Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
LLMs Generate Vulnerable C/C++ Code: Self-Review Fails to Mitigate Security Flaws

LLMs Generate Vulnerable C/C++ Code: Self-Review Fails to Mitigate Security Flaws

Comments
10 min read
Anthropic Just Did Something Unprecedented: They Kept a Model Because It Was Too Good at Hacking

Anthropic Just Did Something Unprecedented: They Kept a Model Because It Was Too Good at Hacking

Comments
3 min read
How a passwordless Redis install led to a full rootkit and why I started running honeypots to protect my servers

How a passwordless Redis install led to a full rootkit and why I started running honeypots to protect my servers

Comments
3 min read
How to Block Internet Access for Any Linux App (While Keeping LAN)

How to Block Internet Access for Any Linux App (While Keeping LAN)

Comments
19 min read
Anatomy of a GitHub Actions Supply Chain Attack Targeting MCP Repos
Cover image for Anatomy of a GitHub Actions Supply Chain Attack Targeting MCP Repos

Anatomy of a GitHub Actions Supply Chain Attack Targeting MCP Repos

Comments
7 min read
AI's Spear and Shield

AI's Spear and Shield

Comments
5 min read
Malicious `axios@1.14.1` Published: Exfiltrated CI/CD Secrets; Pin Dependency Versions to Mitigate

Malicious `axios@1.14.1` Published: Exfiltrated CI/CD Secrets; Pin Dependency Versions to Mitigate

Comments
12 min read
Authenticated, Authorized, and Still Unsafe: The Missing Layer in Agent Security

Authenticated, Authorized, and Still Unsafe: The Missing Layer in Agent Security

Comments
5 min read
I Built a Free Smart Contract Scanner
Cover image for I Built a Free Smart Contract Scanner

I Built a Free Smart Contract Scanner

Comments
1 min read
Why Cursor Keeps Writing Wildcard CORS Into Your Express API
Cover image for Why Cursor Keeps Writing Wildcard CORS Into Your Express API

Why Cursor Keeps Writing Wildcard CORS Into Your Express API

Comments
3 min read
Building autonomous AI agents is fun. Securing their access in production is a nightmare.

Building autonomous AI agents is fun. Securing their access in production is a nightmare.

Comments
3 min read
TryHackMe — Linux Privilege Escalation Writeup
Cover image for TryHackMe — Linux Privilege Escalation Writeup

TryHackMe — Linux Privilege Escalation Writeup

Comments
4 min read
Patching the Dead: Why Glasswing Solves Yesterday's Problem with Tomorrow's Tools

Patching the Dead: Why Glasswing Solves Yesterday's Problem with Tomorrow's Tools

Comments
13 min read
Try Hack Me — File Inclusion
Cover image for Try Hack Me — File Inclusion

Try Hack Me — File Inclusion

Comments
7 min read
The Binary Corner
Cover image for The Binary Corner

The Binary Corner

Comments
8 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.