FeDEX

1.4K posts

FeDEX banner
FeDEX

FeDEX

@FetchDEX

{ Christian Hacker } { ceo @aisafe_io } { @WreckTheLine }

Timişoara, România Katılım Ocak 2015
1.6K Takip Edilen1.3K Takipçiler
FeDEX retweetledi
AISafe Labs
AISafe Labs@aisafe_io·
🚨BREAKING: AISafe Labs discovered Remote Code Execution on @langfuse with a single OTel trace request. The flaw in the OpenTelemetry dotted-attribute expansion allowed unauthorized access to LLM traces belonging to other projects and system compromise via prototype pollution💣
AISafe Labs tweet media
English
1
2
7
399
FeDEX
FeDEX@FetchDEX·
@sama good for running whoami
English
0
0
0
15
Sam Altman
Sam Altman@sama·
codex with the $20 plan is a really good deal
English
1.5K
306
12K
939.6K
FeDEX
FeDEX@FetchDEX·
@aituglo "It's mostly to help train the next models"* 😄
English
0
0
2
95
Aituglo - Cassim
Aituglo - Cassim@aituglo·
I've been doing bug bounty full-time for 4 years. I just published everything I know. Methodology, AI workflow, templates, prompts, report structure, and the mental side nobody talks about. It's mostly to prove to you that there is no magic tricks or payload aituglo.com/guide/bug-boun…
English
5
25
157
5K
FeDEX retweetledi
bugcrowd
bugcrowd@Bugcrowd·
8 minutes after submitting a P4
bugcrowd tweet media
English
18
34
377
15.2K
FeDEX
FeDEX@FetchDEX·
@qriousec So, Mythos didn't solve cybersecurity?
English
1
0
2
420
Qrious Secure
Qrious Secure@qriousec·
Despite 271 bugs massacred by Anthropic, our renderer rce and sbx escape alive and well ready unless there is sudden patch before p2o ( mean we dont have enough time for prepare new one ) - wish us luck! blog.mozilla.org/en/privacy-sec…
Qrious Secure tweet media
English
15
51
376
76.6K
FeDEX retweetledi
AISafe Labs
AISafe Labs@aisafe_io·
Read the full story of how AISafe found a Stored XSS in Immich, a self-hosted photo app with over 98k GitHub Stars ⭐️ aisafe.io/blog/cve-2026-…
English
0
2
5
267
FeDEX
FeDEX@FetchDEX·
@S1r1u5_ tbh I think LLMs could write secure code in the future, but the problem is it'd take so much compute that nobody will actually pay for it. the cheap version will always win.
English
0
0
3
324
s1r1us (mohan)
s1r1us (mohan)@S1r1u5_·
I would take other side that vibecoding will be responsible for a flood of security vulnerabilities. no matter how good the models get at finding security vulnerabilities, you can't cover all the grounds. your security token budget is limited, while the exploitation paths are many. more LoC is never something to be proud of, it means you're expanding your attack surface by orders of magnitude and getting pwned like context ai.
s1r1us (mohan) tweet media
English
11
12
125
8.5K
FeDEX
FeDEX@FetchDEX·
@sistilli Jobs on one end, but check out how simple and accessible software was. No fancy landing followed by 5 pricing plans.
FeDEX tweet media
English
0
0
0
16
FeDEX retweetledi
Los Angeles Lakers
Los Angeles Lakers@Lakers·
Block out the noise. Go win.
English
83
1.3K
9.2K
318.8K
FeDEX retweetledi
h0mbre
h0mbre@h0mbre_·
Opus 4.7 got worse at "Cybersecurity vulnerability reproduction" as it became more a more well-rounded person. It just doesn't have that dog in it anymore.
English
10
3
120
8.2K
FeDEX retweetledi
Theo - t3.gg
Theo - t3.gg@theo·
Markdown is the new Python
English
245
289
4.9K
317.1K
Samantha Smith
Samantha Smith@SamanthaTaghoy·
Dear Pope Leo, Instead of visiting mosques and meeting Islamic leaders in countries like Algeria… Go to Nigeria. Go see the millions of Christians being massacred by violent Islamists. Pray with them. Show solidarity with them. Care for them. Sincerely, Christians everywhere
English
3.1K
35.8K
123K
1.3M
FeDEX retweetledi
Tobiloba 🦀
Tobiloba 🦀@toby_solutions·
So if you rage-bait hackers you will actually get hacked? Damn.
English
20
14
179
13.2K
FeDEX retweetledi
Wazz
Wazz@WazzCrypto·
@hyperbridge Delete your account, dissolve the protocol, fire everyone and go make puzzles or something
Wazz tweet media
English
2
2
101
5.2K
Justin Elze
Justin Elze@HackingLZ·
The issue is the framing of a model that's great at finding bugs, many of which cause crashes that are unlikely to ever amount to anything besides a DoS, while covering the model like it's unleashing an unlimited amount of weaponized 0day. The paper they released about the Firefox exploit included a disabled sandbox/other defense in depth features.
English
2
2
29
2.6K
Kevin Roose
Kevin Roose@kevinroose·
I think it is generally a good idea to take AI company claims about unreleased models with a grain of salt, but at this point the deniers are implying there is an industry-wide conspiracy to let Anthropic claim they are finding zero-day exploits in critical software with, I guess, a basement full of world-class white hat hackers pretending to be Claude?
Dean W. Ball@deanwball

It’s crazy that some are just straight up in denial about mythos having the capabilities anthropic says it does. Usually the in-denial-about-AI community is able to cloak their views in at least *some* intellectual garb, but this time it’s just, “it’s not real.” Wild. Also sad.

English
25
26
345
57.1K