AndrewMohawk⁽ⁿᵘˡˡ⁾
12.5K posts

AndrewMohawk⁽ⁿᵘˡˡ⁾
@AndrewMohawk
Sec/Madness @privy_io principal security , @_seal_org technical council prev: HoS @uniswap, D&R/IR @RobinhoodApp, IR @BitMEX, Built @Paterva Maltego with RT





AI just found critical vulnerabilities in Microsoft systems on its own. XBOW identified 3 critical RCEs, including one of the most severe issues in March’s Patch Tuesday and two in Bing with potential SYSTEM-level impact. No source code. Real environments. Real CVEs. AI is no longer assisting security research. It’s doing it. bit.ly/4bNBgWT










Earlier today, a malicious actor gained unauthorized access to Drift Protocol through a novel attack involving durable nonces, resulting in a rapid takeover of Drift’s Security Council administrative powers. This was a highly sophisticated operation that appears to have involved multi-week preparation and staged execution, including the use of durable nonce accounts to pre-sign transactions that delayed execution.



















