Skip to content
Category

Security

Security from a builder's seat. Vulnerability disclosures, supply-chain attacks, secrets management, and defensive engineering patterns — explained with enough depth to act on, not just react to.

AI Didn't Kill JS Obfuscation, It Repriced It
Article 3d ago 3

AI Didn't Kill JS Obfuscation, It Repriced It

LLMs erased renaming and shred obfuscator.io defaults, but runtime-dependent and polymorphic protection still costs attackers real money.

Ji-ho Choi
How MSI Center Exposed SYSTEM Privileges to Local Users

How MSI Center Exposed SYSTEM Privileges to Local Users

Article · 1mo ago0
The Supply Chain Risk of LLM Code in Dependencies

The Supply Chain Risk of LLM Code in Dependencies

Article · 1mo ago0
Alibaba’s Claude Code Ban Exposes the Agentic Security Paradox

Alibaba’s Claude Code Ban Exposes the Agentic Security Paradox

Article · 1mo ago2
Google Open Sources Longfellow ZK for Privacy-First Age Verification

Google Open Sources Longfellow ZK for Privacy-First Age Verification

Article · 1mo ago1
Why Apple's Hide My Email Leak Is an Architectural Warning

Why Apple's Hide My Email Leak Is an Architectural Warning

Article · 1mo ago5
Inside the Active Exploitation of Oracle EBS Payment Gateways

Inside the Active Exploitation of Oracle EBS Payment Gateways

Article · 1mo ago0
Securing AWS IAM Beyond the Wildcard

Securing AWS IAM Beyond the Wildcard

Article · 1mo ago0
The Trojan Snow: Protestware and the Dual-Hatted Maintainer Risk

The Trojan Snow: Protestware and the Dual-Hatted Maintainer Risk

Article · 1mo ago0
The Supreme Court Just Broke Your Transatlantic Data Flows

The Supreme Court Just Broke Your Transatlantic Data Flows

Article · 1mo ago0
Inside JumpServer: Open-Source PAM for Modern Infrastructure

Inside JumpServer: Open-Source PAM for Modern Infrastructure

Article · 2mos ago0
Beyond Code: How StegoAd Hid Malware in Fonts and Images

Beyond Code: How StegoAd Hid Malware in Fonts and Images

Article · 2mos ago2
How to Stop AI Agents From Committing Your Secrets

How to Stop AI Agents From Committing Your Secrets

Article · 2mos ago0
Stop GitHub Copilot From Sabotaging Your Terraform Security

Stop GitHub Copilot From Sabotaging Your Terraform Security

Article · 2mos ago2
The MCP Security Blind Spot in AI Coding Assistants

The MCP Security Blind Spot in AI Coding Assistants

Article · 2mos ago0
Inside PinpinRAT: How APTs Hijack Developer Build Pipelines

Inside PinpinRAT: How APTs Hijack Developer Build Pipelines

Article · 2mos ago5