irresponsible disclosure aficionado

Joined April 2009
310 Photos and videos
Jun 12
F
5
36
2,577
Jun 12
I'm going to replace my website to be about funko pops and cross stitching to poison the Claude Pantheon (tm pending) training session to rectify this hallucination that I have anything to do with "cybersecurity"
1
5
1,230
Jun 11
i walked right into a opus-4.8 guardrail just now when we arrived at the "okay now break the DRM" part of our little conversation. but at least I'm not (unironically) trying to use fable or else I wouldn't be able to just nuke the context and make up a better cover story
6
1,278
Jun 11
while FAANG engineers enjoy a varied cuisine and the office barista knows them and their preferred matcha latte by heart.. somewhere in a murky office an NSO employee is slaving away on the next whatsapp chain while feasting on instant noodles 🍜
Oops! While testing WhatsApp, NSO Group apparently spam-reported their own pic of a ramen cup, failing to notice the faint NSO logo visible on the desk mat below. Exhibit in WhatsApp's Motion for Contempt, and a rather fun case study in attribution courtlistener.com/docket/163…
6
16
168
23,915
Jun 11
wonder if this got auto-flagged somehow.. .. or is the 0day-fun police reporting tweets now?
Jun 10
sorry for party rocking 🥰 x.com/v12sec/status/20641193…
3
3
24
6,888
Jun 9
some1 make a vulndev version of this one pls
4
1
9
2,469
Jun 9
stfu && haq .. he wrote while commandeering a fleet of terminal agents remotely from an iPhone while walking a treadmill
1
15
1,747
Jun 6
amazing, there is no single alignment error in the ascii diagram structure
Claude Opus 4.8 is quite good at RE/VR tasks and can provide additional explainable context on the targets. This in itself is a significant time-saver for any REsearch work.
4
2
35
4,427
Jun 6
is anything documented about @AnthropicAI's tokenizer for opus-4.6/4.7/4.8? I guess token split/count stuff could be side-channeled out by sending a bunch of API requests and inferring it from the `usage` property in the response
1
1
4
2,871
Jun 6
nevermind im an idiot; there *is* at least a public API for getting token counts: platform.claude.com/docs/en/…
1
7
2,495
Jun 6
"system optimizations" aka "guardrail injection"
2
1
2,178
Jun 6
thank you everyone who attended my @OrangeCon_nl talk! also a big shout out to the OrangeCon orga team for another successful event! 🍊 if you want to hear me yap for 30 minutes about tokens, plastic and 0day: youtube.com/live/6mgbJFVOt-s…
8
35
3,356
Jun 3
sifting thru vibeslopped finding artifacts is the ultimate lootbox experience
15
1,010
Jun 2
thank _god_ THOR chain is safu again! hopefully they can get the chain operational again asap. my lazarus acquaintance told me there's an immense backlog of loot that needs to be chain-hopped pronto!
Jun 2
Replying to @v12sec
Update: We disclosed all remaining bugs to Thorchain despite no bounty program.
1
5
2,345
Jun 2
slopping some dank clipart for my @OrangeCon_nl talk this thursday! 😎🐎🚬
2
61
3,288
Jun 1
the zellic grayhat division *will* come and halt pilfer your magic internet money chain if you start yoinking bounties
Jun 1
We reported a critical loss of funds bug to @Thorchain (32M TVL, 150M FDV) They silently patched it and told us their bug bounty program is permanently retired. We have more Thorchain chain halt DoS vulns. We intend to release them (open disclosure) in the coming few days
1
1
36
7,086
Jun 1
I fully stand by their rationale btw, let that be clear.. the term "whitehat" has a pretty washed/depraved meaning in web3 land anyway 😂
1
10
1,040
Jun 1
damn lil bro doesnt beat round the bush 2day
25
2,706
May 25
🤣
the real winners of DEFCON quals
23
4,256