> your AI agent picks dependencies from memory; give it dated facts — try starlog.dev ↗ vet your agent's deps ↗ vibe-coding is fine. vibe-importing isn’t. — try starlog.dev ↗ vibe-importing isn’t fine ↗ your agent has never seen your private packages — try starlog.dev ↗ facts for private packages ↗ a linter for the dependencies your AI agent picks — try starlog.dev ↗ a linter for agent deps ↗

All articles

Cybersecurity

Offensive and defensive security tooling explained by a pentester — scanners, exploit frameworks, secrets detection, and the OSS projects shaping modern security work.

358 articles

Cybersecurity

GitHub Dorks: Mining Public Repositories for Accidentally Leaked Secrets

★ 3.2k Python May 14, 2026
Cybersecurity

Inside X41's 2017 Browser Security Arsenal: A Historical Deep-Dive into Sandbox Escape Techniques

★ 184 C# May 14, 2026
Cybersecurity

Fuzzapi: A Rails Web Interface for REST API Penetration Testing That Time Forgot

★ 666 Ruby May 14, 2026
Cybersecurity

aiodnsbrute: How Asyncio Turns DNS Enumeration Into a Concurrency Masterclass

★ 671 Python May 14, 2026
Cybersecurity

Retrace: The LD_PRELOAD Interceptor That Turns Binaries Into Security Playgrounds

★ 62 C May 14, 2026
Cybersecurity

TheFatRat: Why This 11K-Star Exploit Generator is Both Popular and Problematic

★ 11.2k C May 14, 2026
Cybersecurity

XRay: Building a Reconnaissance Pipeline That Bridges Passive OSINT and Active Enumeration

★ 2.3k Go May 14, 2026
Cybersecurity

Gobuster: Why Go's Concurrency Model Makes It the Fastest Directory Brute-Forcer

★ 13.7k Go May 14, 2026
Cybersecurity

SecLists: The 57,000-File Repository That Changed Security Testing Forever

★ 70.9k PHP May 14, 2026
Cybersecurity

PMD: Building a Multi-Language Static Analyzer on AST Parsing and Rule Engines

★ 5.4k Java May 14, 2026
Cybersecurity

Vanquish: The OSCP-Era Orchestrator That Chains Kali's Arsenal Into Attack Pipelines

★ 512 Python May 14, 2026
Cybersecurity

VHostScan: Finding Hidden Web Apps Behind Shared IP Addresses

★ 1.3k Python May 14, 2026
Cybersecurity

Weaponizing OGNL: How CVE-2017-5638 Turned HTTP Headers Into Remote Shells

★ 442 Python May 14, 2026
Cybersecurity

Inside j0bin/Pentest-Resources: A Pentester's Personal Arsenal Turned Public Repository

★ 123 Python May 14, 2026
Cybersecurity

Hacking Slack's UI: CSS Injection in Electron Apps

★ 1.7k CSS May 14, 2026
Cybersecurity

Bandit: How OpenStack's AST-Powered Security Scanner Catches Python Vulnerabilities Before Deployment

★ 1.2k May 14, 2026
Cybersecurity

Scanners-Box: The Community-Curated Arsenal of 338+ Security Tools You've Never Heard Of

★ 8.9k May 14, 2026
Cybersecurity

Inside struts-scan: A Python 2 Relic That Still Hunts 17 Struts2 Vulnerabilities

★ 1.4k Python May 14, 2026
Cybersecurity

webanalyze: Mass Technology Detection Without the Browser Overhead

★ 1.1k Go May 14, 2026
Cybersecurity

Inside a 211MB Wordlist: Engineering Efficient Content Discovery for Web Penetration Testing

★ 217 Python May 14, 2026
Cybersecurity

Striker: The Four-Phase Reconnaissance Scanner That Weaponizes Your Subdomain Enumeration

★ 2.3k Python May 14, 2026
Cybersecurity

Dracnmap: When Teaching Tools Reveal nmap's Accessibility Problem

★ 1.3k Shell May 14, 2026
Cybersecurity

RED_HAWK: The Last PHP-Based Security Scanner Before Everyone Switched to Python

★ 3.7k PHP May 14, 2026
Cybersecurity

Building a Web Directory Bruteforcer: A Case Study in Go Concurrency

★ 282 Go May 14, 2026