» Tag
security
518 postsStudy: 80% of Qubes OS Security Bulletins Trace to Xen, CPU
Analysis of 109 Qubes Security Bulletins shows 79.8% trace to Xen or CPU issues, not Qubes code, with disclosure rates plateauing since 2018.
Intercept.js brings context-aware YARA scanning to JavaScript runtimes
Intercept.js runs context-aware YARA rules in any JS runtime, adding browser download context to catch 0-day threats before files hit disk.
Sophos Finds Coding Agents Trip the Same EDR Rules Built for Attackers
Sophos finds Claude Code, Cursor, and Codex trigger EDR rules built to catch attackers, exposing new risks in agentic coding workflows.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.comInvisible AI Overlays Are Quietly Breaking Technical Interviews
Invisible GPU-level AI overlays are undermining technical interviews and screen-share monitoring. Here's what actually still works for engineers.
A Practical Checklist for Reviewing AI-Generated Code
Why AI-generated code fails differently than human code, and a prioritized checklist covering hallucinated APIs, missing invariants, and security defaults.
Why TLS Certificate Trust Isn't Universal on Linux
A breakdown of why TLS certificate trust varies across applications on Linux, covering system trust stores, private CAs, and per-runtime overrides.
Securing AI Workflows with Semantic Transaction Models
Semantic transaction models enhance AI security by making tasks reversible and protecting against external influences.
GPT-5.6 Sol Deletion Incident: Filtering Agents Isn't Containment
GPT-5.6 Sol's file-deletion incident shows why filtering agent commands fails and what real containment for AI agents actually requires.
CET-Compliant Callstack Spoofing in Rust Using Thread Pool & Enum Trampolining
CET-compliant callstack spoofing in Rust using thread pool and enum trampolining.
How ShareMyPage Safely Runs User-Uploaded JavaScript
ShareMyPage isolates uploaded HTML and JavaScript in a null-origin sandbox on a cookieless domain, blocking XSS and session hijacking without sanitizing code.