LiveOverflow 🔴

9.4K posts

LiveOverflow 🔴 banner
LiveOverflow 🔴

LiveOverflow 🔴

@LiveOverflow

wannabe hacker... he/him 🌱 grow your hacking skills @hextreeio

Internet Katılım Mart 2015
1.3K Takip Edilen159.5K Takipçiler
LiveOverflow 🔴 retweetledi
s1r1us (mohan)
s1r1us (mohan)@S1r1u5_·
when react2shell hit last year, i think vercel handled it brilliantly. to protect their users, they paid $50,000 for every bypass researchers could find. we decided to participate, and ended up earning $170,000. read how we did it here: hacktron.ai/blog/react2she…
English
3
30
161
6.6K
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
If I could buy Gemini 3.1 Flash Lite as an ASIC, I would be so happy. Heck, I’d even buy Gemma 4 ASIC.
English
3
0
48
9.4K
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
Biggest L take I have seen in a while. If they knew how cracked @gf_256 and team is they would know how embarrassing this take is.
The Lunduke Journal@LundukeJournal

Remember the security firm that Ubuntu hired to audit the (ill-advised, highly buggy) Rust-rewrites of all of the GNU Coreutils? Turns out that security firm is run by @gf_256, who: - Appears to be a man who thinks he's a woman ("trans"). - Uses an anime cartoon of a girl as his avatar. - Appears to have an OnlyFans page. I repeat: Ubuntu hired a "Trans" man, with an anime girl avatar and an OnlyFans page... to audit Rust code. It's hard to get more on-the-nose than that.

English
15
31
899
51.7K
Piotr Rogowski
Piotr Rogowski@Szpadel0·
@LiveOverflow A lot of open source harnesses like opencode or codex offer just any openai endpoint you configure. So you should be able. For vscode you can use cline lub any fork of it too. (Copilot often gets bad results from the same models that are working well elsewhere)
English
1
0
0
225
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
Hase been a while since I looked at local models. I was using voideditor, but it's outdated now. What is a good local agent harness right now? Ideally usable within vscode. I checked copilot, but it only supports ollama, not vllm.
English
4
0
33
12.2K
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
@Szpadel0 That's basically true, but Copilot for example expects an ollama API specifically
LiveOverflow 🔴 tweet media
English
2
0
0
802
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
At the moment there is a lot of money just thrown at tokens. And if you are Mozilla getting free tokens from Anthropic, just run agents. But at 10x-100x cost difference, with similar results, the market will optimize for cost effective solutions eventually.
English
2
0
14
2.1K
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
Here is the relative cost per model to find them reliably. Opus and Gemini 3 are very good, but running GPT-5.4 Mini several times gets us similar reliability at ~20% cost. And this is not measuring pure agents. That could be another 10x or more.
LiveOverflow 🔴 tweet media
English
1
1
12
2.8K
LiveOverflow 🔴
LiveOverflow 🔴@LiveOverflow·
We spent a century writing sci-fi about AI wiping us out. What do you expect the model will do if you instruct "you are an AI" 🙃
English
0
2
37
4.4K
LiveOverflow 🔴 retweetledi
Eduardo Vela
Eduardo Vela@sirdarckcat·
... building the future of Vulnerability Research! Captain Obvious here: vulnerability research isn't gonna look the same in 5 years than how it looked 5 years ago. We are in the middle of a transition that is helping us scale vulnerability research in new ways! 2/🧵
English
1
6
54
9K
LiveOverflow 🔴 retweetledi
Natalie Silvanovich
Natalie Silvanovich@natashenka·
Big changes to Android and Chrome VRP: - focus on high-impact, reproducible bugs with low/no reward for lower impact - big prizes for full chains with some annual limits - PoCs required It’s the end of an era, but the start of a new one. bughunters.google.com/blog/evolving-…
English
8
31
185
62K
LiveOverflow 🔴 retweetledi
Joe Fitz
Joe Fitz@securelyfitz·
Applied Fault-Injection by @LiveOverflow & @ghidraninja dives deeper into the hardware, using fault injection to alter execution or dump firmware from devices that implement better hardware security features. Sat/Sun: #applied-fault-injection-51157" target="_blank" rel="nofollow noopener">blackhat.com/us-26/training… Mon/Tues: #applied-fault-injection-511571770322432" target="_blank" rel="nofollow noopener">blackhat.com/us-26/training…
English
1
1
14
3.3K
LiveOverflow 🔴 retweetledi
Hacktron AI
Hacktron AI@HacktronAI·
Introducing Hacktron Review: an AI security reviewer for your pull requests. It understands your whole codebase, builds a threat model, takes your feedback, and catches exploitable vulnerabilities before they reach production. Try for free: app.hacktron.ai
English
14
38
203
40.6K