
AI-Security-Newsletter
AI Security Newsletter - A monthly digest of AI security research, insights, reports, upcoming events, and tools & resources

AI Security Newsletter - A monthly digest of AI security research, insights, reports, upcoming events, and tools & resources

EU AI Act Compliance Tool - Risk classification and bias testing

Presentation materials for my Black Hat USA 2022 Briefing and Arsenal talks

Information for CVE-2024-3094

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Demos for Black Hat Europe 2025's The Forensic Trail On GitHub: Hunting For Supply Chain Activity

Public testing data. Samples of log4j library versions to help log4j scanners / detectors improve their accuracy for detecting CVE-2021-45046 and…

History of commits related to the xz backdoor Discovered On March 29, 2024: CVE-2024-3094.

793 confusable pairs missing from Unicode TR39, world-first cross-script dataset, font-aware SSIM scoring across 230 fonts and 22,000+ characters

Hello,


Using code search to help fix/mitigate log4j CVE-2021-44228

Detection rules for the Claude Code source leak : 16 Sigma rules, Splunk, Elastic, YARA. Lab-validated on GOAD Light DC02.

CVE-2026-54520 / GHSA-cm8g-8jfq-887p: ai-agent-automation workflow path traversal advisory landing page

IOC scanner for agentic AI coding tools — detects Mini Shai-Hulud, Gemini CLI RCE, Cursor CVE-2026-26268, and DPRK PromptMink.


Log4J CVE-2021-44228 : Mitigation Cheat Sheet