Research
- Pre-auth RCE on MikroTik: exploited before the patch, rebuilt in three hours
MikroTrick, an unauthenticated MikroTik RouterOS takeover chain, was exploited in the wild before the advisory shipped. We rebuilt the full exploit from the public advisory and patch diff in approximately three hours.
- Fable 5 wrote a Windows kernel in 38 minutes
Fable 5 wrote a booting, NT-shaped kernel in Rust in 38 minutes. The code is impressive; the signal is what it tells us about AI-authored trust, and the verification frontier that decides whether the internet's critical infrastructure gets rewritten by models.
- Anatomy of a Malicious Package: The Install-Time Playbook
A field guide to the techniques attackers hide inside npm, PyPI, and Crates packages, and the benign look-alikes that make them hard to catch.