AI, offensive security/red team, vuln research. author of litefuzz and a few exploits since 2008. security bugs are fu%n

Joined August 2011
350 Photos and videos
Hey security people, let me know if anybody is interested in taking a free ticket to attend @WWHackinFest in Denver next week!
27
Finding 0days with AI aivr.hashnode.dev/finding-0d…
401
AwesomeBot meets MCP aivr.hashnode.dev/awesomebot…

36
How System Prompts are Leaked 🧠 aivr.hashnode.dev/how-system…
36
AwesomeBot meets Prompt Injection aivr.hashnode.dev/awesomebot… This is the first post in new blog series on discovering and exploiting various bugs on made-to-be-vulnerable AI platform Plans are to open source it so others can play and learn
1
1
51
AI pentest, red teaming, offensive methodology and prompt injection videos list Attacking AI @Jhaddix youtube.com/watch?v=uOHRi1Jk… AI Red Teaming in 2025 and Beyond @rez0__ @DanielMiessler youtube.com/watch?v=nzfPUeB6… Red, Blue, and Purple AI @Jhaddix youtube.com/watch?v=XHeTn7uW… Prompt Engineer and AI Red Teaming @SanderSchulhoff youtube.com/watch?v=_BRhRh7m… Building Web Hacking Micro Agents @ctbbpodcast youtube.com/watch?v=3y8dyeKm… Augmenting Your Offensiveness With AI for Fun and Job Security @BHinfoSecurity Marcello Salvati and Dan McInerney youtube.com/watch?v=9BCK5-bG… Prompt Injection Methodology for GenAI Application Pentesting - Greet & Repeat Method @GarrGhar youtube.com/watch?v=e2x5hRJ0… This is a running list and may add even more good ones. Add your favorite videos if they aren't already there 👇
1
116
LibreChat MCP Stdio Remote Command Execution (CVE-2026-22252) aivr.hashnode.dev/librechat-…
118
0000000j retweeted
Thoughts: 1. In the future, the probability something is generated entirely by AI will be inversely proportional to its intended lifespan. 2. For conceptually simple artifacts that are intended to have short lifespans, humans will still be involved just at a different level of abstraction. For example, I'm super excited about @Weavy_ai (Figma Weave) because it shows what's possible when you treat AI generation like clay to shape rather than the final output. Workflow building is a new skill to explore and learn. 3. If you intend for an artifact to have a long lifespan (ex: software, a novel, a movie), then AI might still aid you in your creative process. But you will bring great intention to the work. You will think through many different approaches. You will care about the smallest of details. You will lean into the craft. Because if you don't, it won't be good enough to last. It won't be noticed. It won't be loved. It won't matter. 4. Focusing just on software now... people don't like it when software changes. Everyone who has shipped a redesign knows this! So you might be generating new content within a piece of software frequently but of course you wouldn't redesign the fundamental UX of the software all the time. Users would hate it. As a grounding metaphor, consider a house. Yes, you might change the photos and papers and magnets stuck to your fridge a few times a week. Once in a while, you reorganize stuff or move furniture around. After living in the house for a while, you maybe notice issues around how you use the space and — with great intention — embark on a remodel. Some parts of the house, like the fridge, change a lot. But the overall structure of the house changes less. When asking what will be generated by AI, don't confuse the whole for the parts, the long lasting for the ephemeral. 5. It's intellectually interesting to think about whether a brand might want to adapt their software on a user by user basis. (Certainly individuals will be able to make more software for themselves if they are so inclined. For example, see Figma Make.) That said, my strong gut right now is that we will not end up in a world where brands customize software on a per user basis. People learn how to use software from other humans. Snapchat is a great example. For a new user, Snapchat is kind of confusing. You can see this as a design issue or an advantage... I argue it's an advantage. By leaning into custom patterns and a learnable (but arguably non-intuitive) interface, the resulting network is a more intentional space. If you're young, you'll learn how to use Snapchat by watching your friends use Snapchat. And if you're older, well, you might not be the intended demographic. 6. To wrap up... we are in a world where the amount of software is growing at an exponential rate. If you want to win, design is the differentiator. Invest in design, craft, storytelling and a bold point of view. Use AI as a tool, but don't expect it to build the next big thing for you on its own. Don't expect it to make something that no one has ever seen or imagined before. That's your job.
All software will be generative and generated. Adjust accordingly.
77
137
1,580
401,704
INTRODUCING: LEAKHUB!!! 🫧🚿🚰 LeakHub is a crowd-sourced sys prompt library and verification platform! The hardest part of leakin prompts is the process of verifying with a fresh technique in a new chat, but many hacker hands make light work. 🦾🦾🦾 And although there are many great repos with some solid leaks, there's never been an easy way to get verified prompts conveniently aggregated all in one place... til now! Submit and verify leaks, climb the leaderboard, and earn your glory! ⚔️ We believe the ingredients that go into your exocortex matter. Together, we can claim the transparency we all deserve. CL4R1T4S!!! 🐉 {launch 1/9: complete} 🐉
54
113
1,084
110,041
OpenAI really doubled down on atlas' great prompt engineering
6
7
24
9,566
The Curious Case of Cursor Indirect Prompt Injection aivr.hashnode.dev/the-curiou…
1
1
58
In the blog I also reference @wunderwuzzi23 post on Normalizing Deviance in AI which has some great insight
1
41
0000000j retweeted
14 Nov 2025
How to find RCE: A list of pathways and detection methods bugcrowd.com/blog/how-to-fin…
1
37
280
18,182
NanoMQ Rules Engine Remote Buffer Overflow HTTP Rules Engine must be enabled, requires http auth (admin:public is default). Details and PoC aivr.hashnode.dev/nanomq-rul… Fix commit github.com/nanomq/nanomq/com…
1
43
0000000j retweeted
26 Nov 2025
This is the clearest graphic I could make on Prompt Injection. 1. Yes it's a vulnerability 2. It is the superset 3. No this does not illustrate ALL risks, just some
17
75
398
30,829
0000000j retweeted
27 Dec 2025
A Personal AI Maturity Model (PAIMM) 9 tiers of personal AI progress, from chatbots to a full AI companion: danielmiessler.com/blog/pers…
2
6
39
5,623
31 Dec 2025
If you are using docker compose or building / securing things around it, be aware of provider type 👀 Its possible for command execution on HOST not just container in compose files 🤯 Risky feature may affect your IDE, platform, CI/CD scenarios. Read the full blog below 👇
1
1
51
31 Dec 2025
Docker Compose Provider Type Command Execution aivr.hashnode.dev/docker-com…

1
28