12 Followers
72 Following
44 Posts
Hacker, programmer, pentester
Bloghttps://blog.haicen.me/
Githubhttps://github.com/haicenhacks

@da_667 @prettygood

Yeah, sorry to hear that. The main thing is just following the treatment plan.

@da_667 @prettygood

Hyperkalemia aka high potassium can be extremely serious.

TMI, but my partially estranged father did not manage his kidney disease, diabetes, or any of his other conditions appropriately. In fact, he skipped two dialysis appointments and went into cardiac arrest twice due to hyperkalemia. (Potassium chloride is one of the medications used in a lethal injection).

For reasons unknown, they "saved" him, then spent months cycling through ICU, reg hospital, long term acute care hospital, back to ICU, ... repeat. This went on for 11 months then he went home for two months before ending up back in the hospital and dying.

@Dio9sys Seriously? I've been waiting for mitre to take action on a CVE I requested for an unauthenticated RCE in August 2025, but this gets published?

@xssfox

I used to be a paramedic (US). Our older units had a strobe light for the opticom system. The newer ones used LED (either white or infrared). I always assumed it was just a 14hz flash, no encoded value.

normalize taking away ai powered smart glasses from people wearing the in public and destroying them.

normalize destroying flock, ring, and other smart cameras.

normalize destroying public mass surveillance.

lmao, I've been doing some random searches on GitHub, particularly on repositories that has claude as a contributor. ive found soooo many credentials. OpenAI, Nvidia AI, cloudflare, ssh, postgres, telegram and more.

Often, the commit comes from the repo owner, but several times the commit is authored by Claude. Even with explicit commit messages like "Chore: add bot token".

It is a firehouse of credentials.

- do you want to use google to sign in?
- do you want to add a passkey?
- do you want to add a 2FA token?
- we know you have 2FA but we've sent you an email instead
- this login attempt seems suspicious we've sent you a text about it
- can you click on these buses?
- you failed to click on the buses click on these bicycles instead
- should we save these details for next time?
- do you accept these trackers?
- you can opt out but we've decided it's legitimate interest anyway
- would you like to see a list of our 847 partners we share your data with?
- can we send you desktop notifications?
- can we access your location?
- do you want 10% off for signing up to the mailing list?
- do you want me to translate this page?
- hi I'm your friendly chatbot how can I help?
- oh no you can't buy this, reach out to us for a quote!
- do you want—

I'm tired boss

Today in InfoSec Job Security News:

I was looking into an obvious ../.. vulnerability introduced into a major web framework today, and it was committed by username Claude on GitHub. Vibe coded, basically.

So I started looking through Claude commits on GitHub, there’s over 2m of them and it’s about 5% of all open source code this month.

https://github.com/search?q=author%3Aclaude&type=commits&s=author-date&o=desc

As I looked through the code I saw the same class of vulns being introduced over, and over, again - several a minute.

Build software better, together

GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub
Microsoft says Office bug exposed customers' confidential emails to Copilot AI | TechCrunch

Microsoft said the bug meant that its Copilot AI chatbot was reading and summarizing paying customers' confidential emails, bypassing data-protection policies.

TechCrunch