g3n3r4l16
-
Fuzz Map (fuzzmap.io)
A tool for fuzzing and discovering vulnerabilities.
-
WTFProxy (wtfproxy.com)
Rotating residential proxies for your scraping needs.
-
Private Cloud Compute: A new frontier for AI privacy in the cloud (security.apple.com)
Blog by Apple Security Research.
-
Exploiting File Read Vulnerabilities in Gradio to Steal Secrets from Hugging Face Spaces (horizon3.ai)
Analysis by Horizon3.ai.
-
Foreword for Fuzz Testing Book (pages.cs.wisc.edu)
Insightful introduction to fuzz testing.
-
Azure Attack Paths (cloudbrothers.info)
A comprehensive guide by Cloudbrothers.
-
Challenges in Red Teaming AI Systems (anthropic.com)
A report by Anthropic.
-
Securing Research Infrastructure for Advanced AI (openai.com)
Blog post by OpenAI.
-
HackerNight 2024: my first live hacking event (hackcommander.github.io)
A personal account by HackCommander.
-
HTTP/3 in curl mid 2024 (daniel.haxx.se)
Update by Daniel Stenberg.
-
Detection as Code (purpleteamsec.substack.com)
An article by Panagiotis Gkatziroulis.
-
An Introduction to Chrome Exploitation - Maglev Edition (matteomalvica.com)
A detailed guide by Matteo Malvica.
-
New exotic events in the XSS cheat sheet (portswigger.net)
Research by PortSwigger.
-
10 years of the GitHub Security Bug Bounty Program (github.blog)
Celebrating a decade of security by GitHub.
-
Prioritizing security above all else (blogs.microsoft.com)
Insights from the Official Microsoft Blog.
-
Analysis of CVE-2024-2961 Vulnerability (paper.seebug.org)
In-depth analysis by Seebug.
y0utube2
-
Practical AI for Bounty Hunters | @jhaddix (youtube.com)
NahamCon2024 presentation. Watch Here
-
OAuth Secret | @BugBountyReportsExplained (youtube.com)
NahamCon2024 talk. Watch Here
g1thub2
-
google/ukip: USB Keystroke Injection Protection (github.com)
GitHub. Explore on GitHub
-
USBGuard/usbguard: USBGuard is a software framework for implementing USB device authorization policies (github.com)
GitHub. Explore on GitHub