Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
deadliftdouche
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
1.
▲
by
deadliftdouche
5mo ago
I agree. There are more blogs talking about LLM findings vulnerabilities than there are actual exploitable vulns found by LLMs. 99.9% of these vulnerabilities will never have a PoC because they are worthless unexploitable slop and a waste o
2.
▲
by
deadliftdouche
2y ago
https://github.com/Speykious/cve-rs
3.
▲
by
deadliftdouche
2y ago
Nice writeup and fuck Zendesk, this could have done so much damage.
4.
▲
by
deadliftdouche
3y ago
https://imgflip.com/i/8f7fjl
5.
▲
by
deadliftdouche
3y ago
I'd argue its worse than pointless, at best it does nothing and at worse it seems to make the code harder to understand and audit, which could result in more future vulnerabilities.
6.
▲
by
deadliftdouche
3y ago
I don't understand, isn't this pointless? I could just change some other data structure or variable, hell, I'll just change the sudo input buffer size and do a stack overflow, or a memcpy size into a heap overflow, or what st
7.
▲
Taking Local File Disclosure to the Next Level
(ionize.com.au)
1 points
by
deadliftdouche
8y ago
|
0 comments
8.
▲
Deserialisation Vulnerabilities
(ionize.com.au)
2 points
by
deadliftdouche
8y ago
|
0 comments
9.
▲
by
deadliftdouche
9y ago
I'd recommend people also check out ishell https://github.com/abiosoft/ishell I've used it in a project before and absolutely loved the API + autocomplete functionality.