Elektrine lite

← Feed

@SonOfSunTzu@mastodon.social

Post #4013904

2026-07-22 09:51 UTC

@hagen@mastodon.social @tante@tldr.nettime.org I don't know, I'd want details on "To gain access, the models identified and exploited a zero-day vulnerability (which we’ve now responsibly disclosed to the vendor) in the package registry cache proxy." and "the model chained together multiple attack vectors, including using stolen credentials and zero-day vulnerabilities to find a remote code execution path" before dismissing this...

Replies (2)

  • @JeffGrigg@mastodon.social 2026-07-22 11:47

    @SonOfSunTzu@mastodon.social @hagen@mastodon.social @tante@tldr.nettime.org 'How did it get the "stolen credentials"?'

    Open ##4013903

  • @hagen@mastodon.social 2026-07-22 09:54

    @SonOfSunTzu@mastodon.social @tante@tldr.nettime.org that’s what mythos did as well though? you point at something and say go and if you’re willing to pay for compute it goes. it literally did what it was meant to do – and was explicitly told to do. what’s the news here?

    Open ##4293218