1AI powered SAST : The New Frontier? devansh.bearblog.devc/blueteamsec · by N7x@infosec.pub · 255d · 0 comments
1Prompt injection is not SQL injection (it may be worse) ncsc.gov.ukc/appsec · by N7x@infosec.pub · 255d · 0 comments
81People working at GitLab, how is the company doing at the moment? c/asklemmy · by N7x@infosec.pub · 258d · 12 comments
4GitHub - aliasrobotics/cai: Cybersecurity AI (CAI), the framework for AI Security github.comc/appsec · by N7x@infosec.pub · 264d · 0 comments
1DevSecOps Homelab Part 2: Building the Pipeline rolandsalunga.comc/appsec · by N7x@infosec.pub · 264d · 0 comments
0GitHub - bscript/rep: rep+ — Burp-style HTTP Repeater for Chrome DevTools with built‑in AI to explain requests and suggest attacks github.comc/appsec · by N7x@infosec.pub · 266d · 0 comments
1Security Community Slams MIT-linked Report Claiming AI Power... socket.devc/appsec · by N7x@infosec.pub · 291d · 0 comments
-4OpenAI Unveils Aardvark: GPT-5 Agent That Finds and Fixes Code Flaws Automatically thehackernews.comc/appsec · by N7x@infosec.pub · 292d · 0 comments
6OWASP Kubernetes Top 10 2025 Survey docs.google.comc/appsec · by N7x@infosec.pub · 302d · 0 comments
1[tl;dr sec] #282 - Weaponizing Dependabot, Ultimate Guide to JWT Vulnerabilities, Multi-Agent Automated Vulnerability Discovery tldrsec.comc/appsec · by N7x@infosec.pub · 1y · 0 comments
0A practical guide to security testing for Java applications — with tools, examples, and commands. github.comc/appsec · by N7x@infosec.pub · 1y · 0 comments
1OWASP x Google Summer of Code 2025 - Enabling 15 opportunities for impact | OWASP Foundation owasp.orgc/appsec · by N7x@infosec.pub · 1y · 0 comments
2GitHub MCP Exploited: Accessing private repositories via MCP invariantlabs.aic/appsec · by N7x@infosec.pub · 1y · 1 comments
on People working at GitLab, how is the company doing at the moment? · c/asklemmy · 5 pts · 257dIndeed, but for enterprise solutions GitLab and GitHub are still the most used (sometimes Bitbucket for Atlassian shops who want to save on pricing)
on People working at GitLab, how is the company doing at the moment? · c/asklemmy · 9 pts · 257dWow, thank you so much, that's very informative! Sorry to hear about this, hopefully the micromanaging will stop at some point.
on People working at GitLab, how is the company doing at the moment? · c/asklemmy · 20 pts · 257dNDAs usually don't cover general appreciation about the company, otherwise places like Glassdoor or levels.fyi would always get sued
on People working at GitLab, how is the company doing at the moment? · c/asklemmy · 11 pts · 257dThank you for your comment, indeed they seem very remote-focused, that's nice to see.
on GitHub MCP Exploited: Accessing private repositories via MCP · c/appsec · 1 pts · 1yUpdated the link that was incorrect
on Snyk prices are getting very high. Has anyone moved away from them? Which alternative did you choose? · c/appsec · 1 pts · 1yThanks!
on [Crosspost from !appsec] Looking for a new training/certification. People who did OSWA (Web-200 by OffSec), how was it? · c/cybersecurity · 2 pts · 2yOh nice, wasn't aware of this, definitely looks interesting, thanks! I am an OSCP holder as well.
on Stir Trek 2024: Call for Speakers · c/appsec · 1 pts · 2yWhy the downvotes? This is a call for speakers to a security conference
on Feedback open until 31 of August for CVSS 4.0 · c/appsec · 1 pts · 3yThat's kind of legacy debt at some point. I understand why they still want to move towards evolving the standard
on AMD ‘Zenbleed’ bug can leak passwords from Ryzen CPUs · c/cybersecurity · 2 pts · 3yWrite-up: https://lock.cmpxchg8b.com/zenbleed.html
on AMD ‘Zenbleed’ bug can leak passwords from Ryzen CPUs · c/cybersecurity · 2 pts · 3yAdditional link: https://arstechnica.com/information-technology/2023/07/encryption-breaking-password-leaking-bug-in-many-amd-cpus-could-take-months-to-fix/
on Training Tuesday - Discussions for certs, training and learning-at-home · c/cybersecurity · 1 pts · 3yThanks!
on Training Tuesday - Discussions for certs, training and learning-at-home · c/cybersecurity · 4 pts · 3yFinally done with my 120 CPEs for my CISSP. That was a long ride, happy to be done with it
on 2FA Auth not showing? · c/infosecpub · 3 pts · 3yBe careful, 2FA still has issues at the moment: https://github.com/LemmyNet/lemmy/issues/3309
Indeed, but for enterprise solutions GitLab and GitHub are still the most used (sometimes Bitbucket for Atlassian shops who want to save on pricing)
Wow, thank you so much, that's very informative!
Sorry to hear about this, hopefully the micromanaging will stop at some point.
NDAs usually don't cover general appreciation about the company, otherwise places like Glassdoor or levels.fyi would always get sued
Thank you for your comment, indeed they seem very remote-focused, that's nice to see.
Updated the link that was incorrect
Well done !
Thanks!
Oh nice, wasn't aware of this, definitely looks interesting, thanks! I am an OSCP holder as well.
Why the downvotes? This is a call for speakers to a security conference
Great!
Nice resources
Thank you!
That's kind of legacy debt at some point. I understand why they still want to move towards evolving the standard
Write-up: https://lock.cmpxchg8b.com/zenbleed.html
Additional link: https://arstechnica.com/information-technology/2023/07/encryption-breaking-password-leaking-bug-in-many-amd-cpus-could-take-months-to-fix/
Thanks!
Finally done with my 120 CPEs for my CISSP. That was a long ride, happy to be done with it
Thank you for this!
Be careful, 2FA still has issues at the moment: https://github.com/LemmyNet/lemmy/issues/3309