Security

LLM Key Server: Providing Secure and Convenient Access to Internal LLM APIs

Websocket XSS vulnerability discovery: My security journey at Mercari

Mercari’s Phishing-Resistant Accounts with Passkey

Locked Shields 2025 Event Report

Removing GitHub PATs and Private Keys From Google Cloud: Extending Token Server to Google Cloud

When Caching Hides the Truth: A VPC Service Controls & Artifact Registry Tale

gcp-sa-key-checker: A recon tool for GCP Service Account Keys

How to bypass GitHub’s Branch Protection

LLMs at Work: Outsourcing Vendor Assessment Toil to AI

Streamlining Security Incident Response with Automation and Large Language Models