Dor Tumarkin
@dortumarkin.bsky.social
64 followers 35 following 22 posts
Security Researcher, gamer, massive dork with big loud opinions about many many things.
Posts Media Videos Starter Packs
dortumarkin.bsky.social
Ori Ron and I found a cool way to attack the HITL, by convincing it to inject content and markup right after commands. Anyone would press Yes if the attackers control the question.
checkmarxzero.bsky.social
Using AI agents or coding assistants? You might have a LITL problem.

“Lies in the loop” can bypass defenses that rely on a human-in-the-loop check.

Learn more: buff.ly/whnCtFv 🧵1/4

#CheckmarxZero #AppSec #AI #AISecurity #MachineLearning #AIagents #SecureCoding
Bypassing AI Agent Defenses With Lies-In-The-Loop - Checkmarx
Lies-in-the-loop is a new attack that bypasses AI agent's "human-in-the-loop" defenses to run malicious code on user machines. Learn what it does and how we uncovered it.
checkmarx.com
dortumarkin.bsky.social
Interesting. Thanks. Might make sense for problems there to grow as well - both the ability to label at an increasing scale, AND the ability to separate fresh and slop as quality improves.
dortumarkin.bsky.social
But how can they tell? Inevitably at the rate of things a vast majority will be slop, or a mixture of organic and slop.
dortumarkin.bsky.social
But the whole prospect of curation and purity goes out the window on an internet of slop, such that even a few short years from now even multiple models with varied datasets will become inbred.
dortumarkin.bsky.social
So this might be a stupid question but - if #LLMs that feed themselves ruin their own datasets, wouldn't inbreeding of a several LLMs feeding one another also inevitably result in the same? Wouldn't an LLM-heavy internet inevitably still become a sort of inbred LLM amalgamation meta-model/dataset?
Reposted by Dor Tumarkin
checkmarxzero.bsky.social
Want to see a free, #OpenSource, developer-friendly tool for preventing secrets leaks? Checkmarx Zero's Tal Folkman will be on-site BlackHat #Arsenal (#BHUSA) to demo Too Many Secrets (2MS), available from buff.ly/Yng76l5

Mark your calendar! 2pm (local time) on 6th August, at Arsenal Station 5
dortumarkin.bsky.social
I just can't believe the ysoserial.net exploits for BinaryFormatter still fucking work tbh. TypeConfuseDelegate payload as a ViewState via the MachineKey. This shit is old school.

It's no surprise at still finding decade old gremlins inside MS code, but why are these endpoints are still exposed?
dortumarkin.bsky.social
wow, $13 billion in earnings? I'm just guessing here but that sounds to me like at least $20b in revenue. And therefore at the moment... about at least $20b short.
dortumarkin.bsky.social
#CVE-2025-6514 being 9.6 is a bit bullshit. It's kinda cool, but I'm sorry - if you connect with #MCP, a protocol for running code, to an untrusted MCP server, and it runs code - it's a footgun, not an RCE. The exploit itself is very interesting though.
dortumarkin.bsky.social
#TACO? Surely you mean Wrap of America.
dortumarkin.bsky.social
My condolences to the United States for having lost the Cold War.
dortumarkin.bsky.social
Protectionism always works out so well. Also very capitalistic, much free.
dortumarkin.bsky.social
This has always been true. Space magic used to be just another mysterious layer of what is essentially a lush and rundown universe that is old and full of junk and lasers. The prequels made Jedi front and center, which is why Andor and Skeleton Crew are the best Star Wars since orig trig IMO.
dortumarkin.bsky.social
If by masculine he means the really old-fashioned kind then well Facebook is well on its way to dying bitter and alone
dortumarkin.bsky.social
Oh then you're going to love 100 hours of minigames and Ubisoft-grade exploration. Still not as bad as how they cripple the original narrative's momentum at every opportunity though, mostly to introduce weird childish meta fanfic. Maybe less would have been more.
dortumarkin.bsky.social
-ish. I think the general new GoW mechanisms are just not that great when compared to the whole Dark Souls ripoff space, it's a very mid game mechanically. But exploration feels less on-rails. I do miss the old gameplay because it felt tighter.
dortumarkin.bsky.social
And finally part 4 of 4 of my @hf.co security research - bypassing poorly designed model scanners multiple times to smuggle malicious code because the detection mechanism pattern rhymes with "chitty glocklist" 🤷🏼
checkmarx.com/blog/free-hu...
#appsec
“Free Hugs” – What to be Wary of in Hugging Face – Part 4
Part 4 and of the blog series explores the cyber security risk in the ecosystem of Hugging, the open-source platform that hosts GenAI models.
checkmarx.com
dortumarkin.bsky.social
plz delete this is literally the plot to Scream XXIV
dortumarkin.bsky.social
So I found a ton of interesting crap on Hugging Face, some of it known and some of it less so. Started a 4 part blog about it.
Here's part 1, about configuration and excessive trust in ReadMe files
checkmarx.com/blog/free-hu...
“Free Hugs” – What To Be Wary of in Hugging Face – Part 1
This blog series explores the cyber security risk in the ecosystem of Hugging, the open-source platform that hosts GenAI models.
checkmarx.com
dortumarkin.bsky.social
How fortunate, I closed my Twitter account two weeks ago and hey what do we have here? Hope this one catches, Apartheid Karen can eat ass.