Links
AddOpenSSH post quantum cryptography
A new command injection vulnerability in OpenSSH, tracked as CVE-2025-61984, has been disclosed, which could allow an attacker to achieve remote code execution on a victim's machine.
Another day, another Linux-related drama. This time, it's OBS Studio and Fedora going at it.
We benchmarked the overhead of OpenTelemetry in a high-load Go application and compared it to eBPF-based instrumentation. The results may surprise you - tracing adds cost, but it’s not always a dealbreaker
The parent project for OpenZiti. Here you will find the executables for a fully zero trust, application embedded, programmable network @OpenZiti - openziti/ziti
operational pgp - draft. GitHub Gist: instantly share code, notes, and snippets.
This is a joint post with the Homebrew maintainers; read their announcement here! Last summer, we performed an audit of Homebrew. Our audit’s scope included Homebrew/brew itself (home of the brew CLI), and three adjacent repositories responsible for various security-relevant aspects of Homebrew’s operation: Homebrew/actions: a repository of custom GitHub Actions used […]
OWASP Threat Dragon is a threat modeling tool; great for both developers and defenders alike. Use on your desktop or as a web application.
OXO is a vulnerability scanning orchestrator that automatically binds tools together allowing for rapid scale.
Palo Alto Networks warned customers today to patch security vulnerabilities (with public exploit code) that can be chained to let attackers hijack PAN-OS firewalls.
pdoc auto-generates API documentation that follows your project's Python module hierarchy. It requires no configuration, has first-class support for type annotations, cross-links between identifiers, comes with an integrated live-reloading web server, and understands numpydoc or Google-style docstrings.
Videogaming-related online strip by Mike Krahulik and Jerry Holkins. Includes news and commentary.
Policy and data administration, distribution, and real-time updates on top of Policy Agents (OPA, Cedar, ...) - permitio/opal
Announcing a pilot test of a new Claude browser extension
Your Pixel phone will now tell you how hot it is running
Long-anticipated PixiEditor 2.0 is finally live. Read about the features, roadmap and our mission.
That's certainly one of the stranger headlines we've written