Hi everyone :) After a busy, overloaded, and emotionally draining stretch, I am finally getting around to sharing my thoughts on the cyber risks tied to highly capable autonomous harnesses and agentic systems.
Before the technical part, I want to pin down what "capable" actually means. I will pull from a Gemini overview and the Wikipedia definition.
See also the "Slop Free" definition below.
The definitions I have provided mostly describe human attributes ,but shift the context to "intelli
Over seven days, my Linux honeypot recorded 108,114 sessions, 21,038 commands, and 15 unique payloads. What first looked like routine Mirai-era noise led to a coordinated RedTail/XMRig deployment involving SSH scanning, rival-miner cleanup, and persistence.
A manual appsec & AI Red Teaming assessment of our AI-powered senior project. OTP bypass, visual prompt injection against Gemini 2.5 Flash, and JSON break-out technique one t-shirt recommended for a wedding.
The HackTheBox Topology machine is an easy-rated Linux box that chains together classic web enumeration, a LaTeX injection vulnerability, credential cracking with John the Ripper, and a gnuplot + cron privilege escalation path.
GreenHorn is an easy-rated Linux box on HackTheBox. This writeup covers Pluck CMS 4.7.18 RCE via Gitea credential leakage, lateral movement through password reuse, and root privilege escalation by depixelizing a blurred PDF password.
Windows machine walkthrough: SMB share enumeration, VHD file mounting for SAM credential extraction, and privilege escalation via mRemoteNG password decryption.
Exploiting the Heartbleed vulnerability (CVE-2014-0160) to leak SSH credentials from memory, then escalating to root by hijacking an active tmux session.
Critical VM sandbox escape vulnerability (CVSS 9.9) in NocoBase enabling remote code execution. Full technical analysis, proof of concept, and disclosure timeline.
How utilitarianism, deontology, and virtue ethics guide responsible vulnerability disclosure decisions. A framework for balancing public safety and vendor relationships.
Insecure direct object reference in Moodle's OpenAI Chat Block plugin exposing unauthorized access to chat data. Full exploitation walkthrough and CVE details.
Detailed walkthrough of the C-AI/MLPen certification exam: preparation strategy, exam format, key challenges, and practical tips for AI/ML penetration testing.
Research analyzing how AI text detection tools disagree when facing hybrid evasion techniques. Cross-detector benchmark with paraphrasing and stylistic manipulation.
Abusing a printer admin panel to intercept LDAP credentials via netcat listener, then escalating privileges through Windows service configuration hijacking.