Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Cyborg)
  • No Skin
Collapse
Brand Logo

CIRCLE WITH A DOT

pancake@infosec.exchangeP

pancake@infosec.exchange

@pancake@infosec.exchange
About
Posts
19
Topics
10
Shares
0
Groups
0
Followers
0
Following
0

View Original

Posts

Recent Best Controversial

  • Low cortisol vibes
    pancake@infosec.exchangeP pancake@infosec.exchange

    Low cortisol vibes

    Uncategorized

  • Who's more exhausting?
    pancake@infosec.exchangeP pancake@infosec.exchange

    damn, forgot to set the multiple-choices checkbox

    Uncategorized

  • Who's more exhausting?
    pancake@infosec.exchangeP pancake@infosec.exchange

    Who's more exhausting?

    Uncategorized

  • TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)
    pancake@infosec.exchangeP pancake@infosec.exchange

    Jk. Docker sandbox only works for real programs. Aka the ones that run in a tty

    Uncategorized

  • TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)
    pancake@infosec.exchangeP pancake@infosec.exchange

    @buherator yes that would be the same if you run the agent inside a docker with a mouted volume. Docker sandbox afaik just makes it easier to use

    Uncategorized

  • TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)
    pancake@infosec.exchangeP pancake@infosec.exchange

    @buherator yep, escaping agent sandbox is a pretty common vuln and all agents are affected because there's literally no way to fix this than just add more checks when a escape is found. and even if you are requested to give permission to a directory, agents can write programs and execute without supervision or with hidden ways which makes it possible to access anything bypassing the classic checks.

    Uncategorized

  • TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)
    pancake@infosec.exchangeP pancake@infosec.exchange

    @buherator it creates a VM for each program you run, the program inside can’t see your system processes and there, and probably the main positive point here is simplicity to use and manage

    Uncategorized

  • TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)
    pancake@infosec.exchangeP pancake@infosec.exchange

    TIL Docker v4.58+ have the `sandbox` subcommand to run commands with restricted filesystem access, ideal for running coding agents in yolo mode (or any other software you can't trust like ghidra or ida)

    Uncategorized

  • Last wednesday I sat down at the #paulsecurityweekly podcast to talk about static analysis with @radareorg and mobile security.
    pancake@infosec.exchangeP pancake@infosec.exchange

    RE: https://infosec.exchange/@NowSecure/116251163921885755

    Last wednesday I sat down at the #paulsecurityweekly podcast to talk about static analysis with @radareorg and mobile security. The video/audio is now online! https://www.scworld.com/podcast-segment/14644-hacking-ip-kvms-reversing-with-radare2-sergi-alvarez-psw-918

    Uncategorized paulsecuritywee

  • Gotta say #IDA Semantic Engine sounds incredibly cool!https://hex-rays.com/blog/2026-product-direction-priorities
    pancake@infosec.exchangeP pancake@infosec.exchange

    @buherator sucks to read their llm based release notes posts. So many mistakes and weird constructions.

    Uncategorized ida

  • I just released new versions of r2, r2ghidra, r2frida, r2mcp, r2ai, r2sarif, r2yara, iaito and r2hermes!
    pancake@infosec.exchangeP pancake@infosec.exchange

    I just released new versions of r2, r2ghidra, r2frida, r2mcp, r2ai, r2sarif, r2yara, iaito and r2hermes! Time to cook my lunch now! Merry xmas!

    Uncategorized

  • Still trying to find a reason to use openclaw 🦞
    pancake@infosec.exchangeP pancake@infosec.exchange

    Still trying to find a reason to use openclaw 🦞

    Uncategorized

  • Minimal techno track of the day https://www.youtube.com/watch?v=i8QbpQA0R-Y
    pancake@infosec.exchangeP pancake@infosec.exchange

    Minimal techno track of the day https://www.youtube.com/watch?v=i8QbpQA0R-Y

    Uncategorized

  • ghiblibytes
    pancake@infosec.exchangeP pancake@infosec.exchange

    ghiblibytes

    Uncategorized

  • One of the original posters made for the release of the first 'Sonic The Hedgehog' film, featuring the original Sonic design.
    pancake@infosec.exchangeP pancake@infosec.exchange

    @sonic_hedgeblog 😬

    Uncategorized

  • https://www.gimp.org/news/2026/03/02/gimp-3-2-RC3-released/
    pancake@infosec.exchangeP pancake@infosec.exchange

    @begasus @GIMP happy to see gtk running in Haiku! Wondering if latest gtk versions are also maintained for this OS 🤔

    Uncategorized gimp softwaredevelop libregraphics gimp3 gimp32

  • I have to rethink the way r2pipe2 works in r2js, im not really happy about the current exposure which makes it more confusing
    pancake@infosec.exchangeP pancake@infosec.exchange

    I have to rethink the way r2pipe2 works in r2js, im not really happy about the current exposure which makes it more confusing

    Uncategorized

  • Plot twist: with mai, you can use mcps as cli tools.
    pancake@infosec.exchangeP pancake@infosec.exchange

    RE: https://framapiaf.org/@newsycombinator/116155929714353529

    Plot twist: with mai, you can use mcps as cli tools. It will do all the parameter parsing and session handling for you

    Uncategorized

  • Spread the word!
    pancake@infosec.exchangeP pancake@infosec.exchange

    @phrack sad link

    Uncategorized
  • Login

  • Login or register to search.
  • First post
    Last post
0
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups