Issue no. 42 · The security zine

Security is all about context.

Practical security thinking for systems that increasingly write, deploy, and operate themselves. Fewer buzzwords. Better evidence. Occasional memes.

209 advisories tracked112 detectors onlineStatus: context required
★CVE-2026-103764 kvcache-ai Mooncake transfer engine★CVE-2026-103765 kvcache-ai Mooncake★CVE-2026-86345 Red Hat 389 Directory Server (389-ds-base)★CVE-2023-54404 Zod Zod★CVE-2026-103246 n8n n8n★CVE-2026-103250 n8n n8n★CVE-2026-103262 Tornado Tornado★CVE-2026-103271 Ghost Ghost★CVE-2026-103283 Ghost Ghost★CVE-2026-12540 Red Hat Foreman
0advisories tracked
0field notes published
0secret detectors
0memes deployed

Patch forecast · Oct 2

Known-exploited vulnerabilities are in the wild. Patch like it is raining.

160 advisories / 14d0 known-exploited48 act-now
STORMY

Field report · sweep 03 · 48 contacts on the board

Live demo · try it right here

Find leaked secrets without leaking them.

Paste code, config, or logs below. 112 detectors run entirely in your browser and return redacted findings, reasoned risk scores, and rotation guidance. Nothing uploads. Nothing phones home.

Loading local detectorsMAX_INPUT 2 MBNETWORK OFF
01 / INPUT

Inspect source material

LOCAL MEMORY ONLY
0 BYTESCTRL / ⌘ + ENTER TO SCAN

No upload step exists. Files are read by your browser, scanned in memory, and discarded when the tab closes.

02 / REVIEW

Findings

Ready when you are.

Add source material on the left. Results are pattern matches, not proof that a credential is active.

Pattern detection + local context analysisNo source has left this browser.
Security meme from the archiveexhibit A: the backlog

Compensating control

When remediation is blocked, deploy humor.

Open the meme archive