Seclog - #124


"Know your adversary's network, and your own, and you shall not fear the outcome of a thousand hacks." - The Art of Cyber War
π SecMisc
OrgSec Guide β A practical guide to organizational security. Read More
Llama Protections β Open-source security tools by Llama. Read More
π° SecLinks
Fake GIF Leveraged in Multi-Stage Reverse-Proxy Card Skimming Attack β A fake image used in a stealthy card skimming technique. Read More
Cybersecurity (Anti)Patterns: Busywork Generators β Discussing patterns that create meaningless security tasks. Read More
AWS Built a Security Tool. It Introduced a Security Risk. β How AWS unintentionally introduced a vulnerability. Read More
Grafana Security Update β GitHub workflow vulnerability clarified. Read More
Securing a SaaS Company's AWS Environment After a Breach β Lessons learned post-incident. Read More
Applying Security Engineering to Prompt Injection Security β Bruce Schneier on prompt injection threats. Read More
CVE-2025-32433 β RCE via state machine error in Erlang/OTP SSH. Read More
WTF is SOC 2 Compliance? β A simple breakdown of SOC 2. Read More
Tag Your Way In β New privilege escalation in GCP using tags. Read More
Peephole Deobfuscation β Simplifying obfuscated code with pattern-based logic. Read More
Metaβs New Open-Source AI Privacy Tools β Latest security advancements from Meta. Read More
AirBorne: Zero-Click RCE in Apple AirPlay β Critical RCE flaw in Appleβs AirPlay protocol. Read More
Deceiving Users with ANSI Terminal Codes β Security implications of terminal manipulation. Read More
The MCP Server for Wiz β AI-native security server from Wiz. Read More
π» SecGit
AdnaneKhan/Gato-X β Static analysis and GitHub Actions exploitation toolkit. Explore on GitHub
Yamato-Security/suzaku β Sigma-based threat hunting and cloud log forensics. Explore on GitHub
google/mcp-security β Googleβs official MCP security framework. Explore on GitHub
quarkslab/proxyblob β A SOCKS5 proxy tool using Azure Blob Storage. Explore on GitHub
For suggestions and any feedback, please contact: securify@rosecurify.com
Subscribe to my newsletter
Read articles from Rosecurify directly inside your inbox. Subscribe to the newsletter, and don't miss out.
Written by
