✅ AI Guardrails That Prove, Not Guess • 🧠 GitHub - Kritt-ai/open-kritt: Open-source, self-hosted AI vulnerability research tool that orchestrates agents to find and validate security issues in code. · GitHub • 🐚 Cruising for Shells in Flowise - elttam
Security Assertion Markup Language (SAML) is a widely deployed standard for Single Sign-On (SSO) in the enterprise, and a recurring source ...
🪲 CVE-2026–44722: A Zip encryption downgrade caused by an incorrect operator • 🪲 Finding six NGINX vulnerabilities with open models • 🤗 Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident
Every few weeks, another startup announces an AI pentester. Looking at the market, it feels as though the future of AI ...
⚒️ ethiack / ethibench • ⚒️ capitalone / VulnHunter • 🪲 FastJson 1.2.83 Remote Code Execution
After the Allies broke Enigma during the Second World War, they faced an unusual problem. The difficult part was no longer ...
🤖 Special Token Injection (STI) Attack Guide • 🪲 MAD Bugs: My Cousin Vinyl (CVE-2026-50052) • 🪲 From Indirect Prompt Injection to DNS Exfiltration in macOS Terminal
With AI, technical interviews are becoming harder and harder to trust. Candidates now have access to automated tools designed to help ...
🖥️ Local AI for Penetration Testing & Research • 🧠 The context an agent needs to find the next vulnerability. • 🤖 The Bug Bounty Singularity: Our Hackbot
I have been travelling to conferences across Europe this year, running workshops and giving talks, mostly on code review and CVE ...
🩹 Introducing Patch the Planet • 🤖 Building an AI pentesting platform • 🤖 Comparing AI Application Security Testing Platforms
🐴 DietrichGebert / ponytail • 🤯 curl summer of bliss • ⛓️ Chaining Security Bugs in Discuz! X5.0: from Race Condition to Pre-Auth RCE
🪲 Jupyter Enterprise Gateway • 🤖 Measuring LLMs’ impact on N-day exploits • 🎆 Bypassing a 3 layer SVG sanitizer: Stored XSS in Mozilla