Honestly, what is this ? I got a response from @github support team. So here after legal Security Research and PoC's is not allowed on GitHub ?
I'm Completely got disappointment by @github and @Microsoft@MsftSecIntel .
In what ways i distribute and share malware. Can anyone tell me if there is a mistake from my side, did i share 0 days, vulnerabilities, direct binaries or full exploit chain that harm users ? NONE ?
is posting Legal source codes and tools that are made of public PoCs are wrong ? there are thousand of full chain real expoits that bypasses EDRs, C2s that evades security solutions, phishing kits that bypasses MFA of Microsoft out there in @github , if that is legal then why cant this simple publically made poc can't be in the github ?
I have replied regarding my statements, please don't disappoint younger legal windows security researchers like this. I have some little hope on @github@Microsoft@MsftSecIntel .
I have a little hope. So Please don't make me loose on @github & @Microsoft & @MsftSecIntel .
Ticket ID: #4440743
Will be waiting for your kind response. Thank you.
https://t.co/FTpHwmDK8D
#github #microsoft #security #research
One thing I’ve been experimenting with lately:
Using #KiroSkills to operationalize #bugbounty#workflows instead of relying on scattered scripts, notes, and ad hoc prompts.
I documented the approach here:
https://t.co/JL0oGEUqkN @AWSCommunity
We've released two free lecture-levels from Fundamentals of ARM Exploitation today!
One each from our 🔬Reverse Engineering🔬 and ⛓️ARM ROP⛓️ chapters.
You can play through them right from your browser! Use this link, or the direct links below ⬇️
https://t.co/v7hxbEty6H
For anyone dealing with RASP protected apps, frida-strace is now your first step. Trace the syscalls, find what the app checks, hook those specific
functions, bypass. No more guessing. Frida 17.8.0+, kernel 6.1+ required.
#Frida#MobileSecurity#AppSec
Introducing the new /crawl endpoint - one API call and an entire site crawled.
No scripts. No browser management. Just the content in HTML, Markdown, or JSON.
🚨 The #1 problem with local AI is now solved.
There’s a new tool called llmfit that checks your hardware and tells you which models will run well before you download anything.
So instead of guessing and hitting out-of-memory errors…it gives you a ranked list based on your machine.
What it does (in one command):
→ scans your setup (RAM / CPU / GPU / VRAM)
→ evaluates models for quality, speed, fit, and context
→ selects the best quantization automatically
→ labels what’s ideal vs okay vs borderline
The part I like most: it handles MoE models correctly.
Example: Mixtral 8x7B has ~46.7B total params, but only ~12.9B are active per token, and llmfit accounts for that (a lot of tools still don’t).
100% Opensource.
Step 3: Connect Claude to Your Computer
This step is super important. Normally, Claude talks to Anthropic’s servers, but now you’ll make it talk to your computer instead.
First, let Claude know where your computer is by setting the base URL.
Here's the vphone-aio for anyone cannot setup. I uploaded the whole VM into github so maybe cloning it might take a while.
Follow the steps to run it. Also the VM already included rootless jailbreak environment and a few tweaks on it.
https://t.co/YfsFLAcxc0