I scanned all of GitHub's "oops commits" for leaked secrets

Let Me Cook You a Vulnerability: Exploiting the Thermomix TM5

NPM 'accidentally' removes Stylus package, breaks builds and pipelines

Using leaked data to examine vulnerabilities in SMS routing and SS7 signalling

DNS Security is Important But DNSSEC May Be a Failed Experiment

Certificate Transparency - Part 1

PyPI Phishing Attack: Incident Report

CISA Open-Sources Thorium Platform For Malware, Forensic Analysis

Jack Dorsey Says His 'Secure' New Bitchat App Has Not Been Tested For Security

Trigon: Exploiting coprocessors for fun and for profit (part 2)

The Cost of Security Debt (With Numbers)

Apache HTTP Server: 'RewriteCond expr' always evaluates to true

Upcoming coordinated security fix for all Matrix server implementations

Eskil Steenberg – I've had it with the security orthodoxy

Cyberattack Cripples Russian Airline Aeroflot

RFC 9773: ACME Renewal Information (ARI) Extension

Anatomy of a SYN-ACK attack (2019)

What is gVisor?

North Korean XORIndex malware hidden in 67 malicious NPM packages

Redditor Speculates that EU age verification app to ban any Android system not licensed by Google

Jitsi privacy flaw enables one-click stealth audio and video capture

Firefox-patch-bin, librewolf-fix-bin AUR packages contain malware

Qantas Confirms Data Breach Impacts 5.7 Million Customers

goHardDrive Leaked Personal Data for Thousands of Customers

Taking over 60k spyware user accounts with SQL injection

Sipgate discovers null-pointer-dereference in Mediatek VoLTE stack firmware

[RFC] Upstream target support for CHERI-enabled architectures

Russia Blocks Ethical Hacking Legislation Over Security Concerns

C mistakes among the vulnerabilities present in curl code

OverHAuL: Harnessing Automation for C Libraries with Large Language Models

More →