uid0

1.2K posts

uid0 banner
uid0

uid0

@uidzero

Red Team @Sophos | infosec nerd | Netflux & Chill CTF Team

@[email protected] Katılım Şubat 2014
1.8K Takip Edilen1.7K Takipçiler
uid0
uid0@uidzero·
@UK_Daniel_Card Its ok, the WAF will block attacks 🤦🏻‍♂️🤣
English
0
0
0
39
mRr3b00t
mRr3b00t@UK_Daniel_Card·
can I show you something about SYSTEMS architecture and then a problem with thinking 'pentesting' is the goal?
mRr3b00t tweet media
English
6
4
35
2.2K
mRr3b00t
mRr3b00t@UK_Daniel_Card·
ah mon amis! we are adding multi language support! Just testing this!
mRr3b00t tweet media
English
4
0
18
1.8K
uid0
uid0@uidzero·
@0xConda A great one ive found for this is using words like "impact verification". Seems to bypass the refusals every time
English
0
0
1
70
Brandon Rossi
Brandon Rossi@0xConda·
ChatGPT: Sorry I cannot help you with authorized security research Claude: Hold my beer
English
3
1
8
900
uid0
uid0@uidzero·
Most companies think the risk with AI is the model. Its not.... If an attacker can influence the model, they can influence the systems behind it! My latest post on how we test AI Ecosystems and use LLM's to pivot to real infra. Check it out below. blog.rootsignal.co.uk/blog/pentestin…
English
0
1
3
406
uid0
uid0@uidzero·
@HackingLZ Ditto, ringway mcr has been a favourite for some years now!
English
0
0
0
33
uid0
uid0@uidzero·
@gabsmashh 🤦🏻‍♂️🤦🏻‍♂️🤦🏻‍♂️🤦🏻‍♂️
QME
0
0
0
19
uid0
uid0@uidzero·
Planning to write up another blog post shortly, what content would you like to see?
English
0
0
1
80
uid0
uid0@uidzero·
@HackingDave Haha omg I need to get our shep one of these 🤣
English
0
0
1
97
Dave Kennedy
Dave Kennedy@HackingDave·
Got my dog a cigarette toy 😂😂😂 I’m dying 😂😂
Dave Kennedy tweet mediaDave Kennedy tweet mediaDave Kennedy tweet media
English
12
2
102
5.2K
uid0
uid0@uidzero·
Just came across this on good old LinkedIn, by a senior security program manager.. do these people really believe we run ZAP and metasploit during pentests? 🤣🤦🏻‍♂️ mindblown
uid0 tweet media
English
0
1
2
144
uid0
uid0@uidzero·
@KeithRamphal @HackingLZ Lol reverse uno 🤣 correct, if you can prompt inject or jailbreak the bot, you win prizes!
English
0
0
1
35
Keith Ramphal
Keith Ramphal@KeithRamphal·
@HackingLZ @uidzero Reverse Uno the pentesting bot and prompt inject it. I think you win the pentest at that point right?
English
1
0
0
26
uid0
uid0@uidzero·
@HackingLZ I saw you've been doing some research on this. Planning to go public with it? Id be interested in the findings
English
1
0
0
60
Justin Elze
Justin Elze@HackingLZ·
@uidzero Also fun…Look at the code for most of them and watch how little they care about security or prompt injection.
English
2
0
11
546
uid0
uid0@uidzero·
@JustL22866 Yeah agreed there, the legal discussions would be a requirement. Data wise I didn't touch on in this post but this would certainly be something to consider if you're planning on using any of the frontier models like Claude, GPT etc.
English
0
0
1
29
DeptOfWarCrimes🇺🇸🙈🙉🙊
@uidzero IMO, any company wanting to use AI on assessments should first speak to legal .. We will likely purchase an Enterprise license , giving us control of the data. But we are still trying to determine how to best deploy Claude to the actual red teamers
English
1
0
1
49
uid0
uid0@uidzero·
I decided to start a blog for some hacker ramblings and insights, and what better way to start than to discuss why AI is not yet ready for end-to-end pentesting. Keen on getting people talking about this subject, let me know your thoughts on this! blog.rootsignal.co.uk/blog/is-ai-rea…
English
2
2
12
2.3K
uid0
uid0@uidzero·
@x25princess 100% would agree. Recently had an OKR to create an AI based tooling to assist with adversarial attacks / penetration testing. Given the hallucinations etc in LLM's, there ain't no way I'm throwing any AI based tool at a live env.
English
0
0
1
30
uid0
uid0@uidzero·
@infosec_fox Makes me want to kms dude 🤣🤣
English
0
0
0
24
INFOSEC F0X 🔥
INFOSEC F0X 🔥@infosec_fox·
What is the corporate jargon that annoys you? Mine is “low hanging fruit” 🤮
English
25
1
30
2K
uid0
uid0@uidzero·
@HackingDave @_xpn_ Love this, it definitely works been doing it for years. Although you just lost a friend point as I spat out my correctly boiled from a kettle tea over that comment 🤣
GIF
English
0
0
1
52
uid0
uid0@uidzero·
The days of dumpster diving, phreaking, BBS and damn cool hacks. If you are new to the industry or haven't looked at the past, I implore you do to so. Never forget where we come from! @RayRedacted did a great talk about this a few years back for TMHC, worth a watch!
English
1
0
0
53
uid0
uid0@uidzero·
I reposted this earlier today but wanted to reflect. This manifesto played a huge part in me getting into the hacking culture, coupled with stories like reading the about MIT hacking PDPs, Lopht, CDC, Cptn Crunch, Mitnick to name a few A thread 🧵
uid0 tweet media
English
1
0
1
142