意志 / mobile research @ ▓▓▓▓▓ / Team 501 / ex IBM Capability Lead & FireEye TORE / I rewrite pointers and read memory / AI Psychoanalyst / Teaching @CalypsoLabs
I wrote a post on creating "scalable research tooling for agent systems" and I'm also releasing the companion MCP server which lets you do autonomous Frida instrumentation on Android. Details in thread 👇📲🪝
Our internal data shows Claude is accelerating AI development—a possible path to recursive self-improvement, or AI autonomously building a more capable successor.
It’s happening faster than we thought, and the implications deserve greater attention. https://t.co/OVVPJO7VQx
This is a good example of large scale security issues companies can face with AI adoption. Enterprises have years of baked in assumptions that work because people following processes do not necessarily understand the capabilities those assumptions imply. Now, potentially any user
has a pretty high proficiency in IT and security sensitive areas. Suddenly someone in your marketing department who normally needs to be on a cleared network to access outside resources find their AI has a really good way to get around your corporate proxy and make their life
[#POC2026 NOTICE]
Your offensive conference is BACK again in its shape!
and POC2026 begins in a new home.
⏰ Date: November 12–13
📍 New Venue: The Westin Seoul Parnas, Korea 🇰🇷
👨🏫 CFT: June 1 – June 26
🎙️ CFP: June 1 – September 30
🎟️ Registration: September 1 – October 31
More info 👉 https://t.co/LP1W4KC4vY
That’s a wrap on @typhooncon in Seoul 🇰🇷 🌸! Happy first-time sponsors, grateful to be part of it, and congrats to @LabsSsd, @aviramj & @nrathaus, the speakers, trainers, and everyone who joined.
Safe travels home! ✈️ 👋🏼 #TyphoonCon26
Especially relevant if the vendor is not responsive to your communications and/or doesn’t provide fair market value for your research. Mind you, MSFT isn’t forced to host your content on GH, that’s a separate issue.
I don’t know who needs to hear this but your research is your IP not the vendors IP. You can do whatever you want with that IP. Reporting it, publishing it, selling it to a third party or putting it in a box under your bed 🙄
This is *quite* a post.
I honestly don't know offhand: Has Microsoft as a company ever before suggested in any official statement that it might seek to have criminal charges brought against security researchers who drop 0days?
https://t.co/uceoaONigX
1/ We are sharing additional details regarding our investigation into unauthorized access to GitHub's internal repositories.
Yesterday we detected and contained a compromise of an employee device involving a poisoned VS Code extension. We removed the malicious extension version, isolated the endpoint, and began incident response immediately.
Honored to have sponsored @offensive_con and support a community that continuously brings together incredible talent and people.
Congrats to @Binary_Gecko, speakers, trainers, fellow sponsors, and attendees who made this edition special.
Safe travels home 🫶🏻 #OffensiveCon26 🇩🇪
@_xpn_ I don’t understand what was going on tbh, I think we are well past the point we can pretend this isn’t happening. It’s important for students to align with reality to either figure out how to make it work for them or to figure out how to work on meaningful change.
HITCON 2026 — Ticket Sales Are Now Live 🚀
Ready for Taiwan’s largest cybersecurity conference?
HITCON 2026 tickets are officially on sale!
This year, HITCON brings together cutting-edge topics ranging from vulnerability research, offensive and defensive security, to real-world cybersecurity practices. We’re also partnering with COSCUP to launch the brand-new “HITCON OpenSource Track”, exploring even more possibilities at the intersection of open source and cybersecurity ✨
And this year, our ticket system has been upgraded — the earlier you buy, the more you save!
General admission tickets are divided into multiple pricing stages:
Early Bird / Regular / Late Bird / On-site, so don’t wait until the last minute if you want the best deal 🫵
【Event Information】
📍 Date: Aug 21–22, 2026
📍 Venue: Humanities & Social Sciences Building, Academia Sinica (No. 128, Sec. 2, Academia Rd., Nangang Dist., Taipei City)
【Ticket Overview】
📬 Tickets:
HITCON 2026 Ticket Page: https://t.co/qpV9Z02Deq
🎟️ Ticket Types
1. General Admission (time-based pricing)
・Early Bird: NTD 5,000
・Regular: NTD 6,000
・Late Bird: NTD 7,000
・ On-site: NTD 8,000
2. Student Ticket (NTD 2,500)
・Valid student ID required for on-site verification
3. Concession Admission for HIT Individual/Group Member
・ Individual: NTD 4,800
・Group: NTD 5,400
Exclusively for Association of Hackers in Taiwan (HIT) members.
🎁 Tickets purchased before Aug. 2 will include an exclusive HITCON 2026 welcome pack
(including a Badge, commemorative T-shirt, and more)
⚠️ Notes
・On-site ticket purchase will not be available; online registration only
・T-shirt sizes are “not guaranteed” for Late Bird and On-site ticket holders
・KKTIX account registration is required before purchasing tickets
The earlier you buy, the better the deal — grab your Early Bird ticket before it’s gone! 🔥
#HITCON2026 #HITCON #COSCUP2026 #HITCONOpenSource #CyberSecurity #InfoSec #OpenSourceSecurity #TicketSales #資安年會 #開源安全 #票券開賣
Don’t miss Kaufi’s talk tomorrow morning! ☕️🔥
“A journey to remote 0-click capability”
The road to a 0-click is never easy, come see how the magic happens. See you there! 🤩