Latest Posts

Deep-dive into the deployment of an on-premise low-privileged LLM server

Post
Charles Senges
Mar 20, 2026
ailinuxnetwork-security

Authenticated Arbitrary File Read via Race Condition leads to 0-Click Account Take Over on n8n

Post
Théo Lelasseux
Mar 19, 2026
jwtnode.jspath-traversalprivilege-escalationrace-condition

Fantastic unwind information and where to find them

Post
klezVirus
Mar 16, 2026
edr-evasionevasionmaldevreverse-engineeringshellcodewindows

Chaining service key leakage and path confusion in LangSmith (Resolved)

Post
Vladislav Nechakhin
Mar 16, 2026
access-tokenapipath-traversalsecretsweb

Slacker Slash: Bypassing Bun Security Middleware via Normalization Desync

Post
Mohamed Salem Eddah
Mar 13, 2026
javascriptpath-traversalvulnerabilityweb-security

Hijacking the Channel: Zero-Click Account Takeover via MessagePort Injection

Post
Mar 3, 2026
access-tokeninjectionoauthweb

mitmproxy for fun and profit: Interception et analyse de flux applicatifs

Post
Corentin Liaud
Mar 2, 2026
androidgrpcioslinuxmitmproxynetwork-securityprotobuf

Python pitfalls: Turning developer mistakes into vulnerabilities

Post
YesWeHack
Feb 27, 2026
deserializationpath-traversalpythonrcessrfvulnerability-research

Astro Full-Read SSRF via Host Header Injection

Post
Start Today
Feb 25, 2026
ssrfvulnerabilityweb

What Windows Server 2025 Quietly Did to Your NTLM Relay

Post
Feb 25, 2026
active-directoryldapntlm-relayntlmv1windows