Blog

cybersecurityNodejssupply-chainmalware

Shai-Hulud 2.0 Awakens: NPM Worm Escalates from September's 18-Package Chaos

Shai-Hulud 2.0 strikes November 24—backdooring 1000+ packages across Zapier, ENS Domains, AsyncAPI with Bun evasion, secret theft, and GitHub C2.

ProgrammingAlgorithmsLeetCode

Solving LeetCode's "Maximize Partitions After Operations"

A journey from compilation errors to time limits to AC: how I optimized a LeetCode hard problem through iterative refinement, from naive O(n²) to memoized DP.

Evading EDRRed TeamingHacking

EDR-Freeze - A Tool That Puts EDRs And Antivirus Into A Coma State

a tool that exploits the software vulnerability of WerFaultSecure to suspend the processes of EDRs and antimalware without needing to use the BYOVD (Bring Your Own Vulnerable Driver) attack method. EDR-Freeze operates in user mode, so you don't need to install any additional drivers.

HackingNodejsSupply-Chain

18 npm Packages Compromised in Major Supply-Chain Attack

18 npm Packages Compromised in Major Supply-Chain Attack. packages which collectively have over 2 billion weekly downloads

ProgrammingRust-Lang

What does Rust's “unsafe” mean?

A concise, practical explanation of Rust's `unsafe` keyword: what it allows, why it's needed, common pitfalls, and examples (Vec, malloc) showing how to reason about safety.

tech-newsArch LinuxDDoS

Arch Linux Under Fire - DDoS Attack Enters Second Week

The Arch Linux Project is currently experiencing an ongoing denial of service attack that primarily impacts their main webpage, the Arch User Repository (AUR), and the Forums.