b0510
10 posts

b0510
@bosio09
cybersecurity enthusiast and CTF player
Italia Katılım Ekim 2024
12 Takip Edilen4 Takipçiler
b0510 retweetledi
b0510 retweetledi

Support the Team! 🚩
Want high-quality merch? Check out our official Sticker Mule store!
Grab your RootRunners CTF gear here: 👉 stickermule.com/rootrunnersctf
#CTF #RootRunners #CyberSecurity

English
b0510 retweetledi

people giving an llm full unauthenticated access to your system are peak 2026 tech bros. the clanker can run an rm -rf just because an unread spam email told it to
you guys are running a personal assistant that has 512+ critical vulnerabilities. 2026.1.15 patch added a backdoor for telemetry and nobody even read the pull request before starring its repo
imagine your vibe coded "agi" gets hijacked the second you open a malicious tab and it gives up your aws keys. it is hilarious watching youtubers cry about openclaw and the users are willingly typing their seed phrases into it just because youtubers told them to.
if your workflow relies on a buggy react application and a mcp server, you are ngmi. openclaw executes code first and never asks for confirmation.
people are actively bypassing the new ssrf protections in version 2026.2.12 by just using ipv6 addresses. the fact that this app has 150k stars proves that developers do not care about security at all.
i refuse to use a local ai agent named molt or claw. indirect prompt injection is unsolvable by passing raw browser dom to claude.
once give it access to your apps and repos, the moment someone pushes a prompt injection commit, your helpful bot could deploy a crypto miner.
you dont need a zero day to hack openclaw, you just need to send the user a text message containing an xss payload. the bot reads the message, parses it, and instantly leaks your ssh keys.
over all that, you're comparing an mcp server with an open source operating system with almost 0 ai generated code. you must be insane!


AJ Stuyvenberg@astuyve
lol openclaw is gonna pass Linux in github stars shortly
English
b0510 retweetledi
b0510 retweetledi
b0510 retweetledi

@disclosetv Now invading Greenland makes sense. The tech bro transhumanists need a place for their AI data centers & 15 minute “freedom cities” to ship us dissidents who don’t like being occupied by international jewry & hate A.I Palantir surveillance grids
English

I just solved MangoBleed on Hack The Box! labs.hackthebox.com/achievement/sh… #HackTheBox #HTB #CyberSecurity #EthicalHacking #InfoSec #PenTesting
English
b0510 retweetledi








