Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

  1. Home
  2. Uncategorized
  3. I found out my employer doesn’t have access to Mythos.

I found out my employer doesn’t have access to Mythos.

Scheduled Pinned Locked Moved Uncategorized
37 Posts 28 Posters 0 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • zzt@mas.toZ zzt@mas.to

    @GossiTheDog mythos has found at least one critical vulnerability: the infosec industry is utterly vulnerable to hype, and extremely unlikely to examine the origins or methodology behind vulnerability disclosures that authorities (regardless of their poor reputation) claim are earth-shatteringly critical

    standard_phil@infosec.exchangeS This user is from outside of this forum
    standard_phil@infosec.exchangeS This user is from outside of this forum
    standard_phil@infosec.exchange
    wrote last edited by
    #11

    @zzt @GossiTheDog I'm pretty sure this vulnerability has been known for many years, though.

    zzt@mas.toZ gossithedog@cyberplace.socialG 2 Replies Last reply
    0
    • zzt@mas.toZ zzt@mas.to

      @GossiTheDog mythos has found at least one critical vulnerability: the infosec industry is utterly vulnerable to hype, and extremely unlikely to examine the origins or methodology behind vulnerability disclosures that authorities (regardless of their poor reputation) claim are earth-shatteringly critical

      pa@hachyderm.ioP This user is from outside of this forum
      pa@hachyderm.ioP This user is from outside of this forum
      pa@hachyderm.io
      wrote last edited by
      #12

      @zzt @GossiTheDog If this provides the industry with its "drink bleach" moment, I'm more than happy to watch the show.

      1 Reply Last reply
      0
      • standard_phil@infosec.exchangeS standard_phil@infosec.exchange

        @zzt @GossiTheDog I'm pretty sure this vulnerability has been known for many years, though.

        zzt@mas.toZ This user is from outside of this forum
        zzt@mas.toZ This user is from outside of this forum
        zzt@mas.to
        wrote last edited by
        #13

        @Standard_Phil @GossiTheDog absolutely, no points to anthropic for originality but full points for weaponizing the vulnerability to its fullest

        standard_phil@infosec.exchangeS 1 Reply Last reply
        0
        • zzt@mas.toZ zzt@mas.to

          @Standard_Phil @GossiTheDog absolutely, no points to anthropic for originality but full points for weaponizing the vulnerability to its fullest

          standard_phil@infosec.exchangeS This user is from outside of this forum
          standard_phil@infosec.exchangeS This user is from outside of this forum
          standard_phil@infosec.exchange
          wrote last edited by
          #14

          @zzt @GossiTheDog Very fair point, they do deserve some credit here.

          1 Reply Last reply
          0
          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

            Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

            It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

            kiloku@burnthis.townK This user is from outside of this forum
            kiloku@burnthis.townK This user is from outside of this forum
            kiloku@burnthis.town
            wrote last edited by
            #15

            @GossiTheDog the marketing was so obvious even at the moment they first announced mythos.

            "We have a super AI, it's the best at everything but we're not gonna let you see"
            It's just like a preteen saying
            "I have a supermodel girlfriend, she loves me more than anything but you can't meet her because she goes to another school"

            C 1 Reply Last reply
            0
            • standard_phil@infosec.exchangeS standard_phil@infosec.exchange

              @zzt @GossiTheDog I'm pretty sure this vulnerability has been known for many years, though.

              gossithedog@cyberplace.socialG This user is from outside of this forum
              gossithedog@cyberplace.socialG This user is from outside of this forum
              gossithedog@cyberplace.social
              wrote last edited by
              #16

              @Standard_Phil @zzt

              Link Preview ImageLink Preview ImageLink Preview Image
              zzt@mas.toZ standard_phil@infosec.exchangeS skydotbit@sharkey.skydevs.meS 3 Replies Last reply
              1
              0
              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                @Standard_Phil @zzt

                Link Preview ImageLink Preview ImageLink Preview Image
                zzt@mas.toZ This user is from outside of this forum
                zzt@mas.toZ This user is from outside of this forum
                zzt@mas.to
                wrote last edited by
                #17

                @GossiTheDog @Standard_Phil perfection

                1 Reply Last reply
                0
                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                  Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

                  It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

                  cigitalgem@sigmoid.socialC This user is from outside of this forum
                  cigitalgem@sigmoid.socialC This user is from outside of this forum
                  cigitalgem@sigmoid.social
                  wrote last edited by
                  #18

                  @GossiTheDog we called it in April

                  #MLsec BIML
                  https://berryvilleiml.com/2026/04/09/too-dangerous-to-release-again-software-security-and-ai/

                  1 Reply Last reply
                  0
                  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                    @Standard_Phil @zzt

                    Link Preview ImageLink Preview ImageLink Preview Image
                    standard_phil@infosec.exchangeS This user is from outside of this forum
                    standard_phil@infosec.exchangeS This user is from outside of this forum
                    standard_phil@infosec.exchange
                    wrote last edited by
                    #19

                    @GossiTheDog @zzt
                    We don't deserve to have you, Kevin.

                    1 Reply Last reply
                    0
                    • kiloku@burnthis.townK kiloku@burnthis.town

                      @GossiTheDog the marketing was so obvious even at the moment they first announced mythos.

                      "We have a super AI, it's the best at everything but we're not gonna let you see"
                      It's just like a preteen saying
                      "I have a supermodel girlfriend, she loves me more than anything but you can't meet her because she goes to another school"

                      C This user is from outside of this forum
                      C This user is from outside of this forum
                      clickymcticker@hachyderm.io
                      wrote last edited by
                      #20

                      @Kiloku @GossiTheDog My girlfriend is so hot and smart and loves me more than anything in the world and we have amazing sex together and she’s rich but you can’t see pictures of her because she’s shy and you can’t hear her beautiful voice because she lives in a different timezone and you can’t meet her because she’s Canadian. But she’s the best girlfriend ever!!!1

                      Now please believe me because it’s true.

                      1 Reply Last reply
                      0
                      • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                        Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

                        It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

                        betabug@mastodon.sdf.orgB This user is from outside of this forum
                        betabug@mastodon.sdf.orgB This user is from outside of this forum
                        betabug@mastodon.sdf.org
                        wrote last edited by
                        #21

                        @GossiTheDog

                        Link Preview Image
                        1 Reply Last reply
                        0
                        • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                          I found out my employer doesn’t have access to Mythos. I do.

                          atanase@mastodon.socialA This user is from outside of this forum
                          atanase@mastodon.socialA This user is from outside of this forum
                          atanase@mastodon.social
                          wrote last edited by
                          #22

                          @GossiTheDog Jack Ryan, time traveler

                          1 Reply Last reply
                          0
                          • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                            @Standard_Phil @zzt

                            Link Preview ImageLink Preview ImageLink Preview Image
                            skydotbit@sharkey.skydevs.meS This user is from outside of this forum
                            skydotbit@sharkey.skydevs.meS This user is from outside of this forum
                            skydotbit@sharkey.skydevs.me
                            wrote last edited by
                            #23

                            @GossiTheDog@cyberplace.social @Standard_Phil@infosec.exchange @zzt@mas.to Mythos did find that recent ActivityPub vulnerability which is interesting. I’m not trying to shill it or anything I just think it’s interesting

                            https://w.on-t.work/activitypub/may-2026-vulnerability#the-ellephamt-in-the-room

                            womble@infosec.exchangeW 1 Reply Last reply
                            0
                            • reiddragon@fedi.catto.gardenR reiddragon@fedi.catto.garden
                              @GossiTheDog "they feed us poison so we buy their medicine"
                              K This user is from outside of this forum
                              K This user is from outside of this forum
                              kyebr@hachyderm.io
                              wrote last edited by
                              #24

                              @reiddragon @GossiTheDog which is just an another poison

                              1 Reply Last reply
                              0
                              • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

                                It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

                                bplein@bvp.meB This user is from outside of this forum
                                bplein@bvp.meB This user is from outside of this forum
                                bplein@bvp.me
                                wrote last edited by
                                #25

                                @GossiTheDog My first hot take to “We are not releasing Mythos because it’s too good” was that they were hiding something. Or they needed to convince large companies that it was sooooo good that they better pony up. “You’ve never had coke this pure, not sure it’s safe to sell it to you.”

                                ozu@infosec.exchangeO 1 Reply Last reply
                                0
                                • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                  Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

                                  It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

                                  europlus@social.europlus.zoneE This user is from outside of this forum
                                  europlus@social.europlus.zoneE This user is from outside of this forum
                                  europlus@social.europlus.zone
                                  wrote last edited by
                                  #26

                                  @GossiTheDog @davidgerard I like beer, and embrace its pros and cons..

                                  AIs…not so much.

                                  #NoAI

                                  1 Reply Last reply
                                  0
                                  • gossithedog@cyberplace.socialG gossithedog@cyberplace.social

                                    Mythos is not great btw. Running it over a bunch of code, it’s similar findings to tools from a few years ago. It’s marketing, essentially. Viral marketing as people doing the marketing are companies and governments.

                                    It’s really good at finding vulns in vibe coded stuff from Claude.. because apparently AI must be both the cause and solution to all life’s problems, like beer.

                                    bontchev@infosec.exchangeB This user is from outside of this forum
                                    bontchev@infosec.exchangeB This user is from outside of this forum
                                    bontchev@infosec.exchange
                                    wrote last edited by
                                    #27

                                    @GossiTheDog Can you run it on my honeypots to see if it finds anything worthwhile?

                                    Link Preview Image
                                    Vesselin Bontchev · GitLab

                                    Computer anti-virus researcher

                                    favicon

                                    GitLab (gitlab.com)

                                    (Basically, any repo there that has "honey" or "pot" in the name.)

                                    1 Reply Last reply
                                    0
                                    • bplein@bvp.meB bplein@bvp.me

                                      @GossiTheDog My first hot take to “We are not releasing Mythos because it’s too good” was that they were hiding something. Or they needed to convince large companies that it was sooooo good that they better pony up. “You’ve never had coke this pure, not sure it’s safe to sell it to you.”

                                      ozu@infosec.exchangeO This user is from outside of this forum
                                      ozu@infosec.exchangeO This user is from outside of this forum
                                      ozu@infosec.exchange
                                      wrote last edited by
                                      #28

                                      @bplein @GossiTheDog CISOs suched it up like no tomorrow. Every day I have to listen my bosses how utterly powerful Mythos is and we need some AI tool to counter it.
                                      On the other hand they're surprised that all sorts of low level shit walks through our perimeter. I have to keep repeating we need zero-trust but nothing gets done.

                                      ✅ Spending money on shiny expensive AI tool
                                      ❌ Implementing free zero-trust policies

                                      1 Reply Last reply
                                      0
                                      • R relay@relay.an.exchange shared this topic
                                      • zzt@mas.toZ zzt@mas.to

                                        @GossiTheDog mythos has found at least one critical vulnerability: the infosec industry is utterly vulnerable to hype, and extremely unlikely to examine the origins or methodology behind vulnerability disclosures that authorities (regardless of their poor reputation) claim are earth-shatteringly critical

                                        drew@social.freebitcoin.gayD This user is from outside of this forum
                                        drew@social.freebitcoin.gayD This user is from outside of this forum
                                        drew@social.freebitcoin.gay
                                        wrote last edited by
                                        #29

                                        @zzt @GossiTheDog anyone who was paying attention already knew that, though. The security circus is nothing new, it's the inevitable result of the primary talent pool for infosec being obnoxious teenage skiddies swapping 31337 h4x0r reputation points in exchange for vulnerabilities of widely varying credibility

                                        drew@social.freebitcoin.gayD gossithedog@cyberplace.socialG 2 Replies Last reply
                                        0
                                        • drew@social.freebitcoin.gayD drew@social.freebitcoin.gay

                                          @zzt @GossiTheDog anyone who was paying attention already knew that, though. The security circus is nothing new, it's the inevitable result of the primary talent pool for infosec being obnoxious teenage skiddies swapping 31337 h4x0r reputation points in exchange for vulnerabilities of widely varying credibility

                                          drew@social.freebitcoin.gayD This user is from outside of this forum
                                          drew@social.freebitcoin.gayD This user is from outside of this forum
                                          drew@social.freebitcoin.gay
                                          wrote last edited by
                                          #30

                                          @zzt @GossiTheDog see also heartbleed and the endless circus brand-and-logo vulnerabilities afterwards, stuff like the grsec nonsense, etc, going back as far as you care to look.

                                          1 Reply Last reply
                                          0
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Login or register to search.
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups