Tag
NVIDIA introduces OpenShell, an open-source runtime for secure AI agent execution with kernel-level enforcement and formal verification to prevent unauthorized actions.
EvilVM is a native code Forth compiler deployed as position-independent shellcode for remote code execution in information security contexts, providing an interactive shell and capabilities for remote code delivery and compilation.
VibeDefend by CybeDefend is a security tool that installs with one command on AI coding agents, enforcing business and security rules by scanning code diffs in real-time.
HSIP is a security tool built with Claude Code that uses cryptographic signatures for identity verification and logs AI agent decisions, providing an unalterable audit trail as a locally running Rust binary with no cloud dependency.
InjectionBunny is a tool that exploits SUID injection in the NTFS3 file system driver for privilege escalation on Linux systems.
Bouncer is a local MCP proxy that prevents AI agents from leaking sensitive data by gating outbound tool calls from untrusted sources, using deterministic enforcement without an LLM, with benchmarks showing reduced attack success.
Released a new update for AgentSecure based on user feedback.
Flounder is an open-source AI agent-based tool that automates vulnerability discovery in codebases. Users describe the target and the tool autonomously downloads code, conducts deep code audits, tests vulnerabilities locally and online, and generates reports.
Shared an open-source project called reverse-skill, which uses a routing.md file to guide AI in automatically handling reverse engineering and security tasks, covering over 20 sub-skill areas. The tweet mentioned that the project's stars increased from 2000 to 2400 in one day.
Web-Check is a free, open-source website reconnaissance tool. Enter a URL and it extracts DNS records, server architecture, frameworks, CMS, open ports, subdomains, and more—ideal for developers and security researchers.
Mezz is a self-contained WiFi sandbox tool for inspecting IoT device traffic, providing an isolated network with DNS logging and optional MITM proxy, all deployable via Docker on a Linux host with AP-capable WiFi.
A developer built Arc Gate, a monitoring proxy for LLMs that uses Fisher information manifold geometry to detect session-level prompt injection attacks, identifying Crescendo-style gradual manipulation by tracking t-values against a phase transition threshold t* = 1.2247 rather than per-turn phrase detection.
wifit3 is a standalone USB Wi-Fi auditor tool for Linux, Windows, and macOS, offering cross-platform reconnaissance, attacks, and captures for wireless security testing.