Loading...

Tag trends are in beta. Feedback? Thoughts? Email me at [email protected]

Notepad++ hijacked by state-sponsored actors

I prefer to pass secrets between programs through standard input

Archive.today is directing a DDoS attack against my blog?

Inside Lodash’s Security Reset and Maintenance Reboot

Vibe-coded Social Network for AI Bots Exposed Data on Thousands of Humans

MaliciousCorgi: AI Extensions send your code to China

OpenClaw Security Assessment by ZeroLeaks [pdf]

WhatsApp Encryption, a Lawsuit, and a Lot of Noise

Young adults report lower life satisfaction, a weaker sense of meaning in life and lower financial security than older age groups in Sweden

AI security startup CEO posts a job. Deepfake candidate applies, inner turmoil ensues.

The €10 Mirror: Why Enterprise Security Looks Like a Kid's Toy

Open Source security in spite of AI

I built Fixpoint: A deterministic security auto-patcher for Python PRs (No AI / Open Source)

Homeland Security is targeting Americans with this secretive legal weapon

Common webhook security mistakes (raw body, replay attacks, timing attacks)

Zero Trust Security Model A Modern Approach To Cybersecurity

Web Security: The Modern Browser Model

tirith: a preexec shell hook for terminal command security analysis, written in Rust

There were BGP anomalies during the Venezuela blackout

Claude Cowork exfiltrates files

County pays $600k to pentesters it arrested for assessing courthouse security

White House Scraps 'Burdensome' Software Security Rules

Overrun with AI slop, cURL scraps bug bounties to ensure "intact mental health"

Signal creator Moxie Marlinspike wants to do for AI what he did for messaging

The end of the curl bug-bounty

Runjak.codes: An adversarial coding test

zlib-rs: a stable API and 30M downloads

"a bootstrap chain for NixOS which builds the whole system from a small hand-auditable binary seed"

Infotainment, EV Charger Exploits Earn $1M at Pwn2Own Automotive 2026

The Malloc Maleficarum (2005)

More →