Hacker Newsnew | past | comments | ask | show | jobs | submit | fromlogin
Catching malicious package releases using a transparency log (trailofbits.com)
2 points by abhisek 1 day ago | past | discuss
Catching malicious package releases using a transparency log (trailofbits.com)
5 points by tatersolid 5 days ago | past | discuss
Mrva: Terminal-first approach to CodeQL multi-repo variant analysis (trailofbits.com)
2 points by ingve 6 days ago | past | 1 comment
Constant-time support for LLVM to protect cryptographic code (trailofbits.com)
5 points by ingve 15 days ago | past
[dupe] LLVM Adds Constant-Time Support for Protecting Cryptographic Code (trailofbits.com)
27 points by birdculture 21 days ago | past | 4 comments
Constant-time support coming to LLVM: Protecting cryptographic code (trailofbits.com)
5 points by matt_d 21 days ago | past
Constant-time support coming to LLVM: Protecting cryptographic code (trailofbits.com)
112 points by ahlCVA 22 days ago | past | 61 comments
How we avoided side-channels in our new post-quantum Go cryptography libraries (trailofbits.com)
3 points by crescit_eundo 27 days ago | past
Vulnerabilities in LUKS2 disk encryption for confidential VMs (trailofbits.com)
4 points by crescit_eundo 27 days ago | past
Balancer hack analysis and guidance for the DeFi ecosystem (trailofbits.com)
2 points by crescit_eundo 27 days ago | past
We found cryptography bugs in the elliptic library using Wycheproof (trailofbits.com)
7 points by wslh 28 days ago | past
How we avoided side-channels in our new post-quantum Go cryptography libraries (trailofbits.com)
2 points by tob_scott_a 29 days ago | past
We found cryptography bugs in the elliptic library using Wycheproof (trailofbits.com)
5 points by ingve 29 days ago | past
How we avoided side-channels in our new post-quantum Go cryptography libraries (trailofbits.com)
2 points by ingve 32 days ago | past
How we avoided side-channels in our new post-quantum Go cryptography libraries (trailofbits.com)
5 points by CiPHPerCoder 33 days ago | past
Use mutation testing to find the bugs your tests don't catch (trailofbits.com)
4 points by crescit_eundo 41 days ago | past
Supply chain attacks are exploiting our assumptions (trailofbits.com)
81 points by crescit_eundo 41 days ago | past | 52 comments
The cryptography behind electronic passports (trailofbits.com)
200 points by tatersolid 47 days ago | past | 122 comments
Prompt injection to RCE in AI agents (trailofbits.com)
2 points by vinhnx 54 days ago | past | 1 comment
Prompt injection to RCE in AI agents (trailofbits.com)
3 points by ingve 56 days ago | past
OpenVPN2 Security: Taming 2,500 compiler warnings with CodeQL (trailofbits.com)
2 points by summarity 82 days ago | past
Understanding AddressSanitizer: Better memory safety for your code (2024) (trailofbits.com)
2 points by ashvardanian 83 days ago | past
Supply chain attacks are exploiting our assumptions (trailofbits.com)
9 points by woodruffw 84 days ago | past
Subverting code integrity checks to locally backdoor Signal, 1Password and more (trailofbits.com)
2 points by elashri 3 months ago | past
Subverting code integrity checks to locally backdoor Signal, 1Password, Slack (trailofbits.com)
9 points by tatersolid 3 months ago | past
Weaponizing image scaling against production AI systems (trailofbits.com)
494 points by tatersolid 3 months ago | past | 131 comments
Marshal madness: A brief history of Ruby deserialization exploits (trailofbits.com)
25 points by pentestercrab 3 months ago | past | 4 comments
Hijacking multi-agent systems in your PajaMAS (trailofbits.com)
7 points by Qwuke 4 months ago | past | 1 comment
MCP servers can attack you before you ever use them (trailofbits.com)
2 points by gtirloni 4 months ago | past
Trail of Bits' Buttercup wins 2nd place in AIxCC Challenge (trailofbits.com)
2 points by wslh 4 months ago | past

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: