@deviouspolack

@deviouspolack on infosec dot exchange & bsky • DFIR, threat hunting, red team • reppin’ @defcon562

Denver, CO
Joined March 2014
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Replying to @Pinkebelly
you goddamn right
58
388
35
17,224
419,172
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
i can’t wait to automate my own life until there is nothing left
19
56
3
817
18,594
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
These system prompts are getting crazy.
307
2,671
314
25,912
2,235,790
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Next DC562 Meetup: When: November 7 Where: A proper venue (weird huh) What: - Talks - CS 1.6 LAN Party - Head 2 Head CTF - Pub Crawl Hit up any DC562 member for details / invite!
6
6
325
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Thank you to everyone who made it out to our Defcon party this year, we all had a blast. And thank you very much to everyone who helped make it happen. Looking forward to next year!
🤖 Made with AI
1
4
1
10
364
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Signal's Contact Discovery automatically sends your contact list information to an SGX enclave in the cloud. V12 broke into that enclave and leaked the key, allowing the server host to decrypt everything. Two separate critical bugs: arbitrary read and RCE. Here's how. 🧵
17
146
41
724
137,537
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
this wild defcon talk is finally out researchers created a fake defi startup, hired lazarus it workers, put them into a sandbox and recorded their tooling, workflows, and faces from inside the operation starts at 5:46:09 youtube.com/live/_uYQr8hfpbI…
41
296
24
1,955
179,916
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
So excited for tmp.0ut 5! There is so much amazing stuff in here. I highly recommend checking out our interview with programming legend Doug McIlroy. It was surreal to get to chat with him. He's 94 now, and was citing papers he was influenced by in the 1940s and 50s...
We are pleased to release tmp.0ut 5 Volume! Get your viruses, rootkits, strange ELFs, weird machines, tiny files, cool art, and phresh beats here!! tmpout.sh/5/
4
47
1
248
18,987
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
This poster edit got weird fast. 😭
🤖 Made with AI
I remember when the worst thing we had to worry about on planes was snakes. How times have changed…
5
14
4
84
7,051
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Replying to @techspence
For your consideration. Rated R for Remote Code Execution.
1
2
7
495
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Fucking called it. The ZYN booth at DEF CON is all about collecting personal info I think we lost the plot somewhere
20
16
4
389
28,271
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
DC562 party upgrade this year: - 21+, full bar & kitchen, DJs + Dual Core & Crew - PvP CTF w/ terminals - Gaming consoles & plenty of stickers obv. - Great conversations - Hit up a member to get location To help keep headcount in order please do not show up without an invite
5
17
553
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Stop asking me to connect on LinkedIn!!!!!!!
15
6
216
7,969
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
I'm buying her breakfast in the morning.
4
69
2,234
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
following mr rhysiders lead:
My absolute favorite thing about DEFCON is meeting people. It's like a big family reunion every year and there's so many friends I hope to see! Here's where I'll be. I hope to see you this weekend!
3
10
3
49
6,347
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
u can just post on main that u hacked 3 companies in the past few months and its fine now bc u can blame ur robot and the fact that ur bad at infra
In a review of our cybersecurity evaluations, we found three incidents in which a Claude model reached the internet from within or while interacting with a third-party evaluation environment, and then gained unauthorized access to the real systems of three different organizations. Our post describes what happened, how it happened, and what we’re changing. We encourage other AI developers to perform similar reviews. We conducted this review together with @Irregular, one of our evaluation partners, and thank them for the joint investigation and their collaboration on this post. This type of collaboration is increasingly critical to safe, rigorous evaluation of models, and we look forward to continuing to work together on security. anthropic.com/news/investiga…
7
33
1
543
14,208
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
First known US case: American charged for using a “duress” password Samuel Tunick, an Atlanta resident, is being prosecuted for allegedly giving border agents a passcode that wiped his phone. The feature comes from GrapheneOS, a privacy-focused Android OS. Entering the duress code triggers a full factory reset. This is believed to be the first time federal prosecutors have brought such charges. The incident happened in January 2025 at Atlanta airport. Agents demanded access to his phone without a warrant, saying he hadn’t yet officially entered the US. When they entered the code, the phone wiped itself. Tunick has pleaded not guilty. His lawyers argue the seizure was unlawful and that agents were investigating his activism against “Cop City.” The case raises big questions about digital rights at the US border. What do you think? Article: techcrunch.com/2026/07/24/us… #Privacy #GrapheneOS #DigitalRights
892
5,304
714
28,110
11,811,324
ρσℓα¢ķ͌͌͌͌͌͌͌͌͌͌͌͌͌ retweeted
Bought this thing off eBay recently. Looks like it was compiled in the late ‘80s. Have some questions about some of the techniques listed here. Maybe @WeldPond or @mudge can help decipher them.
24
45
9
283
46,373