Threat Surface Pulse
Real-time snapshots from CISA KEV and other signals. Highlights exposed risk and trending CVEs.
- Recent KEV additions
- Exec-ready talking points
RARLAB
RARLAB WinRAR contains a path traversal vulnerability allowing an attacker to execute code in the context of the current user.
Microsoft
Microsoft Windows Cloud Files Mini Filter Driver contains a use after free vulnerability that can allow an authorized attacker to elevate privileges locally.
D-Link
D-Link Routers contains a buffer overflow vulnerability that has a high impact on confidentiality, integrity, and availability. The impacted products could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
Array Networks
Array Networks ArrayOS AG contains an OS command injection vulnerability that could allow an attacker to execute arbitrary commands.
Meta
Meta React Server Components contains a remote code execution vulnerability that could allow unauthenticated remote code execution by exploiting a flaw in how React decodes payloads sent to React Server Function endpoints. Please note CVE-2025-66478 has been rejected, but it is associated with CVE-2025- 55182.
AI/ML Signal Tracker
Tracks model releases, repos, and outages; summarizes impact for platform roadmaps.
- Top moving repos
- Signal strength
AI-Security-Research-Group/LLM-Attacks
Comprehensive taxonomy of AI security vulnerabilities, LLM adversarial attacks, prompt injection techniques, and machine learning security research. Covers 71+ attack vectors including model poisoning, agentic AI exploits, and privacy breaches.
Rohan-Thoma/End-to-End-Network-Security-Mlops-Pipeline-Project
This project builds a complete ML pipeline for network security event prediction 🔐. It covers every stage of the ML lifecycle from data ingestion (MongoDB) 📥, validation ✅, and transformation 🔄, to model training 🤖, experiment tracking 📊 (MLFlow + Dagshub), and deployment via FastAPI ⚡.
GoJo-Rika/Network-Security-System-MLOps-Project
An end-to-end MLOps project for classifying malicious URLs, featuring a full CI/CD pipeline with GitHub Actions, Docker, and deployment to AWS EC2.
trailofbits/awesome-ml-security
justthzz/computer-vision-security-system
A comprehensive CV security system featuring motion detection (MOG2, KNN, GMG), person detection (YOLO v8), object tracking (CSRT, KCF, MOSSE), real-time analytics, and custom ML pipeline. Built with clean modular architecture, performance monitoring, and comprehensive documentation.
NightKing-V/VisionReasoningSecuritySystem
Security Surveillance System for Real-time Camera Feed
