Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

blog.trailofbits.com

Trail of Bits Blog

Get the latest updates from Trail of Bits Blog directly as they happen.

Follow now 604 followers

Latest posts

Last updated 10 days ago

Auditing Gradio 5, Hugging Face’s ML GUI framework

10 days ago

This is a joint post with the Hugging Face Gradio team; read...

Securing the software supply chain with the SLSA framework

19 days ago

By Cliff Smith Software supply chain security has been a hot topic...

Notes on AWS Nitro Enclaves: Attack surface

26 days ago

By Paweł Płatek In the race to secure cloud applications, AWS Nitro...

Announcing the Trail of Bits and Semgrep partnership

about 1 month ago

At Trail of Bits, we aim to share and develop tools and...

Inside DEF CON: Michael Brown on how AI/ML is revolutionizing cybersecurity

about 1 month ago

At DEF CON, Michael Brown, Principal Security Engineer at Trail of Bits...

Friends don’t let friends reuse nonces

about 1 month ago

By Joe Doyle If you’ve encountered cryptography software, you’ve probably heard the...

Sanitize your C++ containers: ASan annotations step-by-step

about 1 month ago

By Dominik Klemba and Dominik Czarnota AddressSanitizer (ASan) is a compiler plugin...

“Unstripping” binaries: Restoring debugging information in GDB with Pwndbg

about 1 month ago

By Jason An GDB loses significant functionality when debugging binaries that lack...

What would you do with that old GPU?

about 2 months ago

By Artem Dinaburg and Peter Goodman (Would you get up and throw...

Provisioning cloud infrastructure the wrong way, but faster

about 2 months ago

By Artem Dinaburg Today we’re going to provision some cloud infrastructure the...

“YOLO” is not a valid hash construction

2 months ago

By Opal Wright Among the cryptographic missteps we see at Trail of...

We wrote the code, and the code won

2 months ago

By Tjaden Hess Earlier this week, NIST officially announced three standards specifying...