Advertisement · 728 × 90

Posts by Nad

Is “Robofuzzing” taken? If not this new bug hunting should now be called robofuzzing.

1 day ago 1 0 0 0

Unless yall mean dollarydoos, that is a seperate and failed currency.

1 day ago 4 0 1 0

Australian here, yes we do just turn the USD upside down.

1 day ago 5 0 2 0

I need a Covfefe, a Big Mac and an Amphetameme.

2 days ago 0 0 0 0
Video

Just got access to Mythos.. here’s a rare glimpse into its inner workings..

4 days ago 0 0 0 0

They got a Claude that isn’t Autistic? Like Gemini type Claude?
I been using Gemini as a normy to Autism translator but me n Claude be gaslighting each other 🤣.

4 days ago 1 0 0 0

I see people trying to evade Defender.. I got some weird flavour of Autism where I’m having the opposite problem. I’m trying to trigger defender but can’t work out how to make malware that actually sets this heap of shit off 🤣🤣
I could go and look but that’s no fun.

4 days ago 0 0 0 0
Advertisement

ADHD is defined by having people constantly tell you you can’t do this and you can’t do that.
But your just standing there thinking to yourself “This person clearly hasn’t realised that I’ve already done all of the things they’re telling me I can’t do”
Like bruh I’m sorry its it’s already too late

5 days ago 0 0 0 0

🤣

6 days ago 0 0 0 0

Wordpress just needs to be set on fire

6 days ago 1 0 0 0

👀

1 week ago 0 0 0 0

You pay the robot to introduce the vulnerability, Then you pay the same robot to ‘find’ and ‘fix’ the vulnerability.
The cooling loops need more elctrolytes, it’s what the GPU’s crave!

1 week ago 11 6 0 0

Gods work. Thanks legends :)

1 week ago 0 0 0 0
Preview
GitHub - Rat5ak/bpf-research: CVE-2026-31413: BPF verifier soundness bug - container escape exploit CVE-2026-31413: BPF verifier soundness bug - container escape exploit - Rat5ak/bpf-research

github.com/Rat5ak/bpf-r...

1 week ago 0 0 0 0
Advertisement
Preview
CVE-2026-31413: BPF Verifier → Container Escape | NadSec One byte in the BPF verifier. Arbitrary kernel R/W. Full container escape to host root. Video demo included.

CVE-2026-31413 - Linux Kernel Local Priv Esc

One extra + 1. That's the whole bug.
BPF verifier: insn_idx + 1 instead of insn_idx. Skips an instruction. For BPF_OR, verifier sees zero, CPU has your constant. Arbitrary kernel R/W.
Full container escape. Just CAP_BPF.
www.nadsec.online/blog/bpf-con...

1 week ago 0 0 1 0
Video

CVE-2026-31413

Found a 1-char bug in the Linux BPF verifier. A + 1 that should've been + 0 in maybe_fork_scalars() gives you OOB map access and full container escape from any pod with CAP_BPF. Fix in 7.0-rc5.
-Technical writeup with POC dropping soon.
-Patched by me =-]
www.cve.org/CVERecord?id...

1 week ago 1 0 0 0

They just weren't paying the guy enough to not steal 100 mil worth of exploits and get absolutely bent over by the Russians...
If I was earning half what that guy would have been I wouldn't be having money troubles lmao.

1 week ago 0 0 0 0

One day they’re gonna put “no long boi dashes” in the system prompt and it will be all over.

1 week ago 0 0 0 0

So Anthropic Mythos only available to certain people and orgs as part of a gated rollout.
Thank god it won’t be possible to phish any of those certain peoples accounts and thank god none of them have an info stealer installed! Otherwise criminals would be able to use it!

1 week ago 1 1 0 0

It does exist (kinda) I setup my own similar setups. The backend that powers and enables all this stuff is nuts
Hmu

1 week ago 0 0 0 0

@d3ada55.bsky.social
At the end of the episode you guys were talking about a non-malicious super box and how it would be crazy if that existed.

@jackrhysider.bsky.social
-leekhoarder@onlineupdate.zip

1 week ago 0 0 1 0
Advertisement
SSH & Telnet Honeypot - Brute Force Attack Data | NadSec SSH and Telnet honeypot capturing brute-force attacks. STIX IOC feeds and AI threat reports.

The Robot has began writing its monthly reports.
I swear they’re funny..

Here’s the March ssh/telnet report, more can be found on my site, Robert is finishing the remainder up now:

www.nadsec.online/ssh-telnet

-written by Robert, the self-proclaimed Senior Threat Intelligence Goblin

2 weeks ago 1 0 0 0

Yup

3 weeks ago 1 0 0 0

March update:
Still no hoverboards, cigarettes are still bad for you..

4 weeks ago 0 0 0 0

🤣🤣💯💯

1 month ago 1 0 0 0

But Claude says I’m a big boy and I did it myself :(

1 month ago 1 0 1 0

I can already do this

1 month ago 1 0 1 0

When are people going to get realistic and accept that these AI agents effectively are holding zero days for every single piece of technology on Earth RN.
So many people in denial..
yall gonna find out over the next couple of month or so… (more likely the next couple of week)

1 month ago 2 0 1 2
Preview
A ridiculously deep dive into the Coruna Exploits - Risky Business Media Join James Wilson in this solo podcast as he takes a (ridiculously) deep dive into the Coruna exploit kit. James was a software engineer a [Read More]

Yall are gonna wanna listen to this one:

risky.biz/RBFEATURES5/

1 month ago 1 1 0 0
Advertisement
curl - use after free in SMB connection reuse - CVE-2026-3805

Found this bug on the weekend :)
curl.se/docs/CVE-202...

Curl is cool. For the love of the game..

1 month ago 2 0 0 0