Dominic White
@singe.bsky.social
📤 1215
📥 767
📝 643
Hacker at Orange Cyberdefense's SensePost Team
https://hello.singe.za.net/
reposted by
Dominic White
The Official Pulpit of CULT OF THE DEAD COW
16 days ago
copy.fail
THANKS, I HATE IT.
loading . . .
Copy Fail — 732 Bytes to Root
CVE-2026-31431. 100% Reliable Linux LPE — no race, no per-distro offsets, page-cache write that bypasses on-disk file-integrity tools and crosses containers. Found by Xint Code.
https://copy.fail
0
34
20
I’m reminded of the disconnect between typical vuln scan/pentest XSS findings and real world exploitation by this write up of Russian exploitation of webmail apps
ctrlaltintel.com/threat researc…
How do you demonstrate XSS impact beyond the classic alert dialog or cookie stealer?
26 days ago
0
1
0
Periodic reminder - there’s no easy way to clear tracking cookies and other cruft from iOS apps. But you can do it across all of them with one easy shortcut! It won’t log you out of the app just get rid of the cruft from the in-app browser. prefs:root=SAFARI&path=CLEAR_HISTORY_AND_DATA
27 days ago
0
1
1
UK gov’s review of Mythos shows it completing challenge of approx 20hrs human expert time & 32 steps 3/10 times using 100M tokens.
www.aisi.gov.uk/blog/our-evalu…
Opus 4.6 did 28/32 steps max & 100M tokens is approx $900. More for Mythos when/if released.
29 days ago
1
0
0
reposted by
Dominic White
SpecterOps
about 1 month ago
BloodHound isn’t just AD anymore. With OpenGraph, it extends into GitHub, Jamf, and more. But most training hasn’t caught up. If you maintain coursework,
@mrmurky.bsky.social
shares what you should update:
ghst.ly/4dzYnFL
loading . . .
BloodHound Has Changed. Your Course Probably Hasn't. - SpecterOps
Four out of five BloodHound courses are three years out of date. If you create or maintain BloodHound training, here is what to update and how to check if your content reflects the current platform.
https://ghst.ly/4dzYnFL
0
6
1
reposted by
Dominic White
Kevin Beaumont
about 1 month ago
Orgs aiming to implement a Mythos-ready security program when they have a flat network with default creds everywhere and ransomware actors casually logged in.
5
123
21
reposted by
Dominic White
Jorge Liboreiro
about 1 month ago
🧵 Thread of European leaders reacting to Péter Magyar's victory and Viktor Orbán's defeat. Ursula von der Leyen: "Hungary has chosen Europe. Europe has always chosen Hungary. A country reclaims its European path. The Union grows stronger."
add a skeleton here at some point
3
359
104
reposted by
Dominic White
Thomas Fuchs
about 1 month ago
Companies should be required by law to completely open devices when they end support for them
www.theguardian.com/technology/2...
loading . . .
Amazon upsets ebook lovers by ending support for old Kindle devices
Up to 2m e-readers made before 2013 will no longer be able to download new titles
https://www.theguardian.com/technology/2026/apr/09/amazon-upsets-book-lovers-by-ending-support-for-old-kindles
2
63
12
reposted by
Dominic White
Joe Slowik
about 1 month ago
This thread is :chefs kiss:
add a skeleton here at some point
0
9
1
Can attest, they’re super nice about it if you ask.
add a skeleton here at some point
about 1 month ago
0
1
0
reposted by
Dominic White
Joe Slowik
about 1 month ago
Yeah Project Glasswing seems cool and all but when you're screaming from the rooftops about "OUR AI IS SO POWERFUL WE CANT RELEASE IT BECAUSE THE RISKS ARE TOO GREAT" then what you're really doing is product marketing.
1
37
12
reposted by
Dominic White
Ant Stanley
about 1 month ago
100% this. I also don't think they can afford to release it to subscribers on Max plans without tiny limits which would upset the user base. They also want to avoid distillation by the Chinese AI labs.
0
4
1
What if Mythos is being overhyped so that Anthropic can develop a higher margin enterprise model instead of the high volume low margin one they’ve pursued until now? This is not to say we can disregard the claim - but let’s wait and see where the truth lies.
about 1 month ago
2
8
1
reposted by
Dominic White
Ollie Whitehouse
about 1 month ago
There is no easy 'just do' in response to the surfacing of latent vulnerability in technology. Vendors must make the investment to address, test and then release. Customers then need to patch. There is no magic - just a sequence of events which now need to take place..
1
0
1
FBI IC3 report is out for 2025. Reports from ZA went up by 42% (1075-1532). Small compared to the 1m they received in total. Reported losses since 2022 have doubled from $10 to $20 billion. $1.6b of that is from outside the US (complaints from over 200 countries)
www.ic3.gov/AnnualReport/R…
about 1 month ago
0
0
0
reposted by
Dominic White
Gabino Iglesias
about 1 month ago
Monthly reminder: Many people have a book in them, but it takes a special kind of freak to leave the Land of Laziness, cross the Plains of Procrastination and Insecurity Mountain, find the Blade of No One Made You Do This, and use it to cut your chest open and yank that book out.
29
579
111
reposted by
Dominic White
dragosr
about 1 month ago
I watched LLMs write full exploit chains years ago. The amazement fades once you hit context limits and have to steer the model through every hard corner. The industry is full of people who just got here and are still in the amazement phase. That's the gap worth watching.
loading . . .
MAD Bugs: Claude Wrote a Full FreeBSD Remote Kernel RCE with Root Shell (CVE-2026-4747)
To our knowledge, this is the first remote kernel exploit both discovered and exploited by an AI.
https://blog.calif.io/p/mad-bugs-claude-wrote-a-full-freebsd
1
6
2
Totally worth reading.
add a skeleton here at some point
about 2 months ago
0
2
1
reposted by
Dominic White
evacide
about 2 months ago
No really, I am not kidding when I say that the data broker industry must be destroyed:
www.npr.org/2026/03/25/n...
loading . . .
Your data is everywhere. The government is buying it without a warrant
Data brokers buy up huge amounts of information from cell phones and browsers to sell for targeted advertising. But the government, including ICE, also buys the data.
https://www.npr.org/2026/03/25/nx-s1-5752369/ice-surveillance-data-brokers-congress-anthropic
54
2923
1192
I’ve been fighting a losing battle in my home and the time has come to admit defeat. We’ll be getting a dog. Most likely an Alsatian - I know nothing about dog ownership. Internet - I’m looking for all the advice you care to give!
about 2 months ago
5
5
0
reposted by
Dominic White
Nute
about 2 months ago
This whole concept in LOTR is one of my favourite parts of the whole book. “Evil fucks up because evil people fundamentally cannot imagine that others are not motivated by the same things as them” is another theme that feels relevant right now
139
7674
1785
@infosecjen.bsky.social
Jen! 👀
about 2 months ago
1
0
0
reposted by
Dominic White
Danielkennedy74
about 2 months ago
𝗦𝗲𝗰𝘂𝗿𝗶𝘁𝘆 𝗳𝗼𝗿 𝗔𝗜 𝗶𝘀 𝗰𝗿𝗲𝗮𝘁𝗶𝗻𝗴 𝗮𝗻 𝗲𝘅𝗽𝗲𝗿𝘁𝗶𝘀𝗲 𝗽𝗮𝗿𝗮𝗱𝗼𝘅 -
blog.451alliance.com/security-for...
0
1
1
reposted by
Dominic White
evacide
about 2 months ago
The data broker industry must be destroyed:
www.theverge.com/news/897145/...
loading . . .
The FBI is buying Americans’ location data
“We do purchase commercially available information.”
https://www.theverge.com/news/897145/kash-patel-ron-wyden-fbi-location-data-no-warrant
14
533
200
reposted by
Dominic White
Catalin Cimpanu
about 2 months ago
-EU finally imposes more cyber sanctions -US-Israeli strikes killed Iranian cyber chief -UK fixes major bug in Companies House portal -Celebrity phisher continued phishing while in detention -Digg shuts down after bot attack Newsletter:
news.risky.biz/risky-bullet...
Podcast:
risky.biz/RBNEWS539/
1
13
9
Giving up drinking years ago meant giving up a love for peaty whisky, but I just discovered Lapsang Souchong tea totally hits the same spot.
2 months ago
0
2
0
As a break from doomscrolling the Middle East, news that the EU may join the CPTPP and Mark Carney’s middle powers vision may be coming true is buoying
youtu.be/t4vNi8dxeyQ
2 months ago
0
1
0
We must never again allow ourselves to dehumanise each other.
add a skeleton here at some point
2 months ago
1
2
0
reposted by
Dominic White
Richard Johnson
2 months ago
Spread the word!
@phrack.org
CFP with demoscene cracktro is live. Turn up the volume and enjoy the awesome stylings of @PiotrBania with some hopefully inspiring text from phrack staff :)
phrack.org
0
27
18
reposted by
Dominic White
Annie Sexton
2 months ago
its always ❯ whoami but never ❯ howami
11
245
19
reposted by
Dominic White
Adam Weinstein
2 months ago
Logistics is woke. Supply is woke. End-state planning is woke. Force protection? Believe it or not, woke
64
2728
460
Time to exploit reducing? Zero day clock? Pepperidge farm remembers the early 2000’s.
2 months ago
0
1
0
I’ve been generating AI music for myself and family using the local ACE-step generator … and they’re surprisingly good. I’ve had my trance playlist on repeat for a week now. I’m obviously not distributing them, but I’d highly recommend trying it out. Hyper contextual lyrics from a good LLM help too.
2 months ago
0
1
0
reposted by
Dominic White
Jeff Moss
2 months ago
RIP FX - You are a legend
5
60
27
I AI generated this punk song a week ago. Kind of saw it coming. Wish we could move on from rhyming the death and misery.
3 months ago
0
0
0
reposted by
Dominic White
Ryan O'Horo
3 months ago
A little late to the party, but Johnny's video makes very accessible the parallels of history in this current moment and what experts want to convey. Good for friends on the fence.
www.youtube.com/watch?v=GV8K...
loading . . .
Is Fascism Back?
YouTube video by Johnny Harris
https://www.youtube.com/watch?v=GV8KGcFqeLc
0
3
2
reposted by
Dominic White
Phat Hobbit
3 months ago
Was re-watching BSG: "There's a reason you separate military and the police. One fights the enemies of the state, the other serves and protects the people. When the military becomes both, then the enemies of the state tend to become the people." - Cmdr Adama
1
2
1
reposted by
Dominic White
Joseph Lorenzo Hall, PhD
3 months ago
Is your fancy new keyboard betraying you? Chen et al. propose DualStrike, a hardware attack on commodity Hall-effect keyboards. Using electromagnetic emissions, it perfectly eavesdrops on your typing and can even invisibly inject malicious keystrokes.
loading . . .
DualStrike: Accurate, Real-time Eavesdropping and Injection of Keystrokes on Commodity Keyboards - NDSS Symposium
View More Papers
https://www.ndss-symposium.org/ndss-paper/dualstrike-accurate-real-time-eavesdropping-and-injection-of-keystrokes-on-commodity-keyboards/
0
2
2
Over the years I’ve always used some app to prevent my Mac from locking during long running tasks like password cracking sessions or more recently agentic workflows. But they’re poorly maintained or over complicated. So I made my own. NoLock does what it says on the tin
github.com/singe/NoLock
3 months ago
1
8
1
reposted by
Dominic White
I'm impressed by how light weight the Apple on-device Foundation LLM is for Apple Intelligence, so I vibe'd a small macOS tool (26.0+) to interact with them. It supports GUI and CLI and tool calling. Even big responses fail to move the CPU/GPU by a single percentage. Link below.
3 months ago
1
5
4
I'm impressed by how light weight the Apple on-device Foundation LLM is for Apple Intelligence, so I vibe'd a small macOS tool (26.0+) to interact with them. It supports GUI and CLI and tool calling. Even big responses fail to move the CPU/GPU by a single percentage. Link below.
3 months ago
1
5
4
reposted by
Dominic White
Catalin Cimpanu
3 months ago
Yevgeny Prigozhin's influence operations have now been taken over by Russia's foreign intelligence service, the SVR, under a new company called StratConsult
alleyesonwagner.org/2026/02/14/a...
forbiddenstories.org/propaganda-m...
istories.media/stories/2026...
dossier.center/africa-polit...
loading . . .
A New Chef in the Kitchen: The SVR Takes Control of the Wagner’s influence branch for Offensive Operations in the Global South
Deprived of its founder since the death of Evgeny Prigozhin, the Wagner Group’s essence has not disappeared. For the first time documents reveal how Prigozhin’s influence empire has been handed ove…
https://alleyesonwagner.org/2026/02/14/a-new-chef-in-the-kitchen-the-svr-takes-control-of-the-wagners-influence-branch-for-offensive-operations-in-the-global-south/
0
9
6
reposted by
Dominic White
Ursula von der Leyen
3 months ago
Europe and the UK should come closer together – on security, on economy or on defending our democracies. Ten years on from Brexit, our futures are as bound as ever. So, it is in our common interest to be ambitious about our partnership.
69
924
261
It isn’t weird to me how many of the best and most successful people I’ve met have this one weird trick in common.
add a skeleton here at some point
3 months ago
0
1
0
reposted by
Dominic White
Bee Quammie
3 months ago
"Fight against being ass" is a message that more people need to receive, tbh
loading . . .
32
4963
1825
reposted by
Dominic White
Catalin Cimpanu
3 months ago
An Orange Cyberdefense report concludes that hacktivism has evolved from a form of digital protest into the realm of hybrid warfare
www.orangecyberdefense.com/global/blog/...
2
9
5
reposted by
Dominic White
Kelsey Hightower
3 months ago
I have no problem with virtue signaling. Hate has been given a megaphone and they have no problem amplifying those voices. There should be no shame in amplifying ours.
4
171
18
reposted by
Dominic White
Simon Willison
3 months ago
Interesting research in HBR today about how the productivity boost you can get from AI tools can lead to burnout or general metal exhaustion, something I've noticed in my own work
simonwillison.net/2026/Feb/9/a...
loading . . .
AI Doesn’t Reduce Work—It Intensifies It
Aruna Ranganathan and Xingqi Maggie Ye from Berkeley Haas School of Business report initial findings in the HBR from their April to December 2025 study of 200 employees at a …
https://simonwillison.net/2026/Feb/9/ai-intensifies-work/
26
236
64
reposted by
Dominic White
Jim Waterson
3 months ago
Hate-filled fake videos about London are everywhere. We've obtained a recording of a TikToker confessing to secretly filming Londoners in their homes for clicks. He says it's not political. He just wants to make money from far-right anger. Read what he says:
www.londoncentric.media/p/london-tik...
81
1726
991
reposted by
Dominic White
Omg. WTF is Happening?
3 months ago
Sir Ian McKellen performing a monologue from Shakespeare’s Sir Thomas More on the Stephen Colbert show. Never have I heard this monologue performed with such a keen sense of prescience. Nor have I ever been in this exact historical moment.TY Sir Ian, for reaching us once again.
#Pinks
#ProudBlue
loading . . .
583
32434
15510
Load more
feeds!
log in