Tagged articles

security risk

5 articles · Page 1 of 1
Black & White Path
Black & White Path
Jun 3, 2026 · Information Security

Why URLs Like /api/;/user/info Still Work: Server Parsing and RFC Rules

The article explains that URLs containing a semicolon, such as /api/;/user/info, are still reachable because web servers follow legacy URL‑path‑parameter parsing defined in older RFCs, treat empty parameters as harmless, and normalize the path before routing, which also introduces security considerations.

RFC 2396RoutingURL parsing
0 likes · 5 min read
Why URLs Like /api/;/user/info Still Work: Server Parsing and RFC Rules
Machine Learning Algorithms & Natural Language Processing
Machine Learning Algorithms & Natural Language Processing
Mar 28, 2026 · Artificial Intelligence

Anthropic’s ‘Mythos’ Model Leaked: Claims to Outperform Claude Opus 4.6 Across the Board

A misconfigured CMS exposed internal documents that reveal Anthropic’s new Claude Mythos (codenamed Capybara), a top‑tier model said to surpass Opus 4.6 in coding, reasoning and security tests, while also posing unprecedented network‑attack risks that have kept the company from releasing it.

AI modelAnthropicClaude Mythos
0 likes · 6 min read
Anthropic’s ‘Mythos’ Model Leaked: Claims to Outperform Claude Opus 4.6 Across the Board
21CTO
21CTO
Jun 20, 2025 · Artificial Intelligence

AI Is Writing Code at Scale—Who’s Checking It?

Recent surveys reveal that over half of code in many organizations is now generated by AI, often deployed without review, raising significant supply‑chain security risks; developers express concern that AI amplifies malicious software threats, while current trust models and tooling lag behind the rapid adoption.

AI Code GenerationAI EthicsArtifact Management
0 likes · 5 min read
AI Is Writing Code at Scale—Who’s Checking It?
vivo Internet Technology
vivo Internet Technology
Sep 28, 2022 · Information Security

Attack Surface Management: CAASM and EASM Overview and Practical Implementation

The article explains how emerging CAASM and EASM technologies together enable enterprises to systematically inventory assets, visualize relationships, assess vulnerabilities, and close remediation loops, offering practical guidance for building a continuous, data‑driven attack surface management program that strengthens overall security posture.

Asset ManagementCAASMEASM
0 likes · 18 min read
Attack Surface Management: CAASM and EASM Overview and Practical Implementation