We have a year to fix security everywhere

jyn.dev
we-have-a-year-to-fix-security-everywhere

GLM 5.3-flash released last week, and that means Project Glasswing and Daybreak are running out of time. Cheap models capable of dangerous hacking are now available to anyone, without the normal safeguards for refusing malicious actions. We need to fix … Read more

The NX bit is not just about security

purplesyringa.moe

September 4, 2026 Guest post Lobsters While I’m taking a short break from low-level programming, here’s a story by a friend of mine, Sonya, about debugging a seemingly impossible bug in ARM code. This bug hunting saga started several months … Read more

SeL4 security proofs now complete on AArch64

proofcraft.systems
sel4-security-proofs-now-complete-on-aarch64

Proofcraft News – 2026 Proofcraft seL4 security proofs now complete on AArch64 After completing the proofs of functional correctness and integrity, Proofcraft has now established the proof that seL4 enforces confidentiality on AArch64, providing a formal mathematical proof that the … Read more

Security through obscurity is not bad

mobeigi.com
security-through-obscurity-is-not-bad

Escaping the crowded echo chamber I was recently reading a post by a user on a web development forum. This user, whom we’ll call Mini, was asking the community whether it was worth using JavaScript obfuscation for some of the … Read more

AI Slop vs. OSS Security

devansh.bearblog.dev
ai-slop-vs.-oss-security

03 Nov, 2025 Author’s Note I have spent the better part of a decade in the bug bounty industry, and my perspective on this industry is shaped by this experience. The first five years were spent as a bug hunter … Read more