Category: Mix

07
Jul
2025

If This Isn’t Intelligence, I Don’t Know What Is

pnpm install -g ccusage I have a friend named Marcus Hutchins who doesn’t believe modern AI is intelligent. He thinks…

Dalfox 2.12 Released ⚡︎ | HAHWUL
06
Jul
2025

Dalfox 2.12 Released ︎ | HAHWUL

More powerful XSS scanning, Integration Dalfox v2.12.0 has been released. It’s been about three months since the previous version, 2.11,…

Hide the Pain Harold - smiling through the existential dread
06
Jul
2025

AI’s Morose Mania

I think, looking back, we might say that the first week of July 2025 was the start of AGI. Like,…

The End of Work | Daniel Miessler
04
Jul
2025

The End of Work | Daniel Miessler

Table of Contents The feeling If you’re like me, you’ve had this strange, uneasy feeling about the job market1 for…

04
Jul
2025

We’re All in Fractal Microcults

I think we’re all in microcults now. Fractal microcults. Infinitely small ones. Cults of one. Not everyone, of course, but…

[tl;dr sec] #286 - Securing Vibe Coding, Finding Secrets "Oops Commits", Backdooring IDE Extensions
03
Jul
2025

[tl;dr sec] #286 – Securing Vibe Coding, Finding Secrets “Oops Commits”, Backdooring IDE Extensions

Rules files to vibe securely, earning $25K from dangling commits, compromising the extension marketplace of Cursor, Windsurf, and other VS…

03
Jul
2025

What CISA’s BOD 25-01 Means for API Security and How Wallarm Can Help

The US government has taken another significant step towards strengthening cloud security with the release of CISA’s Binding Operational Directive…

01
Jul
2025

Why Prompt Engineering and Context Engineering Both Miss the Point

There’s a popular idea going around right now about renaming “prompt engineering” to “context engineering.” The argument is that context…

What the NULL?! Wing FTP Server RCE (CVE-2025-47812)
30
Jun
2025

What the NULL?! Wing FTP Server RCE (CVE-2025-47812)

While performing a penetration test for one of our Continuous Penetration Testing customers, we’ve found a Wing FTP server instance…

[tl;dr sec] #285 - AI Red Teaming, Detection Engineering Field Manual, Building AppSec Partnerships
26
Jun
2025

[tl;dr sec] #285 – AI Red Teaming, Detection Engineering Field Manual, Building AppSec Partnerships

Can LLMs red team AI, intro to detection engineering, how to scale security impact via cross-team partnerships I hope you’ve…

The Rise of AI-Driven API Vulnerabilities
26
Jun
2025

The Rise of AI-Driven API Vulnerabilities

AI has had dramatic impacts on almost every facet of every industry. API security is no exception. Up until recently,…

26
Jun
2025

Dumping Cursor for VSCode + Claude Code

Don’t get me wrong—Cursor is genuinely awesome. It’s probably the best AI-native code editor ever built, with incredibly thoughtful integrations…