g3n3r4l12
-
SlowMist Hacked - SlowMist Zone (hacked.slowmist.io)
latest hacks and security incidents reported by SlowMist.
-
Supply Chain Attacks: A New Era (osec.io)
A deep dive into the evolving landscape of supply chain attacks and their implications.
-
Denuvo Analysis (connorjaydunn.github.io)
A technical breakdown of Denuvo's anti-tamper technology and its vulnerabilities.
-
Fun with Timing Attacks (ostro.ws)
Exploring the intricacies of timing attacks and their exploitation.
-
OSV-SCALIBR: A library for Software Composition Analysis (security.googleblog.com)
Google's new library for analyzing software composition vulnerabilities.
-
System Prompt Storytelling: A Tale of AI Jailbreaking (douglas.day)
A fascinating look into AI jailbreaking through system prompts.
-
A detailed account of hacking Subaru's STARLINK system.
-
A reverse engineering journey into Call of Duty's anti-cheat system.
-
Next.js, cache, and chains: the stale elixir (zhero-web-sec.github.io)
An exploration of caching vulnerabilities in Next.js applications.
-
Techniques and reports on CSPT vulnerabilities.
-
Backdooring Your Backdoors - Another $20 Domain, More Governments (labs.watchtowr.com)
A look into backdoor vulnerabilities in government systems.
-
A closer look at the Mercedes-Benz infotainment system security (securelist.com)
Research into the security of Mercedes-Benz's infotainment system.
X2
-
Disable Bluetooth in Public Places? (@uk_daniel_card)
A discussion on the practicality of disabling Bluetooth in public spaces.
-
Security Notice about ChatGPT Operator (@rez0__)
A warning about credential storage in ChatGPT Operator.
y0utube1
-
Analysis of CVE-2023-37474 in CopyParty (youtube.com)
A detailed analysis of the CVE-2023-37474 vulnerability in CopyParty. Watch Here
g1thub4
-
almost\ (gist.github.com)
pwned.md - A collection of near-miss security incidents and lessons learned.
-
opengrep/opengrep (github.com)
A static code analysis engine for finding security issues in code. Explore on GitHub
-
semgr8ns/semgr8s (github.com)
A Semgrep-based Policy Controller for Kubernetes. Explore on GitHub
-
TURROKS/CVE\Prioritizer (github.com)
A tool to streamline vulnerability patching using CVSS, EPSS, and CISA's Known Exploited Vulnerabilities. Explore on GitHub