g3n3r4l14
-
Not by AI (notbyai.fyi)
A resource for understanding the nuances and advances in artificial intelligence.
-
Relishing new Fickling features for securing ML systems (blog.trailofbits.com)
Trail of Bits Blog discusses the latest enhancements in Fickling for better security of ML systems.
-
InfoQ presents a comprehensive guide on implementing Zero Trust Architecture as per NIST 800-207A.
-
pgAdmin Path Traversal in Session Handling (shielder.com)
Shielder reveals a critical path traversal vulnerability in pgAdmin.
-
LLM Prompt Injection Worm (schneier.com)
Schneier on Security examines the emergence of the LLM Prompt Injection Worm.
-
Securing Cloudflare with Cloudflare: A Zero Trust Journey (blog.cloudflare.com)
Cloudflare's own journey implementing Zero Trust within its systems.
-
Cloudflare Announces Firewall for AI (blog.cloudflare.com)
Introduction of a new Firewall specifically designed for AI by Cloudflare.
-
Conditional Prompt Injection Attacks with Microsoft Copilot (embracethered.com)
Embrace The Red explores the vulnerabilities in Microsoft Copilot through conditional prompt injection attacks.
-
Leaking NTLM Credentials Through Windows Themes (akamai.com)
Akamai's research on how Windows themes can be exploited to leak NTLM credentials.
-
Kaspersky Spam and Phishing Report for 2023 (securelist.com)
An analysis of the spam and phishing trends in 2023 by Kaspersky.
-
New Malicious PyPI Packages used by Lazarus (blogs.jpcert.or.jp)
JPCERT/CC discusses Lazarus's use of malicious PyPI packages.
-
Source Code Disclosure in (swarm.ptsecurity.com)
ASP.NET apps - PT SWARM highlights the risks of source code disclosure in ASP.NET applications.
-
Detecting Phishing Sites Using ChatGPT (arxiv.org)
A study on leveraging ChatGPT for identifying phishing websites.
-
SolarWinds Security Event Manager AMF deserialization RCE (xz-aliyun-com.translate.goog)
Analysis of a remote code execution vulnerability in SolarWinds Security Event Manager.
y0utube1
-
I Made Malware In Under 20 Minutes (youtube.com)
A YouTube tutorial demonstrating the creation of malware in a short span of time. Watch Here
g1thub6
-
Knox: Secret Management Service by Pinterest (github.com)
Knox, developed by Pinterest, offers a secure way to manage secrets. Explore on GitHub
-
SploitScan: Cybersecurity Utility (github.com)
SploitScan, a comprehensive tool for vulnerability assessment and PoC exploits. Explore on GitHub
-
AI-Exploits: Real World AI/ML Exploits Collection (github.com)
A collection of real-world AI and ML exploits for responsibly disclosed vulnerabilities. Explore on GitHub
-
DOT: The Deepfake Offensive Toolkit (github.com)
Sensity AI's toolkit for creating and understanding deepfakes. Explore on GitHub
-
GSocket: Fi (github.com)
rewall Bypass Tool - A tool designed to securely connect through firewalls. Explore on GitHub
-
OpenGFW: Open Source GFW Implementation (github.com)
OpenGFW provides a flexible and easy-to-use implementation of the Great Firewall of China on Linux. Explore on GitHub