Skip to content
Category

Security

Security from a builder's seat. Vulnerability disclosures, supply-chain attacks, secrets management, and defensive engineering patterns — explained with enough depth to act on, not just react to.

News 6h ago 3

Arch's AUR Malware Sprawl Hits 1,579 Packages

A user-repository compromise that started at 400 packages ballooned past 1,500 before Arch developers purged the malicious commits.

Emeka Okafor

AI Agents Uncover 21 Zero-Day Vulnerabilities in FFmpeg

News · 21h ago2

AUR Supply Chain Attack Delivers eBPF Rootkit and Infostealer

News · 1d ago0

Inside 'The Gentlemen' Ransomware: TTPs, AI, and Network Hardening

Article · 1d ago2

Critical Ivanti Sentry RCE Under Active Exploitation

News · 2d ago0

Hundreds of AUR Packages Trojanized with Malicious npm Dependency

News · 2d ago0

BorgBackup Server's Security Model: Surviving a Breach on Either Side

Article · 2d ago0

How an Insecure Update Flow Exposed AMD Systems to RCE

Article · 2d ago0

Should AI Code Generators Get CVEs for Insecure Suggestions?

Article · 2d ago0

The Blunt Instrument of AI Safety: Why Researchers Are Fuming Over Anthropic's Fable Guardrails

Article · 3d ago0

The Lexical Trap: Why Anthropic's Fable Guardrails Are Tripping Up Developers

Article · 3d ago1

Chrome Strips the Last Manifest V2 Escape Hatches — Time to Audit Your Browser Tooling

News · 3d ago2

Eyes Open, Vulnerabilities Shipping: The AI Code Security Paradox

Article · 4d ago0

Microsoft Pulls Dozens of GitHub Repos After Supply-Chain Malware Targets AI Coders' Credentials

News · 4d ago5

Miasma Worm Hits Microsoft Packages Twice in Weeks — and Your SLSA Provenance Won't Save You

Article · 5d ago1

Arbitrary Code Execution in objdump -g: How a Missing Bounds Check Becomes a Full Exploit

Article · 5d ago0