Ksmbd – Exploiting CVE-2025-37947

Exploiting Client-Side Path Traversal to Perform Cross-Site Request Forgery - Introducing CSPT2CSRF

Using Security Engineering to Prevent Phishing – Doyensec

A Race to the Bottom - Database Transactions Undermining Your AppSec

ImageMagick Security Policy Evaluator

On Bypassing eBPF Security Monitoring

That single GraphQL issue that you keep missing

Regexploit: DoS-Able Regular Expressions

Fuzzing JavaScript Engines with Fuzzilli

FIDO2 security key company publishes results of internal security audit

Electron Windows Protocol Handler RCE and MITM (bypass for CVE-2018-1000006 Fix)

Staring into the Spotlight

Modern Alchemy: Turning XSS into RCE