Logo Light Logo Dark Veria Labs
Veria Labs
Blog
  1. Blog
  2. Page 1
2026
  • Pwning Pydantic's Monty: A $5K Sandbox Escape

    Pwning Pydantic's Monty: A $5K Sandbox Escape

    Owen Kwan
    ・ May 7, 2026 ・ 16 min read

    Pydantic offered $5,000 to escape Monty, their Rust-built Python sandbox for AI agents. We chained two GC bugs into a use-after-free and walked away with the bounty.

  • Securing Open Source Part 2: Cracking Kraken

    Securing Open Source Part 2: Cracking Kraken

    Cayden
    ・ April 10, 2026 ・ 6 min read

    Malicious dApps can impersonate trusted apps and disguise Solana transactions as harmless message signatures, allowing potential fund theft when chained together.

  • Securing Open Source Part 1: Goose 1-Click RCE

    Securing Open Source Part 1: Goose 1-Click RCE

    Jayden
    , 
    Cayden
    ・ March 24, 2026 ・ 6 min read

    We found a 1-click RCE in Block's Goose AI agent - any website could silently execute commands on your machine.

  • Announcing our $3.2M Seed Round

    Announcing our $3.2M Seed Round

    Stephen
    ・ February 9, 2026 ・ 3 min read

    We spun out of the #1 hacking team in the US and raised a $3.2M seed to make getting hacked a thing of the past.

  • Breaking FRI in Eigen's zkVM

    Breaking FRI in Eigen's zkVM

    Cayden
    ・ January 5, 2026 ・ 13 min read

    How Missing Index Checks Allows Full Proof Forgery

2025
  • From MCP to Shell

    From MCP to Shell

    Raymond
    , 
    Stephen
    , 
    Cayden
    , 
    Jayden
    ・ September 23, 2025 ・ 11 min read

    How MCP Authentication Flaws Enable RCE in Claude Code, Gemini CLI, and More

  • Previous
  • 1
  • Next
© 2026 Veria Labs, Inc.