depthfirstlabs's profile picture. Building intelligence to autonomously detect, triage and remediate any software vulnerability

depthfirst

@depthfirstlabs

Building intelligence to autonomously detect, triage and remediate any software vulnerability

depthfirst reposted

This is the way, kudos to @depthfirstlabs !

I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304: I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…

MavLevin's tweet image. I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304:

I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…
MavLevin's tweet image. I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304:

I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…


depthfirst reposted

I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304: I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…

MavLevin's tweet image. I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304:

I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…
MavLevin's tweet image. I asked AI to secure OSS analytics software and it found an RCE. The story of CVE-2025-59304:

I tested our Security AI agents on Swetrix, a modern, lightweight, open-source, cookie-free, quick setup, and generally pretty cool web-analytics project. The platform (and their cloud…

Another day, another zero-day 🤙

🚨my AI coworker found a zero-day in Netty yes, that Netty used by Meta, Apple, Google and half the internet. the bug lets attackers send fake emails that look perfectly legit. the exploit fully bypasses email defenses. here’s the story 🧵[1/6]

MavLevin's tweet image. 🚨my AI coworker found a zero-day in Netty

yes, that Netty used by Meta, Apple, Google and half the internet. the bug lets attackers send fake emails that look perfectly legit. the exploit fully bypasses email defenses.

here’s the story 🧵[1/6]


depthfirst reposted

A peek of what's cooking at depthfirst: our platform *autonomously* found a CVE!! CVE-2025-59305 is a critical vuln in Langfuse , an LLM platform with 16k github stars. The vuln risks db corruption and DOS. Thread 🧵on X (1/7); Full writeup here: depthfirst.com/post/how-an-au…


Hello world!


United States Trends

Loading...

Something went wrong.


Something went wrong.