1. X
  2. Arthur Gervais
Log inSign up
Arthur Gervais
1,894 posts
Arthur Gervais profile banner
user avatar

Arthur Gervais

@HatforceSec
Sharps or Squares. Personal views only.
Simpli-city
arthurgervais.com
Joined July 2011
554
Following
3,598
Followers
2
Subscriptions
RepliesRepliesArticlesArticlesMediaMedia
  • Pinned
    user avatar
    Arthur Gervais
    @HatforceSec
    Sep 1, 2025
    AI for Security has never been more exciting. Let me present MAPTA, our multi-agent framework that found multiple (now confirmed!) Remote Code Executions (RCE's) in flagship web products of Tier-1 companies. Why the secrecy? We're good boys, letting them cook patched through
    Image
  • user avatar
    Arthur Gervais
    @HatforceSec
    1h
    the audacity 🤣 "The original report was submitted 11 months earlier and identified the same vulnerability affecting the same endpoints"
  • user avatar
    Arthur Gervais
    @HatforceSec
    Aug 11
    very much appreciate this figure, it shows what matters: normalized results at the cost dependency
    user avatar
    XBOW
    @Xbow
    Aug 11
    Replying to @Xbow
    3/ Cost is becoming just as important as raw capability. Lower-cost models like GLM-5.2 and Muse Spark 1.1 showed that “good enough” offensive capability is becoming increasingly affordable, while Grok 4.5 delivered near-frontier performance in the mid-budget range.
    Image
  • user avatar
    Arthur Gervais
    @HatforceSec
    Aug 10
    oh perfect, just in time
    user avatar
    Mark Zuckerberg
    Meta
    @finkd
    Aug 10
    Today we're also opening the weights for Muse Glimmer, a great 30B parameter dense model that can run locally. Soon we'll also release the weights for Muse Spark 1.2, our latest foundation model. Meta is a strong supporter of open source and I'm proud of these releases. Congrats
  • user avatar
    Arthur Gervais
    @HatforceSec
    Jul 18
    sweet, the first technical deep dive afaik
    user avatar
    BugBunny.ai - Continuous AI Pentesting System
    @BugBunny_ai
    Jul 18
    One missing array entry started it all. then two WordPress core bugs chained through SQL injection, cache poisoning and an administrator identity switch -> ending in unauthenticated RCE. We reconstructed the path. CVE-2026-63030 kudos for discovering @hash_kitten @assetnote
    Image
    00:00

Log in or sign up for X

See what’s happening and join the conversation

Continue with phone
or
Log in with username or email
Terms·Privacy·Cookies·Accessibility·Ads Info·© 2026 X Corp.
Advertisement
Advertisement