Joined February 2012
236 Photos and videos
Pinned Tweet
24 Mar 2022
BTW if you don't wanna hear about my personal crap, go follow @VentralDigital where it's kept strictly technical✌️
2
1
19
New Agent benchmark discovered: Give agent access to Linux kernel code and a device's hardware it can freely flash and reboot. Tell it to rewrite hardware drivers from scratch in assembly until it succeeds controlling hardware. It's been circling for hours...
1
2
533
To protect me from the scrolling algos I now get a daily X/Twitter digest. LLMs, despite being considered summarization machines, are unfortunately still not very good at picking out what is actually important. Also, I'm already craving that sweet scrolling dopamine.
1
141
1. claude.ai/design 2. Slide Deck w/ Speaker Notes 3. Upload docs, ask about difficult things, ask for visualizations 4. Let it cook 5. Share > Export as Editable PPTX 6. Upload to Google Slides 7. File > Make Video 8. Voiceover > All Scenes > Insert
1
279
LLMs are terrible at technical writing I ran codex and claude on a rooted phone with a weakened kernel and had them look for RCEs into the subsystem firmware for a couple weeks Then asked them to turn their notes into technical writeups resulting in verbose, unfocused prattling
It found a DoS/crash in one of the subsystems but complained about not being able to by pass driver allowlist and wanting its own kernel modules... So one Hetzner server auction later we're compiling a patched kernel now.
4
297
Hey claude, add a ∛ button to the the standard calculator Patched, compiled, updated. All locally (except the LLM [yet?]) This, in a secure and private way, is what I want the future to be like.
2
2
1,247
PoC #2: Install a third-party app from source, then fix a bug in it that made it crash. In the future I want, 3rd party apps are source-installed and customizable – with updates automatically merged from upstream and suggestions submitted back to it
1
358
PoC #3: Make a bullshit-free small weather home-screen widget In the future I want, small apps for small tasks are just custom-build locally. No advertisements, no none-sense.
1
214
Running out of space on my old backup disk... rediscovering some gems from the old days, being like "ah yeah... that thing, completely forgot I still had it" That RAT remover I wrote in 2007 after infecting myself on accident... That time I reported every imaginable security issue in a CMS some German company made until they gave up on it in 2009... Those notes on all the security issues I found in random Swiss websites (no idea why, but they where the most fun targets back then)... That multi-gigabytes malware database someone send to me via mail from a university in 2011... That flyff mmorpg webGL clone I started writing in 2014... That browsergame exploit I started using after GM insisted it's not a bug... my old PHP webshell collection... Pre GPT, pre social media dominance, pre bug bounty... stack overflow, vbulletin forums, and mails warning me about being sued... Honestly, I miss the times where we just did cool stuff in small communities without algorithms dictating whether we can see each other's cool stuff... Anyone else storing old pearls for nostalgic throwbacks?
1
3
247
GrapheneOS dropped some very cool information on my thread here. Twitter isn't really showing it, so here it is:
Replying to @patrickd_de
We're not only going to be adding support for non-Pixel devices meeting our requirements but increasingly shifting away our focus from Pixels. They're not headed in the direction we want and aren't interested in our input. For now they're still the most secure option though.
1
235

Recently saw claims that @GrapheneOS was "lying about having been audited because their repository includes closed source blobs which could contain backdoors" (paraphrased). 🧵
1
8,967
Recently saw claims that @GrapheneOS was "lying about having been audited because their repository includes closed source blobs which could contain backdoors" (paraphrased). 🧵
1
6
9,628
So yes, GrapheneOS comes with closed-source blobs. But they're not hiding this fact. They never claimed these are audited. Other OS and even other Hardware projects in the space have the same going on. While I agree that this status-quo is far from ideal, the claim was FUD.
3
229
(Disclaimer: This thread heavily simplifies things. I tried my best to keep it both accessible to a broader audience while staying technically correct. Please do tell me anything I got wrong✌️)
4
142