Follow for my hand-curated application security feed. Contains multiple newsletters, blogs, HackerNews feeds, and more.
💬 Run by @alp1n3.dev. Reach out with any suggestions for improvement!
🔗 https://github.com/curl/curl/pull/20312
🔗 https://github.com/curl/curl/pull/20312
🔗 https://blog.cloudflare.com/acme-path-vulnerability/
🔗 https://blog.cloudflare.com/acme-path-vulnerability/
🔗 https://www.zaproxy.org/blog/2026-01-19-owasp-ptk-add-on/
🔗 https://www.zaproxy.org/blog/2026-01-19-owasp-ptk-add-on/
🔗 https://pentesterlab.com/blog/research-worth-reading-week03-2026
🔗 https://pentesterlab.com/blog/research-worth-reading-week03-2026
🔗 https://developerrelations.com/case-studies/snyk-content-scaling/
🔗 https://developerrelations.com/case-studies/snyk-content-scaling/
🔗 https://news.ycombinator.com/item?id=46676994
🔗 https://news.ycombinator.com/item?id=46676994
🔗 https://www.phoronix.com/news/Glibc-Security-Fix-For-1996-Bug
🔗 https://www.phoronix.com/news/Glibc-Security-Fix-For-1996-Bug
🔗 https://web3isgoinggreat.com/single/trezor-support-scam
🔗 https://web3isgoinggreat.com/single/trezor-support-scam
🔗 https://www.schneier.com/blog/archives/2026/01/new-vulnerability-in-n8n.html
🔗 https://www.schneier.com/blog/archives/2026/01/new-vulnerability-in-n8n.html
🔗 https://opena2a.org/blogs/servicenow-ai-vulnerability
🔗 https://opena2a.org/blogs/servicenow-ai-vulnerability
🔗 https://hack.do/posts/winboat-guest-service-host-rce/
🔗 https://hack.do/posts/winboat-guest-service-host-rce/
🔗 https://checkmarx.com/zero-post/last-week-in-appsec-for-15-january-2026/
🔗 https://checkmarx.com/zero-post/last-week-in-appsec-for-15-january-2026/
🔗 https://tldrsec.com/p/tldr-sec-311
🔗 https://tldrsec.com/p/tldr-sec-311
🔗 https://www.trmlabs.com/resources/blog/building-the-talent-engine-behind-trms-mission-to-protect-billions
🔗 https://www.trmlabs.com/resources/blog/building-the-talent-engine-behind-trms-mission-to-protect-billions
🔗 https://github.blog/security/community-powered-security-with-ai-an-open-source-framework-for-security-research/
🔗 https://github.blog/security/community-powered-security-with-ai-an-open-source-framework-for-security-research/
🔗 https://github.com/curl/curl-www/pull/538
🔗 https://github.com/curl/curl-www/pull/538
🔗 https://determinate.systems/blog/determinate-secure-packages/
🔗 https://determinate.systems/blog/determinate-secure-packages/
🔗 https://ysamm.com/uncategorized/2025/01/13/capig-xss.html
🔗 https://ysamm.com/uncategorized/2025/01/13/capig-xss.html
🔗 https://nodejs.org/en/blog/vulnerability/january-2026-dos-mitigation-async-hooks
🔗 https://nodejs.org/en/blog/vulnerability/january-2026-dos-mitigation-async-hooks
🔗 https://github.com/ArseniiBrazhnyk/Veritensor
🔗 https://github.com/ArseniiBrazhnyk/Veritensor
🔗 https://web3isgoinggreat.com/single/nyc-token-crash
🔗 https://web3isgoinggreat.com/single/nyc-token-crash
🔗 https://www.trmlabs.com/resources/blog/building-the-talent-engine-behind-trms-mission-to-protect-billions
🔗 https://www.trmlabs.com/resources/blog/building-the-talent-engine-behind-trms-mission-to-protect-billions