Category: Mix

Debunking API Security Myths
31
Jul
2025

Debunking API Security Myths

I recently sat down with Tejpal Garwhal, Application Security and DevSecOps Leader, for a conversation debunking some of the most…

How to identify the origin IP
29
Jul
2025

How to identify the origin IP

Most of your targets often resort to using content delivery networks (CDNs) or other anti-DDoS reverse proxies to mask their…

Top view
27
Jul
2025

Getting a Shell on the LAU-G150-C Optical Network Terminal

Optical Network Terminals (ONTs) are devices that convert fiber optic signals to Ethernet signals that can be handled by typical…

27
Jul
2025

Self-Contained TypeScript Programs Using Bun

Bun’s auto-install feature If you hate Python as much as me it’s probably because of dependencies. Roughly 23-319% of the…

27
Jul
2025

Building a Personal AI Infrastructure (PAI)

I have a bunch of ideas I want to share here, but let me first start with what I’m doing…

27
Jul
2025

I Built a Claude Code Pop Menu Inside of Neovim

Kai: AI-powered coding in Neovim (click for full size) I use LazyVim, btw. lol I’ve been using AI to help…

Dalfox 2.12 Released ⚡︎ | HAHWUL
26
Jul
2025

Search in Zola: Fuse.js vs. Elasticlunr.js

Comparing Fuse.js and Elasticlunr.js for Zola’s client-side search. Learn which library suits your static site’s needs. Zola is a fast…

Remote Code Execution in Microsoft SharePoint (CVE-2025-53770) — API Security
25
Jul
2025

Remote Code Execution in Microsoft SharePoint (CVE-2025-53770) — API Security

On July 19, 2025, a critical remote code execution (RCE) vulnerability (CVE-2025-53770, also referred to as ToolShell) was publicly disclosed,…

24
Jul
2025

AI Lets You Do Way More Stuff

When it comes to AI, people are often in one of two camps: They’re freaking out about AI and it’s…

[tl;dr sec] #289 - AI-powered Fuzzing, Incentives in Security, Malware in DNS
24
Jul
2025

[tl;dr sec] #289 – AI-powered Fuzzing, Incentives in Security, Malware in DNS

  Building My Custom AI Therapist This week I played around with building my own custom AI therapist, and found…

Andrew Storms on Trust, AI, and Why CISOs Need to Be Optimists — API Security
24
Jul
2025

Andrew Storms on Trust, AI, and Why CISOs Need to Be Optimists — API Security

Andrew Storms, VP of Security at Replicated, has spent three decades on the frontlines of cybersecurity. From building Unix systems…

23
Jul
2025

Happiness, Struggle, and Options

I think a lot about why people aren’t happy. I’m reading a book now by Bertrand Russell that offers a…