Hack In The Box
@hackinthebox
Followers
16K
Following
486
Media
7
Statuses
27K
Keeping Knowledge Free
International
Joined March 2009
Just added async embedding generation to Silentgem that gets triggered on message ingestion - Messages get 384-dim embeddings via sentence-transformers (all-MiniLM-L6-v2) which gives a significant update to the chat insight / search capabilities. Try it:
github.com
A transparent Telegram translator using Ollama or Google Gemini AI - l33tdawg/silentgem
0
1
1
I've integrated Move Vulnerability Database into Aether. Added 96 patterns including new detectors for business logic, state management, centralization risks etc ... Big thanks to @MoveMav for releasing the DB :) https://t.co/h8TmzkCqMI
https://t.co/w1AxkS44eZ
0
1
3
Happy Saturday! Videos from #OOTB2025BKK are out on the HITB Youtube channel -
youtube.com
Out of The Box Bangkok 2025 held in collaboration with the Thai Banking CERT (TBCERT)
0
7
10
Weβre excited to announce that Hack In The Box (HITB) is a proud Community Partner of TenguCon 2025! Join us in Tokyo, Japan π―π΅ on November 21β22, 2025, for two epic days packed with hands-on hacking and community fun β https://t.co/xAZPJqbSOR cc @tengu_sec
tengucon.org
TenguCon 2.0 - November 21-22, 2025 - Akihabara, Tokyo
0
8
9
Spent 4 hours auditing ENS with my AI tool. Found 2 bugs. Got $0. Best outcome possible! Here's why rejected bug bounty submissions can be more valuable than accepted ones π§΅
1
3
7
Most of smart contract bug hunting is wasted on setup - finding repos, scope, and wiring tools before analysis starts. I wanted something to automate everything: repo -> contracts -> analysis -> PoC -> validation. Check it https://t.co/HrjgShTL5l
#Web3 #BugBounty #smartcontract
l33tdawg.github.io
Professional-grade smart contract security analysis and PoC generation framework. AI-powered vulnerability detection, automated exploit generation, and Foundry integration for Web3 auditors and bug...
3
9
15
I also recently explained in the #OOTB2025 @OOTBconf & @hackinthebox the specific Microsoft workflow in order to bring these new techniques as close as possible to the community :) @IOActive
0
2
1
Last week, we had the privilege of bringing Cloud Village to Asia for the very first time at @OOTBconf 2025 in Bangkok! πΉπβ¨ We ran both the Cloud Village CTF and a CTF 101 workshop, and the response from the community was incredible. From newcomers taking their very first steps
1
4
9
#OOTB2025BKK #SLIDES Ghosts in the Lobby: Covert Entry Stories (and the Lessons that they Teach us) - Cori Macy - https://t.co/HtdTkIq4eR cc @corg_e
ootb.net
Corporate lobbies always look secure until someone proves otherwise. In this session, we'll unpack real-world red team stories to demonstrate how physical breaches still reliably lead to network...
1
5
8
Once again, what a GREAT experience speaking at #OOTB2025 this year! I would like to personally thanks @OOTBconf and especially @l33tdawg for their hospitality and for allowing me to be here and share this moment! For those interested in the slides ->
ootb.net
Adversaries have shifted from basic credential harvesting to sophisticated Adversary-in-the-Middle "AiTM" campaigns that intercept real session cookies and OAuth tokens, bypassing multi-factor...
0
5
7
#OOTB2025BKK Hot Off the Presses: AI Agents as Your Organization's Personal Security Newsroom - Brett A. -
ootb.net
This talk will cover the use of Large Language Model (LLM) agent workflows (agentic AI) - to coordinate the research and compilation of a tailored cyber threat intelligence feed customized to the...
0
4
5
more covers in the wild!
All set for a second edition of @OOTBconf conference in Bankok, starting with Alexis Hancock of @EFF and her talk Long Live Short-Lived Certificates! Updates On Public Key Infrastructure. Thank you @Verichains for the copy of @phrack
2
5
20
#OOTB2025BKK #SLIDES Architecting Security Onion for Enterprise Resilience: A Case Study in Scaling Open-Source SIEM for High- Performance Threat Detection - P. Srisawang, P. Thongpubet, & K. Chaikangwan -
ootb.net
Security Onion, a widely recognized open-source SIEM solution, offers unparalleled flexibility and cost-effectiveness for security monitoring. However, its default architecture presents inherent...
0
6
7
All set for a second edition of @OOTBconf conference in Bankok, starting with Alexis Hancock of @EFF and her talk Long Live Short-Lived Certificates! Updates On Public Key Infrastructure. Thank you @Verichains for the copy of @phrack
1
3
13
Next up at @OOTBconf Bangkok we have Brett Andrews of Anthropic @AnthropicAI with his talk Hot Off The Presses: AI Agents As Your Organisation's Personal Security Newsroom
0
2
4
#OOTB2025BKK #SLIDES Agentic ProbLLMs: Exploiting Al Computer-Use and Coding Agents - Johann Rehberger
ootb.net
This talk will demonstrate real-world prompt injection attacks that compromise agentic systems. Specifically, exploits will target computer-use and coding agents, such as OpenAl's Operator, Google...
0
4
5
π Huge congratulations to our CTF winners; Puttimet Thammasaeng, Ponlawat Suparat Sira S at Cloud Village @OOTBconf ! π The scoreboard is now frozen, but the challenges remain open β you can still hack, learn, and play around with them for the next 24 hours. Thanks to
0
5
8
Closing off @OOTBconf Bangkok we have Huy Ngo aka Severus from @Verichains with a lab: Unpacking Real Malware with Their Runtime Protection: Insights from Southeast Asia
0
4
5