Kicking off my writing on visualization and software with a post on my most recent Binary Ninja plugin, Ariadne! https://t.co/RRXH8z38Zg
Learn how interactive graphing helps with reverse-engineering and some common workflows. #infosec#dataviz
I'm optimistic we can create _some_ type of knowledge-based security-related community activity but traditional online jeopardy-style CTF as a competitive format is on its deathbed and this video hurts. Big love to the community that has meant the world to me the past 11 years!
RE//verse 2026 talks are live on YouTube! Want to revisit a talk or catch the ones you missed? The full playlist is now available:
https://t.co/HbQUuGF0IZ
Junkyard was an absolute pleasure to host again, it was awesome to see it take off... we even had a Roller Coaster Tycoon exploit this year!
In case you missed the show, @caseyjohnellis gave a great writeup of the EOL targets and exploits shared: https://t.co/HhlTrocQHw
THATS A WRAP ON DISTRICTCON YEAR 1! ☃️❤️🪩
We sincerely hope you had a great time - it wouldn’t be possible without our amazing team, our speakers, the villages, our sponsors, and most importantly YOU! We hope this brings you a sense of community. Stay warm, be good to each other, and we’ll see you again for Year 2!
@pcaversaccio@Lotem_Kahana If you open a workspace with a .vscode/settings.json file overriding these settings, does that override this?
Workspace trust has a lot more surface than it seems, and when I previously reported issues I was told they think "do you trust the authors" is sufficient warning.
VSCode has leaned forward on a lot of fantastic usability enhancements...
But their recent "terminal autocomplete suggestion" setting has definitely been a mixed bag for me (distracting and suggests bad completions).
To disable: settings > "terminal suggest" and uncheck
A friend told me I buried the lead, and that they felt this chart tells the tale.
While the sample size is very small, the data does not favor humans given the specific parameters of LiveCTF (average human solve 22.8 min).
Finally ran my own experiment with AI on LiveCTF challenges after seeing a bot beat top players.
…and I was surprised by the success of current models with a single prompt.
Sharing what I did so you can try it yourself: https://t.co/OAaswxidPD
Team Atlanta's report explains how their 1st place CRS found & patched bugs... and you can just read the code! https://t.co/FGZsDjbSwL
The report covers a ton: orchestration, LLM strategies, patch generation... but really shines in its coverage of practical fuzzing issues.
Interested in Submitting to Junkyard? Want to hang out with fellow researches? Workshopping ideas? Come hang out with the Junkyard Team for a Virtual Happy Hour!
Wednesday October 1, 8pm ET (5pm PT) (1, maybe 2 hours?)
RSVP: https://t.co/PFqbPDHwnd
@spaceraccoonsec Check out their community plugin repo, then write a plugin to do something you think is interesting.
https://t.co/eAtUAij0Qh
My guess is you'll stick with BN once you've used the API.
ICYMI: 5 systems from AIxCC are now Open Source: https://t.co/sr0dx1zZu4
An unprecedented opportunity to peek into the toolkit of top security teams.
Everything from prompt templates, to terraform code, to implementations of very recent research techniques, it's all there 👀