Posts
4431
Following
738
Followers
1653
"I'm interested in all kinds of astronomy."
repeated

Agentic AI has "guardrails" (e.g. you have to explicitly say "don't delete all the files on my computer" if you don't want it to delete all your files).

One of these guardrails is asking users to confirm whether to do things. Claude Code apparently has now decided that if you take over sixty seconds to answer a question, it'll just go ahead.

Turns out guardrails get in the way of consuming tokens, and you must consume tokens in order for the business model to work.

https://github.com/anthropics/claude-code/issues/73125

0
4
0
repeated

Arthur C. Clarke: "Any sufficiently advanced technology is indistinguishable from magic."

Me: "Therefore, any sufficiently complicated technical problem is indistinguishable from a curse."

6
25
0
repeated
Edited 1 month ago

Interesting Git repos of the week:

Strategy:

* https://github.com/mr-r3b00t/ai_usage_mitre_analysis - AI abuse through an ATT&CK lens with @UK_Daniel_Card 🤖

Detection:

* https://github.com/citizenlab/bluecoat-investigations investigating Blue Coat device breaches with @citizenlab
* https://github.com/andreicscs/HoneyWire - F/OSS deception

Bugs:

* https://github.com/sgkdev/ipv6_frag_escape - another Linux LPE

Exploitation:

* https://github.com/x86byte/Obfusk8 - obfuscation library
* https://github.com/bee-san/RustScan - a port scanner in Rust
* https://github.com/t0thkr1s/gpp-decrypt - dumping GPP cpassword
* https://github.com/kernelstub/Nox - attack surface management in Go
* https://github.com/JVBotelho/skewrun - abusing time in AD
* https://github.com/db0109/AI-Red-Team-Scripts-And-Checklist - tips and tricks for red teaming AI 🤖
* https://github.com/jonaslykkegaard9-ops/m - remapping Windows memory

Hard hacks:

* https://github.com/pinkflawd/MIPSReverseEngineeringWorkshop - @pinkflawd's MIPS training

Nerd:

* https://github.com/ripienaar/free-for-dev - free hosting for developers 🤖
* https://github.com/dockur/macos - OS X in Docker

, ,

0
4
0
repeated

Why I love Mastodon: someone famous got married to someone else famous today and my wife told me about it. I didn’t see one person talking about it here. Thanks for being great.

11
11
1
repeated

RE: https://techhub.social/@Techmeme/116856918203941961

Yet another reason to
Horrible.

But the worst part is that Zuckerberg laughs all the way to the Bank

0
2
0
Edited 1 month ago
Damn, Defqon.1 got cancelled :O

https://www.youtube.com/watch?v=fLWY-Sxb1bE

Turns out global warming was no joke...
0
0
1
repeated
Edited 1 month ago

Unless you were largely cognisant during the late 90s, it's very hard to get across to you just _how_ bristling with positive energy computing was back then, just **look** at this opening screen, it screams "ARE YOU READY TO LEARN MOTHERF*CKER?!".

It has dolphins, in the clouds. How many smartphone apps welcome you with dolphins in clouds?

6
13
0
[RSS] It rather involved being on the other side of this airtight hatchway: Changing administrative settings

https://devblogs.microsoft.com/oldnewthing/20260701-00/?p=112498
0
0
0
[RSS] skewrun - bypass Kerberos clock skew (KRB_AP_ERR_SKEW) without root or touching the system clock (Rust, v1.1.0)

https://github.com/JVBotelho/skewrun
0
0
0
[RSS] Privilege escalation to root in Lima QEMU guests via a world-writable agent socket (CVE-2026-53657)

https://syntetisk.tech/blog/posts/privilege-escalation-to-root-in-lima-qemu-guests-via-a-world-writable-agent-socket-cve-2026-53657/
0
0
1
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

WolfSSL wolfSSL PKCS#7 OtherRecipientInfo integer underflow vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2026-2408

CVE-2026-6678,CVE-2026-6678,CVE-2026-6678
0
1
0
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

WolfSSL wolfSSL X.509 registeredID name constraints enforcement improper input validation vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2026-2410

CVE-2026-5263,CVE-2026-5263,CVE-2026-5263
0
1
0
repeated

Talos Vulnerability Reports

New vulnerability report from Talos:

WolfSSL wolfSSL X.509 iPAddress name constraints enforcement improper input validation vulnerability

https://talosintelligence.com/vulnerability_reports/TALOS-2026-2409

CVE-2026-7532,CVE-2026-7532,CVE-2026-7532
0
1
1
repeated

"this property was involved in the Novichok event that took place in 2018"

https://www.rightmove.co.uk/properties/90003912#/?channel=RES_BUY

2
4
0
repeated

Amstrad PPC640 [1987]
CPU: NEC V30 8 Mhz CPU
MEM: 640k RAM ('all you'll ever need')
STORAGE: Dual 720kb DD Floppy Drives

3
4
1
This weeks ritual: copying huge PDB's across machines, otherwise I'll *definitely* hit a bug when executing the binary.

#MurphysLaw
0
0
0
It's been a long time I've seen a good old #deface:

https://www.thyssenkrupp.hu/hu/

(Someone is having fun with JS dependencies?)
0
0
4
I started using #Zed for some C/C++ work and I gotta say this is probably the best IDE experience I had with these languages:

- Minimal UI, but important stuff works
- Compilation databases are ingested automagically
- Remote, cross-platform editing (this is **huge**, I still have to figure out remote build/debug though)

As a bonus they even got to disable the Most Annoying Feature(tm) of the editor recently:

https://github.com/zed-industries/zed/issues/59427
0
1
2
Show older