Mark Manning

3.4K posts

Mark Manning banner
Mark Manning

Mark Manning

@antitree

Process isolationist, k8s hacker, ᴎo-prem pusher, syscall denier, guarder of chains 🔸Chainguard - Product Security 🔸Rochester 2600 🔸Former: Snowflake, NCC

Rochester,NY Katılım Mayıs 2008
1.6K Takip Edilen3.2K Takipçiler
Mark Manning
Mark Manning@antitree·
There's going to be a couple of deaths in a post-Mythos world. One of them is Wordpress -- the entire ecosystem, it's plugins, their developers and probably their next of kin just to make sure it's finished the job.
English
0
0
0
110
Mark Manning
Mark Manning@antitree·
If you're ever feeling anxious about the AI revolution going too fast, I suggest you try Pi + Kimi. It worked for me.
English
0
0
0
93
Mark Manning
Mark Manning@antitree·
You know what I haven't heard about in the news in this post-Mythos world... vulnerabilities in Openssh. And that doesn't make me feel good. You're telling me we're destroying curl and openssl but openssh has been good since April of 2025?? openssh.org/security.html
English
0
0
0
175
Mark Manning retweetledi
Florian Roth ⚡️
Florian Roth ⚡️@cyb3rops·
I have a funny idea. Add fake internal DNS entries like: - honeypot01 - canarydc - edr-test-node - malwarelab to your AD environment. Not for humans, but for future LLM-driven recon agents. Basically: We're entering an era where naming things might become a defensive control 🙂
Florian Roth ⚡️ tweet media
Zakarth@Zakarth

@cyb3rops Did some similar work with reverse engineering binaries with LLMs and realized the same thing — bad things embedded in nice names just cause it to ignore the finding. So wrap your ransomware code in “Ransomware Simulation” strings and you’re off to the races.

English
35
78
705
87.8K
Mark Manning
Mark Manning@antitree·
Going camping this weekend. Please tell TeamPCP to chill out for a minute until I get back.
English
0
0
4
101
Mark Manning retweetledi
Andrej Karpathy
Andrej Karpathy@karpathy·
Personal update: I've joined Anthropic. I think the next few years at the frontier of LLMs will be especially formative. I am very excited to join the team here and get back to R&D. I remain deeply passionate about education and plan to resume my work on it in time.
English
7.9K
11.1K
148.8K
27M
Mark Manning retweetledi
Nicolas Krassas
Nicolas Krassas@Dinosn·
Mean time-to-exploit just hit 2.1 days. Critical vulnerabilities everywhere. Is the AI apocalypse here? zerodayclock.com
English
0
11
31
3.1K
Mark Manning retweetledi
OpenUK
OpenUK@openuk_uk·
Everyone in AI is talking about “The Mythos Effect” and @AnthropicAI's Project Mythos Glasswing Do you have questions? What concerns should we cover? Let us know!!! Our experts, @adrianmouat , @chainguard_dev; @sublimino, @controlplaneio; and Liz Rice, @isovalent at @Cisco, will bring your questions into their keynotes and fireside chats at State of Open Con 2026 On The Road’s first event in Edinburgh on 5 June at RBS Conference Centre, thanks to @NatWestBusiness’s sponsorship. Thanks to our sponsors: @Arm, @NatWestGroup, @github, @Microsoft, @controlplaneio, and @Percona. stateofopencon.com/edinburgh-sooc… #mythos #glasswing #AI #opensource #opensourceai #aiskills #stateofopencon #soocon26 #openuk #openhq #aiscotland #aimodels #aiagents
OpenUK tweet media
English
0
2
3
384
Mark Manning
Mark Manning@antitree·
@dyn___ I wish more people realized this and stop thinking we can just "fix the bugs". Embargos are useless when all you need to know is what area to look in.
English
1
0
1
37
Aaron Grattafiori
Aaron Grattafiori@dyn___·
"still under embargo"... Yeah, a lot of those myself, and I really really think patch timelines need to get moved up quickly. Not easy, not possible everywhere, but, it needs to be done. Especially for organizations who can afford it. LLM fixes! A lot of vulns are shallow now.
Jonathan Bar Or (JBO) 🇮🇱🇺🇸🇺🇦@yo_yo_yo_jbo

Had a similar thing with Opus 4.6 - a macOS SIP bypass that is still under embargo. You still need to monitor a model's output, especially for non-trivial things.

English
1
0
5
1.2K
Mark Manning retweetledi
Nicolas Krassas
Nicolas Krassas@Dinosn·
TI-RAG is a Retrieval-Augmented Generation (RAG) framework for Cyber Threat Intelligence (CTI), integrating knowledge graph and causal reasoning capabilities to provide security analysts with an intelligent threat intelligence analysis tool. github.com/Ais1on/CTI-RAG
English
1
20
82
3.5K
Mark Manning
Mark Manning@antitree·
@dyn___ But... You saw the animation right? Must be serious
English
1
0
1
45
Mark Manning retweetledi
DistrictCon
DistrictCon@DistrictCon·
DistrictCon Year 1 Talks are officially live on our YouTube Channel! Check it out: youtube.com/watch?v=RDqXQ4… A HUGE shoutout to our incredible speaker line up that came out through the snow to share their amazing content with us.
YouTube video
YouTube
English
0
7
13
2.6K
Mark Manning retweetledi
DistrictCon
DistrictCon@DistrictCon·
Feb. 6-7, 2027 | See you there 🪩✌️
DistrictCon tweet media
English
1
9
32
4.6K