Partial bypass of the login rate limiting in the AWS Consolesecuritylabs.datadoghq.com 2christophetd3ydiscuss
Investigating a backdoored PyPI package targeting FastAPI applicationssecuritylabs.datadoghq.com 12christophetd3ydiscuss
Identify malicious PyPI packages using static analysis and metadata heuristicsgithub.com/DataDog 2christophetd3ydiscuss
Demystifying the OpenSSL punycode vulnerability and exploitation walk-throughsecuritylabs.datadoghq.com 3christophetd3ydiscuss
"Stratus Red Team", an open-source adversary emulation tool for the cloudgithub.com/DataDog 2christophetd4ydiscuss
Using Twitter to notify careless developers – the unorthodox wayincognitatech.medium.com 5christophetd4y2 comments
Cloud Security Breaches and Vulnerabilities: 2021 in Reviewblog.christophetd.fr 8christophetd4ydiscuss
GitHub taking down tools allowing defenders to reproduce the Log4j vulnerabilitytwitter.com 212christophetd4y94 comments
Phishing for AWS credentials via AWS SSO device code authenticationblog.christophetd.fr 3christophetd5ydiscuss
NSEInfo: a tool to easily search through the 500+ nmap's NSE scriptsgithub.com/christophetd 2christophetd9ydiscuss
Exploiting the code execution engine powering InterviewCake, CodeWars and othersblog.christophetd.fr 3christophetd9ydiscuss