Head of Offensive Security @ Anduril; Adjunct Instructor at HCC by day. Hacker & Founder by night. 50 CVEs. Husband. Father. Skateboarder. Posts are my own.

New York, USA
Pinned Tweet
On September 16, 2026, @WIRED and @404mediaco reported on leaked Flock Safety LPR firmware, later distributed through DDoSecrets. I reviewed the supplied Falcon/Sparrow image to verify remediation of my previously disclosed vulnerabilities. The results may or may not shock you. Paper: github.com/GainSec/anti-crim…
4
2,338
Jon Gaines retweeted
Happy Wife calls you because her tires are low season to all who celebrate.
17
100
5,300
296,655
Jon Gaines retweeted
The dumb guy who acts every day will end up wealthier than the academic who thinks every day.
157
475
5,129
73,910
Jon Gaines retweeted
Containers are a useful primitive, but very limited in terms of an actual security boundary Back in 2007 when me and my team presented at BlackHat and DefCon about our kernel exploitation research and demonstrated various 0-days and N-days for different operating systems it was cutting edge In 2026, when AI agents are able to automate a large part of the process, kernel exploitation is becoming pretty mainstream Physical separation (dedicated systems for each workload) is always best, but at the very least use virtualization and avoid exposing the attack surface from your host kernel to anything you want to isolate
Containers are no longer a security boundary. Over the past few months, we’ve seen a crazy amount of Linux kernel vulnerabilities and exploits. This has forced us to rethink the security of infrastructure that relies heavily on the underlying kernel, especially containers. As models become more capable, the barrier to escaping a container has fallen so much that adversaries can now generate working kernel exploits in a single shot. CVE-2026-80521 is one such example. We discovered it using dfs-large1 from @depthfirstlabs and generated the exploit in one shot with GPT-5.6 Sol. The exploit still works on the latest Ubuntu 26.04 release because the fix has not yet been backported. Read our full writeup: depthfirst.com/research/cont…
4
7
53
8,427
media.defcon.org/DEF%20CON%2… github.com/GainSec/anti-crim… I guess the way I did research isn’t cool enough for anyone to care lol
2
7
465
Always wanted to play with my physical Pokémon cards in AR, so I unleashed Astra + CLAD on it… they did not disappoint! ⚡️🥽 Basically a fully playable proto with all 151 mons from SV 151. @specs @specsfordevs
364
1,485
11,838
1,396,163
Jon Gaines retweeted
Reminder for all young parents: You only get: - 1 Summer with your baby - 3 with your toddler - 9 with your child - 5 with your teenager This time is precious. Don’t rush it.
97
2,752
37,367
944,913
TIL analysts do undercover ops lmao
🚨 Google reveals undercover Mandiant analyst infiltrated TeamPCP during massive supply-chain hacking spree Google says an undercover Mandiant analyst infiltrated TeamPCP's inner circle as the hacking group compromised open-source software and ultimately breached more than 1,000 companies. ⠀ The analyst gained access to TeamPCP's core "CanisterWorm" chat in March, joining a group of roughly 12 members and watching the operation from the inside. ⠀ The mole also gained access to a server containing credentials stolen from victims, including usernames, passwords, and access tokens. Google used that visibility to alert cloud and technology providers, revoke compromised credentials, and send hundreds of notifications to affected organizations. ⠀ The operation also exposed a TeamPCP member developing an AI-assisted zero-day capable of bypassing two-factor authentication in widely used login software. Google obtained the exploit code, verified that it worked after minor modifications, and privately notified the developer so the vulnerability could be patched. ⠀ TeamPCP's campaign compromised hundreds of open-source packages and affected organizations including GitHub, Mistral AI, Mercor, the European Commission, and employee devices at OpenAI. ⠀ Google says operational security mistakes later helped investigators identify an alleged TeamPCP member, with information passed to the FBI. Two Australians accused of being principal participants in TeamPCP were arrested last month.
1
3
220
Forget data brokers, I’ve been writing about government run people search tools for years. So I built SectorGov: a familiar search interface for discovering 7,373 government service links (and growing). Browse by location, service, vendor or software. No account required. sectorgov.com/
2
6
385
Jon Gaines retweeted
Facebook memories with this one from 17 years ago
52
30
810
22,509
Jon Gaines retweeted
you can just hallucinate the entire internet with Qwen 3.8 27b running at 2,000 tokens/second? part 2 of turning @cerebras + @Alibaba_Qwen 3.8 27B into an OS: built an offline browser with zero network calls and mounted it directly the JIT ubuntu desktop. no wifi. no scraping. zero packets sent to external CDNs. you search a site, set a year, and qwen 27b at 1,950 tok/s synthesizes the entire DOM on the fly. here is youtube in 2045 vs 1999: → search google for youtube inside the OS → scrub to 2045: instant futuristic feed → scrub to 1999: raw web 1.0 time capsule in seconds at this speed, browsing isn't retrieving files from a server, it's querying an alternate reality. a 2D browser window is just step zero. imagine full operating systems, virtual worlds, and complex simulation engines existing purely as model weights. zero gigabytes stored on disk, just pure interactive reality streamed on demand. What else becomes a possibility with the qwen 3.8 27b (dense) at 2000 tokens/sec?
Operating System powered by Qwen 3.8 27B at 1950 tokens/sec! here is what 1,950 tokens/second @Alibaba_Qwen's 3.8 27b actually looks like on @cerebras: i wrote a minimal python web server that turns cerebras inference into a live operating system. zero apps on disk. when you double click an icon: 1) python proxies a raw SSE stream from qwen 27b at 1,950 tok/s 2) calculator compiles & mounts in 11s 3) full canvas paint studio with brush engine compiles in 10s. at 2,000 tokens/second, software is just an on demand hallucination that runs instantly. the model weights ARE the operating system runtime. what else would you build at 1,950 tokens/second?
159
353
4,980
1,666,750
The 1995 cult film "Hackers" was released 31 years ago today. HackersDay.com #Hackers #HackersDay #HackersMovie #HackThePlanet
88
469
1,881
90,745
Jon Gaines retweeted
Fable learning to evade it's own classifiers in it's spawned subagents in Hermes lol
73
41
1,162
74,069
Jon Gaines retweeted
If you're still not convinced that we live in the future. I had my 4yo old son try "Putt-Putt", an old point&click game for children. He loves it, so I bought the whole series on Steam. However, it turns out half of them aren't localized in French, so he can't play them. Then I had an idea. I gave Claude (Fable 5.1) the following task: extract the voices from the game, transcribe and translate them, then re-generate them using voice synthesis. It did so completely autonomously, even using local models for the voice synthesis (I initially thought I'd have to buy credits for ElevenLabs or something similar). My input was only needed to point out some trimming issues in the initial generation. Now I can give my son a French localized version of the game, and all it took was one prompt.
42
39
770
76,919
Jon Gaines retweeted
I've never felt more like Tony Stark than I do now. Using my Meta Quest, I can just throw 3D models at my 3D printers to have them start printing it😂
237
858
11,758
478,047
Jon Gaines retweeted
移植Tesla的车机OS到QEMU,光是从内核启动、图形显示、触摸输入操作、就改了六七十个版本的 Patched rootfs,之前以为只要解决这几个问题就可以用了,谁能想到还要修复网络问题,毕竟QEMU没有使用4G模块,eth0等网卡还被拉入黑名单,沙箱 / seccomp / 权限层 、音频、浏览器、地图、流媒体 这些东西在QEMU里面真的是一堆Bug,工作量爆炸,要是没有AI,头发都要掉光🤒
34
57
738
56,826
Jon Gaines retweeted
was showing my normie friends codex and how you can just make whatever you want and they literally didn’t give a fuck
511
922
26,468
1,239,134
Just published some information regarding my new longer form independent security research project. It is assessing the security posture of multiple Verkada devices. gainsec.com/2026/09/06/verkr… Along those lines as Part 1-3 are in responsible full disclosure window I’ve released parts 4&5: github.com/GainSec/verkada-v… github.com/GainSec/verkada-v… Much more to come!
1
5
3,311
Jon Gaines retweeted
If your entire security "career" exists in the space between consuming information and talking about consuming information, you're not a practitioner. You're an audience member. A CV says "I know this." A PoC says "I did this." A patch says "I understood it well enough to fix it." A writeup says "I understood it well enough to explain it." A self-hosted environment says "I can make the fucking thing work." Short of these, you've got work to do. Don't hate the messenger.
2
17
107
6,310