I built a security linter for MCP servers, because nobody audits the tools we hand our agents
We spent years learning to distrust the code we ship. We run npm audit, we run linters, we gate pull…
AI tools, cybersecurity and development news aggregated from top sources — saved permanently with unique URLs.
I built a security linter for MCP servers, because nobody audits the tools we hand our agents
We spent years learning to distrust the code we ship. We run npm audit, we run linters, we gate pull…
CVE-2026-11393: CVE-2026-11393: Code Injection via Improper Triple-Quote Escaping in AWS AgentCore CLI
CVE-2026-11393: Code Injection via Improper Triple-Quote Escaping in AWS AgentCore CLI Vulnerabil…
Enterprise Ransomware Recovery Drill | Recovering from AI-Driven Damage | R.A.H.S.I. Framework™ Analysis
Enterprise Ransomware Recovery Drill | Recovering from AI-Driven Damage | R.A.H.S.I. Framework™ Anal…
file-guardian: Zero-Dependency File Security Scanner for Node.js
I just published file-guardian — a zero-dependency file security scanner for Node.js. What…
Introducing Argus: The Code Security Colleague Your Team Doesn't Have
Most development teams don't have a security engineer. Not because they don't want one. Security exp…
Trust Is a Feature: Building AI Systems People Can Rely On
Artificial Intelligence is rapidly moving from research prototypes into production systems. Develope…
GHSA-WCHH-9X6H-7F6P: GHSA-WCHH-9X6H-7F6P: Cryptographic Vulnerabilities and Deprecation of Olm in matrix-commander
GHSA-WCHH-9X6H-7F6P: Cryptographic Vulnerabilities and Deprecation of Olm in matrix-commander Vul…
Why I Built a Free Temporary Email Service to Protect Online Privacy
How Temporary Email Protects Your Privacy Online Every day, millions of people sign up for website…
Synthetic Identity Fraud: Why WiFi KYC Checks Are Missing the Mark
TL;DR In 2023, a sophisticated fraudster successfully opened a new credit line using a synthetic i…
The Slow Death of an Unmaintained Website (a Timeline)
Most small-business websites get built, launched, invoiced — and then nobody touches them again. As …
Location Spoofing vs Banks: The Cat-and-Mouse Game
TLDR In 2023, a sophisticated criminal ring attempted to bypass European fintech geolocation contr…
KYC WiFi: Votre Routeur Est Devenu Un Témoin Silencieux
TL;DR En 2024, une étude majeure a révélé que plus de 68 % des tentatives de fraude transfrontaliè…