pop_eax
@pop_eax
Followers
119
Following
3K
Media
4
Statuses
39
Infosec enthusiast, interested in breaking anything I get my hands on.
REDACTED
Joined June 2017
All the code is on github :)
github.com
A transparent, publicly verifiable anti-cheat software. - pop-eax/ZK-AntiCheat
@pop_eax Open sourced? 👀
1
0
1
Nerds reaction if someone does ransomware: "whoa whoa whoa based" Nerds reaction if someone cheats in multiplayer video games: "fuck you, you're a piece of shit"
23
21
562
It was awesome hacking with yall! Thanks to the wonderful zkhack team for organizing such a great event.
@BerBlockWeek @leonardoalt @georgwiese 🥈 Second Place 🥈 ZK-AntiCheat, by @pop_eax, built w/ @NoirLang & @aztecnetwork ZK-AntiCheat is a first-of-a-kind privacy preserving anticheat engine! project: https://t.co/UOJqBNJ6DS repo1: https://t.co/MAJpV9rFj5
1
0
2
Nice write-up on hacking a credit card terminal: https://t.co/xGnDNto3tS Would have been nice to take it to the next level and looked into that "secure OS" tho 🤠
1
21
60
🚨🚨🚨We just broke everyone’s favorite CTF PoW🚨🚨🚨 Our teammate managed to achieve a 20x SPEEDUP on kctf pow through AVX512 on Zen 5. Full details here: https://t.co/aCIU220IBf The Sloth VDF is dead😵 This is why kernelCTF no longer has PoW!
anemato.de
PoW is gone 🦀🦀
0
37
145
OAuth Client Confusion is an easy-to-overlook vulnerability that can lead to account takeovers. If an app doesn’t verify that an Access Token was generated for its specific Client ID, an attacker can hijack accounts. Here’s how it works:
1
52
271
🔥 Microsoft fixed a high severity data exfiltration exploit chain in Copilot that I reported earlier this year. It was possible for a phishing mail to steal PII via prompt injection, including the contents of entire emails and other documents. The demonstrated exploit chain
7
70
269
almost 1 year later and here we are
1
0
1
Remember everyone. C is a safe language. Just be sure you don't write any bugs in your code like checking to see if an integer is going to overflow...🤦
Me: Let's check if the upcoming addition is undefined behavior and bail out. Compiler: Nah, let's remove that check since it is undefined behavior. https://t.co/PQjcCeDCjy
0
2
10
The state of AI security reminds me of the early web security days :) #thefutureisbright #infosec
We built a personalised trip planner using @bubble & @OpenAI's GPT-3 in a few days: Check it out: https://t.co/B2VQCXiNSK
#nocode #openai #gpt3
0
1
6