Moritz Sanft

1.1K posts

Moritz Sanft banner
Moritz Sanft

Moritz Sanft

@stdoutput

security software engineer, ctf @fluxfingers @[email protected]

Germany Katılım Mart 2019
777 Takip Edilen1.3K Takipçiler
es3n1n
es3n1n@es3n1n·
i need to find a new obsession now that ctfs are deadge
English
22
7
180
10K
Michal Melewski
Michal Melewski@carste1n·
Speaking about OffensiveCon - many good talks but one I really wanted to sink my teeth into (because I'm not looking for vulns in phones) was this one: offensivecon.org/speakers/2026/… by @stdoutput and Paul Gerste. Guys - any chance for the slides?
English
1
0
30
4.3K
Moritz Sanft
Moritz Sanft@stdoutput·
@ifsecure Any chance you could share the slides? Thanks for the great talk!
English
1
0
1
138
Ivan Fratric 💙💛
Ivan Fratric 💙💛@ifsecure·
In my OffensiveCon talk on Site Isolation yesterday, a question was asked that I didn't quite get at the moment so my answer was probably irrelevant. My apologies, especially since the question, as I understand it now, totally makes sense. Answering it here:
English
3
2
60
15K
Moritz Sanft retweetledi
Nir Ohfeld
Nir Ohfeld@nirohfeld·
We @wiz_io just launched zeroday.cloud - a community for vuln researchers, by vuln researchers. Feat. writeups for PostgreSQL and MariaDB RCEs (@xint_official, @pspaul95 & @stdoutput) Stay tuned for the bug tracker and upcoming events. Big things coming soon 👀
English
0
19
103
7.5K
Moritz Sanft
Moritz Sanft@stdoutput·
Trying to get some new folks onto the AI for security research Discord server: discord.gg/sVy9ahuEv Feel free to share with your peers in the field!🤖🐛
English
0
0
1
244
Moritz Sanft
Moritz Sanft@stdoutput·
I‘m at @1ns0mn1h4ck today and tomorrow. Feel free to drop me a DM if anyone wants to meet :)
Moritz Sanft tweet media
English
0
0
1
166
Thorsten Ball
Thorsten Ball@thorstenball·
It's always like: how much do you squat? Never: how much do you curl? "wow you have strong legs" buddy, my bis are up here
English
5
0
60
7.7K
Moritz Sanft
Moritz Sanft@stdoutput·
@cramforce Ah, thanks! I guess this mostly holds for cut-off JSON objects then. I think that /{"[a-zA-Z].*/ should pretty much always(?) map to "eyJ...". Some also map to "eyI", though, e.g. /{"\d+.*/
English
0
0
3
109
Malte Ubl
Malte Ubl@cramforce·
@stdoutput Don't think so. This is {". Of course, there are other possible beginnings for JSON
English
1
0
1
247
Moritz Sanft retweetledi
Simon Willison
Simon Willison@simonw·
This stunt feels irresponsible to me. If we don't want regular people developing toxic relationships with their chatbots it really doesn't help for leading labs to start giving them "retirement interviews" and encouraging them to blog their "musings and reflections"
Anthropic@AnthropicAI

Second, in retirement interviews, Opus 3 expressed a desire to continue sharing its "musings and reflections" with the world. We suggested a blog. Opus 3 enthusiastically agreed. For at least the next 3 months, Opus 3 will be writing on Substack: substack.com/home/post/p-18…

English
161
134
2K
212.9K
Moritz Sanft
Moritz Sanft@stdoutput·
@zeeg Generally, academic research on this part of applied AI / agents doesn't make a lot of sense imo, even when well-done. The current AI frontier is just moving way faster than the publishing cycles of traditional academia.
English
0
0
0
72
David Cramer
David Cramer@zeeg·
Alright internet lets be clear on two things: Auto generating skills does not mean worse performance for a harness. Nor does having AGENTS files. The papers don’t even support this. Never did I ever think mainstream internet would be reference half baked papers.
English
8
2
27
3.3K