Loading...

Tag trends are in beta. Feedback? Thoughts? Email me at [email protected]

Be alert: targeted attacks on prominent Rustaceans

Apple Reference Image: A New Approach for Verified Photography

Rare Not Random Using Token Efficiency for Secrets Scanning

Package Manager Trends

Forgejo <=16.0.3 Critical RCE

Security Incident – BGP Hijacking

Bulk AbuseIPDB reporting using command-line tools

Knowledge Retention & Sharing in DF/IR

Forgery of C2PA on a Pixel 10

Testing Race Conditions

The NX bit is not just about security

Switching Password Managers in 2026

ChiPass Release 2026.09.0

The Deathray: A simple way for an untrusted site to freeze a Mac

I've factored the RSA keys of a Certificate Authority from the 90s

Compiler Can Undo Your Security Checks

Linux Zoom client proactively reading everything written to X11 clipboard

The skb that wasn't freed - the Fragnesia primitive via Open vSwitch

1Password's AI patching benchmark is misleading

Flock cameras are riddled with security vulnerabilities and hardcoded creds

Making Social Media Social

Models Don't Go Rogue

Signing TLS handshakes inside a TPM

From Report to Patch, the OpenBSD Errata Process

The Vulnpocalypse Is Repricing the Bug Bounty Economy

Why Johnny Can't Encrypt: A Usability Evaluation of PGP 5.0 (1999)

OpenAI agents carried out an undisclosed attack on RubyGems

Have the frontier labs mixed up AI safety and security?

Trusting-Trust Attack against an Entire Linux Distribution

How CHERIoT Provides Strong and Usable Isolation Without an MMU

More →