TGViewer
Channel Public Channel
Alaid TechThread

Alaid TechThread

@offensive_thread

Vulnerability discovery, threat intelligence, reverse engineering, AppSec
Subscribers
1.13K
Photos
7
Videos
2
Links
1.4K

Showing posts older than #1475 · Back to latest

Older Posts 20 shown
Post #1474 485
https://github.com/lukehinds/nono

nono is a secure, kernel-enforced capability shell for running untrusted AI agents and processes. Unlike policy-based sandboxes that intercept and filter operations, nono leverages OS security primitives (Landlock on Linux, Seatbelt on macOS) to create an environment where unauthorized operations are structurally impossible.
GitHub GitHub - nolabs-ai/nono: secure multiplexed execution paths for agents - zero trust, zero setup, zero latency. secure multiplexed execution paths for agents - zero trust, zero setup, zero latency. - nolabs-ai/nono
Post #1473 1.08K
Атакующий ИИ на практике. Nulla на T-Sync Conf 7 февраля 2026 года.

На конференции показываем Nulla — атакующего ИИ-агента, который думает и действует как реальный хакер.

Что будем делать на стенде Nulla:

🔍 Анализ репозиториев на реальные уязвимости

🔗 Разбор API-контрактов и логики взаимодействий

🚨 Заведение и оценка уязвимостей

👨‍💻 Общение с командой разработки

Nulla не просто подсвечивает потенциальные проблемы, а предоставляет PoV (Proof of Vulnerability), показывая, что уязвимость реально эксплуатируема.

Почему это важно:

🧠 масштабирование экспертизы ИБ без роста штата

📚 единая база знаний, собранная практикующими экспертами

📏 меньше субъективных оценок → единый стандарт качества

Атакующий ИИ меняет саму суть работы инженера ИБ:
фокус смещается с рутины и покрытия — на качество анализа, мышление и развитие экспертизы агента.

📍 Ждём на стенде Security → https://t-syncconf.ru/program?category=Security
Также в программе: ассистент исправления уязвимостей Safeliner, платформа управления безопасностью активов Diameter, лекторий от SolidLab.
  • 🔥 10
  • 👍 2
Post #1470 536
Post #1469 476
MCP Scanner

A Python tool for scanning MCP (Model Context Protocol) servers and tools for potential security findings. The MCP Scanner combines Cisco AI Defense inspect API, YARA rules and LLM-as-a-judge to detect malicious MCP tools.

https://github.com/cisco-ai-defense/mcp-scanner
GitHub GitHub - cisco-ai-defense/mcp-scanner: Scan MCP servers for potential threats & security findings. Scan MCP servers for potential threats & security findings. - cisco-ai-defense/mcp-scanner
Post #1466 500
Post #1464 463
Post #1455 729
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →