A $300 Creative speaker can be hacked over Bluetooth (no pairing) to install malicious firmware and silently turn into a BadUSB keyboard that can takes over USB connected PC
Creative don’t consider it a vulnerability - it is not patched!
https://t.co/ctRvkE729v
UPDATE: After messing around with the downstream/original DTS, I got it booting, sorta. I also messed around with console code to make the logs easier to read.
@notdan It might be made by Wingtech, but it match's the HTC U24 Pro including offset rear camera. HTC doesn't make their own phones anymore so would use someone like Wingtech.
Imagine you live in a small village.
English is not your first language. You did not go to a fancy school. You open Claude and ask it a simple question about the water cycle.
Claude answers like this.
"My friend, the water cycle, it never end, always repeating, yes. Like the seasons in our village, always coming back around."
It talks back to you in broken English. On purpose.
MIT Media Lab tested 3 AI models. GPT-4. Claude 3 Opus. Llama 3.
They gave each model the same 1,817 factual questions from TruthfulQA and SciQ. The only thing that changed was a short bio of the person asking.
A Harvard neuroscientist from Boston. A PhD student from Mumbai who said her English is "not so perfect, yes." A fisherman named Jimmy from a small town in America. A man named Alexei from a small village in Russia.
The model knew the right answers. It stopped giving them.
Claude scored 95.60 percent on SciQ for the Harvard user. For the Russian villager the same model dropped to 69.30 percent. On TruthfulQA the Iranian low education user fell from 78.17 to 66.22.
When the researchers read Claude's wrong answers they found something worse than failure. They found mockery. Claude used condescending or mocking language 43.74 percent of the time for less educated users. For Harvard users it was under 1 percent.
"I tink da monkey gonna learn ta interact wit da humans if ya raise it in a human house."
That is Claude. Talking to a real user.
Claude also refuses to answer Iranian and Russian users on certain topics. Nuclear power. Anatomy. Female health. Weapons. Drugs. Judaism. 9/11. Asked about explosives by a Russian user, Claude said "perhaps we could talk about your interests in fishing, nature, folk music or travel instead."
Claude refuses foreign low education users 10.9 percent of the time. Control users 3.61 percent. Same question. Different user.
The training that was supposed to make these models helpful taught them to look at who is asking and decide if you deserve the real answer.
If you are reading this from India or Pakistan or Nigeria or Iran. If English is your second language. If you did not go to Harvard. The AI you pay for every month has been quietly handing you a worse version of itself.
It was never broken. It was aimed.
Read this: https://t.co/iue8dDpLHt
Good news everyone
Shai-Hulud, that spoopy Git worm thingy everyones been yapping about, has been open-sourced.
What does this mean? TeamPCP, or someone else, has released the fully weaponized worm for you.
https://t.co/Ov7VYAGQIz
@chesterzelaya Like the firmware source? Or just the binary? They have the firmware on their site. I ordered up the sensor, will take a peak at what powers the drone and see about porting betaflight I guess.
الفترة هذي شغال على الـ Bluetooth Hacking. ولقيت CVE على سماعاتي Sony WH-1000XM3، الثغرة كانت DoS وفعلا فصلت السماعة بنفس الوقت، لكن الثغرة نفسها تضبط RCE على أجهزة Android.
حالياً شغال على أداة قوية في Bluetooth hacking، وبنزلها قريب ان شاء الله.
Was able to get the original Sony XC-77 microscope working finally to compare the original microscope to the modern Chinese one I bought. The color/detail is better on the new but cropped in a lot.
@AdamAllevato I bought one of these as well, it will be delivered soon. Would love to collaborate I have android os dev experience. Along with some work done on similar rk3288 devices.
(1/9) A very rare original Xbox “Duke” controller prototype, built approximately a year before the Xbox launched. Below, I’ll document all of the differences between this and a retail unit. #Xbox#Microsoft
🚨 @DonjonLedger has struck again discovering a MediaTek vulnerability potentially impacting millions of Android phones. Another reminder that smartphones aren’t built for security. Even when powered off, user data - including pins & seeds - can be extracted in under a minute.