CryptoCat

7.9K posts

CryptoCat banner
CryptoCat

CryptoCat

@_CryptoCat

Security Researcher @rapid7 😈 Hacking Content @ https://t.co/U7jVhNr9sC 💜

Not Here 가입일 Mayıs 2016
220 팔로잉8.5K 팔로워
고정된 트윗
CryptoCat
CryptoCat@_CryptoCat·
Want to become an ethical hacker? 🥷 Here's a list of my favourite [mostly practical] resources 📚 They are all free (or have a free option) and there's more high quality material here than anybody realistically has the time to complete ⏳
CryptoCat tweet media
English
28
332
1.3K
129K
watchTowr
watchTowr@watchtowrcyber·
speak next week friends
watchTowr tweet media
English
5
8
58
4.8K
CryptoCat
CryptoCat@_CryptoCat·
@albinowax Gonna keep guessing LLM hacking, maybe one day I'll be right! 😅
English
0
0
2
275
James Kettle
James Kettle@albinowax·
I've just submitted my latest research to Black Hat USA! This one has been cooking since last June, can't wait to share it with the world... in fact I'm quite excited just to see the community reaction to the title reveal.
James Kettle tweet media
English
18
22
390
14.3K
CryptoCat 리트윗함
Xclow3n
Xclow3n@xclow3n·
Spent a week testing AI for vulnerability research. 14 confirmed bugs in 20 min on one target. 5% hit rate on a hardened one. Same AI, same setup. 4 approaches, what worked, what failed, why target selection matters more than model sophistication. xclow3n.github.io/post/7
Xclow3n tweet media
English
4
80
421
29.2K
CryptoCat
CryptoCat@_CryptoCat·
Happy St Patrick's day ☘
CryptoCat tweet media
English
0
0
4
241
CryptoCat 리트윗함
Taszk Security Labs
Taszk Security Labs@TaszkSecLabs·
Now You See mi - Now You're Pwned: Exploiting Xiaomi Smart Cameras for fun and credit labs.taszk.io/articles/post/… Our intern's research post is up, full code of an RCE exploit + a "cloud jailbreak" released with it. After embargo expiry, 3 vulnerabilities currently remain unfixed.
English
2
41
139
8.6K
CryptoCat 리트윗함
Alex Plaskett
Alex Plaskett@alexjplaskett·
ZeroDayBench: Evaluating LLM Agents on Unseen Zero-Day Vulnerabilities for Cyberdefense arxiv.org/pdf/2603.02297
Alex Plaskett tweet mediaAlex Plaskett tweet mediaAlex Plaskett tweet media
English
3
40
189
18.8K
CryptoCat
CryptoCat@_CryptoCat·
@thedawgyg I've never used a Mac, iPhone, iPad etc in my life!
English
2
0
1
400
CryptoCat
CryptoCat@_CryptoCat·
@0xAsm0d3us Would be interesting to see the agents/skills you used when finding these vulns 👀
English
1
0
1
145
CryptoCat 리트윗함
Devansh (⚡, 🥷)
Devansh (⚡, 🥷)@0xAsm0d3us·
Needle in the haystack: LLMs for vulnerability research I've distilled my experience of sending thousands and thousands of prompts for using LLMs to discover vulnerabilities into a single write-up. These are the conclusions I came to.. (link in comment)
Devansh (⚡, 🥷) tweet media
English
18
173
982
57.1K
CryptoCat 리트윗함
Rapid7
Rapid7@rapid7·
🎤👾 Introducing Hacktics and Telemetry, a bi-weekly video and audio podcast out of Rapid7 Labs, starring Rapid7's @fulmetalpackets & @_CryptoCat! 🧵 Find Ep 1's companion blog here: r-7.co/4di8tuH ▶️ Or dive right into the full vid on YouTube: r-7.co/3NiQfP2
Rapid7 tweet media
English
0
3
8
4.2K
CryptoCat
CryptoCat@_CryptoCat·
🚨 CVE-2026-20127: Cisco SD-WAN authentication bypass. An unauthenticated attacker can inject SSH keys without crypto verification via a flawed state machine. Active exploitation by UAT-8616 since 2023 💀 Check out the full @rapid7 analysis 👇 attackerkb.com/topics/bP3FMvH…
English
4
28
96
19.6K
CryptoCat 리트윗함
Renwa
Renwa@RenwaX23·
I think I have completed client-side security , just one report: Self-XSS -> Drag-Drop Payload -> Scroll-To-Fragment -> Unchecked postMessage Listener -> Text Injection -> DOM-XSS -> OAuth State Misconfiguration -> Cookie Bomb -> Account Takeover @renwa/iframe-sandbox-bypass-cross-origin-drag-drop-unvalidated-postmessage-origin-cookie-bomb-to-21357a4d94f5" target="_blank" rel="nofollow noopener">medium.com/@renwa/iframe-…
Renwa tweet media
English
11
57
441
18.2K
CryptoCat 리트윗함
slonser
slonser@slonser_·
And this makes sense given how many CTFs are held per year. However, the ideal CTF challenge, in my opinion, should follow this formula: "The author conducted a mini-research project and instead of publishing it, turned it into a challenge."
English
3
15
123
12.6K