Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
CVE-2025-69211: The Invisible Path: Bypassing NestJS Middleware with URL Encoding

CVE-2025-69211: The Invisible Path: Bypassing NestJS Middleware with URL Encoding

Comments
2 min read
Cipher Suite Explained Component by Component
Cover image for Cipher Suite Explained Component by Component

Cipher Suite Explained Component by Component

5
Comments 2
1 min read
CVE-2025-29914: The Double-Slash Deception: Bypassing Coraza WAF with RFC Compliance

CVE-2025-29914: The Double-Slash Deception: Bypassing Coraza WAF with RFC Compliance

Comments
2 min read
CVE-2026-24490: MobSF Stored XSS: When the Scanner Becomes the Target

CVE-2026-24490: MobSF Stored XSS: When the Scanner Becomes the Target

Comments
2 min read
Clawdbot/Moltbot security issues.
Cover image for Clawdbot/Moltbot security issues.

Clawdbot/Moltbot security issues.

Comments 1
1 min read
CVE-2025-29927: Next.js Middleware Bypass: When 'I'm With The Band' Actually Works

CVE-2025-29927: Next.js Middleware Bypass: When 'I'm With The Band' Actually Works

Comments
2 min read
CVE-2026-22864: Deno on Windows: How a Capital Letter Broke the Security Model

CVE-2026-22864: Deno on Windows: How a Capital Letter Broke the Security Model

Comments
2 min read
CVE-2026-24048: Backstage Pass: Bypassing SSRF Protections via Redirect Hijacking

CVE-2026-24048: Backstage Pass: Bypassing SSRF Protections via Redirect Hijacking

Comments
2 min read
Passkey Day 2 Problems: 5 Risks in Production Deployments
Cover image for Passkey Day 2 Problems: 5 Risks in Production Deployments

Passkey Day 2 Problems: 5 Risks in Production Deployments

Comments
4 min read
CVE-2026-24686: TUF Luck: Escaping the Sandbox in go-tuf via TAP 4 Map Files

CVE-2026-24686: TUF Luck: Escaping the Sandbox in go-tuf via TAP 4 Map Files

Comments
2 min read
How I Built a Semgrep-Like Scanner for AI Agent Skills

How I Built a Semgrep-Like Scanner for AI Agent Skills

24
Comments
6 min read
Your Link-in-Bio Is Lying — Why Verified Links Are the Next Standard

Your Link-in-Bio Is Lying — Why Verified Links Are the Next Standard

Comments
4 min read
How AI Agents Verify Trust in Multi-Agent Systems (And Why Most Can't)

How AI Agents Verify Trust in Multi-Agent Systems (And Why Most Can't)

3
Comments 2
3 min read
WiFi CSI: Your Router Can See You Move — Privacy Implications of Channel State Information
Cover image for WiFi CSI: Your Router Can See You Move — Privacy Implications of Channel State Information

WiFi CSI: Your Router Can See You Move — Privacy Implications of Channel State Information

1
Comments
7 min read
The Armored AI Agent You Can Actually Trust
Cover image for The Armored AI Agent You Can Actually Trust

The Armored AI Agent You Can Actually Trust

3
Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.