Skip to content
Category

Security

Security from a builder's seat. Vulnerability disclosures, supply-chain attacks, secrets management, and defensive engineering patterns — explained with enough depth to act on, not just react to.

Cloudflare's Killer Regex Is Still Lurking in Your Stack
Article 11h ago 1

Cloudflare's Killer Regex Is Still Lurking in Your Stack

Seven years after the 27-minute global outage, most mainstream languages still default to exponential-time regex engines.

Emeka Okafor
The Supply Chain Risk of LLM Code in Dependencies

The Supply Chain Risk of LLM Code in Dependencies

Article · 1mo ago0
Alibaba’s Claude Code Ban Exposes the Agentic Security Paradox

Alibaba’s Claude Code Ban Exposes the Agentic Security Paradox

Article · 1mo ago2
Google Open Sources Longfellow ZK for Privacy-First Age Verification

Google Open Sources Longfellow ZK for Privacy-First Age Verification

Article · 1mo ago1
Why Apple's Hide My Email Leak Is an Architectural Warning

Why Apple's Hide My Email Leak Is an Architectural Warning

Article · 1mo ago5
Inside the Active Exploitation of Oracle EBS Payment Gateways

Inside the Active Exploitation of Oracle EBS Payment Gateways

Article · 1mo ago0
Securing AWS IAM Beyond the Wildcard

Securing AWS IAM Beyond the Wildcard

Article · 1mo ago0
The Trojan Snow: Protestware and the Dual-Hatted Maintainer Risk

The Trojan Snow: Protestware and the Dual-Hatted Maintainer Risk

Article · 1mo ago0
The Supreme Court Just Broke Your Transatlantic Data Flows

The Supreme Court Just Broke Your Transatlantic Data Flows

Article · 1mo ago0
Inside JumpServer: Open-Source PAM for Modern Infrastructure

Inside JumpServer: Open-Source PAM for Modern Infrastructure

Article · 1mo ago0
Beyond Code: How StegoAd Hid Malware in Fonts and Images

Beyond Code: How StegoAd Hid Malware in Fonts and Images

Article · 1mo ago2
How to Stop AI Agents From Committing Your Secrets

How to Stop AI Agents From Committing Your Secrets

Article · 1mo ago0
Stop GitHub Copilot From Sabotaging Your Terraform Security

Stop GitHub Copilot From Sabotaging Your Terraform Security

Article · 1mo ago2
The MCP Security Blind Spot in AI Coding Assistants

The MCP Security Blind Spot in AI Coding Assistants

Article · 1mo ago0
Inside PinpinRAT: How APTs Hijack Developer Build Pipelines

Inside PinpinRAT: How APTs Hijack Developer Build Pipelines

Article · 1mo ago5
AI Coding Assistants Turn Local Git Repos Into Cloud Exploits

AI Coding Assistants Turn Local Git Repos Into Cloud Exploits

Article · 1mo ago2