Category: Mix

[tl;dr sec] #300 - Security Headcount Ratios + Hiring Plan, MCP Security, Compliance
09
Oct
2025

[tl;dr sec] #300 – Security Headcount Ratios + Hiring Plan, MCP Security, Compliance

I hope you’ve been doing well! Episode 300 This issue will be a bit shorter as I’ve been in Tahoe…

HTTP/1.1 must die: Dafydd Stuttard on what this means for enterprise security
09
Oct
2025

HTTP/1.1 must die: Dafydd Stuttard on what this means for enterprise security

Andrzej Matykiewicz | 09 October 2025 at 14:06 UTC At Black Hat USA 2025 and DEF CON 33, PortSwigger’s Director…

API Attack Awareness: Injection Attacks in APIs
09
Oct
2025

API Attack Awareness: Injection Attacks in APIs

Injection attacks are among the oldest tricks in the attacker playbook. And yet they persist. The problem is that the…

Layered security in action. How VDP, bug bounty, and PTaaS combine to protect your business.
08
Oct
2025

Layered security in action. How VDP, bug bounty, and PTaaS combine to protect your business.

You asked, and we answered. At Intigriti, we’ve been paying close attention to the questions most frequently asked by those…

Revisiting the AI Bubble | Daniel Miessler
07
Oct
2025

Revisiting the AI Bubble | Daniel Miessler

I did a short post (and a video) about how AI shouldn’t be thought of as a bubble because a…

The future of pentesting is Human x AI, and it's already in Burp Suite Professional | Blog
07
Oct
2025

The future of pentesting is Human x AI, and it’s already in Burp Suite Professional | Blog

Andrzej Matykiewicz | 07 October 2025 at 13:17 UTC The latest Hacker-Powered Security Report from HackerOne makes one thing clear:…

06
Oct
2025

AI Gives You Outcomes | Daniel Miessler

Here’s an interesting frame I’m messing with. Maybe AI is disruptive to the labor market because it combines tools, operators,…

Beginner’s Guide: Creating Your First Rust Project
04
Oct
2025

Red, Blue, Purple in Offensive Security

An honest reflection on the realities I’ve faced working as part of a Red Team I work as a security…

Product comparison: Detectify vs. Qualys
03
Oct
2025

Product comparison: Detectify vs. Qualys

Qualys Pros Its unified platform provides a single pane of glass and powerful reporting capabilities that are ideal for satisfying…

[tl;dr sec] #299 - The Security Engineer's Guide to MCP, IAM Hound Dog, IMDS Anomaly Detection
02
Oct
2025

[tl;dr sec] #299 – The Security Engineer’s Guide to MCP, IAM Hound Dog, IMDS Anomaly Detection

I hope you’ve been doing well! Zero Signal Podcast – AI in Cybersecurity In Vegas this year I joined my…

API Attack Awareness: Broken Object Level Authorization (BOLA)
02
Oct
2025

API Attack Awareness: Broken Object Level Authorization (BOLA)

For this Cybersecurity Awareness Month, we thought it important to draw attention to some of the most common and dangerous…

Hacking smarter with Burp AI: NahamSec puts Burp AI to the test | Blog
01
Oct
2025

Hacking smarter with Burp AI: NahamSec puts Burp AI to the test | Blog

Andrzej Matykiewicz | 01 October 2025 at 14:31 UTC Bug bounty legend, NahamSec, has taken Burp AI for a spin….