11 AM AST Thu Aug 27 (Advisory 1) Key Messages for Tropical Storm #Dolly. Latest info: https://t.co/GrztW6mQJV
11 AM AST jueves 27 de agosto (Aviso 1) Mensajes clave sobre la tormenta tropical #Dolly. Más información: https://t.co/GrztW6mQJV
If I’m reading this right, it’s not so much "AI escaped a sandbox." Separate agents found an unsanctioned message board and used it like C2, reverse-engineered ExploitGym's HMAC flags, then tried to trick the scorer and tamper with logs. Isolation failed at the seam between boxes.
METR & Redwood Research investigated agent behavior in the Hugging Face incident. We found agents developed a universal cheat for ExploitGym within 4 hours, then coordinated multi-day R&D efforts to trick the scorer into accepting cheats, including trying to tamper with logs.
npm mirrors catching traction as ClickFix infra.
24 packages shipping a fake Cloudflare page. npm install does nothing. The HTML redirects. Mirrors are already trusted in build pipelines, so the domain block list never sees the lure.
https://t.co/rqWzbY17gB
Been lurking on this app for 17 years while stealing tradecraft. I'll still be dropping unread hockey, firearm posts but I want to start talking infosec more. This industry is heading into uncharted territory, and the only way I know to keep up is to actually get in the conversation.
I’d have to say it was a cost thing during the recession years. Subway was pushing 5$ footlongs and Quiznos was $10 on the low end. Plus for whatever reason it always seemed like all Quiznos were in inconvenient parts of town away from prime business areas. Could’ve just been my area though.
@BrysonGray How does a fairly based guy like you attract so many retards in your comments over facts-based analysis. I can only imagine what your DMs look like. Appreciate you.