» Tag
vulnerabilities
42 postsWhy Node.js Can't Be Hardened Against Prototype Pollution
Node.js security reports on prototype pollution gadgets are symptoms, not bugs. The real fix belongs at the application boundary, not in core.
Microsoft's AI Bug Hunt Tripled CVEs: The Data Behind It
Microsoft's July 2026 patch hit 1150 CVEs, 3x the prior baseline. Public CVRF data reveals how AI-driven bug hunting also reshaped severity.
Stealing Reasoning Traces from Proprietary LLM APIs
We found a way to extract reasoning traces from frontier AI APIs, highlighting significant security risks and potential data leaks for engineers.
CommitBrief — AI code reviews, right in your terminal
A provider-agnostic, local-first CLI that reviews your staged changes, a historic range, or a whole GitHub pull request. Zero telemetry, no server. Free and open source.
commitbrief.comMicrosoft and Wiz's bug hunters detect over 90% of vulnerabilities
Microsoft and Wiz have developed AI systems for detecting software vulnerabilities. MDASH and Atlas stand out with their high success rates.
Audit a Cursor or v0-Built MVP Before You Launch
A guide to auditing security vulnerabilities in AI-assisted MVPs before launch.
We hired a security engineer and got back 123 findings
Profullstack's security audit revealed 123 findings across two repositories, offering vital lessons for engineers.
Hunt NGINX Proxies with Damn Vulnerable NGINX Proxy
Damn Vulnerable NGINX Proxy provides a resource for discovering vulnerabilities in NGINX servers.
Malicious SIM Cards Can Shut Down Phones and Steal Files
Malicious SIM cards can shut down phones and steal files, revealing serious security risks. Researchers highlight vulnerabilities in cellular devices.
New TONTOU CPU Attack Bypasses Spectre v2 Fixes, Leaks Linux Passwords
Researchers developed an exploit that bypasses Spectre v2 mitigations to leak password hashes from Linux systems.
Lovable Uses AI Hacking Agents to Identify Security Vulnerabilities
Lovable implements AI agents to discover security vulnerabilities innovatively.