Mudge

4.7K posts

Mudge banner
Mudge

Mudge

@dotMudge

Make a dent in the universe. Find something that needs improvement: go there and fix things. If not you, then who? {he/they}

DARPA^2|Stripe|Google|L0pht Katılım Eylül 2011
337 Takip Edilen62.7K Takipçiler
Sabitlenmiş Tweet
Mudge
Mudge@dotMudge·
Today is the anniversary of the testimony I and other members of the l0pht gave to the US Senate in 1998. It was the first time the US Govt. publicly referenced “hackers” in a positive context. The coverage was national and even international. Come behind the scenes. /Thread
Mudge tweet media
English
88
804
3.3K
0
Mudge
Mudge@dotMudge·
@4Dgifts I know you do… heh 😏
English
0
0
0
36
Mudge
Mudge@dotMudge·
Anyone remember Dockmaster (MULTICS) and Radium at NCSC? NCSC being the National Computer Security Center (if you know, you know). Follow up: do any of you remember some type of user and data dump from them just before CFAA was enacted? Like it was a well timed “hehehe”?
English
4
3
24
4.3K
Mudge
Mudge@dotMudge·
Thank you for the kind words Mike I learned a lot from this What are takeaways others get from this, or have taken away from similar efforts?
Mudge tweet media
English
0
0
0
1.1K
Mudge
Mudge@dotMudge·
Postfix: apologies for not being able to provide all of the details here. With much appreciation to the people on those multiple teams. You know who you are. And thank you to the Board and Execs continually demonstrating over the years how much you appreciate the work of your current, AND former staff. Because of that, I have no doubt you will always have a pipeline of the best future staff eager to join. (Word gets around when places play the long game)
English
2
0
19
2.5K
Mudge
Mudge@dotMudge·
Been a long while since Story Time… I don’t know why this popped into my head, but perhaps there’s something in it someone will find helpful. So here goes
English
2
10
67
13.8K
Mudge
Mudge@dotMudge·
The takeaway ways an obvious cliche, but it had been turned into reality. Set people up to succeed. You can (should) help people grow into areas they want, but you also need to know the strengths, limitations, and actual capabilities at any given moment in time.
English
1
0
7
301
Aaron Grattafiori
Aaron Grattafiori@dyn___·
@DennisF @tqbf Yeah I read that, and a few other things over the past few weeks (+ spoke at unprompted, hallway con there, Offensive AI con back in Oct). It's the year 2000 again, so, why not ring the alarm bells (again). Paging @dotMudge , universe dent 2.0 time? 😉
English
1
0
4
440
Aaron Grattafiori
Aaron Grattafiori@dyn___·
I honestly think we're at "L0pht is testifying at the Senate" levels of fucked. LLMs finding vulns has gone from possible to trivial RAPIDLY and the use of generic coding agents is currently the lower bound!! The security industry is not at all ready for the reality of today. 🫠
Calif@calif_io

We asked Claude to find a bug in Vim. It found an RCE. Just open a file, and you’re owned. We joked: fine, we’ll switch to Emacs. Then Claude found an RCE there too. Full story: blog.calif.io/p/mad-bugs-vim…

English
5
14
181
30.3K
Mudge
Mudge@dotMudge·
Dr. Morris (he doesn’t like being called Jr. he and his father have different names) was doing well the last I heard. I believe he’s still a professor at a very prestigious academic institution. He was going to be great no matter what field he chose (the security field was basically closed off by a particular professor at the time who made a big fuss and lobbied to have the book thrown at him). Fortunately there were good people like Steve Bellovin and others who went to bat for him and fought the zealot.
English
1
0
4
226
Iceman
Iceman@herrmann1001·
@dotMudge PoC|GTFO! you still are the OG :) What ever happened to Morris Jr? He would have field day in today's cyber security world.
English
1
0
1
182