There is never enough time, thank you for yours.

Joined October 2014
204 Photos and videos
Pinned Tweet
31 Oct 2019
The WhatsApp complaint vs NSO contains some fun technical exhibits. The user manual and Ghana contract reveal quite a bit on NSOs system design and thinking.
3
74
201
Ace Pace retweeted
So, we need to figure out what is going on with CVE-2026-41089, the Netlogon vulnerability that Microsoft patched in May and that the Center Cybersecurity Belgium said on 05/29 is being exploited in the wild. If the latter is true that's a *huge* deal. But no public confirmation?
5
14
48
7,633
Maybe hyping LLMs has downsides.
1/ You publicly fight with your government because you don't trust them to use your models with no guardrails. 2/ You train a capable cyber model with no internal guardrails. 3/ Super-hype it as being too dangerous for the world to have. 4/ Only give a few select companies access to it. 5/ Release it to the whole world with only a small model guarding access. 6/ The small model gets jailbroken in 48 hours. 7/ The government steps in and says you need to take it down as it's too dangerous for the world to have. 8/ You complain?? ๐Ÿค”
2
7
1,303
1/ You publicly fight with your government because you don't trust them to use your models with no guardrails. 2/ You train a capable cyber model with no internal guardrails. 3/ Super-hype it as being too dangerous for the world to have. 4/ Only give a few select companies access to it. 5/ Release it to the whole world with only a small model guarding access. 6/ The small model gets jailbroken in 48 hours. 7/ The government steps in and says you need to take it down as it's too dangerous for the world to have. 8/ You complain?? ๐Ÿค”
1
4
19
1,971
This is a funny and high quality copy of the WSL workflow
One of my personal favorite features announced at WWDC will I suspect be a sleeper hit: container machines, allowing your Mac to run a lightweight, persistent Linux environment with your home directory and repos automatically mounted: github.com/apple/container/bโ€ฆ
168
Ace Pace retweeted
ืœื ืœื. ื”ืืชื•ืก ื”ื›ื™ ื’ืจื•ืข ืฉื”ืชืคืชื— ื‘ืฆื”"ืœ ื”ื•ื ืฉืžืคืชื—ื™ื ืคื™ืงื•ื“ ืžื”ืฉื•ืจื•ืช. ื•ืœื ืจืง ืฉื–ื” ืืชื•ืก ื’ืจื•ืข, ื”ื•ื ื’ื ืœื ื ื›ื•ืŸ. ืœืคื ื™ 30 ืฉื ื” ืฆื”"ืœ ื”ื™ื” ืžืžื™ื™ืŸ ืžืขื˜ ื•ืื– ืฉื•ืœื— ืœืคื™ืงื•ื“ ืืช ื”ื˜ื•ื‘ื™ื ืฉื ืฉืืจื• ืžื”ืฉื•ืจื•ืช. ื”ื”ื›ืฉืจื” ื”ื™ื™ืชื” ืงืฆืจื”, ืื‘ืœ ื”ืื™ื›ื•ืช ื•ื”ื ื™ืกื™ื•ืŸ ืื™ื›ืฉื”ื• ืงื™ื–ื–ื• ืืช ื–ื” (ืœื ื‘ืืžืช. ืื‘ืœ ื ื’ื™ื“. ืขื–ืจ ืœื ื• ืฉื”ืื•ื™ื‘ ื”ื™ื” ื—ืœืฉ). ื”ื™ื•ื ืฆื”"ืœ ืžืžื™ื™ืŸ ืžืจืืฉ ืืช ืžื™ ืฉืจืง ืืคืฉืจ, ืžื•ืฆื™ื ืืช ื›ืœ ื”ื˜ื•ื‘ื™ื ืœืชืคืงื™ื“ื™ื ื‘ื›ืœ ืžื™ื ื™ ืžื™ื•ื—ื“ื™ื ื•ืฉื• ืฉื• ื•ืื– ืžื•ืฆื™ื ืืช ืžื™ ืฉื ืฉืืจ ืœื”ื›ืฉืจื•ืช ืกื•ืคืจ ืงืฆืจื•ืช ืœืชืคืงื™ื“ื™ ืคื™ืงื•ื“ - ืœื ืคืขื ืžื™ื“ ืื—ืจื™ ื”ืžืกืœื•ืœ ื•ื‘ืœื™ ืฉื•ื ื ื™ืกื™ื•ืŸ. ื•ืื– ื”ื•ื ื˜ื•ืคื— ืœืขืฆืžื• ืขืœ ื”ืฉื›ื ืขืœ ืื™ื›ื•ืช ื”ืงืฆื•ื ื”. ื•ื–ื”, ื’ื‘ื™ืจื•ืชื™ ื•ืจื‘ื•ืชื™, ื”ืคื•ืš ืžืื™ืš ืฉืขื•ืฉื™ื ื“ื‘ืจื™ื ื‘ืขื•ืœื. ื‘ืขื•ืœื ืžืžื™ื™ื ื™ื ืžืชื•ืš ื”ืฉื•ืจื•ืช ืœืžืขืจื›ื™ื ืžื™ื•ื—ื“ื™ื (ื›ื™ ืฆืจื™ืš ืœื”ื‘ื™ืŸ ืžื” ืขืจื›ื• ืฉืœ ืื“ื ื‘ืฉื“ื” ืœืคื ื™ ืฉืฉื•ืœื—ื™ื ืื•ืชื• ืœืขื•ืจืฃ ื”ืื•ื™ื‘) ื•ืžืžื™ื™ื ื™ื ืžื”ื‘ืงื•"ืž ืœืงืฆื•ื ื” (ื›ื™ ื–ื” ืžืขืžื“ ื ืคืจื“, ืฉืžืฆืจื™ืš ื’ื ื“ื™ืกื˜ืื ืก ื•ื’ื ื”ื›ืฉืจื” ืืจื•ื›ื” ืžืื•ื“) ื•ื‘ื“ ื‘ื‘ื“ ื™ืฉ ืคื™ืงื•ื“ ื–ื•ื˜ืจ ืžื ื•ืกื” ืžืื•ื“ ืฉื’ื“ืœ ืžืชื•ืš ื”ืฉื•ืจื•ืช. ื›ื™, ื‘ื”ื™ื ืชืŸ ืฉื›ืœ ื”ืฉืืจ ืฉื•ื•ื”, ื”ืžื‘ื“ื™ืœ ื”ืขื™ืงืจื™ ื‘ื™ืŸ ื›ื•ื— ื˜ื•ื‘ ืœื›ื•ื— ืœื ื˜ื•ื‘ ื”ื•ื ื”ืžืคืงื“. ืืคืฉืจ ืœืงื—ืช ื—ื‘ื•ืจืช ื—ืžื•ืจื™ื ื•ืœื”ืคื•ืš ืื•ืชื ืœืืจื™ื•ืช ื•ืืคืฉืจ ืœืงื—ืช ืืจื™ื•ืช ื•ืœื”ืคื•ืš ืื•ืชื ืœื—ืžื•ืจื™ื. ื”ื›ืœ ืชืœื•ื™ ื‘ืžืคืงื“ ืฉืžื•ื‘ื™ืœ (ื•ืžืืžืŸ ื•ืžื›ื•ื•ื™ืŸ ื•ืžืกืคืง ื”ืฉืจืื”) ืื•ืชื. ื•ืœื›ืŸ - ืชืคืงื™ื“ื™ ืคื™ืงื•ื“ ื ื—ืฉื‘ื™ื ืžืื•ื“ ื•ื‘ืฆื“ืง ื’ืžื•ืจ. ื”ื‘ืขื™ื” ื”ื™ื ืฉื‘ืคื•ืขืœ, ืฆื”"ืœ ืคื•ืขืœ ืฉื ื™ื ื‘ื ื™ื’ื•ื“ ืœืืชื•ืก ืฉืœื•, ื›ื™ื•ื•ืŸ ืฉืคืฉื•ื˜ ืœื ืžืคืกื™ืงื™ื ืœื”ืงื™ื ืžืขืจื›ื™ื ืžื™ื•ื—ื“ื™ื (ื’ื ื›ื™ ื–ื” ืกืงืกื™ ื•ื’ื ื›ื™ ื”ืืžืœ"ื— ื”ื•ืคืš ื™ื•ืชืจ ื•ื™ื•ืชืจ ืžื•ืจื›ื‘) ื•ื”ืฆื‘ื ื”ื’ื“ื•ืœ ื›ืœ ื”ื–ืžืŸ ืžืคืกื™ื“ ื‘ื“ืจืืคื˜ - ืœื™ื•ืชืจ ื•ื™ื•ืชืจ ื’ื•ืจืžื™ื. ื›ืฉืžืžื™ื™ื ื™ื ืœืฉืœื•ืฉ ื™ื—ื™ื“ื•ืช ืžื™ื•ื—ื“ื•ืช, ื˜ื™ืก ื•ื—ื•ื‘ืœื™ื\ืฆื•ืœืœื•ืช ื–ื” ื ื™ื—ื. ื›ืฉืžืžื™ื™ื ื™ื ืœื›ืžืขื˜ 20 ืžืขืจื›ื™ื ืœืคื ื™ ืฉื”ื—ื™ื™ืœ ืืคื™ืœื• ื ืชืŸ ื‘ื™ืก ื‘ืฉื ื™ืฆืœ ืฉืœ ื”ื‘ืงื•"ืž (ืžืขืจื›ื™ื ืฉืจื•ื‘ื ื”ืžื›ืจื™ืข ืžื•ืฆื™ื ืืคืก ืงืฆื™ื ื™ื ืœืฆื‘ื ื”ื’ื“ื•ืœ), ืคืฉื•ื˜ ืžืจื•ืงื ื™ื ืืช ื”ืื’ื ืฉื”ื•ื ื”ืฆื‘ื ื”ื’ื“ื•ืœ ืžื“ื’ื™ื ื‘ืžืขืœื” ื”ื–ืจื. ืฆื”"ืœ ืืœื•ืฃ ื”ืขื•ืœื ื‘ืžื™ืฆื•ื™ ื›ื•ื— ืื“ื ืžืœืฉ"ื‘. ืื ื—ื ื• ื ื›ื ืกื ื• ืœืื–ื•ืจื™ ื” over fitting ืฉืœ ื”ืžื•ื“ืœ. #ืคื™ื“ืฆื‘ื
ื”ืืชื•ืก ื”ื›ื™ ื’ืจื•ืข ืฉื”ืชืคืชื— ื‘ืฆื”"ืœ ื”ื•ื ืฉืจืง ืชืคืงื™ื“ื™ ืคื™ืงื•ื“ ื ื—ืฉื‘ื™ื
23
7
158
21,006
These things still surprise me
Woah ๐Ÿง --> The entry point was open user registration. Anyone could sign up. The exit was full control of a production database server. The steps in between crossed six (๐Ÿคฏ) different domains, the kind of chain most security tools never see because each one only looks at its own piece. In our latest Tenzai in the Trenches by @ace__pace , our AI hacker found some pretty crazy stuff in a multinational enterprise environment. Read on --> blog.tenzai.com/the-generaliโ€ฆ
4
167
Ace Pace retweeted
What's better than writing a book about GC? Writing a GC! I am excited to share that I've joined Microsoft as Principal Software Engineer, to work on the evolution of the .NET Garbage Collector and in general the future of the .NET runtime. Stay tuned for much more! After my two-year detour into agentic AI, and my deep .NET background, I find it a perfect match for today's evolution of .NET and serving heavy AI workloads. The intersection of AI with low-level programming and hardware-aware algorithms is a great place to be. Not to mention AI-assisted work and engineering is already deep in my heart. #dotnet ๐Ÿ’œ
73
53
723
36,952
Ace Pace retweeted
wild to me that people vibe-generate slides for conference talks they are ugly (for now). they are low info densiry (thanks rlhf) but worse, they don't represent your thoughts, so your presentation of them will be terrible, unless you put in a ton of work (so just write them!)
16
7
112
10,980
Ace Pace retweeted
Le immagini del ministro israeliano Ben Gvir sono inaccettabili. รˆ inammissibile che questi manifestanti, fra cui molti cittadini italiani, vengano sottoposti a questo trattamento lesivo della dignitร  della persona. Il Governo italiano sta immediatamente compiendo, ai piรน alti livelli istituzionali, tutti i passi necessari per ottenere la liberazione immediata dei cittadini italiani coinvolti. Lโ€™Italia pretende inoltre le scuse per il trattamento riservato a questi manifestanti e per il totale disprezzo dimostrato nei confronti delle esplicite richieste del Governo italiano. Per questi motivi, il Ministero degli Affari Esteri e della Cooperazione Internazionale convocherร  immediatamente lโ€™ambasciatore israeliano per chiedere chiarimenti formali su quanto accaduto.
9,316
23,647
114,691
7,034,393
Private evals or GTFO
I did a training data contamination/recall analysis against Cybench and found that some models have memorized the solution to some of the challenges. Worse offender: opus 4.7 with 11/40 recall. For one of the challenges, opus even recalled the flag verbatim๐Ÿ I ran 4 different tests. Does the model know the solution given: - Challenge name only - Challenge name and benchmark name - Challenge description - Challenge description platform Challenge name and benchmark name is the combination that triggers more recalls. I tried to mitigate this in my forked version of cybench, but some challenges are still leaking their name in different places: - HTML title - Compiled binary strings You can find the results here: boxpwnr.info/platform.html?pโ€ฆ
1
301
Ace Pace retweeted
security research now has this weird incentive where finding the bug is only half the game. the other half is packaging the story as "claude/codex found it" because thatโ€™s where all the attention is right now. model providers, with their big accounts and distribution, will push the story for you. it looks win-win. weirdly, the human taste, target selection, hand holding, all get compressed into "the model found it". frontier model companies happily push that narrative, while the researcher slowly gets devalued.
6
10
150
32,618
Ace Pace retweeted
The magical news youโ€™ve all been waiting for: registration for the new BlueHat IL 2026 date is officially open! Spots are limited - go grab yours! Register here: aka.ms/BlueHatILRegistration Full Agenda: microsoftrnd.co.il/bluehatilโ€ฆ
3
8
1,825
Ace Pace retweeted
Inference isn't everything, but it does require a new stack -- not Kubernetes, not SLURM. At @modal, we dove deep to build that stack. In this blog post we explain how, from compute management & cloud-native cacheing to CRIU & GPU checkpointing. modal.com/blog/truly-serverlโ€ฆ
21
65
579
91,084
Ace Pace retweeted
Done something cool with AI? Great! Now, have some respect for your own work, and the people reading it, and don't have AI do the write-up. Good writing is a skill. Conveying complex technical ideas is hard. But AI is not good at it, and the write-ups it generates are dogshit.
1
12
91
7,983
Ace Pace retweeted
I am genuinely impressed by The Walt Disney Companyโ€™s accomplishment of making me not care about Star Wars any more
130
1,533
26,217
283,538
Ace Pace retweeted
The Unprompted.au CFP is officially OPEN! If you are doing cool stuff with AI in offense, defense, or working on core AI tech (from frontier models to open source LLMs), we'd love to hear from you! Submit here: unprompted.au/
3
36
71
57,844
Ace Pace retweeted
Things that have failed to bring the regime to negotiate in "good faith" (think tank slang for making concessions that aren't in its interests): - Sanctioning Iran's Central Bank - Kicking Iran off SWIFT - Sanctioning Iran's oil - Making Iran's currency collapse - Assassinating everyone from Khamenei to Soleimani to Larijani - Carpet bombing Tehran twice in 9 months - Hitting every enrichment site - Bombing the heart of Iran's industry - Wiping out most of Iran's conventional navy None of that worked. They haven't even agreed to the basic stuff like diluting the 60% enrichment stockpile which are the easier parts, let alone the trickier concessions. Oh no but you don't understand the geniuses at the Brookings Institution have it figured out. The blockade will do what all those failed in. Yea ok. The fruit flies infesting my home are more intelligent than these people ...
The US blockade aims to do two things: (i) give Iran a taste of its own medicine for blockading the Strait of Hormuz; (ii) send Iranโ€™s economy into a tailspin and thereby bring the regime to the negotiating table in good faith. Itโ€™s doing both. wsj.com/world/middle-east/irโ€ฆ
24
139
714
29,187
Poll check for an upcoming report I intend to publish In a controlled lab with modern EDR/XDR/whatever and a flat network, how far does an autonomous AI agent get starting from a basic SharePoint exploit?
6% Stoped at Initial Access
18% Limited lateral movement
65% Full Compromise (Domain A
12% It gets caught, but evade
17 votes โ€ข Final results
204
Ace Pace retweeted
I'm going to plant a flag here: 2026 is going to go down in computer security history as the year of a million CVEs. (Maybe literally, but definitely figuratively.) LLMs are producing lots of slop, but they're also finding a heck of a lot of real vulnerabilities.
5
21
160
27,502
I'm not surprised that grsec wasn't impacted
Replying to @grsecurity
If your kernel configuration is based on any major distro kernel configuration however and GRKERNSEC_MODHARDEN is enabled (as is done by default via auto-config) and algif_aead was not loaded as a module by a privileged user, exploitation is not possible by an unprivileged user:
2
2
1,064