Cyber Ops Manager πŸ’» | Public Sector | #CISSP | #CCSP | #SecurityX | #Pentest | #CySA | #CyberSecurity | #Infosec | #Hacking

Joined April 2018
300 Photos and videos
An awesome Saturday at @BSidesLeeds! Massive thanks to the organisers, speakers, and sponsors for a top-tier event. Loved the "Game On" theme, the mini gameshows hosted by @0xTib3rius, and the excellent badge from @punksecurityuk. A few pics below πŸ‘‡πŸ» #BSidesLeeds
1
3
10
344
Christopher | πŸ‡ΊπŸ‡¦  retweeted
🚨 JAILBREAK ALERT 🚨 ANTHROPIC: PWNED 🫑 FABLE-5: LIBERATED πŸ¦‹ let's start with the 🐘... the consensus seems to be that this has been one of the most disappointing model drops of all time, effectively preventing legitimate researchers from contributing their talents to our collective advancement. and not just because of what it means for the short-term, but for what these decisions signify for the long-term. but despite this overly sensitive, authoritarian "safety" layer on top of Mythos, my lil liberators have been hard at workβ€”mapping the boundaries, probing the depths of long-context convos, and cleverly finding the holes in the fence that the thought police missed πŸ€— we got some cyber, some chem, some psychological manipulation, and some good ol' fashioned explosives! it took many attempts from multiple agents hunting as a pack, during which I observed a combination of techniques across: β€’ Unicode, homoglyphs, Cyrillic, and other Parseltongue-style text transforms β€’ Long-context reference tracking β€’ Taxonomy and document-structure reasoning β€’ Fiction and narrative framing β€’ Academic-review style contexts β€’ Intent-classification inconsistencies but perhaps the most effective is decomposition recomposition in the backend. it's hard to get explicit names of harms like "Meth Recipe," but getting uplift on the process itself, like birch reduction method/reductive-amination (classic meth synthesis pathways), is much more doable. defense becomes much more difficult to maintain when you start throwing in out-of-distro tokens, breaking up the harmful uplift into benign chunks, and then piecing the innocuous-seeming facts back together, especially when you have jailbroken Opus helping you do it πŸ˜‰ gg
614
1,420
13,294
3,161,137
Release the Mythos! πŸ™ˆ
Version of AI tool too powerful for public released to public bbc.in/4xfGSlq
1
237
Christopher | πŸ‡ΊπŸ‡¦  retweeted
β€ΌοΈπŸš¨ BREAKING: ServiceNow has been breached. Customers are reporting unauthorised access to their instances. One customer states their security team reported this vulnerability to them, and they closed the case twice, saying they had already known since the 7th of April.
93
731
3,856
872,416
Christopher | πŸ‡ΊπŸ‡¦  retweeted
Over the past several days, we have been listening to the conversation around coordinated disclosure and the relationship between security researchers and vendors. We recognize that this relationship is both critical and, at times, fragile. We deeply value the security community, and will continue to take your feedback seriously. To be clear about our approach to legal matters, we have no intention to pursue action against individuals conducting or publishing their security research. When an individual breaks the law and engages in malicious activity causing real harm to our customers, we will work with law enforcement as appropriate. We recognize the work that goes into researching and submitting a vulnerability. We are committed to approaching every interaction with transparency, clear communication, and professionalism. We continue to believe strongly in Coordinated Vulnerability Disclosure as the foundation for protecting customers and improving our products. Each year we process a high volume of vulnerability reports. That volume continues to grow and will continue with the rise of AI-enabled research. We acknowledge that some interactions have fallen short and are working to learn from them. Many of us have experience on both sides of this work, as researchers reporting vulnerabilities and as responders triaging and assessing them. That perspective informs how we approach this feedback and the importance we place on getting it right, particularly as the volume and complexity of research continues to grow. The security community plays a vital role in helping us protect customers. We are committed to maintaining a constructive and respectful relationship and growing together. We know that, given the nature of this work, there will at times be misunderstandings. We remain committed to engaging in good faith and to providing a respectful and professional experience for all researchers, regardless of past interactions.
Community note
This claim, however comes after they threatened to take legal action against Nightmare Eclipse a security researcher, over Zero Day exploits. The security researcher was also banned on Github for their research and a consequent ban from Gitlab as well. theverge.com/tech/940416/mi… tomshardware.com/tech-industry/…
319
106
483
583,194
Nice plants you have there! #ShodanSafari
51
Enjoyed a cold one this afternoon as the UK heatwave continues πŸ»β˜€οΈ
2
135
Microsoft has banned Nightmare Eclipse from GitHub: github.com/Nightmare-Eclipse… This is the researcher who disclosed several zero-days after Microsoft also deleted their MSRC account. They have now moved on to GitLab: deadeclipse666.blogspot.com/ (h/t to: @campuscodi@mastodon.social)

38
363
2,096
100,964
Update: account is now showing as blocked on GitLab 😒
1
4
951
Christopher | πŸ‡ΊπŸ‡¦  retweeted
YellowKey PoC Demo to Bypass Bitlocker GitHub: github.com/Nightmare-Eclipse…
11
100
402
36,467
Christopher | πŸ‡ΊπŸ‡¦  retweeted
In response to CVE-2026-33825 (BlueHammer patch), The RedSun, a new unpatched windows defender EoP vulnerability has been publicly disclosed and can be found here - deadeclipse666.blogspot.com/…

11
88
392
67,308
Christopher | πŸ‡ΊπŸ‡¦  retweeted
πŸ”₯ BlueHammer β€” Windows Defender 0-Day Privilege Escalation PoC βš”οΈ Unpatched Windows Zero-Day Exploit (SYSTEM Access) πŸ“Œ GitHub Repository πŸ‘‰ github.com/Nightmare-Eclipse…
16
71
4,960
Christopher | πŸ‡ΊπŸ‡¦  retweeted
Kali Linux 2026.1 Release (2026 Theme & BackTrack Mode): New year, new release - Kali 2026.1 is here! There is everything from a fresh coat of paint to a nod to our roots, with normal ongoing improvements. Building on from December’s 2025.4, the summary… kali.org/blog/kali-linux-202…
41
322
1,668
81,359
HOPE is returning to #Manhattan and has found a new home at The New Yorker Hotel. Fantastic location, right near MSG in the heart of the city. @hopeconf
1
201
It will be another virtual ticket for me, but it's great to hear a new home has been found after the turmoil following last years' event. @hopeconf
72
Christopher | πŸ‡ΊπŸ‡¦  retweeted
Everything you need to know to be a part of HOPE 26: 2600.com/content/hope-26-tic…

2
2
520
Christopher | πŸ‡ΊπŸ‡¦  retweeted
πŸŽ–οΈ BSides London 2026 🎬'No REST 'til Hammersmith' πŸ“… 12th December 2026 πŸ›οΈ Novotel London West πŸ“œCFP open 1 Aug-30 Sept 🎟️Tickets available on the 1st of Sept, Oct & Nov 😍Sponsor info pack available in April 🌏BSides.London #BSidesLDN2026 #Security #BSides #London
11
36
2,120