Lobster Roll

All LHN/.

Security / Privacy

RSS
Official specification and reference code for Fast Lightweight Online Encryption (FLOE) (github.com)
Tesla Begins Production of Cybercab (barrons.com)
Show HN: VerdictMail – IMAP daemon that uses LLM reasoning to catch phishing (github.com)
I built VerdictMail as a homelab project to explore whether combining classical email authentication signals with LLM reasoning produces better threat classification than either approach alone.<p>It runs as a daemon on Ubuntu, monitors a Gmail inbox via IMAP IDLE, and processes every incoming mes...
Ask HN: Reliable security best practices for Clawbot and Claude Code
What are some security best practices for using AI tools that have so much access to data on your computer or inside your network, if you use a separate computer?
Freenet/Hyphanet 0.7.5 build 1506: fix vulnerability, optimize routing, plugins (hyphanet.org)
Personal Side Project: Open-Sourcing My VPS Security Toolkit (github.com)
Pentagi: Autonomous AI Agents for complex penetration testing tasks (github.com)
Documentary about Mozilla Firefox at pwn2own (part 1) (youtube.com)
Bootstrapping Is Not Security Paranoia (alganet.github.io)
CVE-2025-67736 FreePBX Authenticated SQL Injection Leads to RCE (theyhack.me)
'Starkiller Phishing Service Proxies Real Login Pages, MFA (krebsonsecurity.com)
Istota – A cybernetic emissary that lives in your Nextcloud (istota.xyz)
US DHS to suspend TSA PreCheck and Global Entry airport security programs (theguardian.com)
ExitBox: Run AI agents in complete isolation with defense-in-depth security (github.com)
Increase in Malware Enabled ATM Jackpotting Incidents Across United States [pdf] (ic3.gov)
Privacy first image converted / copressor (twitter.com)
Behavioral NPM malware detection without CVEs (westbayberry.com)
Show HN: Tlsctl – A CLI for inspecting and troubleshooting TLS (github.com)
Hi,<p>I built tlsctl, a small CLI for inspecting, testing, and debugging TLS connections:<p><a href="https:&#x2F;&#x2F;github.com&#x2F;catay&#x2F;tlsctl" rel="nofollow">https:&#x2F;&#x2F;github.com&#x2F;catay&#x2F;tlsctl</a><p>It aims to make TLS diagnostics more readable and structured than stitchi...
Show HN: Kwerty – A cyberpunk typing arena with combos and survival mode (kwerty.site)
We hid backdoors in ~40MB binaries and asked AI + Ghidra to find them (quesma.com)
I fell for a phishing attack and lost access to my X account (christianheilmann.com)
In 92% of DeFi exploits AI security review flags underlying problem (coindesk.com)
Show HN: CanaryAI v0.2.5 – Security monitoring on Claude Code actions (github.com)
I&#x27;ve been using Claude Code a lot recently and wanted visibility into security-relevant executions — the kind of thing you may not necessarily catch while the agent is running.<p>CanaryAI is a macOS menu bar app that monitors Claude Code session logs and alerts on suspicious behaviour: reverse ...
Can I get a version of Windows that hasn't been infiltrated by Co-Pilot malware? (learn.microsoft.com)
Portable GELI block device encryption for Linux (2021) (bijanebrahimi.github.io)
UTS #39: Unicode Security Mechanisms (unicode.org)
Addressing Common Misconceptions about .NET in the InfoSec World (blog.washi.dev)
Show HN: Clawscan – Open-source security scanner for OpenClaw AI agents (github.com)
DHS suspends TSA PreCheck and Global Entry airport security programs (apnews.com)
Hackers expose vulnerabilities in Discord's age verification system (ibtimes.com)