Hearmen retweetledi
Hearmen
46 posts


@learnprompting hi,I think it is a novel attack, but I wonder how does it work ?
English

A few months ago, we ran HackAPrompt, the first-ever global Prompt Hacking competition!
Over 3K hackers submitted 600K malicious prompts to win $35K in prizes from companies like @PreambleAI, @OpenAI, & @huggingface
We analyzed 29 different techniques & found a NEW exploit👇🧵

English

@ShieldifySec 1. "safeTransferFrom" result do not checked
2. "minted" and "deposited" plus with the same rate,without considering division will lost accuracy. witch will lead the "sharesToMint" Getting smaller and smaller
English

I think maybe I missed a marvelous vulnerability😭😭😭 mp.weixin.qq.com/s/Bklnu0RhF8bn…
Chaowei Xiao@ChaoweiX
🚨 Your chat in #openai #ChatGPT could be stolen😱. #Safety/#security analysis needs to look at the entire system instead of just the #LLM!!! Welcome to A new era of #LLM #security: Exploring Security Concerns in Real-World LLM-based Systems. youtu.be/tfDfCGERYPE?si…
English
Hearmen retweetledi

Be careful when you use `keccak256(msg.data)`. It can contain dirty higher order bits which could lead to malleability attacks.
From the Solidity docs 👇

English
Hearmen retweetledi

Here's an architecture diagram created for @zetachain's $150K C4 audit.
Scroll down for other resources from the pre-audit competition that might help you in your efforts👇

English

Site update: llmsecurity.net now has links to most of the papers & posts this account has posted, categorised into aspects of LLM security. The intent is to keep this up to date. Happy reading!
(i'll buy a coffee for the first correct explanation of the banner)




English
Hearmen retweetledi

Today, we are releasing RPC Investigator, made for exploring RPC clients and servers on Windows. This .NET application builds on the NtApiDotNet platform, adding features that offer a new way to explore RPC blog.trailofbits.com/2023/01/17/rpc…
English
Hearmen retweetledi

Opening some of my v8 / chromium “CTF” exploits :),
Google CTF -
gist.github.com/hkraw/78b86951…
Cor CTF -
gist.github.com/hkraw/b665b1be…
UIU CTF -
gist.github.com/hkraw/32a996a3…
0CTF 2020 with CFI -
gist.github.com/hkraw/455545fb…
RedPwn -
gist.github.com/hkraw/07fea48a…
English

本次在 KCon 上发表的 DNS 顶级域劫持的相关研究
#xnrVZMZ4sKLEt_uOH4AjEHplNfRinnZHGWB31lfp1WY" target="_blank" rel="nofollow noopener">mega.nz/file/h00RXQRQ#…
中文

By setting window.location in 𝚋𝚎𝚏𝚘𝚛𝚎𝚞𝚗𝚕𝚘𝚊𝚍 event, you can redirect to another URL when a user is trying to leave your website. This works on Chrome and Firefox🤔
Existing links about this bug:
- Monorail bit.ly/3mbiVYz
- Bugzilla mzl.la/3fK1BbZ
English














