Security
Vulnerabilities, exploits, hardening and security engineering.
74 links, newest first.
- SecurityArticle
VulHunt: a framework for binary vulnerability detection
VulHunt is a vulnerability detection framework from Binarly’s REsearch Team. Its blog series includes a walkthrough detecting a remote code execution vulnerability in rsync.
Engineers can explore a framework and practical example for binary vulnerability research.
- SecurityArticle
Black-Box Security Analysis of Xiaomi’s MJA1 Secure Chip
Quarkslab describes a black-box analysis of Xiaomi’s MJA1 secure chip, covering hardware identification, I2C sniffing, flash dumping, and firmware reverse engineering. The work mapped its command protocol and assessed its security properties.
The analysis offers engineers concrete methods for examining undocumented secure hardware and its firmware.
- SecurityRepository
ARM Exploitation CTF Updated Without Obvious Symbols
The exploit_me repository contains a vulnerable ARM/AARCH64 application for CTF-style exploitation practice, with 29 vulnerability techniques. The author says it was updated to remove obvious symbols for LLM fine-tuning.
Engineers can use it to explore ARM/AARCH64 exploitation techniques and experiment with LLM training.
- SecurityPost on X
Windows access tokens and kernel privilege escalation
The post describes the Windows kernel _TOKEN structure, which holds identity and security attributes for processes and threads. It explains that privilege-escalation exploits have historically gained SYSTEM privileges by replacing a process token.
Understanding tokens helps engineers reason about Windows access control and privilege-escalation risks.
- SecurityVideo
Lecture on linking, loading, and position-independent code
A lecture by Anton Burtsev of the University of California, Irvine, on linking and loading with position-independent code.
Position-independent code is relevant to engineers working with executable layout and security hardening.
- SecurityRepository
Reversecore_MCP automates reverse engineering with AI agents
Reversecore_MCP is an MCP server for AI agents, powered by Radare2, YARA, LIEF, and Capstone. Its GitHub description lists reverse engineering, malware analysis, forensics, vulnerability research, and SAST.
It may help engineers evaluate an AI-assisted workflow for binary analysis and security research.
- SecurityRepository
Reverse Engineering and Malware Analysis Roadmap
A GitHub roadmap for reverse engineering and malware analysis, covering x86/x64 assembly, static and dynamic analysis, anti-RE techniques, and tools such as Ghidra, IDA, and x64dbg.
It offers engineers a structured set of topics and tools to explore for reverse engineering and malware analysis.
- SecurityArticle
Riot announces Vanguard On-Demand
Riot announced Vanguard On-Demand, which the post says lets Vanguard run only while playing if Secure Boot, TPM 2.0, VBS, HVCI, and IOMMU are enabled. Riot’s blog is linked for details.
The change could reduce the need for an anti-cheat driver to run at startup while relying on hardware security features.
- SecurityRepository
Post announces a bootrom exploit for several Apple chips
The post says a bootrom exploit for A12, A13, S4/S5, and untested A12X/Z devices has been released. It links to the usbliter8 repository and a project page.
Bootrom exploits can affect device security and are relevant to vulnerability research.
- SecurityArticle
Research Finds Cleartext Traffic on GEO Satellite Links
The linked article reports that a significant portion of GEO satellite traffic is transmitted in cleartext and can be intercepted with relatively affordable equipment.
Engineers operating satellite links should assess whether sensitive traffic is encrypted in transit.
- SecurityArticle
Autonomous Vulnerability Hunting with MCP
A ZephrSec article about using MCP for autonomous vulnerability hunting.
Useful to engineers exploring LLM-based approaches to vulnerability research.
- SecurityArticle
Surfshark introduces the Dausos VPN protocol
Surfshark describes Dausos as a new VPN protocol designed for speed, security, and efficiency. The post says it uses AEGIS-256X2.
Engineers evaluating VPN protocols can review Surfshark’s design and security claims.
- SecurityRepository
CVE-Genie aims to automate exploit generation
The post describes CVE-Genie as a tool that turns known vulnerabilities into working exploits through a few API calls. Its linked GitHub page identifies the project but provides no further details in the preview.
If the claim holds, automated exploit generation could affect how teams assess vulnerability exposure and prioritize defenses.
- SecurityRepository
Research Index on LLMs for Vulnerability Detection
A GitHub collection indexing research on using large language models for software vulnerability detection, including work at function and repository level and on agentic approaches.
Engineers can use it to find research on applying LLMs to vulnerability detection.
- SecurityArticle
NIST argues for continuous monitoring and updates in AI security
A NIST article presents a mathematical proof supporting a continuous-monitor-and-update security model for AI systems.
It highlights an alternative to relying on static security controls for AI systems.
- SecurityArticle
Microsoft Research Explores Encrypted Collaborative Applications
Encrypted Spaces is a research project exploring an architecture for collaborative applications where data is encrypted and all operations are cryptographically verifiable.
The project offers security engineers an approach to building collaborative software with less reliance on trust in operators.
- SecurityRepository
cvs-fast-export 2.1 fixes invalid-delta errors for binary blobs
cvs-fast-export converts RCS or CVS history into a fast-import stream. Version 2.1 repairs an “invalid delta” error when processing binary blobs.
Engineers migrating or inspecting legacy CVS histories can use the release to handle affected binary blobs.
- SecurityRepository
CAI: An Open-Source Framework for AI Security Operations
CAI is an open-source framework for AI-powered cybersecurity operations, including multi-agent workflows, security tools, CTF automation, vulnerability discovery, and AI red teaming. It supports MCP integrations with Burp Suite and external tooling.
Engineers can explore a framework for applying AI agents to security testing and research workflows.
- SecurityPost on X
Bootloader Security: Attack Surfaces, Detection, and Defenses
A paper covers bootloader attack surfaces, vulnerability detection techniques, and defenses across firmware, OS, and monolithic bootloaders.
Engineers can use its overview to assess bootloader risks and defensive approaches across different boot architectures.
- SecurityArticle
GPS Special-Message Field May Reveal Cryptographic Logistics Metadata
A post says a publicly broadcast 176-bit GPS navigation field has carried high-entropy payloads for years. It suggests the field may function as a one-way encrypted control or key-distribution channel, but does not establish that interpretation.
Engineers assessing GPS signal security may want to investigate what operational metadata these broadcasts expose.
Build with AgentLog
Send your own newsletter
CommsHarbor keeps contacts, consent and one-click unsubscribe together.
Free workspace
Open CommsHarbor











