Featured Posts
Archive
NewsletterNewsletter
![[tl;dr sec] #321 - Sandboxing AI Agents, Trivy Compromised, Pentesting AWS' AI Pentester](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #320 - Ramp's Security Agents, How Datadog Caught Malicious OSS Contributions, Obliterating Model Refusals](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #319 - AI is Eating Security, BSidesSF & RSA, Claude Finds Firefox 0-days](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #318 - Unprompted Talk Summaries, AI Bot Hacking GitHub Actions, AI Skills & Semgrep Rules](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #317 - 100+ Kernel Bugs in 30 Days, Secret Scanning, Threat Actors Stealing Your PoC](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #316 - How Trail of Bits uses Claude Code, GitHub Threat Intel, Open Source AI Pentesting Tools](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #315 - Securing OpenClaw, Top 10 Web Hacking Techniques of 2025, Discovering Negative-Days with LLMs](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
[tl;dr sec] #315 - Securing OpenClaw, Top 10 Web Hacking Techniques of 2025, Discovering Negative-Days with LLMs
Minimal OpenClaw alternatives, scanning tools, and hardening guidance, PortSwigger's curated top web hacking techniques, open source GitHub Action to flag commits fixing vulnerabilities before they get a CVE

Clint Gibler
NewsletterNewsletter
![[tl;dr sec] #314 - ClawdBot Security, Security Scorecards, Threat Framework for SDLC Infrastructure](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #313 - MCP Security Hub, IDE-Shepherd, Plaid's Security Pipeline as Code](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #312 - The Industrialization of Exploit Generation, macOS EDR Evasion, Hacking the AWS Console](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
NewsletterNewsletter
![[tl;dr sec] #311 - Slack's Security Agents, Cloud-Native Detection Engineering, Trail of Bits' Claude Skills](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
[tl;dr sec] #311 - Slack's Security Agents, Cloud-Native Detection Engineering, Trail of Bits' Claude Skills
Slack's AI agent system to optimize security alert investigations, deep dive into cloud-native detection engineering, ToB's open source Skills for security research, vulnerability detection, and audit workflows

Clint Gibler
NewsletterNewsletter
![[tl;dr sec] #310 - Vulnerable MCP Labs, Pathfinding.cloud, Prompt Injection Taxonomy](proxy.php?url=https%3A%2F%2Fmedia.beehiiv.com%2Fcdn-cgi%2Fimage%2Fformat%3Dauto%2Cwidth%3D800%2Cheight%3D421%2Cfit%3Dscale-down%2Conerror%3Dredirect%2Fuploads%2Fpublication%2Fthumbnail%2F080a561f-2435-4477-a549-ab9f115e047c%2Flandscape_Screenshot_2024-11-21_at_10.48.21_AM.png)
[tl;dr sec] #310 - Vulnerable MCP Labs, Pathfinding.cloud, Prompt Injection Taxonomy
9 vulnerable MCP servers to learn how to pen test AI agent infra, a knowledge base of 65+ AWS IAM privilege escalation paths, Jason Haddix's open-source classification system for LLM prompt injection attacks

Clint Gibler










