g3n3r4l13
-
CVE Discussions in the Fediverse (cvecrowd.com)
Engage with the most current and actively discussed CVEs within the Fediverse community.
-
LLM Agents can Autonomously Hack Websites (arxiv.org)
An in-depth analysis of how autonomous LLM agents can potentially exploit web vulnerabilities.
-
New Attack Vectors via EKS Updates (wiz.io)
latest security risks emerging from recent updates to Amazon's EKS service.
-
The Story of SSH Port 22 (ssh.com)
A fascinating look into why port 22 became the standard for SSH communications.
-
Mastering Fuzzing (blog.trailofbits.com)
Trail of Bits introduces a new handbook chapter dedicated to the art of fuzz testing.
-
Linux Kernel CVE Process (lore.kernel.org)
An insightful PATCH documentation discussing the CVE process for the Linux Kernel.
-
AI in Cyber Defense (blog.google)
Google's new initiative to bolster security infrastructure using AI technologies.
-
Kubernetes Security Fundamentals (securitylabs.datadoghq.com)
essential aspects of Kubernetes authentication for enhanced security.
-
Prompt Injection Training Resources (huggingface.co)
A Hugging Face dataset for understanding and mitigating prompt injection threats.
-
SmuggleFuzz: HTTP Downgrade Attacks (moopinger.github.io)
Investigating the dynamics of HTTP downgrade attacks through fuzzing techniques.
-
Java Nested Dependencies Identification (aws.amazon.com)
Amazon Inspector SBOM Generator's approach to identifying Java nested dependencies.
-
Docker Security: Step-by-Step Hardening (reynardsec.com)
A comprehensive guide to hardening Docker platforms for improved security.
-
Nrich: Shodan's Public GitLab Repo (gitlab.com)
A GitLab repository by Shodan for cybersecurity research. Explore on GitLab
X2
-
Akamai's Insights on CVE-2024-22024 (@akamai_research)
Akamai reports significant scanning activity for a recent vulnerability.
-
Sam Curry's Vercel Bypass Discovery (@samwcyo)
A tale of how two researchers bypassed Vercel's build protections.
g1thub5
-
mindns: Minimal DNS Server in Rust (github.com)
A minimalistic DNS server with a rule system and logging, built in Rust. Explore on GitHub
-
Awesome GraphQL Security (github.com)
A curated list of frameworks, libraries, and resources for GraphQL security. Explore on GitHub
-
Simulator: Kubernetes Security Training (github.com)
A platform focusing on training and mitigating Kubernetes security issues. Explore on GitHub
-
Magika: File Content Type Detection (github.com)
Google's approach to detecting file content types using deep learning. Explore on GitHub
-
Azure Service Subdomain Enumeration (github.com)
Tools and techniques for enumerating Azure service subdomains. Explore on GitHub