Wiring Frontier Models Into OpenWebUI With Curapi
curapi wraps the Cursor CLI into an OpenAI-compatible API so OpenWebUI can run Claude, GPT, Gemini, and other frontier models on one Cursor subscription.
Read morePersonal Computer Security Blog.
curapi wraps the Cursor CLI into an OpenAI-compatible API so OpenWebUI can run Claude, GPT, Gemini, and other frontier models on one Cursor subscription.
Read moreClaude Code found CVE-2026-8795 in Velociraptor in under an hour: YAML injection in Windows.Collectors.Remapping, a working PoC, and notes for researchers and IR.
Read moreWalkthrough of CVE-2025-59287, a SoapFormatter RCE in WSUS, including validation, fake PoCs, detection, and honeypot evidence of in-the-wild exploitation.
Read morePrompt injection as the top LLM vulnerability: OWASP guidance, hands-on challenges, and HackMeGPT, an open-source app for practicing bypasses.
Read moreAn Infrastructure-as-Code lab that builds an insecure Active Directory environment for teaching Kerberoasting, DCSync, and related attacks.
Read moreBuilding a penetration-testing UAV to deliver Wi-Fi, Bluetooth, and network attacks when physical access to a building is limited.
Read moreTunnel-Manager automates remote port-forward tunnels for Cobalt Strike across AWS nodes, including NATed on-prem servers.
Read moreMiner automates hunting local privilege-escalation bugs in Windows applications and led to more than 40 LPEs and 12 CVEs.
Read moreWalkthrough of detecting, analyzing, and recovering from the hidden ransomware inject used in IRSeC 2021.
Read moreDeploy cheap internal honeypots that alert on Slack when something unauthorized appears on the network.
Read morePart 3: run common exploits against a homelab, find detection gaps, and close them with Suricata, YARA, and Sigma rules.
Read morePart 2: install and wire Kolide Fleet, osquery, Wazuh, and rsyslog on Windows and Linux for a purple-team homelab.
Read morePart 1: build a virtual purple-team lab with SIEM and EDR so you can practice red teaming, threat hunting, and IR.
Read moreHow far Sysmon configurations go toward detecting process injection, and where SwiftOnSecurity-style schemas still miss.
Read moreRead more
6-Eyed-Spider is a post-exploitation C2 that controls browsers instead of the whole operating system.
Read moreIntegrating F-Secure C3 with Cobalt Strike ExternalC2 and looking at the channel from a detection perspective.
Read moreAn Ansible playbook that rebuilds a consistent Kali golden image for our pentest VMs, with the tools the team actually uses.
Read moreEgg hunting in Windows exploit development: locating a payload in memory when space is tight.
Read moreUnicode and Venetian shellcode techniques for Windows exploit development.
Read moreFinding bugs with network-protocol fuzzing using Boofuzz.
Read moreUsing imported functions such as WinExec when building a Windows exploit payload.
Read moreManually encoding bytes and carving shellcode for Windows exploit development.
Read morePractical DHCP starvation and spoofing on Cisco switches, and how DHCP snooping stops them.
Read more