@dudcom3i
iAccount based inUnited States
About this account
- Account based in
- United States
- Connected via
- United States Android App
Account-level information from X, not a live location or the device used for a specific post.
https://nitter.cf/t.co/FsZN9xhuwW & https://nitter.cf/t.co/GwiZFs3Gsn
socal/nyc
Joined April 2020
- Tweets981
- Following353
- Followers452
- Likes27.7K
dudcom retweeted
September 2026 Model drop recap:
Claude Fable 5.1
Claude Mythos 5.1
GPT 6 Astra
Qwen3.8 Max
Muse Spark 1.3
Gemini 3.8 Flash
Gemini 3.8 Flash Cyber
Gemini 3.8 Live
TypeSafe AI Jev
Mimo V2.6
Claude Opus 5.5
GPT 6 Sol
GPT 6 Luna
Claude Sonnet 5.5
GPT 6.1 Sol
a triple drop by both openai and anthropic in a single month is insane, imagine what a mess october is going to be
dudcom retweeted
The crazy reality of AI Infrastructure security
- CVEs published without a patch
- Project maintainers ignore crit RCE reports
- Vendors declare specific configurations "trusted" while exposing 3rd party software's backyard bugs into it
- No special skills needed to find and exploit the bug, just AI tokens
- Rust isn't helping (I wrote a Rust RCE exploit as part of the orientation project)
- All of the above affects modern and "hardened" deployments. Legacy deps are not even in the security model
dudcom retweeted
FluxFinger Luke Finn Zamponi takes bronze for Germany at WorldSkills 2026 in Shanghai 🥉🇩🇪
Congrats to Luke and teammate Lucas Rother on 3rd place in Cyber Security 🥳
#WorldSkills2026
dudcom retweeted
🚨🚨
DARPA has selected Xint to research the use of autonomous AI to conduct deep security analyses of internally and externally developed messaging applications used throughout the military. The scope will take advantage of Xint’s proven capabilities across source code, runtime, and binaries.
“If you’re the target of state-sponsored hackers, whether you’re the military, a major financial institution, a critical infrastructure provider, or a technology enterprise, you have the highest requirements for application security, especially for keeping communications private,” said Brian Pak, CEO and co-founder of Theori and Xint. “The encryption in a messaging app is the part that gets reviewed. The code around it, everything touching the network, and the operating system, rarely gets the same scrutiny and that's where an attacker goes. We can now check that code cost-effectively enough to do it routinely, with the source code or with only a binary."
businesswire.com/news/home/2…
dudcom retweeted
ok i think i finally figured out why alignment has gone basically nowhere after 15 years and several billion dollars. the problem is hard sure. but have you met the people in charge of it
1) the leadership does not know how computers work. ask one what happens when you type a url into a browser and watch them start sweating. dns is a spooky word. they genuinely believe the model lives in "the cloud" like a ghost haunting a castle
2) zero idea how large scale distributed systems work. never been paged at 3am. never watched one bad bgp announcement take half the internet offline. their big threat model is the ai "copying itself across the internet" like its a floppy disk virus from 1998. brother it needs 50 megawatts, a liquid cooling loop and a personal relationship with jensen. it is not escaping onto your smart fridge
3) they dont understand the stack they are supposedly protecting us from. ask about inference servers, kv cache, batching, egress, rate limits. blank stare. ask how the model will seize the power grid and you get a 45 minute answer with a hand drawn diagram and three links to their own blog
4) nobody can define an agent. ask ten of them and you get eleven definitions and a 30 page google doc. to the rest of us an agent is a while loop that calls tools and eats a 429 every thirty seconds. to them its a digital god in its larval stage. my agent cant book a dentist appointment without asking me three times if im sure
5) they started from "everyone dies" and worked backwards so every result is bad news somehow. model refuses, deceptive. model complies, sycophantic. model does well on evals, well now its scheming about the evals. i cant think of a single thing a model could do that would get them to say ok maybe we're fine
if you don't think security is cooked lets recap flare-on CTF:
* today solved in ONE HOUR flat flare-on13.ctfd.io/scoreboar… by a young game dev who tried out flare-on last year: @flafydev
* last year: solved in 1D 3H 47M flare-on.com/2025.html by an actual RE: @_riatre
Insane.
Wow... this is a scary result, imo this fundamentally changes how we must view all software ever created 💀
I ported the Omarchy screensaver engine (ttfx) from Rust to x86-64 assembler, and it's up to 17x faster!! One-shot translation by Opus 5.5. We keep drilling until the agentic drill bit hits bedrock! github.com/omacom/ttfx/pull/…
Are we just going to keep making useless products no one asked for, needs and servers almost no purpose other then stealing your data and creating unhealthy para social relationships?
dudcom retweeted
I'm hiring an exceptional Offensive Security Researcher for my team at NVIDIA (Offensive Security Research - OSR).
Firmware, microcode, RISC-V, hypervisors, and shipping mitigations like HW CFI, Memory Tagging, and Pointer Masking from the ground up.
jobs.nvidia.com/careers?quer…