Hot in Security:
Latest Security Threads

Ruby Central posted an extremely concerning “Incident Response Timeline” today, in which they make a number of exaggerated or purely misl...
New

CodeMender is a new AI-powered agent that improves code security automatically. It instantly patches new software vulnerabilities, and re...
New

An extortion group calling itself the Crimson Collective claims to have breached Red Hat’s private GitHub repositories, stealing nearly 5...
New

A new Django blog post/announcement has been posted!
New

Can your robot be hacked? A new vulnerability in Unitree robots could turn them into a botnet army. Are we taking robot security seriousl...
New

One package.
One update.
A worm crawling through the BEAM ecosystem.
A dark “what if” — and how we can stop it before it’s real.
New

This document describes the security content of iOS 15.8.5 and iPadOS 15.8.5.
New

If you’ve wrestled with static permissions, stale access rights, or overly rigid authorization models, this book is designed to help you ...
New

Meta allegedly prioritized user growth over security, lawsuit said.
New

Attaullah Baig, fired this year, said he had warned Mark Zuckerberg engineers had unaudited access to user data
New
HOT IN Security THIS WEEK!

CodeMender is a new AI-powered agent that improves code security automatically. It instantly patches new software vulnerabilities, and re...
New

Ruby Central posted an extremely concerning “Incident Response Timeline” today, in which they make a number of exaggerated or purely misl...
New
HOT IN Security THIS MONTH!

A new Django blog post/announcement has been posted!
New

One package.
One update.
A worm crawling through the BEAM ecosystem.
A dark “what if” — and how we can stop it before it’s real.
New

Can your robot be hacked? A new vulnerability in Unitree robots could turn them into a botnet army. Are we taking robot security seriousl...
New

This document describes the security content of iOS 15.8.5 and iPadOS 15.8.5.
New

An extortion group calling itself the Crimson Collective claims to have breached Red Hat’s private GitHub repositories, stealing nearly 5...
New
HOT IN Security THIS YEAR!

A new PostgreSQL blog post/announcement has been posted!
Get the full details here: PostgreSQL: PostgreSQL JDBC 42.7.7 Security update ...
New

A new Ruby blog post/announcement has been posted!
Get the full details here: https://www.ruby-lang.org/en/news/2025/02/26/security-adv...
New

A new Django blog post/announcement has been posted!
New

A new Go blog post/announcement has been posted!
Get the full details here: Go Cryptography Security Audit - The Go Programming Language
New

Open source maintainers underpaid and going gray.
AI-coded contributions? Most would rather skip the bot’s work
New

A new Django blog post/announcement has been posted!
New

A new Django blog post/announcement has been posted!
Get the full details here: Django security releases issued: 5.2.2, 5.1.10, and 4.2...
New

Episode 245 of Thinking Elixir. News includes a new library called phoenix_sync for real-time sync in Postgres-backed Phoenix application...
New

Episode 250 of Thinking Elixir. News includes EEF board elections with voting beginning May 9th, Gleam v1.10.0 enhancing security with SB...
New

Episode 251 of Thinking Elixir. News includes a critical Unauthenticated Remote Code Execution vulnerability in Erlang/OTP SSH, José Vali...
New

New Zealand Company’s ‘Impossible-to-Hack’ Security Turns Out to Be No Security at All.
Teammate App had a publicly exposed database and...
New

A new Arch Linux blog post/announcement has been posted!
Get the full details here: Arch Linux - News: Critical rsync security release ...
New

This report highlights a rarely-discussed but crucially important attack surface: security vendors themselves.
New

A new Rust blog post/announcement has been posted!
Get the full details here: crates.io security incident: improperly stored session co...
New

A failure of security systems at PayPal is currently causing concern for numerous German banks and private customers. A vast number of pa...
New
HOT IN Security THE LAST THREE YEARS!

Raspberry Pi security alarm — the basics.
In November last year — I started building a DIY security alarm system, using a Raspberry Pi a...
New

Episode 173 of Thinking Elixir. We delve into the tricky world of cybersecurity with our guest, Michael Lubas. We touch on the widely-dis...
New

A jargon-busting guide to the key concepts, terminology, and technologies of cybersecurity. Perfect for anyone planning or implementing a...
New

The Backbone of Cybersecurity: Hardware Security Modules | join.tech Blog.
Discover how Hardware Security Modules (HSMs) provide robust ...
New

The encrypted app will refuse to comply with the Online Safety Bill if required to scan messages.
New

Ars chats with law philosopher Scott Shapiro about his new book, Fancy Bear Goes Phishing.
New

A new Rust blog post/announcement has been posted!
Get the full details here: Security advisory for Cargo (CVE-2022-46176) | Rust Blog
New

It’s important to learn safe coding practices. As developers, we want people to love our products and happily pay to use them. We also wa...
New

A new Rust blog post/announcement has been posted!
Get the full details here: Security advisory for Cargo (CVE-2023-38497) | Rust Blog
New

Securing our apps is our responsibility as developers. We are the custodians and the guardians of our user’s data. We met up again with M...
New

A new PostgreSQL blog post/announcement has been posted!
Get the full details here: PostgreSQL: pg_ivm 1.5.1 Security update release
New

You can’t solve AI security problems with more AI.
One of the most common proposed solutions to prompt injection attacks (where an AI la...
New
New

Featuring the Solarium Commission, Carnegie Mellon, and a Singapore conference.
New

A new Django blog post/announcement has been posted!
Get the full details here: Django security releases issued: 4.2.1, 4.1.9, and 3.2....
New
HOT IN Security THIS Over 3 Years!

This past weekend saw the latest competition take place and the newest iPhone, the iPhone 13 Pro running the latest and fully patched ver...
New

2020 has seen a significant uptick in the number of companies looking at adding Digital Wallets and tokenization to their offerings. On o...
New

Things like smart speakers (such Amazon Alexa), smart TVs or other devices with built in microphones, cameras or with other features that...
New

Cybersecurity leaders discuss business resiliency and identity challenges during a session at VMworld 2020.
https://www.techrepublic.co...
New

Cyber-criminals have your web applications in their crosshairs. They exploit common security mistakes in your web application to steal us...
New

Following this news: https://forum.devtalk.com/t/silver-sparrow-new-malware-found-on-30k-macs-has-security-pros-stumped/7241 just wondere...
New

Computer security is a complex issue. But you don’t have to be an expert in all the esoteric details to prevent many common attacks. Atta...
New

Just discovered this:
Wireshark is the world’s foremost and widely-used network protocol analyzer. It lets you see what’s happening on...
New

We engineered a wearable microphone jammer that is capable of disabling microphones in its user’s surroundings, including hidden micropho...
New

I had a bit of a mini-adventure following Sobelow’s advice on adding a CSP to a Phoenix App. If you want to follow along, or want to add ...
New

A new PostgreSQL blog post/announcement has been posted!
Get the full details here: PostgreSQL: PostgreSQL JDBC 42.3.2/42.2.25 Security...
New

As part of our continued goal of helping developers provide safer products for businesses and consumers, we here at McAfee Advanced Threa...
New

In episode 81 of Thinking Elixir, we talk with Digit and Quinn Wilton about the Burrito project. It wraps up Elixir to a single binary, e...
New

For those that are interested, Snyk (developer security tool) announced support for Elixir earlier this week:
Just thought I’d pass it...
New

A new Rust blog post/announcement has been posted!
Get the full details here: Security advisory for the regex crate (CVE-2022-24713) | ...
New
Security
Classification:
Topic
Forum Category:
General
Threads:
233
Posts:
265
"Our portal about all things security related."
- Follow
- Join
- Shape
the conversation
Latest Security Jobs
Featured Security Book
Latest Security Learning Resources
Dynamic Authorization: Adaptive access control (Manning)
Backend Learning ResourcesSanitizing HTML with HtmlSanitizeEx - ElixirCasts
Backend Learning ResourcesMaking Sense of Cybersecurity (Manning)
Backend Learning ResourcesCyber Security Career Guide (Manning)
Backend Learning ResourcesSecure Your Node.js Web Application (PragProg)
General Learning ResourcesPractical Security (PragProg)
General Learning ResourcesSecurity Events (WIP)
Get money off!

The Pragmatic Bookshelf
35% off any eBook

Manning Publications
45% off any item

The Pragmatic Studio
20% off any course
Simply use coupon code "devtalk.com" at checkout. Where applicable this coupon can be used for an many items and as many times as you like!

Filter by Type:
My Saved Portals
-
None saved yet