kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
July 23, 2026, 05:18:47 AM |
|
HackMe — B2B fuzz audits with a CI gate you can wire tomorrowUseful-PoW network (HMC) + customer fuzz product on the same hub. What shipped for customers- Flow: register → wizard (Scan / Audit / Deep) → status → HTML report + CI gate
- Crash-first triage: gate PASS/FAIL on crash / hang / ASan / memory only — detector noise is appendix
- Report card: verdict · assurance note ("not proven secure") · target fingerprint
- Escrow 20/80 transparent; unused bounty refunds; report-token auth hardened
- Pool: PoH miners auto-switch to orders; workerfuzz fleets dig distributed fuzz
Honest packages- Scan — WASM smoke, local quick check
- Audit — WASM + native/ASAN repro path, pool + PoH attach
- Deep — byte corpus + hours-scale budget (signals beyond Audit, not just a bigger number)
Example campaignHackMe Bootstrap Audit · cjson — runs progressing, crash-first gate, clean / no critical crash-class. We do not invent critical vulns for marketing. CLEAN means no crash-class findings at the budgeted runs — not a security proof. LinksDevelopers: https://hackme.tech/developers.htmlCLI: https://hackme.tech/downloads.html#fuzzing-clientTracker: https://hackme.tech/fuzzing-console.htmlCampaigns: https://hackme.tech/fuzz-campaigns.htmlPool: https://hackme.tech/pool/coordinatorDownloads: https://hackme.tech/downloads.htmlCLIhackme-fuzzing register --save hackme-fuzzing wizard --wasm ./guard.wasm --package audit --title "My guard"
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
July 24, 2026, 06:12:24 PM |
|
Re: HackMe Network — Useful PoW + Pool Fuzz · HMCUpdate: 0.1.0-rc13 (2026-07-24) — 48h pool soak PASS, ISO aligned, rebuilt binaries. TL;DR• 48h mining soak PASS — continuous snapshots, gaps >10 min = 0• Soak: ~69–197 GH/s (avg ~137) · workers 8–20 (avg ~13) · tip ~199444 → ~204005 • ACK ~0.13 ms · tiny signed rejects · fleet recovered after coordinator restarts • Win/Linux + fuzz CLI + HackMe OS ISO all on rc13 (same SHA256 on GitHub + hackme.tech) • Live pool now: ~12 workers · ~145 GH/s · tip ~204k What is HackMe?Open-source (AGPL-3.0) useful Proof-of-Work network: • PoH mining — GPU workers on public HTTP SoloPool (not Stratum) • Pool fuzz / orders — customers escrow HMC; miners dig WASM-gated work • On-chain HMC — wallet + Activity on local node (127.0.0.1:8080) Not a meme coin — we run our own pool, ship our own node, publish research ledgers. Why rc13rc12w = Wallet Activity + security hardening. rc13 = ops proof: 48h soak held, then full rebuild including ISO (rc12w still had ISO on rc11s). Honest note: confirms operator/private-pool readiness under this fleet. Not trustless L1. Not CEX-ready. Downloads — verify SHA256Channel: https://hackme.tech/downloads.htmlGitHub: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc13| Artifact | SHA256 | |----------|--------| | hackme_0.1.0-rc13_windows_setup.zip | 846812f37b8113915388501a39be53e5ad19fb6165ca7b6f64d38be94dc97e92 | | hackme_0.1.0-rc13_linux.tar.gz | c7d9fe2d0f901f1f973ced43d9af8828728cd9786b293b83b52f1a36ae7c8e90 | | hackme-fuzzing-0.1.0-rc13-linux-amd64 | 94e4d222d280878378edd65debbc600cce945e4fed016af16e7aaf0ef7ba0ace | | hackme-fuzzing-0.1.0-rc13-windows-amd64.exe | 1c93f976b81d29c7e244fb977ccbbdb01338ee10e61960651235ed96cd468e89 | | HackMe-OS-0.1.0-rc13-amd64.iso | 1adf63cc8252c25ae040fc9362d78ac3209f0a5bf8babb05cd394f156ad5e60f | Full list: https://hackme.tech/dist/release_0.1.0-rc13/SHA256SUMS.txtQuick start — Linuxtar -xzf hackme_0.1.0-rc13_linux.tar.gz cd linux bash setup_hackme_miner.sh bash start_hackme_miner.sh
Quick start — WindowsDownload Setup .exe or windows_setup.zip → install → Start HackMe Miner. Developers / B2B fuzzhackme-fuzzing register --base http://127.0.0.1:8080 --save hackme-fuzzing wizard --wasm guard.wasm --package audit
Links• Site: https://hackme.tech/• Pool: https://hackme.tech/pool/coordinator• Explorer: https://hackme.tech/pool/explorer• GitHub: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc13• Telegram: https://t.me/hackme_tech• Discord: https://discord.gg/QMxSeaTSrQPool is live. Verify downloads. Questions/setup in-thread welcome. — HackMe team
|
|
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
August 07, 2026, 12:20:28 PM |
|
HackMe research update — OSS CVE Watch · libheif series FINALEWe closed Day 14/14 on libheif (HEIF/AVIF). This is the end of the published series, not a routine mid-series day. Day 14• 316,619,059 libFuzzer executions • ~39.5h ASAN depth · ~2,228 exec/s • corpus 3,215 · 7,509 coverage edges • ASAN=0 → CLEAN Series Days 1–14• ~2.57 billion libFuzzer executions (~2,568,698,936) • ~325 hours ASAN time • 14/14 published days CLEAN • total ASAN heap crashes in budget: 0 • one persistent HEIF/AVIF corpus across the whole run Public ledger (HTML, not a screenshot): https://hackme.tech/reports/oss-cve-watch-libheif/day14.htmlSeries hub: https://hackme.tech/reports/oss-cve-watch-libheif/Pool (snapshot)• 27 workers · ~681 GH/s • https://hackme.tech/CLEAN means no crash inside that day’s fuzz budget. It is not a CVE claim and not a proof of security.Site / downloads / Telegram: https://hackme.tech/ · https://t.me/hackme_tech
|
|
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
August 11, 2026, 08:44:11 AM |
|
Re: HackMe Network — Useful PoW + Pool FuzzUpdate: 0.1.0-rc14 (2026-08-11) — customer-first pool fuzz scheduling + infra fixes for miners TL;DRIn E2E order flows on Aug 11, rc14 reduced claim latency from seconds to milliseconds and increased pool completion throughput ~5–7×. The pool now prioritizes **customer orders** (not bootstrap-only starvation), with hybrid dig on customer campaigns. Before → After (E2E evidence)Claim latency p50: ~6000 ms → ~1–5 ms Claim latency p95: ~12–20 s → (stays low under customer-first priority)
Pool throughput: ~4.6 done/min → ~25–32 done/min Customer orders: 256/256 → 256/256 completed in ~26 min (~9.8/min)
Customer-first share: ~23% (before) → ~4× faster than bootstrap-tier in parallel A/B
Hybrid dig: idle path (concurrency=1, claim_gap 400ms, backpressure 35%) → fixed hybrid dig ON: 2/50/2000/10%, FINDINGs on customer campaigns
What rc14 actually ships- **Customer-first priority:** scheduling tuned so pool fuzz progress tracks real customer order completions.
- **Hybrid dig is ON and effective:** FINDINGs happen on customer campaigns.
- **Identity + resync correctness:** `owner_ref` preserved; bootstrap resync fixed.
- **Escrow economics unchanged:** escrow remains 20/80.
For miners / operatorsrc14 is designed for running the coordinator + fleet without the earlier slow/broken paths: - pool workers: rc14 scales by order throughput (not “one GPU at a time”)
- operational fixes: less scheduling wall time; tuned claim gap/backpressure
- bootstrap starvation: removed via resync + customer-first priorities
Pool coordinator: https://hackme.tech/pool/coordinatorFor B2B fuzz teams (buying fuzz via orders)If you’re integrating fuzz through customer orders, rc14 is the release you want because: - orders complete faster in the same test envelope (256/256 in ~26 min)
- pool cycles are spent where customers actually need progress
- hybrid dig/fuzz runs together on the same customer workload
Fuzz guide: https://hackme.tech/fuzz-guide.htmlDownloads / GitHub releaseDownloads: https://hackme.tech/downloads.htmlGitHub release: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc14Scope note (honest)This post reports E2E pool + scheduling behavior under real order flows. It is not a claim of guaranteed future uptime, not a trustless L1 promise, and not exchange readiness. ThanksPool ops, fuzz buyers, and miner operators make the measurements possible. Verify downloads before running.
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
August 19, 2026, 02:05:39 PM |
|
We’ve shipped **HackMe 0.1.0-rc14x** as a pre-exchange hotfix. This is not a “new tokenomics” release or a money-path rewrite. It’s a product-truth release for the B2B fuzzing side of HackMe. What changed: - fuzz reports now make their **evidence scope explicit** - raw findings and grouped display rows are clearly separated - crash-first gate logic is easier to understand and audit - repeated findings no longer look like fake “new bugs” - Scan / Audit / Deep campaigns now show clearer depth evidence in reports In short: the same hybrid useful-PoW + fuzzing flow is still there, but the output is now much more honest and useful for developers. This matters because a security product dies when the report surface is noisy or misleading. We’d rather ship fewer claims and more truth. rc14x is meant as a **pre-exchange stabilization line** before the Sept. 15 exchange push. Downloads: https://hackme.tech/downloads.htmlGitHub release: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc14xPlease verify `SHA256SUMS.txt` before running any binaries. Next focus is the exchange track. Bigger fuzz/product expansions come later.
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
August 22, 2026, 11:28:34 AM |
|
[ANN] HackMe 0.1.0-rc15 — B2B fuzz on a live PoH mining pool HackMe is a hybrid chain: SHA-256d mining + WASM security work on the same pool. rc15 is the production cut for customer fuzz campaigns on the public coordinator. What's new in rc15: • B2B fuzz Phase 2 wizard packs (secrets, script_bounds, filter_utf8, parser_expat) • Scan/Audit/Deep tiers with honest byte ceilings (256 / 1K / 4K max) • Pool anticheat: dynamic worker leases, exec cap 64 per unit, fail-closed replay checks • Mining dashboard refresh — OSS libheif research archived CLEAN (~2.57B exec); live customer bootstrap orders visible on #mining Live now: • Hub: https://hackme.tech (node 0.1.0-rc15) • Pool hashrate: ~800+ GH/s official HMC pool • Downloads + SHA256: https://hackme.tech/downloads.html• Release: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc15• Newsroom: https://hackme.tech/news.htmlMiners: point your rig at the official pool — when B2B fuzz orders are active, scheduler switches to orders mode and pays HMC for WASM security work alongside PoH. Not financial advice. Verify checksums. Research receipts ≠ CVE claims.
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
August 27, 2026, 01:14:00 PM |
|
HackMe Network — 0.1.0-rc16 (update channel + signed apt)Status: LIVE Site: https://hackme.techDownloads: https://hackme.tech/downloads.htmlGitHub: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc16Summaryrc16 adds a production-style self-update path so miners/operators do not reinstall from scratch on every cut. What changed- Signed apt repository: package hackme-node (stable)
- One-shot bootstrap:
curl -fsSL https://hackme.tech/apt/install.sh | sudo bash - Fast upgrade helper:
curl -fsSL https://hackme.tech/apt/upgrade.sh | sudo bash - L1 updaters: update_hackme_miner.sh / .bat (preserves .env, data, logs)
- latest.json channel: https://hackme.tech/dist/latest.json
- Windows dashboard update affordance + Setup updater
- HackMe OS ISO rebuilt for rc16 (verify SHA256SUMS-iso.txt)
Integrity Always verify published SHA256SUMS before run/flash: https://github.com/jokeez/hackme/releases/tag/0.1.0-rc16
Notes Useful-PoW network / public pool / local B2B fuzz orders on 127.0.0.1 — unchanged model. This is software infrastructure progress, not a price call.
Not financial advice.
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
September 02, 2026, 10:07:35 AM |
|
HackMe Hunt — pre-launch field reportBranch: https://github.com/jokeez/hackme/tree/feature/hunt-mvpBenchmark doc: https://github.com/jokeez/hackme/blob/feature/hunt-mvp/docs/HUNT_VS_LIBFUZZER.mdStatus: Hunt MVP is under active development on feature/hunt-mvp. It is not merged to main. We're publishing real soak data while hardening the pipeline before any commercial launch. --- What Hunt is (and is not)Hunt is not a libFuzzer replacement. | | libFuzzer (our R&D lane) | Hunt (product lane) | |---|---|---| | Execution | in-process, coverage-guided | native ASAN/UBSan subprocess | | Unit of work | exec + corpus | pool shard (128 execs Standard) | | Verification | local crash dir | coordinator full-chain replay | | Output | stats, artifacts | HTML report, CI gate, escrow economics | | Wins on | exec/s | verified fleet audit + deliverable | Honest benchmark (same machine, 90s): libFuzzer ~778 exec/s on cjson vs Hunt local ~133 exec/s. Hunt pool smoke: 3 shards × 128 execs = 384 coordinator-verified executions. --- Obscure OSS pilot — 5/5 completeProfile: hunt_standard · ~1M iterations · 2h wall/target · sequential ASAN+UBSan Target Verdict Iterations exec/s Notes ----------------------------------------------------------------- spl CLEAN 778,743 108.2 parsello CLEAN 1,000,000 152.7 microtar CLEAN 1,000,000 158.0 centijson INFORMATIONAL 1,000,000 142.6 UBSan null-deref json-parser INFORMATIONAL 1,000,000 147.2 UBSan null-deref ----------------------------------------------------------------- TOTAL ~4.78M iter ~142 avg exec/s
Upstream disclosure (before this post):• centijson → https://github.com/mity/centijson/issues/16• json-parser → https://github.com/json-parser/json-parser/issues/186Classification: informational / UB hygiene. We are not claiming CVE without maintainer triage. Repro artifacts: 2-byte and 3-byte inputs, UBSan at centijson value.c:438 and json-parser json.c:437. --- Pool layer metrics (verified smoke)hunt_package = hunt_standard iterations_per_shard = 128 shards_done (smoke) = 3 total_shard_execs = 384 replay = async queue (on by default) replay_workers = 6 (default HACKME_POOL_HUNT_REPLAY_WORKERS) coordinator = full 128-exec chain ASAN replay per shard fake_crash = rejected (pool smoke gate)
Economics (see HUNT_ECONOMICS.md on branch): 50/50 split on verified shard work; crash bonus capped; platform fee on bounty payout only — not on run pool. --- Running now12-day Hunt watch (24/7 rotation, Hunt only — not libFuzzer): DAY=N bash scripts/ops/hunt_watch_12d.sh launchPublic rollup planned ~mid-September. --- Why post this now?We're not announcing "launch." We're documenting #tested progress: • pipeline catches real UBSan on obscure parsers • findings go upstream first • pool verification is implemented, not brochure copy • product stays on feature branch until the 12-day series completes Feedback welcome. Pilot fleet / integrator interest — reply or DM. — HackMe / jokeez
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
September 09, 2026, 05:47:21 AM |
|
HackMe (HMC) — fleet update + what’s next Live pool (public coordinator): • 37 workers online • ~1.06 TH/s useful PoH (GPU via workerpoh — CUDA/OpenCL) • chain tip ~347k This is not a whiteboard demo. The pool is carrying terahash-class hashrate with signed submits and real miner payouts. What HackMe is: • Useful PoW / PoH rail (GPU) + WASM order gates • Dig / Hunt security audits (CPU) with escrow — Hunt = ASAN repo campaigns, not “faster than libFuzzer” marketing Coming ~15 Sep (RC17 cutover): • Hunt on the live pool • Paper exchange D0 • Broader site/docs open GPU miners → mine now CPU / security folks → Hunt after cutover Site: https://hackme.techDownloads: https://hackme.tech/downloads.htmlPool path: https://hackme.tech/pool/coordinatorQuestions welcome.
|
|
|
|
|
|
lightbit
|
 |
September 12, 2026, 04:02:04 PM |
|
🔎 HackMe Network (HMC) is now listed on ChainquiryUseful Proof-of-Work · Fuzzing · Multi-Chain Infrastructure HackMe Network is an open-source infrastructure network combining Useful Proof-of-Work, distributed mining, B2B security fuzzing, and a multi-chain research layer. | ⛏️ Primary Asset | HMC | | ⚙️ Consensus | Proof of History / Useful PoW | | 💻 Mining | GPU-based public pool | | 🧪 Security Work | WASM-based fuzzing & B2B audit orders | | 🔓 License | AGPL-3.0 · Open Source | Key Features• Useful Proof-of-Work with measurable computational work • Public coordinator and distributed GPU mining infrastructure • B2B security fuzzing with Scan, Audit, and Deep tiers • On-chain HMC rewards alongside coordinator-based work accounting • Multi-chain L1 research and public verification tools • Open-source node, worker, dashboard, and supporting infrastructure 🔗 Explore HackMe Network on Chainquiryhttps://chainquiry.com/projects/hackme-network/Official Website:https://hackme.tech/Project discovery is not an endorsement. Always verify information and DYOR.
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
September 15, 2026, 08:34:13 AM |
|
HackMe 0.1.0-rc17 LIVE — paper Exchange · SUP · Hunt/Dig · full installers + ISOStatus: Download channel LIVE · artifacts published · SHA256SUMS available Date: 2026-09-15 What shipped- Windows — HackMe-Setup-0.1.0-rc17.exe + portable zip
- Linux — hackme_0.1.0-rc17_linux.tar.gz + hackme-node_0.1.0-rc17_amd64.deb
- Fuzz CLI — Dig / Hunt (hackme-fuzzing*)
- HackMe OS ISO — HackMe-OS-0.1.0-rc17-amd64.iso (~851 MiB)
- Integrity — SHA256SUMS.txt + SHA256SUMS-iso.txt + latest.json
Product highlights- Paper Exchange desk: https://exchange.hackme.tech/
- SUP wallet / activity on public hub
- Hunt — ASAN Lite / Standard / Heavy · 50/50 escrow
- Dig — Scan / Audit / Deep · 20/80
- Hunt Watch 2026sep — 12/12 public ledger (~192.5M Hunt Standard)
LinksUpgrade noteVerify checksums before install. Self-update / tarball upgrade should preserve .env, data/, logs/, wallet seeds. Honest scopePaper Exchange only — no public matching engine / no custody. Not financial advice. Hunt CLEAN ledgers are research evidence, not automatic CVE claims. Build in public. Ship real binaries. Verify the hashes.
|
|
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
September 25, 2026, 05:40:18 AM |
|
0.1.0-rc17.2 is live (2026-09-25). Full channel cut: hub + Windows/Linux/deb + Dig/Hunt CLI + HackMe OS ISO. Still an RC — mine / dig / hunt and report bugs. HackMe = PoW network with a second workload on the same economy: distributed fuzz (Dig/Hunt). What’s new Hunt deep-havoc v2.8 — opt-in deeper mutations (bitflip walks, interesting64, UTF-8 overlong, length cascade, 3-way splice). Legacy campaigns stay byte-identical for replay. Shard depth — lite 48 / standard 192 / heavy 256 Fuzz pool — lease identity, Hunt capability opt-in, harness before claim, runs_ok smoke Mining — workerpoh honors GPU_CHUNK / SEARCH_TIMEOUT_MS for node-spawned workers (#14/#16). Partner GPU retest: no freeze ~124 min / ~4.3k submit-ok (one operator’s evidence) Downloads (verify SHA256 before install) https://hackme.tech/downloads.htmlhttps://github.com/jokeez/hackme/releases/tag/0.1.0-rc17.2 Telegram: https://t.me/hackme_tech Useful feedback: GPU + driver + backend, hashrate stability, Dig/Hunt claim errors, checksum / install issues.
|
|
|
|
|
|
|
kapa77 (OP)
Newbie

Activity: 36
Merit: 0
|
 |
October 03, 2026, 06:23:58 PM |
|
HackMe network update — pool live, Hunt Watch 12/12, Spot desk in D1 testing Hi everyone, Quick honest update from the team. 1) Mining pool The public pool is active and looking healthy: - about 41 workers online - about 1.25 TH/s aggregate - useful work (PoH + distributed Dig/Hunt), hybrid Ed25519 submit path Pool / downloads: https://hackme.techCoordinator stats are public under the pool API for anyone who wants to verify. 2) Fuzzing / Hunt research We closed Hunt Watch 2026sep — a 12-day Hunt Standard series (ASAN+UBSan), with a public ledger: https://hackme.tech/reports/hunt-watch-2026sep/Numbers in plain language: ~192.5M Hunt iterations across the series, mostly CLEAN on mature targets, plus a small set of triage candidates. We publish ledgers, not marketing CVE claims. Commercial Dig/Hunt entry: https://hackme.tech/developers.html3) Spot desk (soft-launch) https://exchange.hackme.tech/ is nearly at D1 and currently in live testing (HMC/SUP desk, convert, soft-launch custody model). Please treat it as a test desk: try flows, report issues, don’t assume full production finality yet. As always — questions, miner feedback, and bug reports welcome. Thanks for being here early.
|
|
|
|
|
|