i make computer do bad šŸ§™ security researcher šŸ“ŗ 1M+ youtube prev: fuzzers & hypervisors @microsoft Business: ed@lowlevel.tv

Washington D.C.
citrix situation continues people on reddit are seeing `nsaaad` (netscaler AAA daemon) crashing. new report tells users to check for configurations with SAML AAA enabled šŸ‘€
Last patch on Citrix Netscaler seem to be bypassed, community.citrix.com/techzon…
5
7
134
31,139
fuzzing a lightbulb teehee
4
63
3,911
happy squattober for those who celebrate
4
15
2,711
can we make "thanks dario" the new "thanks obama"
11
689
Low Level retweeted
YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE YOU SHOULD NOT BE ABLE TO ā€˜BRICK’ A FRIDGE
Owners mourn spoiled food after firmware update bricks Samsung smart fridges arstechnica.com/gadgets/2026…
307
7,034
61,354
2,238,398
some of these games are directly responsible for the trajectory of my life. i love u
34
1
251
20,923
i swear to god there are zero adults at this company
JUST IN: Meta unveils Muse Charm, a Tamagotchi-style AI gadget designed to fit on a keychain, with Zuck calling it a ā€œjoyful little device.ā€
89
33
1,738
69,735
ruh roe
ā€¼ļø Next.js patched a critical ImageResponse flaw that can lead to server code execution. "CVE-2026-94545" affects 16.2.0 through 16.3.5 on Node.js when attacker-controlled values reach generated SVG. The fix is 16.3.6. Inside the bug: thehackernews.com/2026/09/cr…
5
93
16,327
hey guys wtf is a jev
199
20
1,560
105,078
this is beautiful ngl
On July 25, we hacked OpenAI. Two bugs let us take over ChatGPT/Codex accounts of OpenAI employees (+some unaffiliated users) and reach connected services: Outlook, Slack, GitHub, etc. We proved it with a PR in OpenAI’s internal codebase . It took us <72h. 🧵
5
5
591
35,550
also how dare they release this on a friday smh
4
29
1,779
im just gonna vibe code sc3 myself at this point
STARCRAFT. Story Driven Open World Shooter. 2030.
16
3
362
13,521
Low Level retweeted
Replying to @TheGenieCompany
@TheGenieCompany Your AlladinConnect is either breached or malfunctioning where users using API integration (in my case via HASS) are seeing garage doors of other people's accounts. The number of the devices populated by the API endpoint keeps growing as of Sept 6th 1:42 AM.
4
4
31
20,930
Low Level retweeted
My god I have such strong feelings about age verification and these drivers license breaches Latest episode of The Low Down dropped w/ me and @LowLevelTweets - thanks to @Maze_Security for the continued support.
1
4
22
2,762
very excited for mythos to tell the sysadmins that exposing the PLCs to the internet is bad
EXCLUSIVE: Sam Altman met with top power utilities to discuss ways to secure the electrical grid. He also offered one possible solution to the cybersecurity risks: OpenAI’s own cyber services. politico.com/news/2026/09/10…
16
19
436
19,207
Low Level retweeted
If you buy networking gear or laptops on Amazon, it's probably a good idea to re-flash fully before using. Amazon isn't just "Amazon", it's a conglomerate of storefronts by different sellers. Maybe the reseller is legit. Maybe they added some 'features'. Point is, be safe.
29
28
868
165,313
are developers who aren’t security people interested in learning fuzzing? like is that enough of a dev adjacent skill people would want to learn? I think the future will shift a lot more security tasks onto developers instead of ā€œsecurity peopleā€ (Specifically talking to people who code in C/C++ professionally)
65
9
559
26,552
It’s especially easy now to do coverage gap analysis and corpus generation with LLMs
4
35
2,833
Low Level retweeted
āš ļø This account is NOT affiliated with Aikido. It is actively impersonating us. Do not engage with, respond to, or trust any communication from this account. We are working to get it banned and taken down.
8
5
49
5,330
🚨BREAKING NEWS ROLLING YOUR OWN CRYPTO STILL BAD MORE NEWS AT 11
🚨 Attackers hijack MikroTik routers through internet-exposed SSH. No authentication required. Update RouterOS immediately, then check for unknown users and scripts, CERT Polska advises. See affected versions and recovery steps → thehackernews.com/2026/09/at…
8
11
419
36,314