Loading...

Tag trends are in beta. Feedback? Thoughts? Email me at [email protected]

'Asimov Was Right' About Rules For Robots, Says Ex-US Cyber Director

Passphrase-less reboots using kexec under NixOS

OWASP Top 10 CI/CD Security Risks

Decrypting my Flume water monitor's MQTT traffic with a passive relay

Going Dark, and the era of law enforcement hacking

My Homelab Got Hacked – A Postmortem

Spaghettifying DRAM

Rooting, firmware analysis and persistent credentials of TP-Link TL-841N

Web Security is Too Hard

Bypassing Android Hardware Attestation from the Analyst's Chair

Deadbugz: Currently Active MCP Supply-Chain Campaign

I found a KVM guest-to-host heap corruption bug and someone else got there first

Tl;dv: Over 180k meetings left wide open

21,000 MCP servers exposed: the protocol reaches a security inflection point

ZOOMSDAY, Zoom Zero-Click Vulnerabilities Via Annotation

GitHub Actions needs OIDC audience constraints

AI-generated vulnerability patches require human review

SQLite Critical CVEs or LLM Slop?

CVE-2026-33696: From a Schema Name to RCE in n8n

OpenSSH Key Structure Guide

Zapscape (CVE-2026-64561): Guest-to-Host Escape in KVM/x86

Easy Sandboxing on Linux with Bubblewrap

Shipping post-quantum cryptography to Python

Adopting Memory-Safety and Fine-Grained Compartmentalisation with CHERI

AI assistant hacks gym website in first known Australian autonomous cyber attack

Crashing Through Defenses: Exploiting Segfaults and Chaining around Intel CET

Integrated Sensing and Communication (ISAC)

A researcher bought noreply.net. Companies started sending him secrets

SCTPhantom: An 18-Year-Old SCTP ASCONF Transport Use-After-Free

Police Scotland warns ‘robust security’ needed to stop attacks on AI datacentres

More →