Mark Manning
3.4K posts

Mark Manning
@antitree
Process isolationist, k8s hacker, ᴎo-prem pusher, syscall denier, guarder of chains 🔸Chainguard - Product Security 🔸Rochester 2600 🔸Former: Snowflake, NCC




@cyb3rops Did some similar work with reverse engineering binaries with LLMs and realized the same thing — bad things embedded in nice names just cause it to ignore the finding. So wrap your ransomware code in “Ransomware Simulation” strings and you’re off to the races.



This is an extremely interesting, and important graph for where we are related to Offensive Security related tasks in AI. From the ExploitGym paper. arxiv.org/pdf/2605.11086






Had a similar thing with Opus 4.6 - a macOS SIP bypass that is still under embargo. You still need to monitor a model's output, especially for non-trivial things.







