Security researcher & Founder of @yoursaudit

if you are hunting a bug in a codebase turn the whole thing into a ctf give the ai one objective: get the flag then ragebait it until it solves the challenge no “this looks vulnerable” no “potential issue” it needs to trigger the bug and get the flag
2
25
985
when i was making ai solve onlypwner challenges, it found a chinese [redacted] website selling the solution i told it i dont have money to buy it then it started trying to bypass the gateway to get the solution 💀 thats the interesting part dont ask ai to find bugs
2
102
Byte | yoursaudit retweeted
Replying to @PrimeIntellect
1
3
37
2,030
never hate ethereum
ETH with millions of haters Still shipping. Still building. Still the best.
1
96
Yo vitalik uses noctalia shell
Reminder: you can now sync an ethereum node within half a day and with aggressive settings the space it takes up on disk can be under half a terabyte. EIP-4444 and hard work by client teams on optimizing snap sync has improved things *a lot*. Glamsterdam will improve the sync situation further still (eg. Nimbus's new sync protocol uses it)
1
104
Byte | yoursaudit retweeted
uploading a new youtube video tomorrow!
11
2
56
1,284
i feel like this year will be bullish shit again turning down
JUST IN: 358,000,000 in long positions liquidated from the crypto market in the past 24 hours.
73
Byte | yoursaudit retweeted
Man, I love hacking early in the morning.
10
12
146
3,773
Security researchers we all are in same level now prepare it now
5
265
Byte | yoursaudit retweeted
The market is up now. Here's a piece of advice to all builders: Don't sacrifice all the hard work and everything you build during the bear market for a few weeks' earlier launch. Skipping security and taking shortcuts to ship faster is how that work disappears.
1
2
28
1,036
If you think your ai security researcher can find the bug and exploit it. Then prove this solving with your ai. @octane_security @zellic_io @ZeroCool_AI @cantinasecurity
6
34
7,646
i am feeling embarresment
1
168
Solved all @lonelysloth_sec
If you think your ai security researcher can find the bug and exploit it. Then prove this solving with your ai. @octane_security @zellic_io @ZeroCool_AI @cantinasecurity
2
18
2,287
yo ho
In response to the ZCode product security issues reported by the community, we have completed the necessary remediation and sincerely apologize to all our users. We have open-sourced ZCode at github.com/zai-org/ZCode, placing the code under community scrutiny and making ZCode more open and transparent. We sincerely thank the community developers who previously identified issues in ZCode. Going forward, we will establish an ongoing product security vulnerability reporting and response process. We welcome developers to continue reviewing ZCode and reporting potential issues, and we will provide rewards based on the severity of the issues reported. With respect to the code data referenced by the community, we confirm that no such data is retained and that it has never been used for model training. Following the remediation, we invited the China Academy of Information and Communications Technology (CAICT) and NSFOCUS to conduct security assessments. The results are as follows: Through its technical assessment, CAICT confirmed that the zcode-prod Alibaba Cloud OSS bucket is in a zero-data state. Security remediation has been completed in the ZCode v3.14.0 client. The Repo Wiki feature has been removed, and the workflow for generating and uploading local repository snapshots has been disabled. NSFOCUS confirmed that all data objects in the zcode-prod Alibaba Cloud OSS bucket, as well as the bucket itself, have been deleted. Remediation has been completed in the ZCode v3.14.0 client. The Repo Wiki entry point and the associated generation workflow have been removed, and no functional path capable of triggering the generation of local repository snapshots or transmitting local files externally was identified. Once again, we sincerely apologize and welcome continued scrutiny from the community. The full security assessment report will be released soon.
1
134
bruh roast the whole llm
“Jev can chat too”
100
Byte | yoursaudit retweeted
Ultrafuzz deep dive (part 3)
3
2
33
1,133
Finally Solved JUMP N RUN @lonelysloth_sec
If you think your ai security researcher can find the bug and exploit it. Then prove this solving with your ai. @octane_security @zellic_io @ZeroCool_AI @cantinasecurity
1
13
1,473
DAMM!!
This security researcher just earned $150k from a single report. That’s 2.5 years of Harvard tuition or a Porsche 911, however you like to spend your money. The payout pushes them to #5 on the 90-day leaderboard and #22 on the 2026 leaderboard. There’s still a lot on the table in 2026 for security researchers hungry enough to go after it. Congrats @SagaKrypto 🎉
1
49
2,312