g3n3r4l16
-
Tetris in a PDF (th0mas.nl)
A fascinating way to play Tetris right inside a PDF document.
-
Exploiting Number Parsers in JavaScript (logicalhunter.me)
in JavaScript number parsers.
-
Gitxray: a Security X-Ray for GitHub Repositories (blog.kulkan.com)
Insights into Gitxray's repository scanning capabilities.
-
Labs and Semgrep Rules (blog.doyensec.com)
Diving into unsafe unpacking and secure coding with Semgrep.
-
AWS re:Invent 2024: Security Recap (aws.amazon.com)
Key takeaways from AWS’s security, identity, and compliance updates.
-
Fast Unauthenticated Role Scanning (blog.ryanjarv.sh)
Techniques for identifying unauthenticated roles.
-
Deep Dive - AWS Organization Policies (Part 1) (naman16.github.io)
Analyzing AWS Organization Policies in detail.
-
2024 CVE Data Review (jerrygamblin.com)
Comprehensive review of CVE data from 2024.
-
OSV - Open Source Vulnerabilities (osv.dev)
A review of 2024's open-source vulnerability landscape.
-
How Google Does It: Modernizing Threat Detection (cloud.google.com)
Learn Google's approach to advanced threat detection.
-
3 Takeaways from Red Teaming 100 Generative AI Products (microsoft.com)
Insights into generative AI security challenges.
-
Passkeys: Simpler and Safer Alternative to Passwords (ncsc.gov.uk)
Exploring the future of authentication with passkeys.
-
The First Password on the Internet (schneier.com)
A look back at the origins of internet passwords.
-
Discovering Hidden Vulnerabilities in Portainer with CodeQL (cyberark.com)
Using CodeQL to identify hidden vulnerabilities in Portainer.
-
2024 CVEs in Review (vulnerability.blog)
Detailed review of significant CVEs from 2024.
-
Finding SSRFs in Azure DevOps (binarysecurity.no)
Identifying server-side request forgery vulnerabilities in Azure DevOps.
y0utube1
-
BLOB Based Phishing Scams (youtube.com)
Learn about innovative phishing tactics using BLOB files. Watch Here
g1thub3
-
100DaysofYARA/2025 (github.com)
Community-shared YARA rules from the 100 Days of YARA 2025 challenge. Explore on GitHub
-
TURROKS/CVE\Prioritizer (github.com)
A tool to prioritize CVEs using CVSS, EPSS, and CISA data. Explore on GitHub
-
utkusen/baitroute (github.com)
A web honeypot library for detecting and misleading attackers. Explore on GitHub