Just released a new tool: GuardDog, identify malicious PyPI packages with Semgrep and package metadata analysis
https://t.co/MbCg0OKm0e
https://t.co/xSpS5HXAdA
Bonus: a corpus of 140+ actual malicious packages we found in the wild
https://t.co/F8MWtRVvsI
New joint work between @sansib@lbarman_ch and @carmelatroncoso from EPFL and Cloudflare Research on using QUIC PADDING frames to protect against website fingerprinting. Surprise: it's ineffective.
Check out the talk at IETF 113 in the PEARG group.
https://t.co/iKcqXIymK7
Encrypted #Bluetooth communications between a wearable device and its connected smartphone leak sensitive information through the #metadata exchanged, shows a study by @lbarman_ch https://t.co/o1171WyleI