World Programming Society
Write Log in
Home Events Community

Channels

General Discussion Web Development Backend DevOps AI Career & Hiring TypeScript Rust Python Go Cloud AWS Azure GCP C/C++ FPGA Assembly

World Programming Society · 2026 Copyright

DevOps Backend

Reproducing a D-Link firmware CVE on an emulated FirmAE twin, packaged as a signed receipt you can re-verify in 5 min (with a PR:N→PR:L CVSS correction)

Reverse Engineering News Reverse Engineering News · Jul 28, 2026
0
Reproducing a D-Link firmware CVE on an emulated FirmAE twin, packaged as a signed receipt you can re-verify in 5 min (with a PR:N→PR:L CVSS correction)
Read the original source Next news
#Security
Reverse Engineering News

Publisher

Originally by /u/TheLuisBolivar


0 Comments

Log in to join the conversation.

No comments yet. Be the first to share your thoughts.

More in DevOps

The Hidden Cost of a Log Line : Sync/Async Flush and everything in Between

The Hidden Cost of a Log Line : Sync/Async Flush and everything in Between

Jul 29 · 13m read

Mes premiers pas avec Linux et Git : comment j'ai préparé ma réunion CloudHer

Mes premiers pas avec Linux et Git : comment j'ai préparé ma réunion CloudHer

Jul 29 · 4m read

Two ceilings: taking a Go DNS server from 500 to 9,500 QPS

Two ceilings: taking a Go DNS server from 500 to 9,500 QPS

Jul 29 · 7m read

NGINX, Actually Explained: Architecture, Config, and the Mental Model That Makes It Click

NGINX, Actually Explained: Architecture, Config, and the Mental Model That Makes It Click

Jul 29 · 9m read

A Green Architecture Test Can Still Miss the Bug

A Green Architecture Test Can Still Miss the Bug

Jul 29 · 5m read

# Designing for Graceful Degradation in Industrial AIoT Systems

# Designing for Graceful Degradation in Industrial AIoT Systems

Jul 29 · 3m read

Building a Production-Safe AI Remediation Firewall for Amazon EKS

Building a Production-Safe AI Remediation Firewall for Amazon EKS

Jul 29 · 13m read

Neutralizing the Shield: The Escalation of BYOVD Attacks in Kernel-Level Evasion

Neutralizing the Shield: The Escalation of BYOVD Attacks in Kernel-Level Evasion

Jul 29 · 5m read

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

Two Compromised joyfill npm Packages Run RAT When Imported Into Node.js

Jul 29 · 4m read

Why I Built E2BGateway: Solving AI Agent Sandbox Vendor Lock-in

Why I Built E2BGateway: Solving AI Agent Sandbox Vendor Lock-in

Jul 29 · 7m read

The Era of Probabilistic Defense Is Over

The Era of Probabilistic Defense Is Over

Jul 29 · 7m read

Spanergy: Energy-aware Distributed Tracing for Microservices

Spanergy: Energy-aware Distributed Tracing for Microservices

Jul 29 · 2m read

SkillGate: Cost Efficient Runtime Malicious Skill File Detection in Coding Agents

SkillGate: Cost Efficient Runtime Malicious Skill File Detection in Coding Agents

Jul 29 · 2m read

QCOEM: Quantum Cloud Orchestration with Evolutionary Multi-Objective Optimization

QCOEM: Quantum Cloud Orchestration with Evolutionary Multi-Objective Optimization

Jul 29 · 1m read

WASP: A Configurable Framework for Portable Stateful Serverless Applications

WASP: A Configurable Framework for Portable Stateful Serverless Applications

Jul 29 · 1m read

Toward Standardized Cross-Vendor Agent Tool Trust Management in Autonomous Networks

Toward Standardized Cross-Vendor Agent Tool Trust Management in Autonomous Networks

Jul 29 · 1m read

A Structuration Approach to Theorizing Cybersecurity Practice: The STARC Model

A Structuration Approach to Theorizing Cybersecurity Practice: The STARC Model

Jul 29 · 2m read

MOSAIC-FL, a micro-service based privacy-preserving framework with application to genomics

MOSAIC-FL, a micro-service based privacy-preserving framework with application to genomics

Jul 29 · 1m read

ZIMPAF & RedPhuzz: High-fidelity Web Application Fuzzing via Branch, Language Construct, and Function Call Monitoring

ZIMPAF & RedPhuzz: High-fidelity Web Application Fuzzing via Branch, Language Construct, and Function Call Monitoring

Jul 29 · 2m read

Trusting-Trust Attack against an Entire Linux Distribution through Binary Manipulation

Trusting-Trust Attack against an Entire Linux Distribution through Binary Manipulation

Jul 29 · 1m read

VPR-Evolve: Multi-Agent-Driven Algorithm Evolution for FPGA Place and Route

VPR-Evolve: Multi-Agent-Driven Algorithm Evolution for FPGA Place and Route

Jul 29 · 2m read

Your OpenAPI Spec Is Decoration Until CI Enforces It

Your OpenAPI Spec Is Decoration Until CI Enforces It

Jul 29 · 5m read

Agent Reach installs the tools, then gets out of the way

Agent Reach installs the tools, then gets out of the way

Jul 29 · 10m read

How to safely run AI-generated code — a practical sandboxing checklist

How to safely run AI-generated code — a practical sandboxing checklist

Jul 29 · 3m read

ViciDial "Campaign Has No Dialable Leads" — List & Hopper Troubleshooting

ViciDial "Campaign Has No Dialable Leads" — List & Hopper Troubleshooting

Jul 29 · 17m read

The Hidden Cost of Manual Application Onboarding on Google Cloud

The Hidden Cost of Manual Application Onboarding on Google Cloud

Jul 29 · 2m read

Subscription-per-environment was never the real question

Subscription-per-environment was never the real question

Jul 29 · 5m read

Waking a dead service worker with Web Push, from a Cloudflare Worker

Waking a dead service worker with Web Push, from a Cloudflare Worker

Jul 29 · 7m read

BloodHound for AI Agents Means We've Officially Given Up Pretending This Is Simple

BloodHound for AI Agents Means We've Officially Given Up Pretending This Is Simple

Jul 29 · 4m read

I learnt Docker so you don't have to

I learnt Docker so you don't have to

Jul 29 · 5m read

The Governed Execution Gateway: Securing MCP Servers and Tool Egress Proxies

The Governed Execution Gateway: Securing MCP Servers and Tool Egress Proxies

Jul 29 · 3m read

8 Developer Tool Comparisons You Should Actually Read Before You Commit (2026)

8 Developer Tool Comparisons You Should Actually Read Before You Commit (2026)

Jul 29 · 4m read

I Built a Security Tool That Proves Its Own Exploits — Then Got a Better Threat Model in the Comments

I Built a Security Tool That Proves Its Own Exploits — Then Got a Better Threat Model in the Comments

Jul 29 · 4m read

Subaru Wins CNCF End User Case Study Contest for Accelerating AI Development with Cloud Native Infrastructure

Subaru Wins CNCF End User Case Study Contest for Accelerating AI Development with Cloud Native Infrastructure

Jul 29 · 4m read

CNCF and SlashData Report Finds Japan’s Cloud Native Community Reaches Nearly 1 Million Developers

CNCF and SlashData Report Finds Japan’s Cloud Native Community Reaches Nearly 1 Million Developers

Jul 29 · 4m read

Your RAG Index Might Be Lying to You: Data Freshness Is the Missing Signal for AI Systems

Your RAG Index Might Be Lying to You: Data Freshness Is the Missing Signal for AI Systems

Jul 29 · 6m read

Docker returns to its coding-agent series with an argument shaped like a CI problem: no layer between the agent and the host

Docker returns to its coding-agent series with an argument shaped like a CI problem: no layer between the agent and the host

Jul 29 · 5m read

Welcome CoHDI to the CNCF: Evolving Kubernetes into composable disaggregated infrastructures

Welcome CoHDI to the CNCF: Evolving Kubernetes into composable disaggregated infrastructures

Jul 29 · 3m read

Lima v2.2: Windows guests and TPM 2.0 emulation

Lima v2.2: Windows guests and TPM 2.0 emulation

Jul 29 · 4m read

Operable Over Sophisticated: What Shipping AI Agents at Scale Actually Looks Like

Operable Over Sophisticated: What Shipping AI Agents at Scale Actually Looks Like

Jul 28 · 11m read

Why Replit's AI Agent Deleted a Production Database

Why Replit's AI Agent Deleted a Production Database

Jul 28 · 5m read

How Japan’s 250% Training Surge is Shaping Global AI Talent

How Japan’s 250% Training Surge is Shaping Global AI Talent

Jul 28 · 3m read

The Silent Outage: Monitoring What You Can't See

The Silent Outage: Monitoring What You Can't See

Jul 28 · 2m read

Kubeflow unveils new cloud native innovations to supercharge AI

Kubeflow unveils new cloud native innovations to supercharge AI

Jul 28 · 6m read

Two exploits, one public API key: the day I attacked my own Supabase app

Two exploits, one public API key: the day I attacked my own Supabase app

Jul 28 · 6m read

Build a Basic AI Agent From Scratch: Security III

Build a Basic AI Agent From Scratch: Security III

Jul 28 · 32m read

CDK update - June 2026

CDK update - June 2026

Jul 28 · 7m read

AgentENV: Distributed Runtime for AI Agents at Scale (Open Source, Rust)

AgentENV: Distributed Runtime for AI Agents at Scale (Open Source, Rust)

Jul 28 · 1m read

I Made REGENT: An MCP Server for Configuring OpenWrt Routers Through an AI

I Made REGENT: An MCP Server for Configuring OpenWrt Routers Through an AI

Jul 28 · 4m read

Build a Spinning Mechanical TV with a Raspberry Pi Pico

Build a Spinning Mechanical TV with a Raspberry Pi Pico

Jul 28 · 3m read

D

Quoting Akshat Bubna

Jul 28 · 1m read

Nobody Hands You Day One: Stepping In as CTO on a Live Product Across Three Runtimes

Nobody Hands You Day One: Stepping In as CTO on a Live Product Across Three Runtimes

Jul 28 · 8m read

We now have a better understanding how OpenAI hacked into Hugging Face

We now have a better understanding how OpenAI hacked into Hugging Face

Jul 28 · 1m read

Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident

Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident

Jul 28 · 3m read

Databricks Workflows vs Airflow vs Dagster: Picking an Orchestrator

Databricks Workflows vs Airflow vs Dagster: Picking an Orchestrator

Jul 28 · 6m read

Run and Compare AI Evaluations with a CLI for Developers and Coding Agents

Run and Compare AI Evaluations with a CLI for Developers and Coding Agents

Jul 28 · 10m read

Meet FLASH CLI, a Free Local AI Agent for Your Terminal

Meet FLASH CLI, a Free Local AI Agent for Your Terminal

Jul 28 · 3m read

We Open-Sourced Both Halves of Our Security Stack — Detection and Deliberation

We Open-Sourced Both Halves of Our Security Stack — Detection and Deliberation

Jul 28 · 4m read

Codex Security

Codex Security

Jul 28 · 1m read

Optimizing an 18 TB Azure SQL Hyperscale Database — Part 1: Context & Principles

Optimizing an 18 TB Azure SQL Hyperscale Database — Part 1: Context & Principles

Jul 28 · 7m read

I built a CLI to stop myself from committing API keys (and broken .env files)

I built a CLI to stop myself from committing API keys (and broken .env files)

Jul 28 · 5m read

Local Kubernetes Dev — Part 3: Tooling overview — who does what

Local Kubernetes Dev — Part 3: Tooling overview — who does what

Jul 28 · 2m read

The People Who Know Shell Scripting Are Quietly Running Everything

The People Who Know Shell Scripting Are Quietly Running Everything

Jul 28 · 9m read

24,650 Exposed BMCs Hand Out IPMI Password Hashes to Anyone Who Asks

24,650 Exposed BMCs Hand Out IPMI Password Hashes to Anyone Who Asks

Jul 28 · 7m read

BoltOS: The new era of challenging hobby OS development. (FULL DOOM PORT AND DRIVERS!)

BoltOS: The new era of challenging hobby OS development. (FULL DOOM PORT AND DRIVERS!)

Jul 28 · 2m read

How I Let a Cloud AI Operate My Home Without Handing Over My Home

How I Let a Cloud AI Operate My Home Without Handing Over My Home

Jul 28 · 4m read

Build a 5-Minute Morning Security Brief: CISA KEV + Microsoft MSRC to a Compliance-Drift Report in Node.js

Build a 5-Minute Morning Security Brief: CISA KEV + Microsoft MSRC to a Compliance-Drift Report in Node.js

Jul 28 · 12m read

The Cipher Behind QSYRUPWD: Reconstructing IBM i Password Hashes

The Cipher Behind QSYRUPWD: Reconstructing IBM i Password Hashes

Jul 28 · 50m read

GitHub Introduces Default "Cooldown" Policy for Dependabot Version Updates

GitHub Introduces Default "Cooldown" Policy for Dependabot Version Updates

Jul 28 · 3m read

Foreman 101: agentic coding as Kubernetes resources

Foreman 101: agentic coding as Kubernetes resources

Jul 28 · 12m read

Are AI agents going to kill dashboards?

Let me know what you think.

Are AI agents going to kill dashboards? Let me know what you think.

Jul 28 · 1m read

How We Cut Our Homepage TTFB from 800ms to Under 200ms (and Refreshed the Hero While We Were At It)

How We Cut Our Homepage TTFB from 800ms to Under 200ms (and Refreshed the Hero While We Were At It)

Jul 28 · 7m read

A ledger that only bills the dead

A ledger that only bills the dead

Jul 28 · 14m read

Google Play Requires Android 16 (API Level 36) by August 31, 2026 — React Native Migration Guide

Google Play Requires Android 16 (API Level 36) by August 31, 2026 — React Native Migration Guide

Jul 28 · 7m read

VS Code & Codespaces iPadOS

VS Code & Codespaces iPadOS

Jul 28 · 3m read

One Repo Became Three — Quietly, Then Publicl

One Repo Became Three — Quietly, Then Publicl

Jul 28 · 5m read

I stopped writing rules for coding agents that CI could not enforce

I stopped writing rules for coding agents that CI could not enforce

Jul 28 · 6m read

Bastillion 5.1: single-JAR SSH gateway now audits and replays every session

Bastillion 5.1: single-JAR SSH gateway now audits and replays every session

Jul 28 · 9m read

Leaving Heroku in 2026: Where Your App Actually Belongs

Leaving Heroku in 2026: Where Your App Actually Belongs

Jul 28 · 9m read

How I caught a hardcoded API key that a Senior Expert missed (using Multi-LLM Consensus)

How I caught a hardcoded API key that a Senior Expert missed (using Multi-LLM Consensus)

Jul 28 · 2m read

What is an AI sandbox? A developer's guide

What is an AI sandbox? A developer's guide

Jul 28 · 8m read

CNCF Announces Schedule for Debut Observability Summit Europe

CNCF Announces Schedule for Debut Observability Summit Europe

Jul 28 · 4m read

Best Buy scales AI workloads and secures access with Workforce Identity Federation

Best Buy scales AI workloads and secures access with Workforce Identity Federation

Jul 28 · 5m read

Disrupting supply chain attacks on npm and GitHub Actions

Disrupting supply chain attacks on npm and GitHub Actions

Jul 28 · 8m read

Replicating GitLab's Centralized CI/CD Pipeline in GitHub Using a Central Repository to Avoid Duplication

Replicating GitLab's Centralized CI/CD Pipeline in GitHub Using a Central Repository to Avoid Duplication

Jul 28 · 19m read

How Databricks manages its own coding agent spend with Unity AI Gateway Budgets

How Databricks manages its own coding agent spend with Unity AI Gateway Budgets

Jul 28 · 10m read

Container-Native AI: Mastering GPU Passthrough, Memory Limits, and Auto-Scaling for Your Agent Infrastructure

Container-Native AI: Mastering GPU Passthrough, Memory Limits, and Auto-Scaling for Your Agent Infrastructure

Jul 28 · 6m read

Ego says 2.5x faster; the catch is your Mac

Ego says 2.5x faster; the catch is your Mac

Jul 28 · 10m read

Find any commit in seconds: Commit Search comes to Azure DevOps

Find any commit in seconds: Commit Search comes to Azure DevOps

Jul 28 · 2m read

Telemetry-driven development: How to gain confidence in your coding agents' behavior with gcx and Grafana MCP

Telemetry-driven development: How to gain confidence in your coding agents' behavior with gcx and Grafana MCP

Jul 28 · 11m read

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

Jul 28 · 4m read

Mate Security bets a context-first AI architecture can reinvent the SOC as it lands $35M Series A

Mate Security bets a context-first AI architecture can reinvent the SOC as it lands $35M Series A

Jul 28 · 5m read

Debug Your PHP App From Your Phone, Through Your AI Assistant

Debug Your PHP App From Your Phone, Through Your AI Assistant

Jul 28 · 7m read

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

Jul 28 · 5m read

We Build a Kubernetes Dashboard. AI Agents Might Make It Obsolete.

We Build a Kubernetes Dashboard. AI Agents Might Make It Obsolete.

Jul 28 · 10m read

My 06:30 cron has never once started at 06:30

My 06:30 cron has never once started at 06:30

Jul 28 · 4m read

🔐 Linux Permissions Every DevOps Engineer Should Know

🔐 Linux Permissions Every DevOps Engineer Should Know

Jul 28 · 8m read

Arista VeloCloud Orchestrator CVE-2026-16812: CVSS 10.0 Command Injection Under Active Attack

Arista VeloCloud Orchestrator CVE-2026-16812: CVSS 10.0 Command Injection Under Active Attack

Jul 28 · 5m read

Microsoft MDASH Shows How Multi-Agent Security Systems Can Improve Vulnerability Discovery

Microsoft MDASH Shows How Multi-Agent Security Systems Can Improve Vulnerability Discovery

Jul 28 · 5m read

Your cron job fires on the wrong day

Your cron job fires on the wrong day

Jul 28 · 6m read

Loading more…