github.com
Issues · bluesky-social/social-app
The Bluesky Social application for Web, iOS, and Android - Issues · bluesky-social/social-app
#appsec is an active hashtag on Bluesky. In the last 30 days, 67 people shared 237 posts with it — around 8 a day. Activity is down 33% versus the previous week, peaking on Sep 12 with 17 posts.
Tags most often used together with #appsec.
github.com
Issues · bluesky-social/social-app
The Bluesky Social application for Web, iOS, and Android - Issues · bluesky-social/social-app
Flying around Europe, trying to get through airport security with these. I realize I haven’t really thought «what can go wrong» before now. «No, they are not contrabands» «No, nothing to declare». I hope I still have my virginity intact when I arrive. See you hopefully soon @owasp-de.bsky.social!
copi.owasp.org
Copi · Play Cornucopia Online
rtfclmgzn.com
Plugin4Shell breaks the SHA-pinning check four AI coding agents use to verify a plugin update -- two vendors still have no fix
A Git branch can impersonate a verified commit hash, tricking Claude Code, Codex, Copilot and Gemini CLI into installing a different plugin than the one they logged -- two of the four still have no real fix.
dlvr.it
Cache key injection: Smuggling poison through the door
Groups Conversations All groups and messages Sign in Technical - Application Security Cache key injection: Smuggling poison through the door 0 views Eyal Estrin unread, 3:13 AM (19 minutes ago) to https://www.yeswehack.com/lab/research-cache-key-injection Eyal Estrin Author | Cloud Architect | AWS • Azure • GCP Insights Social: @eyalestrin Connect: https://linktr.ee/eyalestrin Blog: https://security-24-7.com Reply all Reply to author Forward
Flying around Europe, trying to get through airport security with these. I realize I haven’t really thought «what can go wrong» before now. «No, they are not contrabands» «No, nothing to declare». I hope I still have my virginity intact when I arrive. See you hopefully soon @owasp-de.bsky.social!
dlvr.it
TanStack Supply Chain Attack Analysis
Groups Conversations All groups and messages Sign in TanStack Supply Chain Attack Analysis 0 views Eyal Estrin unread, 10:31 AM (18 minutes ago) to https://www.crowdsec.net/blog/tanstack-supply-chain-attack-analysis Eyal Estrin Author | Cloud Architect | AWS • Azure • GCP Insights Social: @eyalestrin Connect: https://linktr.ee/eyalestrin Blog: https://security-24-7.com Reply all Reply to author Forward
owasp.glueup.com
German OWASP Day 2026 | The OWASP Foundation Inc.
The OWASP German Chapter hosts its annual conference in Karlsruhe, September 23–24, 2026. Two days of application security: expert talks, community exchange, and hands-on insights.
dlvr.it
A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, and DiagSpill
Groups Conversations All groups and messages Sign in Technical - Application Security Conversations About Privacy • Terms A quartet of Linux local root vulns: DirtyAH6, PPPoEject, TUNderflow, and DiagSpill 0 views Eyal Estrin unread, 4:46 AM (16 minutes ago) to https://heyitsas.im/posts/lpe-quartet/ Eyal Estrin Author | Cloud Architect | AWS • Azure • GCP Insights Social: @eyalestrin Connect: https://linktr.ee/eyalestrin Blog: https://security-24-7.com Reply all Reply to author Forward
Posts are pulled live from Bluesky and cached briefly. Posts with content labels are hidden.