Member of @Akamai SIRT. Security Researcher & Exploit Coder. Research covered by Slashdot, ZDNet, arstechnica, MSN.. Mitre CVE CNA.

Joined October 2008
994 Photos and videos
Yes, it’s my real name. Not a hacker handle. 🙂
12
1
101
This isn’t legal currency created by the US mint it’s junk. Don’t ever buy this garbage.
These 3 collectibles honor America's upcoming 250th Anniversary. You can now own the Golden USA 250 coin, the Nickel Silver USA 250 coin, and the Independence Day $2 bill. Order all 3 together for a discounted price. Each includes their own certificate of authenticity.
11
Larry W. Cashdollar @larry0.bsky.social retweeted
After 8 billion doses (yes 8 BILLION, not a typo) Covid vaccines are at this point one of the most tested medical interventions in history and one of the safest ever
2,360
3,241
19,731
495,177
Larry W. Cashdollar @larry0.bsky.social retweeted
Dropping 0day isn’t the worst thing a researcher can do. It’s not ideal, but at least orgs can take steps to mitigate. Non disclosure is far worse. What drives researchers toward non disclosure? Threats from vendors. Researchers aren’t criminals unless their crime is curiosity.
7
47
302
16,957
Larry W. Cashdollar @larry0.bsky.social retweeted
USAID cuts and decimating the CDC is making the Ebola response harder And much more likely to reach the US as a result
105
265
899
11,539
Larry W. Cashdollar @larry0.bsky.social retweeted
Blacks were enslaved and Native Americans were genocided, but Trump only grants J6 domestic terrorists, who violently assaulted our nation’s capitol reparations. Simply wrong. In every conceivable way.
116
1,687
5,309
45,527
Larry W. Cashdollar @larry0.bsky.social retweeted
28 years ago today, 7 members of the hacking group @L0phtHeavyInd told the U.S. Senate they could "shut down the internet in 30 minutes."
50
143
839
52,076
Larry W. Cashdollar @larry0.bsky.social retweeted
Claude helped me with this bug too but in a different way... Tried to gaslight me saying it wasn’t ~exploitable in practice~ and I got obsessed with proving it wrong 😩
Confirmed! @chompie1337 of IBM X-Force Offensive Research (XOR) used a race condition to escalate privileges on Red Hat Enterprise Linux for Workstations, earning $20,000 and 2 Master of Pwn points. #Pwn2Own #P2OBerlin
42
100
1,345
79,058
Larry W. Cashdollar @larry0.bsky.social retweeted
This guy crammed a laptop into an Altoids tin! popsci.com/technology/altoid…
33
273
1,846
73,347
Larry W. Cashdollar @larry0.bsky.social retweeted
The biggest public health problem today isn’t chemicals. It’s scientific illiteracy.
178
449
2,581
30,069
Larry W. Cashdollar @larry0.bsky.social retweeted
180
5,327
17,318
271,987
Larry W. Cashdollar @larry0.bsky.social retweeted
Replying to @TheEconomist
This is incorrect. I have used AI for fourteen hours a day for nineteen months and I am operating at a cognitive level your researchers cannot measure because their instruments were designed for biological thinking. I think in prompts now. This is faster. Before AI, I could hold three ideas in my head at once. Now I hold zero, because holding ideas is storage and I am not a storage device. I am an orchestration layer. I route cognition to the appropriate model and receive outputs. This is what the prefrontal cortex was trying to do for 200,000 years with blood and glucose. I have replaced blood and glucose with an API key. The API key does not get tired. The API key does not have emotions about its sister's birthday. Last Tuesday I tried to write a birthday card for my sister without AI. A cognitive fitness exercise. I sat at the kitchen table for forty minutes. I wrote "Dear Sarah." Then nothing. Not writer's block. The mechanism for generating an unprompted sentence was gone. I no longer operate at the sentence level. I operate at the intent level. I transmitted the intent to Claude. Claude produced a card so warm my sister called me crying. Most thoughtful card I'd ever written. She is correct. The thoughts are just manufactured off-site now, like everything else in a mature supply chain. My wife asked what I was thinking about. I said "nothing" and it was true. Not in a peaceful way. In an infrastructure way. There was no local processing occurring. I was between queries. She asked if that scared me. I opened Claude and asked if it should. Claude said no. I told my wife. She did not find this reassuring. I think she is running on legacy architecture and is frightened of the upgrade. I would explain further but I need to check something first.
40
58
493
15,393
Larry W. Cashdollar @larry0.bsky.social retweeted
I'm now unemployed. I hear that the oss community is buried in AI bug reports and don't have enough people to triage and verify. Where is the sign up sheet?
16
46
305
77,368
Larry W. Cashdollar @larry0.bsky.social retweeted
I love my IRIX desktop
IRIX – a Unix-like operating system available for 32- and 64-bit MIPS architectures, developed by SGI. The last released version was 6.5.30 on August 16, 2006. archiveos.org/irix/ #unix #operatingsystem
16
51
656
20,910
Larry W. Cashdollar @larry0.bsky.social retweeted
I can't figure out if vaccines work or not. Tough one. Need Sherlock Holmes on this one.
595
4,261
28,063
603,595
My first CVE was for a setuid binary in IRIX allowing a non privileged user to get root.
IRIX – a Unix-like operating system available for 32- and 64-bit MIPS architectures, developed by SGI. The last released version was 6.5.30 on August 16, 2006. archiveos.org/irix/ #unix #operatingsystem
2
15
1,579
Larry W. Cashdollar @larry0.bsky.social retweeted
32 years ago today I registered the @L0phtHeavyInd class C. I got the email from ARIN, sent the class C address to our ISP, then got the first packets routed over our 56K modem to our 486 linux box. When those first packets come through the whole room exploded with chants of, "We on da backbone!" Then came one of the first hacking resources on the web, shell accounts, a bbs, webcams, and lots of shenanigans. You can see an archive of the website here: gbppr.net/l0pht/l0pht.html
44
114
974
47,960
My niece is doing a radio show with live music n05.radiojar.com/c181xktvwk8…

72
Larry W. Cashdollar @larry0.bsky.social retweeted
Oh yes 😂😂
698
178
4,213
533,518
Larry W. Cashdollar @larry0.bsky.social retweeted
Nearly 600,000 people put a deposit on the golden Trump cell phone. Not a single one has been delivered. NOT ONE.
1,516
5,586
31,560
907,186