> your AI agent picks dependencies from memory; give it dated facts — try starlog.dev ↗ vet your agent's deps ↗ vibe-coding is fine. vibe-importing isn’t. — try starlog.dev ↗ vibe-importing isn’t fine ↗ your agent has never seen your private packages — try starlog.dev ↗ facts for private packages ↗ a linter for the dependencies your AI agent picks — try starlog.dev ↗ a linter for agent deps ↗

All articles

Cybersecurity

Offensive and defensive security tooling explained by a pentester — scanners, exploit frameworks, secrets detection, and the OSS projects shaping modern security work.

358 articles

Cybersecurity

Transfer.sh: Building a Command-Line File Sharing Service That Scales to Multiple Cloud Backends

★ 15.8k Go May 13, 2026
Cybersecurity

Loubia: Weaponizing WebLogic's T3 Protocol Through Java Deserialization

★ 60 Python May 13, 2026
Cybersecurity

Changeme: How Default Credentials Are Hiding in Plain Sight Across Your Infrastructure

★ 1.5k Python May 13, 2026
Cybersecurity

Inside lcashdol/Exploits: A Shell-First Approach to CVE Proof-of-Concepts

★ 212 Shell May 13, 2026
Cybersecurity

WPSploit: Metasploit's Unofficial WordPress Arsenal

★ 232 Ruby May 13, 2026
Cybersecurity

Vulhub: The Docker-Compose Library That Makes CVE Reproduction Deterministic

★ 20.7k Dockerfile May 13, 2026
Cybersecurity

Building a Private Cloud Proxy Botnet: Inside ProxyCannon-NG's Architecture

★ 640 Shell May 13, 2026
Cybersecurity

AD-Attack-Defense: The MITRE ATT&CK Navigation System for Active Directory Security

★ 4.8k May 13, 2026
Cybersecurity

kube-hunter: The Deprecated Kubernetes Penetration Tool That Still Teaches Security

★ 5.0k Python May 13, 2026
Cybersecurity

Security Best Practices for Developers: Lessons from Sqreen's Open-Source Guide

★ 77 CSS May 13, 2026
Cybersecurity

Interlace: The Thread Pool Hack That Parallelizes Your Single-Threaded Security Tools

★ 1.3k Python May 13, 2026
Cybersecurity

Reconnoitre: The Reconnaissance Automation Tool That Teaches You Not To Need It

★ 2.2k Python May 13, 2026
Cybersecurity

How Selenium Grid Becomes an SSRF Gateway to Cloud Credentials

★ 7 Python May 13, 2026
Cybersecurity

How a Groovy Annotation Bypassed Jenkins' Security Sandbox: Dissecting CVE-2019-1003000

★ 317 JavaScript May 13, 2026
Cybersecurity

Building Network Scanners in Go: How Ullaakut/nmap Wraps a 25-Year-Old Binary

★ 1.0k Go May 13, 2026
Cybersecurity

KeyHacks: The Bug Bounty Hunter's Cookbook for Validating Leaked API Credentials

★ 6.2k May 13, 2026
Cybersecurity

Inside BlueKeep: Dissecting CVE-2019-0708's RDP Exploit Architecture

★ 113 Python May 13, 2026
Cybersecurity

K8tools: Inside China's Most Popular Offensive Security Arsenal

★ 6.2k PowerShell May 13, 2026
Cybersecurity

ffuf: How Go's Concurrency Model Makes It the Fastest Web Fuzzer for Security Testing

★ 16.0k Go May 13, 2026
Cybersecurity

GourdScanV2: Building a Passive Vulnerability Scanner with Redis-Backed Traffic Interception

★ 868 Python May 13, 2026
Cybersecurity

Sliver: The Open-Source C2 Framework That Generates Cryptographically Unique Implants

★ 11.2k Go May 13, 2026
Cybersecurity

Building a Reverse Proxy to Patch AWS's Metadata Security Hole (Before IMDSv2 Fixed It)

★ 31 Go May 13, 2026
Cybersecurity

Inside pwn-pulse: A Surgical Shell Script for Pulse Secure VPN Exploitation

★ 135 Shell May 13, 2026
Cybersecurity

shhgit: Real-Time Secrets Detection Through Repository Stream Surveillance

★ 4.0k JavaScript May 13, 2026