A great mix of content this week!
Niels Provos (from OpenBSD's systrace) is sharing a new tool to sandbox your AI assistant: IronCurtain: A Personal AI Assistant Built Secure from the Ground Up.
A write-up on how to use mitmproxy: mitmproxy for fun and profit: Interception and Analysis of Application Traffic.
A reminder of the mess AuthN/Z with MCP is: The MCP AuthN/Z Nightmare.
A cool little project to track the security issues created by vibe coding: Vibe Security Radar.
Another issue with a library leveragining JWT: Authentication Bypass in pac4j.
Get these curated picks delivered to your inbox every week: