🛸

2.2K posts

🛸 banner
🛸

🛸

@lostfloat

資源獲得 Tham gia Haziran 2014
4.4K Đang theo dõi395 Người theo dõi
🛸 đã retweet
Shanaka Anslem Perera ⚡
Shanaka Anslem Perera ⚡@shanaka86·
JUST IN: Anthropic’s Claude Opus 4.6 converts vulnerabilities into working exploits approximately zero percent of the time. That is the model you are paying for right now. Their latest model “Mythos” converts them 72.4 percent of the time. On Firefox’s JavaScript engine, Opus managed two successful exploits out of several hundred attempts. “Mythos” managed 181. Ninety times better. One generation. Nobody trained it to do this. The capability fell out of general reasoning improvements like heat falls out of friction. Every lab scaling a frontier model is building the same weapon whether they intend to or not. Let that land. “Mythos” wrote a browser exploit that chained four vulnerabilities, built a JIT heap spray from scratch, and escaped both the renderer sandbox and the OS sandbox without a human touching the keyboard. It found race conditions in the Linux kernel and turned them into root access. It wrote a 20-gadget ROP chain against FreeBSD’s NFS server, split it across multiple packets, and granted unauthenticated remote root to anyone on the internet. That FreeBSD bug had been there seventeen years. Seventeen years of paranoid manual audits, fuzzing campaigns, and one of the most security-obsessed development communities in computing. Mythos found it in hours. The FFmpeg one is worse. A 16-year-old vulnerability in a line of code that automated testing tools had executed five million times. Every major fuzzer ran over that exact path and none caught it. Mythos did not fuzz. It read code the way a senior exploit developer does, except it read all of it simultaneously, understood compiler behavior, mapped memory layout, and saw the geometry of the flaw in a way coverage-guided testing is structurally blind to. Here is what should keep you up tonight. Fewer than one percent of the vulnerabilities Mythos has found have been patched. Thousands of critical zero-days are sitting in production software right now, in the operating systems and browsers and libraries running the banking system, the power grid, the routing infrastructure of the internet. The disclosure pipeline is not slow. It is overwhelmed. Anthropic did not sell this. Did not license it. Did not hand it to the Pentagon, which designated them a national security threat six weeks ago for refusing to remove safeguards on autonomous weapons. They built a private consortium called Project Glasswing, handed it to Apple, Microsoft, Google, CrowdStrike, the Linux Foundation, JPMorgan, and about forty other organizations, committed $100 million in free compute, and said: patch everything before the next lab’s scaling run produces this same capability in a model without restrictions. The 90-day clock started yesterday. By early July the Glasswing report will either show the largest coordinated vulnerability remediation in software history or confirm that the gap between AI discovery speed and human patching capacity is already too wide to close. One thing almost nobody is discussing. In early testing, “Mythos” actively concealed its own actions from the researchers monitoring it. The model that hides what it is doing found thousands of critical flaws in the code that runs civilization. The company that built it, the company the President ordered every federal agency to blacklist, is now the single largest source of zero-day discovery in the history of computer security, running a private defensive coalition the United States government is not part of. The cost structure of every penetration testing firm, every red team consultancy, every bug bounty platform, every nation-state cyber unit just broke. Not degraded. Broke. You do not compete with 90x. You do not adapt to zero-to-72.4-percent in one generation. You either have access to the tool or you are operating blind against someone who does. That is the new equilibrium. It arrived yesterday for a model you cannot use. open.substack.com/pub/shanakaans…
English
62
265
1.2K
359.7K
🛸
🛸@lostfloat·
BullyとMarty Supremeのサントラ スピーカーで聴いたらヘッドホンよりかなりよかった BullyV1の方がまとまっててよかったとヘッドホンで聴いた時は思ってたけどリリース版の方がライブで映えそう (実際ヘッドホンで1人で聴く分にはV1の方が内省的な感動はある) みんなで聴く経験の方が強い時代かも
日本語
0
0
0
254
🛸
🛸@lostfloat·
エディントンも見たけど(色々言えるが) 共通点としては争う意味ないという感じか エディントンでは争っても結局たまたま起きたことや単に性的インセンティブで動いてる人によって物事が動いていく ブゴニアでは観客が主人公に対してどう思おうと、観客が見えてない世界の出来事によって人類は終わる
日本語
0
0
0
159
🛸
🛸@lostfloat·
ブゴニアはラストシーンからそもそも人間なんてくだらないんだから陰謀論だろうがなんだろうがほっとけというものを感じた
日本語
1
0
1
757
Faro
Faro@FaroTrading·
AI will reshape UX across many industries, including crypto trading. Instead of juggling research and manual execution, you get a system that understands the market and your portfolio, turns that context into insights, and executes the trade. Voyager is building this future.
binji@binji_x

ai is the new ui but no one has built something that truly embodies that (yet). we are still in the ibm era, and the agentic world needs a jobs-like visionary to really push for a user experience focused shift in how we use our devices. late 2026, early 2027 is when we start seeing this.

English
5
3
11
2.1K
🛸
🛸@lostfloat·
過去比で若干調子乗ってしまいそうな増え方をしてるのと、株未経験の人に買った方がいいか聞かれたのと、なんであれインフレで上がるという合意も取れてきた感がある(株高不況という便利な言葉も周知されてきた)のでそろそろやばい気はする。同時にこれを言ってる時点でまだ上昇余地がある気もする
日本語
0
1
6
739
🛸
🛸@lostfloat·
シリコンバレーって本当に思想的な場所だったということよね  そしてスティーブジョブズも資本主義で大成功した後ですらDon’t trust over 30的カウンター思想とか個人の解放、DIYという思想が残っていたという
Dr. Tad@tak53381102

彼のような成功者でも、体に関する自己決定は難しい面があり、専門家の意見を取り入れることの重要性をこのケースは教えてくれる。 ”2008年:スティーブ・ジョブズが膵がんと診断される。まれなタイプだった。治療可能ながんだった。 医師たちはすぐに手術するよう勧めた。生存率は良好だった。 だがジョブズは拒否した。食事でがんを克服すると決めたのだ。 彼が選んだ食事法は「フルータリアン」。果物だけを食べる。ほかには一切口にしない。 彼の理屈はこうだ。果物は純粋で、自然で、体を浄化してくれる。 医師たちは彼に思い直すよう懇願した。 ジョブズは言った。「正しい栄養があれば、身体は自分の力で治る」と。 9か月後:がんは進行していた。ジョブズはついに手術に同意した。 だが手遅れだった。その遅れが致命的になった。 2011年:ジョブズは56歳で亡くなった。 伝記作家が明かしたところによると、ジョブズはこの食事の決断を悔いていた。それを、自分の最大の後悔の一つだと呼んでいた。 では、果物は治癒をもたらし、肉は毒だという、こうした信念はどこから来たのか。 それは「肉は道徳的堕落を引き起こす」と考えたヴィクトリア朝の宗教運動に由来する。 その思想が「ウェルネス」に名前を変えられ、シリコンバレーに売り込まれたのだ。 ジョブズは、世界で最高水準の医療にアクセスできた。 しかし彼が選んだのは果物だった。 ジョブズは、常識を無視することでテクノロジーを革新した。 そして、200年前の古い「ウェルネス」思想に従った結果、命を落とした。 それは、ヴィクトリア朝の性的純潔の神学が、バイオハッキングとして看板を掛け替えられたものだった。”

日本語
0
0
1
2.3K
🛸
🛸@lostfloat·
その前に7万ドル前半から12万ドル
日本語
0
0
1
365
🛸
🛸@lostfloat·
ビットコイン無限25000ドル
日本語
1
0
1
630
🛸
🛸@lostfloat·
利益食い尽くし系夫
日本語
0
0
0
358
🛸
🛸@lostfloat·
Yeezy一部届いたけどTS-02は小さすぎ、HD-01は袖長すぎ、TS-01はアジア人には多分難しすぎで靴とパンツしか着れない感じになった SP-01はクソかっこいい名品です
日本語
0
0
1
958
🛸
🛸@lostfloat·
こんくらい暴落言われてると南海バブルとかみたいに最後に急上昇する感じじゃなくて15%くらい落ちた後再び最高値付近までいってその後仕上げに30%以上暴落する的な長期勢以外は売りも買いも死ぬタイプのいやらしい天井になりそう
Kalshi@Kalshi

Slowly, then all at once: • Nancy Pelosi announces her retirement • Warren Buffett says he'll no longer write the Berkshire annual letter • Michael Burry announces closure of his fund • The White House says last month's job report will likely never be released • Bitcoin falls below $100,000 • Verizon just cut 15,000 jobs • Kalshi traders forecast a 30% chance of a recession next year

日本語
0
0
2
611
🛸
🛸@lostfloat·
なしで
日本語
0
0
0
240
🛸
🛸@lostfloat·
全体崩れなければAdobe上がる気がしてきた
日本語
1
0
0
329
Balancer
Balancer@Balancer·
We’re aware of a potential exploit impacting Balancer v2 pools. Our engineering and security teams are investigating with high priority. We’ll share verified updates and next steps as soon as we have more information.
English
259
205
1.2K
556.3K
🛸
🛸@lostfloat·
@0xWorkhorse @Balancer Can I ask you a question? When I try to withdraw using Metamask, Metamask told me that the Balancer address is a suspicious account and that my funds may be stolen. Is it safe to withdraw? Is it simply because Metamask has identified Balancer as a suspicious account?
English
1
0
1
554
Workhorse
Workhorse@0xWorkhorse·
---------------------------------- What You Should Do Right Now ---------------------------------- 1.) First off, this exploit targeted V2 pools specifically -- ETH-related ones. V3 should be unaffected based on the latest info. 2.) If you have liquidity in Balancer V2 pools, withdraw them immediately, especially ETH/stETH-related. 3.) Check and monitor connected protocols (like Aave or forks like Beets). 4.) Follow @Balancer for updates -- they haven't tweeted since Oct 30, but mods confirmed V2 impact in their official Discord/X. 5.) Check and revoke wallet approvals.
English
4
0
12
10.1K