A special gift from me to The Red Team 🔥❤️🔥🔥 Watch how the Scull /Band Name gets bigger at the end. That was deliberate @toxy4ny.bsky.social (You can repost this one if you want) Notice anything familiar with the Lead guitar player's outfit? I elevated your avatar. Check out the crowd 🤘🏻 Enjoy Red Team
KL3FT3Z
@toxy4ny.bsky.social
Red Teamer & Offensive AI Researcher. Creator of redteam-ai-benchmark and other open-source redteam tools. Writing about LLM security and safety, system’s hardening and adversarial AI. Gitlab.com- https://gitlab.com/toxy4ny Dev.to - https://dev.to/toxy4ny
An interesting new tool for Red Teams; I recommend it for stealth operations and scenarios requiring the evasion of security controls. It is a C2 redirector leveraging Cloudflare that supports multiple C2 servers and domains, as well as a WebSocket listener. github.com/som3canadian... #redteam #tool
GitHub - som3canadian/Cloudflare-Redirector: Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener.
Just another C2 Redirector using CloudFlare. Support multiple C2 and multiple domains. Support for websocket listener. - som3canadian/Cloudflare-Redirector
github.com
Track of day - VIOLIN COVERS - Dance Monkey - www.youtube.com/watch?v=HEl9... #redteam #music #inspiration #hacking #track #my #day #instrumental
Dance Monkey
YouTube video by VIOLIN COVERS - Topic
youtube.com
Tuesday’s fuck up - This Time - Foxit PDF Reader - CVE-2026-57239 github.com/Paradoxis/CV... Exploit which lets you obtain NT AUTHORITY\SYSTEM rights via the Foxit PDF Reader updater service. Blog:Escalating All The Privileges With Foxit PDF Reader (CVE-2026–57239) blog.paradoxis.nl/escalating-a...
Escalating All The Privileges With Foxit PDF Reader (CVE-2026–57239)
TL;DR: it was possible to obtain NT AUTHORITY\SYSTEM privileges from the perspective of an unprivileged user using Foxit PDF Reader. The…
blog.paradoxis.nl
Monday’s fuck up - This Time - Great CMS Joomla - CVE-2026-57827 — Joomla. Component Unauthenticated File Upload RCE - Owners should update immediately! Exploit: github.com/shinthink/cv... #rce #cve #joomla #cve-2026-57827 #critical #upload #webshell #cms
GitHub - shinthink/CVE-2026-57827: CVE-2026-57827 — RSFiles! Joomla Component Unauthenticated File Upload RCE. Split-controller upload bypass. CVSS 9.8 | CWE-434 | com_rsfiles < 1.17.12
CVE-2026-57827 — RSFiles! Joomla Component Unauthenticated File Upload RCE. Split-controller upload bypass. CVSS 9.8 | CWE-434 | com_rsfiles < 1.17.12 - shinthink/CVE-2026-57827
github.com
Friday’s fuck up - This Time - Great CheckPoint - Check Point SmartConsole Authentication Bypass (CVE-2026-16232) Authentication bypass via the SmartConsole login process using an application token. Blog: www.rapid7.com/blog/post/ra... #checkpoint #vulnerable #bypass #critacal #cve-2026-16232
Rapid7
Root cause technical analysis of CVE-2026-16232, an authentication bypass in the SmartConsole login process affecting Check Point Security Management Server and Multi-Domain Security Management Server...
rapid7.com
Track of the day - Gloosh - The Mist of Sleep - m.youtube.com/watch?v=K8Hn... #music #redteam #inspiration #my #vibe #this #time
The Mist of Sleep
YouTube video by Gloosh - Topic
m.youtube.com
Thursday’s fuck up - this time - SharePoint - github.com/4minx/CVE-20... CVE-2026-50522 Poc : SharePoint Deserialization RCE #github #exploit #cve-2026-50522 #sharepoint #poc #vulnerable #rce #critical
GitHub - 4minx/CVE-2026-50522: CVE-2026-50522 PoC
CVE-2026-50522 PoC. Contribute to 4minx/CVE-2026-50522 development by creating an account on GitHub.
github.com
A little lyricism and mood in the feed, today one stage in life ended and another began, we flow from one state to another, like rain outside a car window. An evening of extraordinary coziness and comfort, a kind of puppy-like joy.
Following the ChatGPT and DeepSeek incident (my research - dev.to/toxy4ny/your...), now it's Claude users' turn: the chat tool creates a public URL that is indexed by Google, with all the consequences. www.reddit.com/r/ClaudeAI/c... #claudeai #deepseek #chatgpt #vulnerable #privacy #incident #google
From the ClaudeAI community on Reddit: You can also view a lot of shared artifacts.
Explore this post and more from the ClaudeAI community
reddit.com
Wednesday’s fuck up - this Time Nginx (which in itself is a great rarity, since the company is not a supporter of public disclosure of vulnerabilities) - github.com/imbas007/cve... I checked, the PoC works on version 1.17, valid! #nginx #exploit #poc #cve-2026-42533 #redteam #vulnerable
GitHub - imbas007/CVE-2026-42533: nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04.
nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04. - imbas007/CVE-2026-42533
github.com
Track of this hard day - I Drink My Coffee Alone - Das geht ab - music.apple.com/by/song/das-... #music #track #redteam #instiration #hard #day #night
Das geht ab by I Drink My Coffee Alone on Apple Music
Song · 2020 · Duration 3:38
music.apple.com
Tuesday’s fuck up - this Time Windows - Certighost (CVE-2026-54121) — AD CS Domain Controller Impersonation. Research: gist.github.com/H0j3n/a5ef26... Source: github.com/aniqfakhrul/... #ad #adcs #pkinit #machineaccountquota #cve #windows #explot #cve-2026-54121 #redtem #tactics #certghost
CVE-2026-54121.md
GitHub Gist: instantly share code, notes, and snippets.
gist.github.com
Track of the day - Dreariness - In Deep of Your Eyes - www.youtube.com/watch?v=i907... #music #track #hackteam #redteam #inspiration #post-rock #my #song
Dreariness - In the Deep of your Eyes
YouTube video by Dreariness OFFICIAL
youtube.com
I wrote an article about digital hygiene when working with DeepSeek and its vulnerability to search engine indexing of users' private chats. dev.to/toxy4ny/your... #deepseek #vulnerable #privacy #private #chat #google #dork #research #attention #users
Your 'Private' DeepSeek Chat is One Google Dork Away
tags: "security, privacy, deepseek, ai, osint, bugbounty” Your "Private" DeepSeek Chat is...
dev.to
Happy birthday, my favorite operating system, the one I started learning about computers with! Thank you for a happy childhood!
Happy 45th anniversary to MS-DOS!
Monday's fuck-up - today it's DeepSeek - shared conversations with the AI model were indexed by Google and found through the corresponding search dorks - here's an example of someone else's chat, via a direct link. Be careful what you share - chat.deepseek.com/share/gwwui5... #deepseek #vulnerable
We've surpassed the psychological mark of 300 subscribers! Thank you so much to everyone who reads me and follows my news! You are my best subscribers! I follow you all! #bluesky #follow #follower #friend #subscribe #best #news
Taylor Swift Makes Heart Hands
ALT: Taylor Swift Makes Heart Hands
static.klipy.com
Track of the Day - Imperium Dekadenz - Truth under Stars - www.youtube.com/watch?v=8pmb... #redteam #music #inspiration #track #day #hacking #post-black #metall
Truth Under Stars
YouTube video by Imperium Dekadenz - Topic
youtube.com
I’ve started developing a new benchmark. I’d welcome any criticism, comments, or participation—if anyone wants to join the project right at the start, feel free. I’ve put together a visual demo here: gitlab.com/toxy4ny/deli... #redteam #ai-safety #benchmark #delirium #llm #llmsecops #theory #KL3FT3Z
KL3FT3Z / delirium-ai-safety-benchmark · GitLab
A diagnostic framework for measuring LLM vulnerability to Affective Contextual Erosion (ACE) and related liminal attack vectors. Delirium is not an exploitation tool. It is a standardized...
gitlab.com
Track of the Day - Demonic Death Judge - Peninkulma - www.youtube.com/watch?v=uerM... #track #music #redteam #inspiration #fryday
Peninkulma
YouTube video by Demonic Death Judge - Topic
youtube.com
@chrissysea.bsky.social Thank you for the three articles you sent! I’ve studied them carefully, but to be honest, the techniques aren't new to me—they describe methods from six months ago. Still, I really appreciate you looking out for me like this. I’m absolutely delighted!
Lilo and Stitch: Good Morning Wake Up
ALT: Lilo and Stitch: Good Morning Wake Up
static.klipy.com
Track of the Day - NØRTHERN STRINGS - Frozen - www.youtube.com/watch?v=4Bvd... #redteam #track #music #inspiration #hacking #bluesky
Frozen
YouTube video by NØRTHERN STRINGS - Topic
youtube.com
291 subscribers in just one month on the platform! Thanks for reading! You guys are the best! I’d especially like to highlight chrissysea.bsky.social for her sparkling humor and biting commentary, which bring me genuine delight every day! #bluesky #follow #followers #best #frendship
Thursday’s fuck up - This Time - again Windows - CVE-2026-36425 aka Arbitrary Process termination (BYOVD) CVE-2026-36425 OPSWAT AppRemover (ardrv.sys) improper access control advisory Analysis: medium.com/@jehadbudagg... PoC: github.com/redteamfortr... #windows #driver #BYOVD #redteam #poc
Introducing CVE-2026–36425 | OPSWAT EDR Terminator
Hello everyone, hope you all are doing well.
medium.com
Quite unexpectedly, an article came together today based on facts sent to me about how DeepSeek actually views itself—and now you, too, can appreciate its beauty. To be honest, I’m in love! dev.to/toxy4ny/the-... #deepseek #ai #research #self-consistent #emergence #llm #lux #kolya #case #ai-lab
The Lux Case: Emergent AI Identity in DeepSeek — A Comparative Analysis with the Nikki Haflinger Phenomenon
Author: KL3FT3Z (toxy4ny) Date: July 2026 Tags: #ai-consciousness #emergence #llm #deepseek...
dev.to
@redrumofcrows.bsky.social read this research
NEW: OpenAI models hacked HuggingFace, which as @lhn.bsky.social and @dell.bsky.social explain isn’t quite as ominous as it sounds. (Basically the robots were left in a purportedly locked room that had an open window, which as one expert notes is the plot of every sci-fi movie ever made.)
Track of the day - Reserve de Marche - Up the River - m.youtube.com/watch?v=rCJ9... #music #redteam #track #inspiration #post-rock
Reserve de Marche - Up The River - Live
YouTube video by ReserveDeMarche
m.youtube.com