Recently I fell in love with something new, and now it's time to share it with the world! 🌈
Here are 5 reasons why you should start doing CTFs! :)
https://t.co/k6K4LQeNdL
Following my previous post, I wrote another blog on a futex bug that was patched not long ago.
It allowed any attacker with an untrusted selinux context to elevate privileges given the right instruments.
Also joining BlueHatIL: @0xgalz & @ido__shani with ChainLeak: From AI Framework to Cloud Secrets - a fascinating behind-the-scenes look at the vulnerabilities they uncovered in Chainlit, and what we can learn from them. Don't miss. Register now: https://t.co/Rl8t6wHSOj
We live in interesting times.
Last month Linux patched a core uaf in the epoll subsystem, we rarely see these kind of bugs.
As i like these kind of bugs, i wrote a few words about it here: https://t.co/XIiPU7LSSN
The wait is over! Registration and the full agenda for BlueHatIL 2026 are now live. Register now before spots are gone!
Register here: https://t.co/zVl9dIyv4u
Full agenda: https://t.co/tumf4VWCVG
Zafran Labs identified 2 critical vulns in Chainlit, a widely used AI framework. The flaws allow attackers to leak cloud API keys and steal sensitive files, as well as perform SSRF against servers hosting AI applications. @0xgalz@ido__shani https://t.co/4lJ92HhKs5
My team just published our latest research uncovering vulnerabilities in Chainlit, an open source AI framework for building conversational AI applications. Great work by @ido__shani 👏
Huge thank you to @hexacon_fr for hosting BlackHoodie, to our trainers @pamoutaf, @naehrdine and Sonia, and much love to @Car0line_Le for pulling it all together ❤️❤️❤️ the trainings were a huge success, now have a fun conference everyone!
🚨 Time to reveal our first-class lineup for HEXACON 2025! ✨
A few training spots are still available if you want to join the party! 🎉
Unfortunately, trainings + conference packs are sold out
https://t.co/zy6FX3I57C
Working with the JVM or just curious how to dig deeper into it? Marc’s Dynamic Analysis of JVM Processes from RE//verse 2025 is a good one to queue up. Give it a look: https://t.co/EF5jT0xfE6