08 Mar 2026

A great mix of content this week!

Niels Provos (from OpenBSD's systrace) is sharing a new tool to sandbox your AI assistant: IronCurtain: A Personal AI Assistant Built Secure from the Ground Up.

A write-up on how to use mitmproxy: mitmproxy for fun and profit: Interception and Analysis of Application Traffic.

A reminder of the mess AuthN/Z with MCP is: The MCP AuthN/Z Nightmare.

😎 Vibe Security Radar
0

A cool little project to track the security issues created by vibe coding: Vibe Security Radar.

⛓️‍💥 Authentication Bypass in pac4j
1

Another issue with a library leveragining JWT: Authentication Bypass in pac4j.

📬 Never Miss Quality Security Research

Get these curated picks delivered to your inbox every week:

  • Hand-picked vulnerability research
  • Practical security insights
  • CVE deep-dives worth your time
  • No fluff, just signal
Subscribe for Free →
Photo of PentesterLab
PentesterLab
The platform to learn web hacking and security code review