41554 blogs · [ { "id": "01a087be-cfa2-71a3-8dfc-1516d860fd09", "title": "Has AI Killed Secure Code Training?", "url": "https://pedramhayati.com/blog/has-ai-killed-secure-code-training/", "published_at": "2026-08-26T00:23:41+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516d8eeb82b", "title": "Using AI to Secure Its Own Code Is a Ponzi Scheme", "url": "https://pedramhayati.com/blog/using-ai-scan-its-own-code-is-ponzi-scheme/", "published_at": "2026-06-02T00:00:04+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516d940c95b", "title": "Two Incomplete Fixes for a Path Traversal Vulnerability in ONNX (CVE-2026-27489)", "url": "https://pedramhayati.com/blog/cve-2026-27489-onnx/", "published_at": "2026-04-30T22:40:14+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516d9cdd302", "title": "LangChain load() is basically eval()", "url": "https://pedramhayati.com/blog/langchain-load-is-eval/", "published_at": "2026-02-17T08:35:19+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516da4dcf11", "title": "Three Secure Coding Lessons from A Log Injection Bug in Django", "url": "https://pedramhayati.com/blog/three-secure-coding-lessons-django-log-injection/", "published_at": "2026-01-15T05:20:28+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516db4a3527", "title": "Hack MIFARE Classic Card into an Electronic Business Card", "url": "https://pedramhayati.com/blog/hack-mifare-card-into-business-card/", "published_at": "2025-11-16T00:31:27+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516db5421a0", "title": "AI and Secure Code Learning: An Empirical Analysis of 420 AI-Generated Security Fixes", "url": "https://pedramhayati.com/blog/ai-impact-secure-code-learning/", "published_at": "2025-09-03T14:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516dc2e7e36", "title": "Defensive Cloud Native App and DevSecOps", "url": "https://pedramhayati.com/courses/defensive-coding/", "published_at": "2025-07-15T01:52:05+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516dcbba5d0", "title": "Jailbreaking and Securing LLM Apps: Lessons from an online wargame experiment at OWASP NZ", "url": "https://pedramhayati.com/blog/talk-llm-security-vulnerability/", "published_at": "2024-01-12T02:57:36+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516ddae4e29", "title": "AppSec in Web3 Smart Contracts, Find, Reverse and Fix a Vuln at CSECcon", "url": "https://pedramhayati.com/blog/talk-web3-security-find-hack-fix/", "published_at": "2023-10-11T02:54:14+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516dde58cc0", "title": "Interview Absolute Appsec Podcast: After Dark CTF", "url": "https://pedramhayati.com/blog/interview-absolute-appsec-podcast/", "published_at": "2023-09-14T02:25:43+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516ddf36078", "title": "Interview Ogrodje Podcast: Builders vs. Breakers", "url": "https://pedramhayati.com/blog/interview-ogrodje-podcast/", "published_at": "2023-05-08T02:02:52+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516de8e04ab", "title": "Avoid validation with privilege return", "url": "https://pedramhayati.com/blog/avoid-validation-with-privilege-return/", "published_at": "2022-09-25T20:03:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516df4cd9b9", "title": "Do not use String to store secret. It gets disclosed", "url": "https://pedramhayati.com/blog/do-not-use-string-to-store-secret/", "published_at": "2022-09-11T00:59:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516dfac396b", "title": "Cyber Crime and Security Enhanced Programming", "url": "https://pedramhayati.com/courses/cyber-crime-secure-programming/", "published_at": "2020-07-15T01:52:05+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e0331105", "title": "Http Parameter Pollution at Bsides Budapest", "url": "https://pedramhayati.com/blog/talk-http-parameter-pollution/", "published_at": "2020-03-20T02:44:45+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e115958e", "title": "Reverse Engineering Malware", "url": "https://pedramhayati.com/courses/reverse-engineering-malware/", "published_at": "2020-02-15T01:52:05+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e1c9c214", "title": "Introduction to Exploit Development", "url": "https://pedramhayati.com/courses/intro-exploit-dev/", "published_at": "2018-07-15T01:52:05+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e2357c9a", "title": "Client Side Template Injection at React Sydney", "url": "https://pedramhayati.com/blog/talk-client-side-template-injection/", "published_at": "2018-04-02T02:34:04+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e2fabb30", "title": "UX vs Security - Remember Me enabled by default is a bad design", "url": "https://pedramhayati.com/blog/ux-vs-security-remember-me-enabled-by-default-bad-design/", "published_at": "2016-04-23T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e327c99b", "title": "UX vs Security - Security challenge", "url": "https://pedramhayati.com/blog/ux-vs-security-security-challenge/", "published_at": "2015-11-01T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e3cb4e56", "title": "UX vs Security - Introduction", "url": "https://pedramhayati.com/blog/ux-vs-security-introduction/", "published_at": "2015-10-06T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e4a3391b", "title": "Uncovering Secret Connections Among Attackers", "url": "https://pedramhayati.com/blog/hitb2015ams-presentation-uncovering-secret-connections-among-attackers/", "published_at": "2015-06-01T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e5514270", "title": "What active defence is and is not", "url": "https://pedramhayati.com/blog/what-active-defense-is-and-is-not/", "published_at": "2015-04-21T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e6159f77", "title": "5 effective use-cases of a honeypot system for enterprises", "url": "https://pedramhayati.com/blog/5-effective-use-cases-honeypot-system-enterprises/", "published_at": "2015-04-01T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e671487c", "title": "Your Amazon EC2 attack profile changes on different geographic region", "url": "https://pedramhayati.com/blog/amazon-ec2-attack-profile-different-geographic-regions/", "published_at": "2014-12-18T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e6b32e94", "title": "An in-depth analysis of SSH attacks on Amazon EC2", "url": "https://pedramhayati.com/blog/in-depth-analysis-ssh-attacks-amazon-ec2/", "published_at": "2014-08-30T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e705b371", "title": "Your EC2 instance can mine a bitcoin. Well, not for you!", "url": "https://pedramhayati.com/blog/your-ec2-instance-can-mine-bitcoin/", "published_at": "2014-05-15T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e75ff7da", "title": "Create hidden reverse shell by reusing an open port", "url": "https://pedramhayati.com/blog/create-hidden-reverse-shell-reusing-open-port/", "published_at": "2013-05-11T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e7a8bc9a", "title": "botCloud - a command and control platform on the Cloud", "url": "https://pedramhayati.com/blog/botcloud-command-control-cloud-platform/", "published_at": "2012-11-03T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e843ff00", "title": "botCloud – an emerging platform for cyber-attacks", "url": "https://pedramhayati.com/blog/botcloud-emerging-platform-for-cyber-attacks/", "published_at": "2012-10-29T00:32:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e890aa39", "title": "SSH Terminal Keyboard for Android", "url": "https://pedramhayati.com/blog/ssh-terminal-keyboard-android/", "published_at": "2012-07-16T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e934404c", "title": "Setup NFS to smoothly share 1080p movies over Wireless", "url": "https://pedramhayati.com/blog/nfs-share-1080p-moview-wireless-freenas/", "published_at": "2012-05-28T08:43:18+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516e9dd9764", "title": "Access Mutt Attachments Remotely", "url": "https://pedramhayati.com/blog/access-mutt-attachments-remotely/", "published_at": "2012-05-14T07:40:31+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516ea65ed92", "title": "Nebula Level12 Solution", "url": "https://pedramhayati.com/blog/nebula-level12-solution/", "published_at": "2012-05-07T07:37:10+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516eb36c1fe", "title": "Nebula Level10 Solution", "url": "https://pedramhayati.com/blog/nebula-level10-solution/", "published_at": "2012-01-31T20:52:25+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516eb98be1a", "title": "Gtd With Taskwarrior", "url": "https://pedramhayati.com/blog/gtd-with-taskwarrior/", "published_at": "2012-01-09T07:22:02+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516ebd14022", "title": "Persian/Farsi Language for Android", "url": "https://pedramhayati.com/blog/persian-farsi-language-for-android/", "published_at": "2011-05-15T00:00:00+00:00" }, { "id": "01a087be-cfa2-71a3-8dfc-1516ec7243a0", "title": "Addressing New Generation of Spam Through Web Usage Models", "url": "https://pedramhayati.com/books/addressing-new-generation-of-spam-through-web-usage-models/", "published_at": null } ] posts Claim your blog
Back to pedramhayati.com
Blog · corpus.blog/blogs/pedramhayati.com/posts

pedramhayati.com

pedramhayati.com

2026

2025

2024

2023

2022

2020

2018

2016

2015

2014

2013

2012

2011

Undated