home.social

Search

4 results for “taosecurity”

  1. Episode 25 of the Corelight podcast is live. I speak again with Vern Paxson, Zeek inventor and Corelight co-founder. Zeek just turned 30 (!) and we look back on why Vern created Zeek and what has changed over the years. This is part one of a two part finale for season 1 of the Corelight podcast. Season two is already in production!

    youtube.com/playlist?list=PLBK

    open.spotify.com/show/2L2bkmbx

    podcasts.apple.com/us/podcast/

  2. Interesting links of the week:

    Strategy:

    * ncsc.gov.uk/collection/disrupt - NCSC discuss response planning
    * sheets.works/data-viz/holding- - the people propping up the Internet
    * vulnerability.circl.lu/assigne - how bad are your CNA?
    * rand.org/pubs/research_reports - lessons learnt from table tops
    * vavkamil.cz/blog/2026-10-02-se - czech out security.txt

    Threats:

    * intel.threadlinqs.com/threat/T - @threadlinqs reports that NetScaler woes continue unabated
    * cloud.google.com/blog/topics/t - GOOG describe what a NetScaler compromise might look like
    * community.citrix.com/techzone- - make sure you're reading the latest guidance
    * blog.talosintelligence.com/one - "for the umpteenth time, pay attention at the back!" screeches Yuri from the @TalosSecurity war room
    * security.com/threat-intelligen - .cn operators try their hands at phones and taps
    * rapid7.com/blog/post/tr-smtp-i - another BPFDoor variant surfaces, abuses SMTP as a golden protocol
    * fortinet.com/blog/threat-resea - malware is also hiding in the tunnels

    Bugs:

    * labs.watchtowr.com/you-wont-he - for all you .kp devops nerds
    * syntetisk.tech/blog/posts/priv - AF_UNIX ❤️
    * lava.security/research/cve-202 - sharing your GPU

    Exploitation:

    * upsilon.cc/~zack/research/publ - can you really trust Linux?
    * 0xsmash0th.github.io/posts/teg - poking at NVIDIA's IPC
    * lares.com/blog/rockstar-games- - online games were the original ZT, distributed, untrusted clients, untrustable users, obvious motivation to cheat
    * netcattest.com/catsuite/en - a new kid on the block for testing mobile apps

    Hardening:

    * strandsagents.com/ - who wants guardrails 🤖

    Nerd:

    * defacto2.net/ - learn to be old school

    ,

  3. Insignary Launches Clarity AIR to Detect Undeclared Open-Source and AI-Written Code

    Toronto, Canada, 8th October 2026, CyberNewswire...

    securityledger.com/2026/10/ins

Share on Mastodon

Enter the server where you have an account.