Loading...

Tag trends are in beta. Feedback? Thoughts? Email me at [email protected]

WebPKI and You

Deprecate confusing APIs like “os.path.commonprefix()”

My PostgreSQL database got nuked lol

Fooling Go's X.509 Certificate Verification

Felix "fx" Lindner has died

Dependency Tracking Is Hard

Exploring Maturity Models For Security

Pocket ID: Easy Passkey Authentication

US Cybersecurity Adds Exploited VMware Aria Operations To KEV Catalog

First (?) hacked Emacs package

seccomp — Unsafe at any speed (2022)

Catching malicious contributions in open source repos

NetBird - Open Source Zero Trust Networking

A GitHub Issue Title Compromised 4k Developer Machines

Hardening Firefox with Anthropic's Red Team

You can't always fix it

Hardening Firefox with Anthropic's Red Team

Full-Source Binary Seed Bootstrap of the Guix System (2023)

Perfect types with `setHTML()`

The first AI agent worm is months away, if that

My Favorite 39C3 Talks

DOGE employee stole Social Security data and put it on a thumb drive

Fortify your app: Essential strategies to strengthen security

Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit

Clinejection — Compromising Cline’s Production Releases just by Prompting an Issue Triager

Accepting user-supplied code is mostly fine

Reversing Russian spyware I installed on my iPhone

Agents attacking agents: AI-powered bot exploiting GitHub Actions

Every Car Made After 2008 Has the Same Digital Security Risk

The Illustrated TLS 1.2 Connection

More →