Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

The Dumbest AI Security Flaw

cyberflow

hacking

ethical hacking

kali linux

hacking techniques

password hacking

wifi hacking

cybersecurity

ai security

langflow rce

python ast

remote code execution

hacker news

devops security

low code platforms

openai exploit

cyber security analysis

langchain security

decorators in python

langflow vulnerability

horizon3 exploit

startup fails

ai gone wrong

devsecops

tech breakdown

Автор: CyberFlow

Загружено: 17 мая 2025 г.

Просмотров: 40 657 просмотров

Описание:

Join up and get everything you actually need to start hacking like a pro 🎓💻✨https://cyberflow-academy.github.io/

Educational Purposes Only.

langflow — a low-code platform for building AI agents — accidentally allowed anyone to run arbitrary Python code on their servers through a “/APIV1/validate-code” endpoint. This wasn't just a theoretical bug. This was active Remote Code Execution (RCE), exploited in the wild, and flagged by CISA. The cause? langflow tried to validate user-submitted code… by executing it. Including Python decorators, which get triggered immediately. If you’re building anything AI-powered and letting users submit code — even for validation — sandbox it like your life depends on it.

In this video, we break down exactly how Horizon3.ai found the vuln, how the attack worked through AST parsing quirks, and why trusting AI blindly is a fast track to getting pwned. Whether you’re a dev, hacker, or just love watching million-dollar startups get humbled, this one’s for you.

#ai #cybersecurity #remotecodeexecution #python #hacking #langflow #startups #infosec #technews #ethicalhacking #rce #exploit #ast #lowcode #openai #developers #devsecops #bugbounty #malware #programming


https://horizon3.ai/attack-research/d...

https://github.com/langflow-ai/langfl...


→ Email: [email protected]


I believe in you. You can do it. 🖤
======================
.▀█▀.█▄█.█▀█.█▄.█.█▄▀ █▄█.█▀█.█─█
─.█.─█▀█.█▀█.█.▀█.█▀▄ ─█.─█▄█.█▄█

The Dumbest AI Security Flaw

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

Why I Don’t Watch Hacking Tutorials Anymore.

Why I Don’t Watch Hacking Tutorials Anymore.

MCP vs API: Simplifying AI Agent Integration with External Data

MCP vs API: Simplifying AI Agent Integration with External Data

25 crazy software bugs explained

25 crazy software bugs explained

NVIDIA Cosmos: как создать СОЗНАНИЕ? | РАЗБОР

NVIDIA Cosmos: как создать СОЗНАНИЕ? | РАЗБОР

Every Hacking Technique Explained in 4 Minutes

Every Hacking Technique Explained in 4 Minutes

The 5 Levels of Hacking

The 5 Levels of Hacking

Как Я стал Миллионером (создал свой МЕМКОИН)

Как Я стал Миллионером (создал свой МЕМКОИН)

The Best Way to Learn Bug Bounty Hunting

The Best Way to Learn Bug Bounty Hunting

3 Levels of WiFi Hacking

3 Levels of WiFi Hacking

Why MCP really is a big deal | Model Context Protocol with Tim Berglund

Why MCP really is a big deal | Model Context Protocol with Tim Berglund

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]