> your AI agent picks dependencies from memory; give it dated facts — try starlog.dev ↗ vet your agent's deps ↗ vibe-coding is fine. vibe-importing isn’t. — try starlog.dev ↗ vibe-importing isn’t fine ↗ your agent has never seen your private packages — try starlog.dev ↗ facts for private packages ↗ a linter for the dependencies your AI agent picks — try starlog.dev ↗ a linter for agent deps ↗ whois is redacted, cdns mask the rest — get the real operator — try whoisgeni.us ↗ who really runs that domain ↗ domain attribution that shows its work — full evidence chain — try whoisgeni.us ↗ domain intel w/ evidence ↗

← All authors
Rob Ragan

Rob Ragan

Offensive security researcher and AI agent architect. Founder of Starlog.

offensive securityAI agentspenetration testingred teamingapplication security

1845 articles

Rob Ragan is an offensive security researcher and AI agent architect who has spent two decades breaking into systems and building tools to automate the process.

// ARTICLES BY ROB RAGAN

Cybersecurity

How Selenium Grid Becomes an SSRF Gateway to Cloud Credentials

★ 7 Python May 13, 2026
Data & Knowledge

The Exploit Database Migration: Why GitHub's 7,800-Star Security Archive Became a GitLab Relic

★ 7.9k May 13, 2026
Developer Tools

xioc: Extracting Defanged Indicators of Compromise from Security Intelligence Reports

★ 163 Go May 13, 2026
Developer Tools

Turbo Intruder: PortSwigger's Custom HTTP Stack for Breaking Concurrency Limits

★ 1.8k Kotlin May 13, 2026
Developer Tools

SlackPirate: The Security Tool That Turns Your ChatOps Platform Into a Credential Goldmine

★ 783 Python May 13, 2026
Cybersecurity

How a Groovy Annotation Bypassed Jenkins' Security Sandbox: Dissecting CVE-2019-1003000

★ 317 JavaScript May 13, 2026
Developer Tools

Trickuri: Testing URL Spoofing Vulnerabilities with Chromium's Proxy-Based Attack Simulator

★ 143 HTML May 13, 2026
Developer Tools

Metaphone: The Forgotten Phonetic Algorithm That Still Outperforms for Speed

★ 54 JavaScript May 13, 2026
Developer Tools

ioc2rpz: Turning Threat Intelligence Into DNS Policy Without Vendor Lock-In

★ 113 Erlang May 13, 2026
Cybersecurity

Building Network Scanners in Go: How Ullaakut/nmap Wraps a 25-Year-Old Binary

★ 1.0k Go May 13, 2026
Developer Tools

Automating ACM Certificate Validation: A Python Script That Clicks the AWS Console Button For You

★ 21 Python May 13, 2026
Developer Tools

Inside CVE-2019-3396: How Velocity Template Injection Turned Confluence Into a Remote Shell

★ 146 Python May 13, 2026