Arthur Gervais

1.7K posts

Arthur Gervais banner
Arthur Gervais

Arthur Gervais

@HatforceSec

Sharps or Squares

Simpli-city Katılım Temmuz 2011
526 Takip Edilen3.5K Takipçiler
Sabitlenmiş Tweet
Arthur Gervais
Arthur Gervais@HatforceSec·
AI for Security has never been more exciting. Let me present MAPTA, our multi-agent framework that found multiple (now confirmed!) Remote Code Executions (RCE's) in flagship web products of Tier-1 companies. Why the secrecy? We're good boys, letting them cook patched through responsible disclosure. What's our secret sauce? 1/n
Arthur Gervais tweet media
English
16
109
633
130.7K
Arthur Gervais
Arthur Gervais@HatforceSec·
we call it *alignment contracts*: define what is allowed, not what it should want and then attempt to mathematically prove: even a fully malicious / prompt-injected model... still can't break scope (if you mediate effects)
English
1
0
0
93
Arthur Gervais
Arthur Gervais@HatforceSec·
"please don't hack beyond target X" agent: hacks out-of-scope things anyways our paper: -> stop aligning intent -> enforce effects -> slap the agent if it tries something illegal
Arthur Gervais tweet media
English
1
2
9
332
Arthur Gervais
Arthur Gervais@HatforceSec·
so how many consecutive CVEs have you managed to mine?
English
0
0
0
138
Arthur Gervais
Arthur Gervais@HatforceSec·
openai is so precise, while claude writes much better text. i prefer precision over poetry
English
2
0
2
317
werk.lab
werk.lab@Teslab_ct·
From Teslab to werk.lab We’re expanding what we do – staying independent, and evolving our name with it. Same core. Bigger vision. More insights coming soon. Excited for what’s next.
English
1
3
12
495
Felipe Coury 🦀
/goal also lands in Codex CLI 0.128.0. Our take on the Ralph loop: keep a goal alive across turns. Don't stop until it's achieved. Built by my co-worker and OpenAI mentor Eric Traut, aka the Pyright guy. One of the GOATs I get to work with daily.
English
169
238
3.5K
849.5K
Arthur Gervais retweetledi
Google VRP (Google Bug Hunters)
📣📢 Calling all Android and Chrome bug hunters 🧑‍💻🔎! We're updating our Android & Chrome VRP programs to ensure we can continue to reward the most challenging and impactful vulnerabilities researchers find in our products. For details, 👇 bughunters.google.com/blog/evolving-…
English
18
30
192
127.1K
Arthur Gervais retweetledi
David Sacks
David Sacks@DavidSacks·
It’s time to demystify Mythos. Mythos is not magic. It’s not a doomsday device. It’s the first of many models that can automate cyber tasks (just like coding). OpenAI’s GPT-5.5-cyber can now do the same. And all the frontier models (including those from China) will be there within approximately 6 months. It’s important to recognize that these models do not create vulnerabilities; they discover them. The bugs are already in the code. Using AI to discover and patch them will actually harden these systems. The leap from pre-AI cyber to post-AI cyber means that there will be a big upgrade cycle. After that, however, the market is likely to reach a new equilibrium between AI-powered cyber-offense and AI-powered cyber-defense. Obviously it’s important that cyber defenders get access before cyber attackers. That process is already underway but needs to happen quickly (see point above about Chinese models). Unlike Mythos, GPT-5.5-cyber appears not to be token constrained so it may be the first cyber model that defenders actually get to use.
AI Security Institute@AISecurityInst

OpenAI’s GPT-5.5 is the second model to complete one of our multi-step cyber-attack simulations end-to-end 🧵

English
271
573
5K
1.1M
Denis Yurchak
Denis Yurchak@denisyurchak·
Sitting at a cafe in Warsaw, 90% of people are working with their laptops Same cafe in Western Europe – most would be reading books, newspapers, or chatting, almost 0 people working The staff would kick you out the moment you take your laptop out of your bag, because "cafes are for social life, not work" In Warsaw and Krakow, there are a ton of specialty coffee places that allow laptops. The internet is usually good, and nobody is going to harass you if you work or do calls The price of a coffee cup is around 16-18 zl (4 euros). You can take 1 or 2 and sit in the cafe for hours. This is a small detail, but very telling about the vibe in Poland vs Western Europe In Poland, people will respect you for building cool shit or trying to start a business. The people are hungry, and there is a hustler mentality In Western Europe, people are content with what they have (a house from grandparents they can rent out and live off it) or rely on the state This gives rise to a society of eternal students of political science and bureaucrats. If anybody wants to build a business, they leave and go to the US Meanwhile, Poland is taking over Spain in GDP per capita, and soon will take over the UK as well
Denis Yurchak tweet media
English
383
109
1.5K
547.8K
Pyro
Pyro@0x3b33·
382k USDC hacked from YieldCore They have offered a 50% bug bounty in return for the other 50%. Very generous
Pyro tweet media
English
7
2
91
6.9K
Sayaan Alam
Sayaan Alam@ehsayaan·
Hey @garrytan @ycombinator how can i report serious security vulnerabilities in YCombinator? Do you guys have a bug bounty program?
English
2
0
42
24.3K
Mugilan S
Mugilan S@Mugilan_SS·
Codex is not like claude code. if you know the limit is going to end, like last 10 to 8%, give an very long run task, and even after the limit got ever, it will continue to do the task until the task was completed. Shout out to @OpenAI team.
English
308
401
13.1K
1.4M
Boris Ivankovic
Boris Ivankovic@IvankovicBoris·
Interessanter carwow-Test: Premium-E-SUVs im direkten Duell. Tesla Model Y Long Range AWD: • Stärkste Beschleunigung (507 PS) • Beste Effizienz → realweltstärkste Reichweite pro Batteriegröße • Mehr Stauraum (Frunk + Kofferraum) • Ca. 8.000 € günstiger als die Konkurrenz Fazit der Tester: Tesla ist der klare Sieger als Allrounder & Preis-Leistungs-Sieger. Die Deutschen punkten bei Design & Fahrdynamik, kommen aber insgesamt nicht vorbei. Warum Tesla so gut abschneidet? Effizienz, Packaging & skalierbare Produktion. youtu.be/wyGUe2om-J0?is…
YouTube video
YouTube
Deutsch
28
18
106
9.1K