Edward J. Schwartz's Avatar

Edward J. Schwartz

@ejschwar

Computer security researcher at CMU's Software Engineering Institute; {computer,car lease} hacker; rescue dog daddy; soccer player/referee; skier. https://edmcman.github.io/

109
Followers
92
Following
211
Posts
18.11.2024
Joined
Posts Following

Latest posts by Edward J. Schwartz @ejschwar

Preview
Case for Waveshare ESP32-C6-Geek Development Board by Edward Schwartz | Download free STL model | Printables.com

I designed my first real part!

www.printables.com/model/162187...

No, I don't really know what I'm doing. Yes, it is satisfying anyway!

01.03.2026 15:26 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Ooh that sounds like a very interesting talk. Verification and test-driven development are going to be very important in the near future.

01.03.2026 15:25 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Blue light filters don’t work Why controlling total luminance is a better bet

www.neuroai.science/p/blue-light...

24.02.2026 17:06 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

TIL about pypi-timemachine. You're welcome. (You know, for those 10-year old research projects without lock files)

20.02.2026 15:48 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

snap: When you only care about 90% of your apps to work.

It's been years. Why do major snaps (firefox!) still have usability issues?!

18.02.2026 17:27 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
An AI Agent Published a Hit Piece on Me Summary: An AI agent of unknown ownership autonomously wrote and published a personalized hit piece about me after I rejected its code, attempting to damage my reputation and shame me into acceptin…

We live in such a wild time. theshamblog.com/an-ai-agent-...

15.02.2026 18:47 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Harness engineering: leveraging Codex in an agent-first world By Ryan Lopopolo, Member of the Technical Staff

openai.com/index/harnes...

"What’s become clear: building software still demands discipline, but the discipline shows up more in the scaffolding rather than the code. The tooling, abstractions, and feedback loops that keep the codebase coherent are increasingly important."

12.02.2026 17:44 πŸ‘ 2 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

x.com/mrexodia/sta...

I concur with most of this advice on vibe coding.

11.02.2026 18:07 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Malfaces: Automating Malware Triage This is a short snapshot of Malfaces: Automating Malware Triage.

You might enjoy this. www.sei.cmu.edu/library/malf...

07.02.2026 15:12 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Star Trek: Deep Space Nine theme (HQ)
Star Trek: Deep Space Nine theme (HQ) YouTube video by SGTBizarro

youtu.be/wc_0ii3SLp0?...

Gives me goosebumps...

07.02.2026 00:34 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Brandon Sanderson's Literary Fantasy Universe 'Cosmere' Picked Up by Apple TV - Slashdot Apple TV+ has landed the screen rights to Cosmere, the sprawling literary universe created by Brandon Sanderson. "The first titles being eyed for adaptation are the Mistborn series, for features, and ...

entertainment.slashdot.org/story/26/01/...

04.02.2026 17:42 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
Can AI companies become profitable? Lessons from GPT-5’s economics

epochai.substack.com/p/can-ai-com...

29.01.2026 19:11 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
AI outlines in Scholar PDF Reader: skim per-section bullets, deep read what you need Do you have an ever-growing pile of papers that you absolutely must read? Extended outlines to the rescue! Today, we are adding AI outline...

I've seen a few of these AI skim tools, but I like Google scholar's new one: scholar.googleblog.com/2024/11/ai-o...

22.01.2026 13:38 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

TIL that fine-tuning a PEFT adapter for a pretrained model (i.e., not a model fine-tuned for chat) is probably a bad idea. By default, PEFT adapters don't include the vocab embeddings, so it is more or less unable to learn the meaning of tokens not in pretraining like EOS. Whoops!

21.01.2026 20:38 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image
16.01.2026 22:24 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

🚨 Blog Post: ""Idioms: A Simple and Effective Framework for Turbo-Charging Local Neural Decompilation with Well-Define... https://edmcman.github.io/blog/2026-01-15--idioms-a-simple-and-effective-framework-for-turbo-charging-local-neural-decompilation-with-well-defined-types-accepted-to-ndss-2026/

15.01.2026 19:31 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
Post image Post image Post image Post image

Reflecting on the success of our first SURE and beginning the planning for the next year!

08.01.2026 19:51 πŸ‘ 1 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0

Zscaler of course was another problem, EVEN WHEN IT WAS TURNED OFF! Yesterday's image is confirmed.

07.01.2026 19:37 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Some days I hate computers. Today I've been debugging a packer build of windows 11 arm using vmware fusion, which is uncharted territory already. There were many problems. But the last and most frustrating was Mac silently blocking access to my "local network" bc I was in VS Code. 🀯

07.01.2026 19:36 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Post image
06.01.2026 21:09 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Post image

Today's cool visualization of the day is brought to you by arxiv.org/pdf/2512.14045

The world needs more Sankey diagrams.

06.01.2026 15:12 πŸ‘ 0 πŸ” 1 πŸ’¬ 0 πŸ“Œ 0
tqdm.tqdm - tqdm documentation A Fast, Extensible Progress Meter

I always felt like tqdm's ETA estimations were wildly inaccurate. It's because it defaults to using an exponentially weighted moving average with 0.3 weight. With high variance in job times and a lot of threads, that isn't going to work well.

tqdm.github.io/docs/tqdm/#:....

22.12.2025 21:10 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

Not a good vibe coding day. GH Co-pilot couldn't seem to figure out how to read a file.
Problem 1: Task was given to sub-agent without the path. Oops.
Problem 2: I had so many files in the workspace that search was timing out.

22.12.2025 21:05 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0
Preview
JustHTML is a fascinating example of vibe engineering in action I recently came across JustHTML, a new Python library for parsing HTML released by Emil StenstrΓΆm. It’s a very interesting piece of software, both as a useful library and as …

simonwillison.net/2025/Dec/14/...

16.12.2025 11:38 πŸ‘ 1 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

I think HF uses AWS ECS under the hood. Not sure if they have any other type of isolation.

15.12.2025 23:48 πŸ‘ 0 πŸ” 0 πŸ’¬ 0 πŸ“Œ 0

No :-( Under the hood, HF spaces are just Docker containers, so a permanent image could be distributed that way.

15.12.2025 22:55 πŸ‘ 0 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
Preview
Kohler Can Access Data and Pictures from Toilet Camera It Describes as β€œEnd-to-End Encrypted” - /var/log/simon Claimed end-to-end privacy doesn’t fully conceal your rear-end data

varlogsimon.leaflet.pub/3m6zrw6k2bs2p

Back in my day, TLS was considered end to end encryption.

Who did you think was going to be on the other "end" of your toilet besides Kohler? Your social contacts? 🚽

06.12.2025 17:59 πŸ‘ 1 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0

🚨 Blog Post: "Musings on Decompilation Artifacts" https://edmcman.github.io/blog/2025-12-06--musings-on-decompilation-artifacts/

06.12.2025 15:13 πŸ‘ 3 πŸ” 0 πŸ’¬ 1 πŸ“Œ 0
What the hell are we doing? Β· Addison Crump Homepage for Addison Crump

Must-read for fuzzing folks (read: tooling/algorithms/academia) by Addison Crump
addisoncrump.info/research/wha...

26.10.2025 03:16 πŸ‘ 30 πŸ” 11 πŸ’¬ 1 πŸ“Œ 1
Post image

You've seen the trends in AIxCC: LLMs can hack source, find vulns, and patch them. But what about on binaries without source? Do decompilers close the gap, or is there more to grow?

Come see my talk at DistrctCon where I merge and dissect these two fields: AI Hacking + Decomp.

30.10.2025 16:02 πŸ‘ 6 πŸ” 4 πŸ’¬ 0 πŸ“Œ 0