@decodebytes I see btw, I saw from the documentation that After apply(), there is no way to expand permissions. The sandbox persists for the lifetime of the process and all child processes. /tmp/myapp-<session-id> would not work with nono in that case right ?
@ZackKorman Definitely observability and detection. Also wouldn't it be better to just manage the MCP servers, especially with enterprise controls available for claude ?
4 Chained zero days and to top it of ML to detect what pictures/documents are relevant to them. Operation Triangulation is quite interesting.
Vid: https://t.co/rTbPpmZWc8
@JustJake@LinkedIn@JustJake You can actually verify employment https://t.co/qKS1gXszZ5, It's current enabled for selected companies only though , with plans to expand.
I'm kicking off a series of blog posts about interesting vulnerabilities I've found and responsibly disclosed over the years, starting with a complex chain of vulnerabilities leading to XSS on https://t.co/rI8AvwILsh back in 2016: https://t.co/oH8Kc7z3ho
I never thought I would experience a XSS on Google Search. But @kinugawamasato blew my mind!
This is a video going over the difficulties of sanitizing HTML in JavaScript.
https://t.co/T61VJJEuDE
Finally wrapped up writing on an interesting distributed tracing helper which I initially built in #python and then had to rewrite in #golang https://t.co/E5wyvBPUDW
Learn to pentest the modern stack including continuous build & deployment tools, message brokers, configuration & resource management systems, and distributed file systems from end-to-end in #BHEU Training w/ @torque59 & @tunnelshade_ https://t.co/cG6Nm9nBlB