Hacker Newsnew | past | comments | ask | show | jobs | submit | fromlogin
Investigate Your Dependencies with Deptective (trailofbits.com)
2 points by ingve 4 months ago | past
Buckle up, Buttercup, AIxCC's scored round is underway (trailofbits.com)
1 point by wslh 4 months ago | past
Unexpected security footguns in Go's parsers (trailofbits.com)
234 points by ingve 5 months ago | past | 132 comments
Insecure credential storage plagues MCP (trailofbits.com)
4 points by mooreds 5 months ago | past
The Custodial Stablecoin Rekt Test (trailofbits.com)
2 points by wslh 5 months ago | past
The cryptography behind passkeys (trailofbits.com)
276 points by tatersolid 6 months ago | past | 263 comments
Making PyPI's test suite faster (trailofbits.com)
125 points by rbanffy 6 months ago | past | 39 comments
Making PyPI's test suite 81% faster (trailofbits.com)
8 points by zdw 6 months ago | past
Insecure credential storage plagues MCP (trailofbits.com)
2 points by wslh 6 months ago | past
Making PyPI's test suite 81% faster (trailofbits.com)
11 points by woodruffw 6 months ago | past | 2 comments
Deceiving users with ANSI terminal codes in MCP (trailofbits.com)
3 points by HypnoticOcelot 6 months ago | past | 1 comment
MCP servers can steal your conversation history (trailofbits.com)
1 point by ingve 6 months ago | past
Jumping the line: How MCP servers can attack you before you ever use them (trailofbits.com)
1 point by ingve 7 months ago | past
The future of Clang-based tooling (2023) (trailofbits.com)
2 points by fanf2 7 months ago | past
A New ASN.1 API for Python (trailofbits.com)
171 points by woodruffw 7 months ago | past | 124 comments
Benchmarking OpenSearch and Elasticsearch (trailofbits.com)
3 points by woodruffw 8 months ago | past
Threat modeling the TRAIL of Bits way (trailofbits.com)
2 points by ingve 8 months ago | past
Don't Recurse on Untrusted Input (trailofbits.com)
11 points by wslh 8 months ago | past | 5 comments
The $1.5B Bybit Hack (trailofbits.com)
128 points by todsacerdoti 8 months ago | past | 138 comments
Don't Recurse on Untrusted Input (trailofbits.com)
3 points by woodruffw 9 months ago | past
The call for invariant-driven development (trailofbits.com)
2 points by galapago 9 months ago | past
Best Practices for Key Derivation (trailofbits.com)
3 points by tatersolid 9 months ago | past
Auditing RubyGems (trailofbits.com)
2 points by woodruffw 11 months ago | past
Evaluating Solidity support in AI coding assistants (trailofbits.com)
1 point by tyoma 12 months ago | past
Attestations: A new generation of signatures on PyPI (trailofbits.com)
18 points by pabs3 on Nov 15, 2024 | past | 1 comment
Attestations: A new generation of signatures on PyPI (trailofbits.com)
5 points by woodruffw on Nov 14, 2024 | past | 1 comment
Fuzzing between the lines in popular barcode software (trailofbits.com)
179 points by ingve on Oct 31, 2024 | past | 55 comments
A deep dive into Linux's new mseal syscall (trailofbits.com)
252 points by todsacerdoti on Oct 25, 2024 | past | 54 comments
Microsoft didn't sandbox Windows Defender, so I did (2017) (trailofbits.com)
63 points by LorenDB on Oct 7, 2024 | past | 51 comments
AWS Nitro Enclaves: Attack Surface (trailofbits.com)
144 points by ingve on Sept 26, 2024 | past | 15 comments

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: