BLACK WEEK DEAL 50% off all yearly plans. 🔥 See what we offer →

Everything you care about in one place

Follow feeds: blogs, news, RSS and more. An effortless way to read and digest content of your choice.

Get Feeder

blog.trailofbits.com

Trail of Bits Blog

Get the latest updates from Trail of Bits Blog directly as they happen.

Follow now 663 followers

Latest posts

Last updated 7 days ago

We found cryptography bugs in the elliptic library using Wycheproof

7 days ago

Trail of Bits is publicly disclosing two vulnerabilities in elliptic, a widely...

Level up your Solidity LLM tooling with Slither-MCP

10 days ago

We’re releasing Slither-MCP, a new tool that augments LLMs with Slither’s unmatched...

How we avoided side-channels in our new post-quantum Go cryptography libraries

11 days ago

The Trail of Bits cryptography team is releasing our open-source pure Go...

Building checksec without boundaries with Checksec Anywhere

12 days ago

Since its original release in 2009, checksec has become widely used in...

Balancer hack analysis and guidance for the DeFi ecosystem

17 days ago

TL;DR The root cause of the hack was a rounding direction issue...

The cryptography behind electronic passports

25 days ago

Did you know that most modern passports are actually embedded devices containing...

Vulnerabilities in LUKS2 disk encryption for confidential VMs

26 days ago

Trail of Bits is disclosing vulnerabilities in eight different confidential computing systems...

Prompt injection to RCE in AI agents

about 1 month ago

We bypassed human approval protections for system command execution in AI agents...

Taming 2,500 compiler warnings with CodeQL, an OpenVPN2 case study

2 months ago

We created a CodeQL query that reduced 2,500+ compiler warnings about implicit...

Supply chain attacks are exploiting our assumptions

2 months ago

Supply chain attacks exploit fundamental trust assumptions in modern software development, from...

Use mutation testing to find the bugs your tests don't catch

2 months ago

Mutation testing reveals blind spots in test suites by systematically introducing bugs...

Fickling’s new AI/ML pickle file scanner

2 months ago

We’ve added a pickle file scanner to Fickling that uses an allowlist...