Cybersecurity
Offensive and defensive security tooling explained by a pentester — scanners, exploit frameworks, secrets detection, and the OSS projects shaping modern security work.
358 articles
Cybersecurity
Blacksea: The Active Honeypot That Exploits LLM Agents to Hack Back
Cybersecurity
StealthBench: The First Benchmark That Measures Whether AI Agents Hack Like Professionals or Script Kiddies
Cybersecurity
Deepsec: When Your Security Audit Needs to Think, Not Just Pattern Match
Cybersecurity
Exploitarium: A 0-Day Archive That Weaponizes AI-Assisted Fuzzing Against 35+ Production Systems
Cybersecurity
Security-Harness: The Empty Promise of Autonomous AI Security Tool Curation
Cybersecurity
Building a Security Shim for AI Code Assistants: How safer-dependencies Intercepts Claude's Package Installs
Cybersecurity
Autonomous AI Pentesting Agents in 2026: Strix vs RAPTOR vs CyberStrike vs h1-brain
Cybersecurity
AI-Era Vulnerability Triage in 2026: NVIDIA vulnerability-analysis vs Minefield vs Noir
Cybersecurity
OpenAnt: Why This Open-Source Security Tool Makes LLMs Prove Exploitability Before Crying Wolf
Cybersecurity
Trivy's Monolithic Architecture: Why a 500MB SQLite Database Beats Microservices for Security Scanning
Cybersecurity
Cyber Riposte: When Your Security Team Wants to Code-Review the Firewall
Cybersecurity
Building Reproducible Penetration Testing Environments with NixOS: nixos-pentest
Cybersecurity
RedAI: When Your Security Scanner Needs to Actually Prove the Exploit Works
Cybersecurity
Caldera: Building Adversary Emulation with Fact-Based Planning Engines
Cybersecurity
Caldera: When Your Red Team Needs a Planning Algorithm, Not Just Another C2
Cybersecurity
Joro: The Web Exploitation Framework That Finally Bridges Proxy, C2, and Team Collaboration
Cybersecurity
JSPrime: The 2013 Browser-Based JavaScript Security Scanner That Pioneered Framework-Aware Static Analysis
Cybersecurity
Nogotofail: Google's On-Path Blackbox Security Testing Framework for Mobile Apps
Cybersecurity
WS-Attacker: The Academic Framework That Exploits SOAP's Hidden Attack Surface
Cybersecurity
PayloadsAllTheThings: The 77,000-Star Security Knowledge Base That Changed How Pentesters Work
Cybersecurity
Acamar: When Less Is More in Subdomain Enumeration
Cybersecurity
Glow: Why Rendering Markdown in the Terminal Shouldn't Require a Browser
Cybersecurity
Security APIs: The Curated Directory That Maps the Threat Intelligence Landscape
Cybersecurity