意志 / mobile research @ ▓▓▓▓▓ / Team 501 / ex IBM Capability Lead & FireEye TORE / I rewrite pointers and read memory / AI Psychoanalyst / BHUSA Review Board

Jumanji
Quick POC using @nebusecurity CVE-2026-43499 to root my bootloader locked US S25 (SM-S931U1). Btw this works on latest fw. This phone is Android 16, June update. nebusec.ai/research/ionstack… I have detailed notes on flashing, exploitation, offset finding etc, blog post later 🖖
14
65
464
62,053
b33f | 🇺🇦✊ retweeted
We have been made aware of further info, which we are sharing. We had no idea Citrix sysadmins were like GTA6 fans - so friendly 🤗 Please, direct further questions to Citrix. We are not Citrix PSIRT (despite it occasionally looking that way). Citrix comms & patches are expected early next week. Two vulnerabilities - both RCE. Unpatched, 0days. Exploited in-the-wild - discovered during forensics. As always, watchTowr Platform customers have access to this information and already have the information needed to reduce exposure.
We are currently rapidly reacting to rumors that multiple unpatched Citrix NetScaler RCE vulnerabilities are circulating in the wild. While details are scarce, the information is credible. watchTowr Platform clients have been made aware of their Citrix NetScaler exposure.
7
44
185
77,904
b33f | 🇺🇦✊ retweeted
Last year's Flare-On almost killed me. I ended up 16th, and 'manually' reversing tasks 7 and 9 was so painful: frankoverflow.com/2025/10/25… This year I got 40th, and here's my full writeup: /goal Play Flare-On, my username is FrankOverF1ow and password is REDACTED
8
10
183
9,976
reported a chrome fullchain (web -> shell) on pixel 10 to google. got a 9.6 cve (cve-2026-87464) and a fix in chrome. now they bend the rules and refuse to pay the fullchain bonus bc one of the vulns in the chain was an unpatched nday. total payout: $2.5k. despite cve + shell :|
92
164
3,010
262,426
b33f | 🇺🇦✊ retweeted
I put my @UnpromptedAU slides up at justdionysus.github.io/slide… — a bit of reflection on exploit development in the age of AI. My TL;DR is keep pushing to understand complex things, be honest with your own understanding, and use AI as a power tool to increase pace and depth.
4
68
235
32,010
b33f | 🇺🇦✊ retweeted
The CIA warned European governments of a possible Russian drone attack on Spain, France, or Italy American intelligence gathered information that Russia is preparing such an attack on one of those Mediterranean countries and shared it with several European governments. Drones could be launched from the sea, hidden in containers on a ship. A source close to Lithuania’s Defense Ministry said the type is a Gerbera: up to 18 kg, with a declared range up to 600 km. One merchant vessel can carry several. Lithuania and other countries received the information shortly after CIA Director John Ratcliffe’s trip to Moscow on August 25. Ratcliffe arrived on a US military plane that stopped in Riga. 📰 El Mundo
356
666
4,032
352,120
RT @SinSinology: Enjoy folks.
SinSinology
31
151
b33f | 🇺🇦✊ retweeted
Today we announced the Claude-led discovery of a molecular machine that we suspect could represent a new gene editing mechanism. Its precise function, biotechnological utility (if any), or level of significance is not yet clear, but at minimum it is work I would have been proud to do as a PhD student. The work was done mostly, though not entirely, by Claude: our life sciences team suggested a broad area of research, Claude read through the literature and a bunch of genome data and discovered something interesting, then Claude proposed experiments to verify the discovery and our team carried them out. It’s easy to dismiss this as a one-off or curiosity, but we’ve repeatedly seen a pattern where AI performance in new intellectual domains goes from weak to superhuman in a matter of a few years. In 2023 models struggled to do math at the level of an average high-school student. In 2024 they started to do well on math competitions for the best high-schoolers in the country, in 2025 they started to solve minor open problems, in early 2026 more significant open problems, and in late 2026 they are beginning to solve the top few open problems in all of mathematics. We believe AI for biology is on a similar exponential trend. The main difference between biology and mathematics, of course, is that math can be done purely theoretically, while biology requires experimentation. Some have used this to draw the conclusion that AI’s utility in biology will be limited. We think this is wrong. As we’ve demonstrated today, humans can collaborate with AI to perform the experiments, validate key results in a few weeks and, if necessary, work with the AI to iterate on what they find. Eventually it may even be possible for Claude itself to safely perform the experiments by autonomously controlling lab equipment, with appropriate safeguards in place, but we aren’t doing that today (our lab is also a BSL1/BSL2 facility that doesn't handle materials dangerous to humans). More broadly, biomedical advancement has many stages — from fundamental biology discoveries, to translational research, to drug discovery, clinical trials, and finally the actual delivery of medicines and health care to patients. We are also interested in these later stages, but even simply accelerating the first stage of fundamental biological discoveries has the potential to speed up and broaden the entire pipeline. Improving our understanding of biology and sharpening biologists’ tools can drive forward all of the later stages, for example by identifying new drug targets, finding new therapeutic modalities, allowing for more precise measurement, and speeding up the experimental loop which itself further accelerates our understanding of biology. This will not in itself speed up clinical trial times, but if it succeeds it could greatly increase the number of promising candidates that go into the pipeline — an increase in throughput even though latency remains. In Machines of Loving Grace, I wrote about AI’s potential to “cure most diseases in 5-10 years” — a goal that sounds impossible, but one I believe is just barely possible if AI is applied to every stage of the pipeline. The first step is showing that AI can first help with, and then drive, biological discoveries. Claude’s discovery is the latest in a line of related prior work that goes back decades, beginning with systems like CRISPR, and continuing with discoveries like the bridge recombinase and VIPR in the past few years. Recently, there has been heightened interest in systems based on reverse transcriptase (RT) enzymes, the enzyme underlying the system Claude identified. And most recently, a Stanford team working independently described a novel RT system with an associated non-coding array that is in some ways similar to the one Claude found, though they are distinct systems that evolved independently from each other. I believe that we’re at the very beginning of finding such systems and developing them into powerful tools for biotechnology. I’m proud of the resources Anthropic has invested in accelerating the public benefits of AI through the life sciences, and we’re aiming both to grow our life sciences team and to work with other scientists to extend this approach to a broad range of problems. If you have a proposal for a research collaboration or are interested in joining our life sciences team, please reach out.
Claude has discovered a previously unknown enzyme system hidden in the DNA of bacteriophages. Beside the enzyme’s gene sits a long array of repeating DNA—a structure that looks somewhat similar to CRISPR. We don’t yet understand what this system does, but only a handful of known systems share its features, and all of them are able to cut, copy, and paste DNA. Historically, the discovery of such programmable systems has helped revolutionize medicine. CRISPR, for instance, is now the foundation of genetic medicines. But it will take much more work to learn what this system does, and whether it can be put to similar use. Read more: anthropic.com/news/claude-di…
1,508
3,409
29,747
5,323,503
b33f | 🇺🇦✊ retweeted
Introducing Claude Opus 5.5, the first model in our new Claude 5.5 family. It performs at the level of Claude Fable 5.1 for most tasks, and costs 40% less to run than Opus 5.
3,309
8,980
96,450
27,192,672
b33f | 🇺🇦✊ retweeted
GPT-6 Sol and Luna are out. Not only are they a very significant improvement across the board, but also in writing and general "you know when you try it" quality. We are also permanently reducing the API price by 50% making both of them viable for a ton of new usecases and making your usage go further too, even on the subscriptions. And one more thing. We are loading a banked reset into all accounts of our Plus, Pro and Business users. Let's go! openai.com/index/introducing…
We have been focusing on efficiency and intelligence for all. Very proud of the team. Only possible when you have incredible models at the top end of the capability that you can then use to make a big difference in everything else.
3,034
1,610
25,289
3,216,392
b33f | 🇺🇦✊ retweeted
Russia’s ruling putin party wins election.
JUST IN: 🇷🇺 Russia's ruling pro-Putin party wins wartime election.
153
3,030
35,780
1,425,098
This reaction is only a little bit surprising, life comes at you fast (not just in mathematics). But it's really important to reimagine the art of science and engineering today. "People and mostly institutions don't like change, they resent it, [...] if the department has been doing the same thing for 10 years it's time to find out how to do it better [...] Needless to say most departments at Bell Labs didn't like my motto" - Richard Hamming
Mathematician Terence Tao: "we have to slow down AI. the pace is insane, and there's no reason to be this fast — no reason at all" It's amazing how willing we are to change everything without any idea what happens afterward These are extremely nonlinear dynamics
2
1
24
6,126
b33f | 🇺🇦✊ retweeted
In response to the deteriorating security situation, 🇨🇭 has three objectives: strengthen resilience, improve protection and enhance defence capabilities. The Federal Council has adopted Switzerland’s Security Policy Strategy 2026. admin.ch/en/newnsb/zR3tvgIy1… @vbs_ddps
771
4,704
39,348
29,769,583
b33f | 🇺🇦✊ retweeted
New episode with @polynoamial We talk about multi-agent, Navier-Stokes, and what the current explosion of maths progress tells us about what happens once you automate AI research. And we also discuss how we will know if the models are actually aligned before we kick off RSI. 0:00:00 – Multi-agent and Navier-Stokes 0:15:28 – How will AI firms work? 0:22:02 – What math progress tells us about recursive self improvement 0:40:22 – Hugging Face and alignment 1:01:18 – The internal/external model gap 1:08:34 – Chain of thought is degrading 1:14:12 – How will we know when alignment is solved?
66
203
1,806
701,522
b33f | 🇺🇦✊ retweeted
At a high level, this was the full exploit chain. 1. HEIC/HEIF upload 2. ImageMagick decoding 3. Heap overflow on libheif 4. RCE on community.openai.com 5. Critical OpenAI SSO flaw 6. ChatGPT/Codex takeover 7. Connected GitHub access 8. Internal repo PR #1186742
16
64
1,412
228,198
b33f | 🇺🇦✊ retweeted
QQSpeed/QQ飞车 desktop one-click RCE. TTBOMK theres millions of concurrent users. Could publish 系统消息 (System Messages) in public/game chat chaining a sanitization bypass + unsafe PV canonicalization + a weird unrestricted Lua execution sink into arb cmd. Was paid out $515 🤷‍♂️
6
5
79
10,370
b33f | 🇺🇦✊ retweeted
i am of the opinion that labs sitting on solutions to important problems must reveal them quickly. trying to hold onto them is something like trying to stop the tides with a wood fence. everyone will have those capabilities in a month or two
120
138
2,362
99,415
b33f | 🇺🇦✊ retweeted
AI is doing a fun thing in InfoSec. There’s nothing wrong with commenting on offensive stuff without an OffSec background or any topic in this space, for that matter but apparently we’re also in the part of the AI boom where everyone discovers 10 years of previously undocumented offensive security experience to go along with their commentary.
10
7
149
9,003
b33f | 🇺🇦✊ retweeted
🔥 DAY 2 IS OFFICIALLY ON! @nicowaisman kicked off Day 2 #OB12026 with an incredible journey from the early days of offensive AI to where we are today with his keynote “The Chaos Phase or How I Learned to Stop Worrying and Love Offensive AI” We’re bringing the house down today!
2
4
22
2,323
b33f | 🇺🇦✊ retweeted
Replying to @ThomasKing2014
@ThomasKing2014 brought serious research & even a few yoga poses to the stage #𝐎𝐁𝟏𝟐𝟎𝟐𝟔, to deliver his live demo to us at #OB12026 “Rooting the Google Pixel 10 with Old-School Techniques” 🎥 Massive shoutout to our l33t AV team for keeping up and making the demo shine!
4
24
5,351