Scientists of the Nautilus research ship capture a Big Fin Squid on camera, at 5454m (17’800 ft) depth. This was their live reaction: 🔊 #AGoodPlace
kingthorin_rm
@kingthorin.bsky.social
IT Sec guy, zaproxy co-lead, WSTG co-lead, VWAD co-lead, OWASP Ottawa volunteer, Hac≺3r, supporter of oxford commas, #INTJ. (Opinions == mine) 🍁
Why are we our own worst enemies. Why can’t our self talk always be nice things or things we wanna hear. Gawd damn my brain is busy today 😔 #MentalMealthMatters #MensMentalHealth
Kimi K3 can now be run locally! ✨ The 1-bit model retains ~78.9% accuracy after we shrunk it from 1.56TB to 594GB (-62% size). Run on a Mac Studio + 128GB RAM device. Kimi K3 is the strongest open model to date. Guide: unsloth.ai/docs/models/... GGUF: huggingface.co/unsloth/Kimi...
Wow German break through in #QuantumComputing #geek www.hpcwire.com/off-the-wire...
SAXON Q Brings Room-Temperature Diamond Quantum Computing to Commercial Market - HPCwire
LEIPZIG, Germany, July 21, 2026 — SAXON Q, a pioneer in diamond-based nitrogen-vacancy (NV) quantum computing, today announced the commercial availability of the 128-qubit SXQ128 and 512-qubit SXQ512 ...
hpcwire.com
OWASP Cornucopia just released v3.3.1 github.com/OWASP/cornuc... A Special thanks to Mayur Agnihotri for adding AISVS v1 “High-Impact Action Approval and Irreversibility Controls” and to Adarsh Kumar for continuing pushing out bug fixes. You both rock! #appsec #security #aisvs #owasp #ai #agentic
Release Release v3.3.1 · OWASP/cornucopia
What's Changed build(deps-dev): bump svelte-check from 4.7.2 to 4.7.3 in /cornucopia.owasp.org by @dependabot[bot] in #3232 build(deps): bump filelock from 3.29.7 to 3.30.0 by @dependabot[bot] in ...
github.com
OWASP Dependency-Track 5.0 is GA, built for enterprise scale: early adopters ingested 20K+ SBOMs/hour with single instances holding 250K+ projects and 2M+ components. Now with horizontal scaling, fault tolerance, and supply chain integrity checks. dependencytrack.org/ #OWASP #SBOM #AppSec
Rust 1.97 has been released, introducing a new symbol mangling scheme enabled by default, improved Cargo warning controls, linker output no longer hidden by default, several stabilized APIs, and other enhancements. alternativeto.net/news/2026/7...
Google introduced Nano Banana 2 Lite, its newest image model for faster, cheaper image generation, and launched Gemini Omni Flash, a new generative video model in public preview for developers and users alternativeto.net/news/2026/7...
Missed out on #OWASP swag in Vienna? No worries, CyberSecGames has you covered! 🎉 The new OWASP Online Swag Store is LIVE! 🛍️ Get your favorite OWASP gear delivered straight to your door, and stay tuned for even more products coming soon! 👀 cybersecgames.com/pa... #OWASPSwag #CyberSecGames
#FullDisclosure from the ZAP team
An Insecure Java Deserialization vulnerability has been reported in a ZAP add-on via Neo by ProjectDiscovery. Update your ZAP add-ons now, and definitely update from older versions of ZAP. For more details see: www.zaproxy.org/blog/2026-06...
The internet is getting weirder...so we're getting better. This year we added a free built-in VPN, AI features you can enable or block, split view, and more privacy tools. And we’re not done yet. Coming soon: a cleaner, more modern Firefox with new ways to make it your own. mzl.la/fxwhatsnext
See what's next for Firefox
See and shape what’s next for Firefox.
mzl.la
OWASP Dependency-Track 5.0 is GA, built for enterprise scale: early adopters ingested 20K+ SBOMs/hour with single instances holding 250K+ projects and 2M+ components. Now with horizontal scaling, fault tolerance, and supply chain integrity checks. dependencytrack.org/ #OWASP #SBOM #AppSec
ZAP now has a dedicated PTK active scan rule, so you can run the PTK rules in the ZAP active scanner. Check out the dramatic improvement in the scores vs Google Firing Range! www.zaproxy.org/blog/2026-06... #zaproxy #owaspptk #appsec
Automating OWASP PTK with ZAP (Phase 2)
ZAP now has a dedicated PTK active scan rule, so you can run the PTK rules in the ZAP active scanner. And there are still more changes planned, but the results against Firing Range have been dramatic!
zaproxy.org
1/2 Canada just did something big: put openness at the heart of its national AI strategy. Canada is choosing a future where AI is something citizens can govern, own and benefit from. 2/2 We’re proud to be partnering with organizations like @Mila_Quebec to help make that vision real.
Google launches the new open-source Gemma 4 12B, a 12 billion parameter multimodal AI model designed to run locally on standard laptops with 16 GB of RAM. It handles text, images, and audio more efficiently with native multimodal processing alternativeto.net/news/2026/6...
In May ZAP learned to scan MCP servers as a first-class target, OWASP PTK automation reached Phase 1, and the Params extension moved out of the core into its own add-on. www.zaproxy.org/blog/2026-06... #zaproxy #appsec
ZAP Updates - May 2026
In May ZAP learned to scan MCP servers as a first-class target, OWASP PTK automation reached Phase 1, and the Params extension moved out of the core into its own add-on.
zaproxy.org
Building better social media also means making it more accessible. We’re working with people in our community who use assistive technologies to help improve the Gander experience and make it more usable for all. Interested in participating? gandersocial.ca/blog... #NationalAccessibilityWeek
During the first 3 months of the Texas measles outbreak last year, almost 1 in 5 cases were hospitalized, and “all were unvaccinated or had unknown vaccination status”. Anti-vaxxers focus on death as the only endpoint that matters. Tell that to the families who’ve had a child hospitalized.
Characteristics of Patients Hospitalized with Measles ...
This report describes characteristics of patients who were hospitalized during a large measles outbreak in west Texas.
cdc.gov
Yesterday, petition e-7115 was officially presented in the House of Commons of Canada by MP Jeff Kibble 🇨🇦! This means the call for secure coding standards across the Government of Canada is now part of the official parliamentary record. Security was discussed in parliament. This is HUGE. 1/2
So I am not allowed to use the word *****, then make sure people have iron balls tied to one of their feet. Unfortunately, it's all too easy to trick an #LLM into doing something it shouldn't do. Which means we really need to think outside the box to #secure them. #appsec #threatmodeling #games
🦊 Mozilla has previewed Project Nova, a design overhaul for Firefox, focusing on customization and privacy. It features a reorganized layout, enhanced privacy controls, new themes, and more, impacting both desktop and mobile users. alternativeto.net/news/2026/5...
I love these little speaker cards cons are doing. I can’t wait to meet a ton of new friends @hackglasgow.bsky.social. I’ve never been out of the US before so just in I’ll pack a Canadian flag tshirt.
Interesting CSRF write-up impacting an OWASP project. #AppSec #BugBountyTips github.com/juice-shop/m...
Login CSRF allows attacker to force victims into their MultiJuicer team
### Summary The team join endpoint (`POST /multi-juicer/api/teams/{team}/join`) accepted requests with any `Content-Type`, including `text/plain`. Because that content type does not trigger a ...
github.com