Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
evilsocket
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
evilsocket
5mo ago
It does not make the numbers, research and original research on top of which this is based, wrong :D
2.
▲
by
evilsocket
5mo ago
that's exactly the next-round attack. StarScout's network-centrality defense works for the current generation of campaigns but won't survive LLM-generated PR/commit patterns
3.
▲
by
evilsocket
5mo ago
Agree that sophisticated funds don't, but the ecosystem hasn't caught up. StarHub/GitStar pricing pages still sell to "seed-stage founders pre-fundraise"
4.
▲
Mongoose: Preauth RCE and MTLS Bypass on Devices
(evilsocket.net)
2 points
by
evilsocket
6mo ago
|
1 comments
5.
▲
by
evilsocket
6mo ago
Mongoose network library <= 7.20 CVE-2026-5244 - mg_tls_recv_cert pubkey heap-based overflow (exploitable), CVE-2026-5245 - mDNS Record stack-based overflow (exploitable), CVE-2026-5246 - authorization bypass via P-384 Public Key (trivia
6.
▲
by
evilsocket
6mo ago
we are so fu*ed
7.
▲
by
evilsocket
9mo ago
Agreed 100%, never said the opposite
8.
▲
by
evilsocket
9mo ago
I just meant that it was very convenient to have the firmware images there on S3, nothing else :D Many vendors make the process of even just obtaining a copy of the firmware much harder than that, so for once I was glad it has been much eas
9.
▲
by
evilsocket
9mo ago
Do you people realize that there's a big difference between open source and proprietary technologies right?
10.
▲
Open sourcing Nerve, a tool to instrument LLMs to perform tasks, without code
(github.com)
4 points
by
evilsocket
2y ago
|
1 comments
11.
▲
by
evilsocket
2y ago
Nerve is a tool that creates stateful agents with any LLM — without writing a single line of code. While it was inspired by other projects such as Autogen and Rigging, its main goal and core difference with other tools is to allow the user
12.
▲
by
evilsocket
4y ago
lol thank you ... yes they did
13.
▲
Cryptographic failures in RF encryption allow stealing robotic devices
(cossacklabs.com)
63 points
by
evilsocket
4y ago
|
17 comments
14.
▲
Weaponizing and Gamifying AI for WiFi Hacking: Presenting Pwnagotchi 1.0.0
(evilsocket.net)
3 points
by
evilsocket
7y ago
|
0 comments
15.
▲
How to Create a Malware Detection System with Machine Learning
(evilsocket.net)
2 points
by
evilsocket
7y ago
|
0 comments
16.
▲
by
evilsocket
9y ago
as long as i know, you definitely need root to communicate with netlink .... i don't think there're gonna be large packet flows, only first connection packets tnx to conntrack, it's doable :)
17.
▲
by
evilsocket
9y ago
Ahah not really 24/7, but you're almost there :) it's my way to repay the OSS community for everything I learned from OSS during my life.
18.
▲
by
evilsocket
9y ago
As I said, it'll be in C++, Go is great, Rust too, but I just can't get used to their syntax :D
19.
▲
by
evilsocket
9y ago
OpenSnitch is not only about ftrace, check the NFQUEUE handling, moving to native will improve performances and stability. Also, it requires root because that's the only way it can install the iptable rules it needs in order to functio
20.
▲
by
evilsocket
9y ago
OpenSnitch author here ... although performances are not a big deal here because only conntrack packets are intercepted, the project will move to a C++ implementation once the current Python prototype/PoC will be complete and will prov
21.
▲
by
evilsocket
9y ago
OpenSnitch author here ... that's exactly the direction the project is going, C++ daemon running as root and low privileged UI in Python or whatever. The current implementation is more of a PoC/test to see the whole logic working
22.
▲
Android Applications Reversing 101
(evilsocket.net)
1 points
by
evilsocket
9y ago
|
0 comments
23.
▲
Analysis of multiple vulnerabilities in AirDroid (~50M Android users vulnerable)
(blog.zimperium.com)
3 points
by
evilsocket
10y ago
|
1 comments
24.
▲
by
evilsocket
10y ago
absolutely! :D
25.
▲
by
evilsocket
10y ago
ooooops, I didn't see that ... anyway, mine looks more complete so it wasn't 100% wasted time :D
26.
▲
Reversing the Smarter Coffee Machine Protocol to Make Coffee Using the Terminal
(evilsocket.net)
5 points
by
evilsocket
10y ago
|
4 comments
27.
▲
WiFi Pentesting with a Pineapple NANO, OS X and BetterCap
(evilsocket.net)
3 points
by
evilsocket
10y ago
|
0 comments
28.
▲
Analysis of multiple vulnerabilities in different open source BTS products
(blog.zimperium.com)
3 points
by
evilsocket
10y ago
|
0 comments
29.
▲
Samsung Galaxy Apps MITM Vulnerabilities
(evilsocket.net)
2 points
by
evilsocket
10y ago
|
0 comments
30.
▲
by
evilsocket
10y ago
now you know :)
More ›