🎉 Excited to announce the launch of CodeQL Community Packs for Security teams and researchers!
🚀 Supercharge your code analysis with new Query, Model, and Library packs, to find more vulnerabilities, accelerate codebases audit, and secure code effortlessly.
https://t.co/kw1z0GtYqg
29 new vulnerabilities found in GStreamer by @nosoynadiemas! Click to learn how to improve fuzzing results with custom generators. https://t.co/501k2oLH0g
I just published a new blog post sharing an improved Deserialization Gadget Chain for Ruby!
It builds on the work of others, including Leonardo Giovanni, Peter Stöckli @GHSecurityLab and @wcbowling
https://t.co/mzXQnA691O
Want to learn how to secure your browser extensions? Read our latest blog post where we talk about the security model of browser extensions and how developers can keep them secure. https://t.co/ecUvS14Y51
🔒 Secure your open-source supply chain! Discover why CVEs are crucial for protecting software dependencies in @taladrane's latest blog post: https://t.co/cLEHZNCzZC #Cybersecurity#OpenSource#CVEs
Why path traversal vulnerabilities often "work" better on Windows. E.g. CVE-2018-1999002 (An arbitrary file read vulnerability in Jenkins/Stapler discovered by @orange_8361)
Azure Cobalt 100-based Virtual Machines are now generally available https://t.co/pmdOWnvKVU
Crazy project with equal parts VHDX and C. Go have fun with these and let me know how that goes!
GHSL-2024-005_GHSL-2024-008: SSRF, XSS, RCE and Sensitive information disclosure in OpenHAB Web UI - CVE-2024-42467, CVE-2024-42468, CVE-2024-42469, CVE-2024-42470 https://t.co/Z6gDAditkq