Sabitlenmiş Tweet
avboy1337
743 posts

avboy1337
@avboy1337
Majoring in Civil Engineering & English as Vulnerability researcher.
Singapore Katılım Mayıs 2018
594 Takip Edilen1.4K Takipçiler

@Kimi_Moonshot 国产这俩字,被你们搞得还真的挺风生水起的。希望继续前进,如今良心开源的越来越少,kimi确实做的比较屌一些,2.5开始确实给人眼前一亮的感觉。虽然没有超越opus,但不至于很多其他的厂商说超越了,跟人拉垮的感觉。
中文

Meet Kimi K2.6: Advancing Open-Source Coding
🔹Open-source SOTA on HLE w/ tools (54.0), SWE-Bench Pro (58.6), SWE-bench Multilingual (76.7), BrowseComp (83.2), Toolathlon (50.0), Charxiv w/ python(86.7), Math Vision w/ python (93.2)
What's new:
🔹Long-horizon coding - 4,000+ tool calls, over 12 hours of continuous execution, with generalization across languages (Rust, Go, Python) and tasks (frontend, devops, perf optimization).
🔹Motion-rich frontend - Videos in hero sections, WebGL shaders, GSAP + Framer Motion, Three.js 3D.
🔹Agent Swarms, elevated - 300 parallel sub-agents × 4,000 steps per run (up from K2.5's 100 / 1,500). One prompt, 100+ files.
🔹Proactive Agents - K2.6 model powers OpenClaw, Hermes Agent, etc for 24/7 autonomous ops.
🔹Claw Groups (research preview) - bring your own agents, command your friends', bots & humans in the loop.
-
K2.6 is now live on kimi.com in chat mode and agent mode.
For production-grade coding, pair K2.6 with Kimi Code: kimi.com/code
-
🔗 API: platform.moonshot.ai
🔗 Tech blog: kimi.com/blog/kimi-k2-6
🔗 Weights & code: huggingface.co/moonshotai/Kim…

English

@Gustafssonkotte 5/7 Blocking the 5:30-10:30 PM ET window felt safe. It wasn't.
this shit makes my curve not perfect!
i check the time ,and it is the same to what you typed!
English

1/7
Built a Polymarket trading bot over 3 months. Here are the biggest mistakes that cost me real money
> Went from v1 to v61. Every version fixed something painful.
---
2/7
Stop Loss killed more money than it saved.
> Binary markets need room to breathe - fluctuations are normal.
> Stop Loss was cutting positions on random noise and locking in losses right before the market flipped.
> Removed it in v61. Immediately better.
---
3/7
Martingale + Stop Loss = a loss cascade.
> Seemed logical: lost $5 -> bet $8, lost again -> bet $10.
> In practice: a losing streak plus early exits = a hole in your balance in a single day.
> Killed it. For good.
---
4/7
Smart Exit without Force Exit is a trap.
> Token hits 90c (+75% profit), but the bot was waiting for a "BTC reversal" signal.
> Market closes, token drops, profit gone.
> Fix: hard Force Exit at 85c. No conditions, no waiting.
---
5/7
Blocking the 5:30-10:30 PM ET window felt safe. It wasn't.
> NYSE open = sharp spikes = bad signals. Made sense to block it.
> But the full block was also killing clean entries at 8-10:30 PM.
> Had to split the zone into segments with different edge/move thresholds.
---
6/7
The Gamma API lies about market start time.
> Start price ("price to beat") is the core input for every signal.
> Gamma was returning stale data. Had to pull prices directly from Chainlink on-chain on Polygon.
> That's its own adventure - polling a smart contract every 2 seconds at 2 AM.
---
7/7
The real lesson: don't overcomplicate what works.
> v1: complex system, 10 indicators -> -$200/day
> v61: "buy the expensive token for $5, exit at +30%" -> consistently green
> Simpler logic = fewer failure points.
> The bot runs 96 intervals a day. Every mistake shows up fast.
Gustafsson@Gustafssonkotte
English

Your edge is worthless without the Kelly Criterion formula
Found a mispriced contract? Great.
But now, how much do you actually bet?
Most traders wing it. That's the problem.
The Kelly Criterion calculates optimal bet size:
f = (p - q) / (1 - q)
Where:
p = your probability estimate
q = market price
f = bankroll fraction
Example: You believe 68% probability, market shows $0.55
Edge = 13% → Full Kelly = 28.9% → Quarter Kelly = 7.2% of bankroll.
Professionals use ¼ Kelly with 10% max per position.
Even arbitrage bots have Kelly modules.
Hope you now understand that Kelly makes edge work properly.


Jasper BΞll@jasperbellx
English
avboy1337 retweetledi

(CVE-2025-12433)[449760249][interpreter]Hole leak due to an invalid hole-check removal in the Ignition interpreter
issues.chromium.org/issues/4497602…
Reported by Google Big Sleep
xvonfers@xvonfers
(CVE-2025-12433)[449760249][interpreter] chromium-review.googlesource.com/c/v8/v8/+/7026… chromereleases.googleblog.com/2025/10/stable… Reported by Google Big Sleep
English
avboy1337 retweetledi

Bypass PAC in JIT - CVE-2024-27834
And I'm ready for my Spring Festival holiday 🥳
gist.github.com/WHW0x455/3c219…
English

git.codelinaro.org/clo/la/platfor… I saw this patch a few months ago, but I haven't been able to create a reproducible proof-of-concept (PoC).

English
avboy1337 retweetledi

2026年最新「独立开发者之穷鬼套餐」,分享给大家,建议收藏
AI编程:@claudeai / @ChatGPT / @antigravity ➡ 最低至$0,畅用顶尖模型
Claude: 速度最快,效率高,但是价格贵
Codex: 直接开ChatGPT Team,首月优惠至0元,额度管够
Antigravity: 160块钱开启一年Google Pro家庭套餐,通过Antigravity Tools反代畅享 Claude Opus和Gemini Pro
前端:@Cloudflare / @github ➡ $0
后端:@Cloudflare Worker / @vercel ➡ $15-20+
域名:@spaceship ➡ .com域名低至 $3
COM67,可以优惠到40RMB
COMPROS,可以优惠到20RMB。一个账号仅能使用一次。
邮件:@Cloudflare Worker/ Rensend ➡ $0+
数据库:@Cloudflare D1 / @supabase ➡ $0+
存储:@Cloudflare R2 ➡ $0
CDN:@Cloudflare ➡ $0
统计:@googleanalytics ➡ $0
VPS:@Hostinger ➡ $7
几乎是全网最便宜的服务器,套Cloudflare的CDN实际体验几乎没有问题
型号:KVM2完全够用,KVM4没有性能焦虑。
走链接购买还能额外获得20%折扣hostinger.com/?REFERRALCODE=…

中文
avboy1337 retweetledi

avboy1337 retweetledi

Predator iOS Malware: Building a Surveillance Framework - Part 1 (How does Predator spyware transform from running code into active surveillance) : blog.reversesociety.co/blog/2025/pred…


English
avboy1337 retweetledi

avboy1337 retweetledi

After a long wait, I've finally published the sixth part in my "Writing a .NET Garbage Collector in C#" series. Today, we start implementing mark and sweep.
minidump.net/writing-a-net-…
English
avboy1337 retweetledi

Bypassing Windows Administrator Protection projectzero.google/2026/26/window…
English
avboy1337 retweetledi

« Root-causing N-days with Patch Diffing »
c0w5lip.github.io/posts/2026-01-…
English
avboy1337 retweetledi

High level diff of iOS 26.3 beta2 vs. iOS 26.3 beta3 🎉
github.com/blacktop/ipsw-…
English
avboy1337 retweetledi

Firmware encryption bypass on ESP32 (2024)
#breaking-flash-encryption-of-espressif-parts" target="_blank" rel="nofollow noopener">courk.cc/breaking-flash…
#infosec #espressif


English
avboy1337 retweetledi

A missing lock in a kernel driver is indistinguishable from valid code, until it crashes. We tracked down the fix for CVE-2024-23265 to see how Apple resolved a race condition in AppleDiskImages2.
8ksec.io/patch-diffing-…
See how we used Ghidra to locate the specific instruction changes that mitigated this memory corruption vulnerability. The interesting part isn’t the “fix”, it’s where it shows up.
👀 Don’t skim this one. That instruction change matters.

English

@cz_binance 坦白讲,这真的说到了我的心坎里
大跌的时候,买BNB的原因:毕竟华人首富还在持续投入做这个,买BNB等于让cz为自己打工
整个币安广场聪明钱,能持续1年直线赚钱的,最终只有那么几个人,整年也就大概几倍,很难超过5倍
如果把自己看作正常人,一般是超越不了整个广场最牛逼的人的,不如让cz为自己打工
中文

People often ask me where I think the next big opportunities are. I say: watch where I spend time. Make sense, right?
Yet they ignore it, chasing the “10x-overnight opportunity” with 99.99999% failure rate. 🤷♂️
CZ 🔶 BNB@cz_binance
Crypto market is tiny. The technology potential is huge, all unrealized. Just the beginning.
English



