⤷ Title: BinPool: Unlock Deeper Vulnerability Discovery in Binaries with This New Dataset
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 00:04:20 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Binary Analysis #BinPool #CVE #CWE #cybersecurity #Debian #machine learning #Static Analysis #Vulnerability Discovery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 00:04:20 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Binary Analysis #BinPool #CVE #CWE #cybersecurity #Debian #machine learning #Static Analysis #Vulnerability Discovery
Penetration Testing Tools
BinPool: Unlock Deeper Vulnerability Discovery in Binaries with This New Dataset
BinPool is a Python-based dataset of 603 CVEs from vulnerable and patched Debian binaries, enabling advanced vulnerability discovery through ML and static analysis.
⤷ Title: MalBuster Walkthrough: Static PE Triage for Beginners
════════════════════════
𐀪 Author: Furkanctiner
════════════════════════
ⴵ Time: Sun, 24 Aug 2025 10:14:51 GMT
════════════════════════
⌗ Tags: #static_analysis #malware_analysis #tryhackme_walkthrough #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Furkanctiner
════════════════════════
ⴵ Time: Sun, 24 Aug 2025 10:14:51 GMT
════════════════════════
⌗ Tags: #static_analysis #malware_analysis #tryhackme_walkthrough #tryhackme #cybersecurity
Medium
MalBuster Walkthrough: Static PE Triage for Beginners🔥
Hey everyone! 👋 This week I worked through the MalBuster TryHackMe room and took notes the way I wish someone had explained them to me…
⤷ Title: Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 14 Oct 2025 03:51:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_SAST #Code Security #Corgea #LLM #Penetration Testing #Static Analysis #Vulnerability Detection #ZeroPath
Penetration Testing Tools
Next-Gen AI Security Engineers Arrive: New AI-SAST Tools Find Logic Flaws and 50+ Zero-Days in Code
New AI-SAST tools like ZeroPath and Corgea are using LLM reasoning to find business logic flaws and zero-days in source code, dramatically reducing false positives and human effort.
⤷ Title: Binary Architect: ELFSPIRIT Framework Analyzes, Patches, and Camouflages ELF Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 06 Nov 2025 04:23:34 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Binary Manipulation #cybersecurity #ELF Format #ELFSPIRIT #Malware Research #rootkit #Static Analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 06 Nov 2025 04:23:34 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Binary Manipulation #cybersecurity #ELF Format #ELFSPIRIT #Malware Research #rootkit #Static Analysis
Penetration Testing Tools
Binary Architect: ELFSPIRIT Framework Analyzes, Patches, and Camouflages ELF Files
ELFSPIRIT is a versatile framework for static analysis and injection, allowing users to manipulate, patch, and camouflage every byte within ELF files for research.
⤷ Title: Unmasking the Code: JS Analyzer Automates JavaScript Recon & Secret Discovery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:44:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Discovery #bug bounty #Burp Suite #InfoSec 2026 #JavaScript #JS Analyzer #Pentesting #Recon #secret scanning #Static Analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:44:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Discovery #bug bounty #Burp Suite #InfoSec 2026 #JavaScript #JS Analyzer #Pentesting #Recon #secret scanning #Static Analysis
Information Security News
Unmasking the Code: JS Analyzer Automates JavaScript Recon & Secret Discovery
JS Analyzer A powerful Burp Suite extension for JavaScript static analysis. Extracts API endpoints, URLs, secrets, and email addresses from JavaScript files with intelligent noise filtering. The g…
⤷ Title: Beyond the Signature: Unveiling ThreatShield’s AI-Driven Malware Analysis Platform
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 16:21:06 +0000
════════════════════════
⌗ Tags: #Open Source Tool #behavioral analysis #cybersecurity tools #dynamic analysis #Infosec #machine learning #malware analysis #sandboxing #Static Analysis #Tech News 2026 #Threat Detection #ThreatShield
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Feb 2026 16:21:06 +0000
════════════════════════
⌗ Tags: #Open Source Tool #behavioral analysis #cybersecurity tools #dynamic analysis #Infosec #machine learning #malware analysis #sandboxing #Static Analysis #Tech News 2026 #Threat Detection #ThreatShield
Penetration Testing Tools
Beyond the Signature: Unveiling ThreatShield’s AI-Driven Malware Analysis Platform
ThreatShield combines static, dynamic, and machine learning analysis to deliver deep, explainable insights into malicious files and suspicious behaviors.
⤷ Title: POSTURA: Graph-Based Security Analysis That Understands Context
════════════════════════
𐀪 Author: Arunabh Majumdar
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 18:44:33 GMT
════════════════════════
⌗ Tags: #application_security #llm_agent #static_analysis #neo4j #open_source
════════════════════════
𐀪 Author: Arunabh Majumdar
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 18:44:33 GMT
════════════════════════
⌗ Tags: #application_security #llm_agent #static_analysis #neo4j #open_source
Medium
POSTURA: Graph-Based Security Analysis That Understands Context
Static scanners find vulnerabilities. They can’t tell you which ones matter.
⤷ Title: Binary to Behavior: Decode Threats with the Unified “Malware-Check” Analysis Engine
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 01 May 2026 07:26:41 +0000
════════════════════════
⌗ Tags: #Open Source Tool #binary analyzer #cybersecurity tools #DevSecOps #Docker sandbox #dynamic analysis #malware analysis #malware_check #MobSF #reverse engineering #SARIF #Static Analysis #YARA
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 01 May 2026 07:26:41 +0000
════════════════════════
⌗ Tags: #Open Source Tool #binary analyzer #cybersecurity tools #DevSecOps #Docker sandbox #dynamic analysis #malware analysis #malware_check #MobSF #reverse engineering #SARIF #Static Analysis #YARA
Penetration Testing Tools
Binary to Behavior: Decode Threats with the Unified "Malware-Check" Analysis Engine
Detect backdoors, ransomware, and privacy leaks. Malware-Check combines YARA rules, Docker sandboxing, and MobSF for deep static and dynamic analysis.
⤷ Title: CVE-2026-45293: Arbitrary Code Execution in WordPress Coding Standards, a Tool With 49M+ Installs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 01:02:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CI/CD security #CVE_2026_45293 #PHP_CodeSniffer #PHPCS #Static Analysis #Supply Chain Security #WordPress Coding Standards #WordPressCS
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 29 Jul 2026 01:02:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CI/CD security #CVE_2026_45293 #PHP_CodeSniffer #PHPCS #Static Analysis #Supply Chain Security #WordPress Coding Standards #WordPressCS
Daily CyberSecurity
CVE-2026-45293: Arbitrary Code Execution in WordPress Coding Standards, a Tool With 49M+ Installs
TL;DR A flaw in WordPress Coding Standards lets malicious PHP run code on the machine that lints it. Tracked as CVE-2026-45293, the bug carries a CVSS score of 8.6. The advisory calls it “an…
⤷ Title: Part II: Analytic Tools
════════════════════════
𐀪 Author: EW
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 14:07:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #software_development #static_analysis #application_security
════════════════════════
𐀪 Author: EW
════════════════════════
ⴵ Time: Mon, 03 Aug 2026 14:07:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #devsecops #software_development #static_analysis #application_security
Medium
Part II: Analytic Tools
Static vs. Dynamic Analysis: Two Essential Lenses for Secure Software
⤷ Title: Free models + open-source SAST + offensive Skills matched frontier CVE finds. Cost: about $0.
════════════════════════
𐀪 Author: MixBanana
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 11:19:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #open_source #static_analysis #application_security #artificial_intelligence
════════════════════════
𐀪 Author: MixBanana
════════════════════════
ⴵ Time: Tue, 04 Aug 2026 11:19:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #open_source #static_analysis #application_security #artificial_intelligence
Medium
Free models + open-source SAST + offensive Skills matched frontier CVE finds. Cost: about $0.
Subtitle: Everyone argued about Sol and Mythos. I wired tools and Skills into cheap models and got the same class of bugs on public code.
⤷ Title: We Built the Only Java Static Analyzer That Finds What Semgrep, CodeQL, and the We Built the Only…
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 16:17:56 GMT
════════════════════════
⌗ Tags: #java #cybersecurity #application_security #static_analysis #spring_boot
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Wed, 05 Aug 2026 16:17:56 GMT
════════════════════════
⌗ Tags: #java #cybersecurity #application_security #static_analysis #spring_boot
Medium
We Built the Only Java Static Analyzer That Finds What Semgrep, CodeQL, and the We Built the Only Java Static Analyzer That Finds…
The problem nobody talks aboutICLR 2025 IRIS Paper All Miss
⤷ Title: We Found Authorization Vulnerabilities in Two of GitHub’s Most-Starred Java Repositories — Semgrep…
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Thu, 13 Aug 2026 15:01:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #spring_boot #application_security #java #static_analysis
════════════════════════
𐀪 Author: Suman Lamichhane
════════════════════════
ⴵ Time: Thu, 13 Aug 2026 15:01:43 GMT
════════════════════════
⌗ Tags: #cybersecurity #spring_boot #application_security #java #static_analysis
Medium
We Found Authorization Vulnerabilities in Two of GitHub’s Most-Starred Java Repositories — Semgrep and CodeQL Both Missed Them
110,000 combined stars. Zero authorization findings from the industry-standard scanners. Here’s what a purpose-built tool found instead.