Category: Mix

15
Aug
2025

Intigriti Bug Bytes #227 – August 2025

Welcome to the latest edition of Bug Bytes! In this month’s issue, we’ll be featuring:  Evading WAFs like Cloudflare, Akamai…

15
Aug
2025

Stop Judging AI Using Standards You Don’t Apply to Humans

I know AI is stupid because it can’t count the b’s in “blueberry” the same way I know Einstein was…

14
Aug
2025

AI Might Make Everything Amazing

The incredible benefits that could arrive within 5-10 years August 14, 2025 What I wanna talk about is: if we…

[tl;dr sec] #292- HTTP/1.1 must die, AI + SAST, Google's Insider Threat Detection Tool
14
Aug
2025

[tl;dr sec] #292- HTTP/1.1 must die, AI + SAST, Google’s Insider Threat Detection Tool

James Kettle argues HTTP/1.1 can never be fully secured, augmenting static analysis with LLMs, Google’s talk + OSS tool for…

14
Aug
2025

Lessons for API and AI Security

IBM’s 2025 Cost of a Data Breach Report offers one of the clearest and most comprehensive views yet of how…

Before bounties: know your assets
13
Aug
2025

Before bounties: know your assets

If you are unaware of what’s running in your environment, you can’t patch, monitor, or secure it. The simple fact…

Hacking misconfigured Firebase targets: A complete guide
12
Aug
2025

Hacking misconfigured Firebase targets: A complete guide

Google Firebase is a popular back-end application development platform that provides several built-in components and services, allowing developers to seamlessly…

12
Aug
2025

I’m Worried It Might Get Really Bad

I’m starting to worry things might get very bad, very soon. Not like in a year or two, but maybe…

08
Aug
2025

Why Dwarkesh Is Wrong About AGI

Dwarkesh Patel is one of my favorite thinkers right now. I just love the intensity of his curiosity. I love…

08
Aug
2025

The Worst AI Metric

The “how many r’s in strawberry” test for AI intelligence is dumb. As a writer to write a quality sentence…

[tl;dr sec] #291 - Build a GuardDuty Triage Agent, Scaling Netflix's Threat Detection Pipelines, Claude for Security Review
07
Aug
2025

[tl;dr sec] #291 – Build a GuardDuty Triage Agent, Scaling Netflix’s Threat Detection Pipelines, Claude for Security Review

Hacker Summer Camp Once more, hackers have descended onto Vegas for our annual Hacker Summer Camp pilgrimage. I hope you…

The Desync Delusion: Are You Really Protected Against HTTP Request Smuggling?
07
Aug
2025

The Desync Delusion: Are You Really Protected Against HTTP Request Smuggling?

Andrzej Matykiewicz | 06 August 2025 at 22:22 UTC The Hidden Threat That’s Slipping Past Your Security HTTP request smuggling…