winfunc

35 posts

winfunc banner
winfunc

winfunc

@winfunction

ai-powered security engineering for mission critical systems.

San Francisco Katılım Aralık 2023
1 Takip Edilen2.3K Takipçiler
winfunc retweetledi
AISecHub
AISecHub@AISecHub·
The Recent CVEs in React and Node.js Were Found by an AI - winfunc.com/blog/recent-0-… In December 2025 and January 2026, an AI system autonomously discovered zero-day vulnerabilities in Node.js and React, two of the most widely deployed JavaScript runtimes and frameworks in the world. This post documents how these vulnerabilities were found, the technical details of the flaws, and what this means for the future of security research.
English
0
4
21
1.4K
winfunc retweetledi
mufeed vh
mufeed vh@mufeedvh·
New blog post: The Recent 0-Days in Node.js and React Were Found by an AI Covering the discovery of 0-days with AI, its implications, and "AI slop". Have a read. winfunc.com/blog/recent-0-…
English
0
4
11
665
winfunc retweetledi
mufeed vh
mufeed vh@mufeedvh·
A new vulnerability in React Server Components (CVE-2026-23864) was disclosed today. One of the DoS vectors was discovered by me with the help of an AI agent @winfunction. Other vectors were also discovered by @ryotkak et al. All users should upgrade to a patched version as soon as possible. vercel.com/changelog/summ…
English
5
18
49
3.6K
winfunc
winfunc@winfunction·
🚨 CVE-2026-21636 in Node.js (@nodejs) Node.js permission model bypass via unchecked Unix Domain Socket connections (UDS) This vulnerability was autonomously discovered by winfunc.com, an AI agent that can find, exploit, and patch security vulnerabilities in codebases. Thanks to @_rafaelgss for triaging and fixing the issue.
winfunc tweet media
English
1
7
15
1.4K
winfunc
winfunc@winfunction·
Node.js Security Release Bulletin: #nodejs-permission-model-bypass-via-unchecked-unix-domain-socket-connections-uds-cve-2026-21636---medium" target="_blank" rel="nofollow noopener">nodejs.org/en/blog/vulner…
English
0
0
2
227
winfunc retweetledi
mufeed vh
mufeed vh@mufeedvh·
this is how long it took for the @winfunction agent to find and exploit a gnarly 0-day in a critical software. we'll write about it soon! can't wait to show off what we've been cooking! 🥷
mufeed vh tweet media
English
1
2
6
1.2K
winfunc retweetledi
Konstantin Vinogradov
Konstantin Vinogradov@vinogradovk·
Over five years ago, I started publishing the top trending open-source startups every quarter — the ROSS Index. It has become a handy tool for 60K+ developers, founders, and other OSS fans who have visited it to date. Today, I'm thrilled to make it even more useful, as we are open-sourcing all its data for more than 20 quarters on GitHub, in a convenient format. Explore our repo and star it to be notified about new index releases. And, of course, now is also the time to reveal the fresh top 20 startups by GitHub stars growth for Q3 2025 — one can find more details on them in the repo too!
Konstantin Vinogradov tweet media
English
2
3
11
3.2K
winfunc
winfunc@winfunction·
Announcing Opcode Everyone's favorite Claude Code GUI Claudia is now Opcode... with a complete revamp. And we just hit 15K+ stars on GitHub! The support from the community has been immense! ❤️ What's new: - Feature parity with all new Claude Code features in the CLI. - A complete UI revamp, faster and cleaner. What's coming: - Opcode's own coding agent that exclusively uses open models while achieving SOTA performance on coding benchmarks. We're currently piloting this at companies requiring fully local on-prem coding agents. If you're one of them, reach out to us and we'll set this up for you! Try Opcode at opcode [dot] sh Like/retweet and reply to this tweet with "join" to get an invite to the Discord server and beta test our coding agent for free.
English
31
41
185
38.3K
winfunc
winfunc@winfunction·
@JDemeulemeestr please enable your DMs or sent us a message and will send over the invite!
English
1
0
0
196