindh@aravindhlic2019

@sidharthify Instead of tweeting why can't you explain it to the govt. You wanted young students to create chaos so you intend to tweet. You want these students to do rowdism rather than telling them to have patience. This is absolutely wrong . Creating wrong impression on govt

Filipino
6
49
745
13.8K
Not Afraid
Not Afraid@ohyeah_xdd·
@Kshatriyaputram @thetirthparmar Please feel free to DM me when you get a moment. this weekend is almost gone and next week I'm oncall. But I'll definitely spend some time the following week :) Been reading a lot lately related to this stuff.
English
0
0
0
19
Tirth Parmar 🫯
Tirth Parmar 🫯@thetirthparmar·
So I busted a fake RTO website yesterday (as I teased). Here's the full technical breakdown, it gets way wilder than I expected. 🧵 (1/12) #malware #cybersecurity
English
7
53
265
13.5K
cTino
cTino@tinopreter·
$2000 for a web cache deception bug. As always I share my methodology 👇 Identifying a deception bug is always easy but exploiting it can be hard due to SameSite restrictions on victims cookie I bypassed this to steal victim JWT. Read about it here: 🔗 @tinopreter/cracking-samesite-for-a-2-000-web-cache-deception-746972278412" target="_blank" rel="nofollow noopener">medium.com/@tinopreter/cr…
cTino tweet media
English
15
68
585
16.2K
Not Afraid retweetet
Son Luong
Son Luong@sluongng·
Codex just found a “workaround” of not having sudo on my pc…
Son Luong tweet media
English
302
950
14.6K
1.1M
Not Afraid
Not Afraid@ohyeah_xdd·
@ArulGandhi69420 Amazing write-up man. Keep them coming, I'm enjoying all these writeups for OSM, this one 😇
English
0
0
0
28
Arul Gandhi
Arul Gandhi@ArulGandhi69420·
What started as a weekend reverse-engineering project turned into months of analysis covering authentication, privilege escalation, plaintext passwords, cross-school data exposure, and central infrastructure trust assumptions within SAFAL. Full writeup: arulgandhi.tech/writeups/safal…
English
1
3
8
451
Not Afraid retweetet
sidharth
sidharth@sidharthify·
almost every single OnMark portal built by EduTek is fundamentally insecure, and CBSE is lying to you about the safety of student data. we found default passwords, URL-based RCEs, and raw MD5 hashes. millions of students are at risk. read the blog here: sidharthify.tech/blogs/blog-31-…
sidharth tweet media
English
20
474
1.7K
93.4K
Not Afraid retweetet
Shubh Agrawal
Shubh Agrawal@ShubhAgrawal26·
“oh you go to the gym? are you bulking or cutting?” well I’m doing this third option which not a lot of fitness influencers talk about. it’s called - wasting my fucking time. it’s where you lift the same weights with no progress for 6-12 months, feel week some day or super strong another and just look the exact dame as you looked 3 years ago.
English
115
211
5.6K
515K
Not Afraid retweetet
Dhruv
Dhruv@dhruvtwt_·
This is the most beautiful and intuitive website for explaining computer principles that I've ever seen
English
33
132
2K
163.7K
Not Afraid retweetet
Mitchell Hashimoto
Mitchell Hashimoto@mitchellh·
I've got an agent in a loop optimizing a renderer with the goal to minimize frame times (and tests to measure). It got times down from 88ms to 2ms and allocations down from ~150K to 500. Sounds good, right? Wrong. This is exactly why agent psychosis is a big fucking problem. As an experiment, I rewrote the Ghostty core render state in Go, with access to identically laid out data structures as Ghostty and the exact same validation tests. I made a purposely naive renderer (simple, correct, but slow). 88ms per frame with 150,000 allocations (horrendous, lol)! I then kickstarted a Ralph loop to bring the frame times down. I told it it can't modify input data structures or the public API or tests (they're correct), but it can do anything else it wants. It got to work. It has worked for about 4 hours. I've spent around $350 on this experiment so far. The results? 88ms => 1.5ms 150K allocs => ~500 allocs Incredible right? Nope. My hand-written renderer I ported has frame times (same benchmark) of ~20us (0.020ms) and 0 allocations in the update path. This is the problem with psychosis and lacking systems understanding. If you don't understand the system, you're going to accept that this is an incredible result. If you understand the system, you'll see better solutions immediately and can do roughly 75x better on throughput. The people who blindly trust agent output are in the former camp. They're sheeple, overdrinking from a fountain of mediocrity. Standard disclaimer: I use AI all the time. I like AI. The point I'm making is to not blindly accept results. Think. Analyze. Learn.
English
292
922
8.5K
731.8K
Tristan
Tristan@homsiT·
Been a while, but Readwise is hiring for engineers! please shoot me a dm or email if interested :)
Tristan tweet media
English
14
3
119
10.3K
Not Afraid retweetet
nisarga
nisarga@ni5arga·
then how I was able to access production data on that site? all of the mirrors you had under the onmark domain had the same vulnerabilities. it's sad that you can't even investigate security reports properly. attaching screenshots as proof.
nisarga tweet medianisarga tweet medianisarga tweet media
English
51
511
2.1K
101.2K
rocket
rocket@mythicalrocket·
282 WPM 60S WORLD RECORD!!!!!!! I FINALLY DID IT!!!
English
166
437
12.5K
751.9K
Not Afraid
Not Afraid@ohyeah_xdd·
@jpschroeder I followed the instructions and ran into: ""Cursor local SDK stream did not start." in opencode when sent first message
English
0
0
0
76
Justin Schroeder
Justin Schroeder@jpschroeder·
You can use Composer 2.5 on OpenCode with your existing cursor sub...
Justin Schroeder tweet media
English
63
50
1.9K
215.9K