Learning Resources
Expand your knowledge with our curated content.
Links
External resources curated by the community.
StatusGator
Aggregate the status of more than 5,000 SaaS services (such as AWS, Slack, or GitHub) in a single dashboard, sending early alerts for outages in the digital supply chain.
Techmeme
News aggregator that works as the front page of the tech industry, summarizing the most important launches and strategic changes of the day.
PacketLife Network Cheat Sheets
Legendary collection of technical cheat sheets for network protocols like BGP, OSPF, and STP, crucial for network engineers in high-pressure situations.
Crontab Guru
A visual editor that translates the cryptic syntax of scheduled tasks (cron) into clear human language, helping prevent errors in process automation.
ExplainShell
Breaks down complex UNIX/Linux terminal commands, mapping each flag and argument to its corresponding definition in the manual pages (man pages).
Regex101
An interactive tool for testing and debugging regular expressions in real time, providing detailed explanations for each character and group within the pattern.
Vulnerabilities (CVE)
Actively exploited or maximum-severity vulnerabilities.
CVE-2026-21962Remote compromise in Oracle HTTP Server and WebLogic Proxy
Oracle HTTP Server and Oracle Weblogic Server Proxy Plug-in contain an improper access control vulnerability that can result in unauthorized creation, deletion or modification access to critical data as well as unauthori…
Oracle HTTP Server y el plug-in de proxy para WebLogic presentan una falla crítica de control de acceso que permite a atacantes no autenticados comprometer el servidor y manipular datos de forma remota. Esta vulnerabilidad está siendo explotada activamente en entornos que utilizan Apache o IIS como front-end para servidores WebLogic. Es vital actualizar las instalaciones de Fusion Middleware para evitar el acceso no autorizado a sistemas internos y bases de datos conectadas.
CVE-2026-73570Command Injection RCE in Zimbra Collaboration
Zimbra Collaboration Suite (ZCS) contains an OS command injection vulnerability which could allow an unauthenticated attacker to send specially crafted SMTP requests that may result in execution of arbitrary operating sy…
Zimbra Collaboration Suite es vulnerable a la ejecución remota de comandos (RCE) sin autenticación debido a una sanitización insuficiente en las notificaciones SNMP. Los atacantes pueden ejecutar código arbitrario en el servidor mediante peticiones SMTP especialmente diseñadas. Esta vulnerabilidad está confirmada como activamente explotada en ataques reales.
CVE-2026-72530Unauthenticated RCE in TrueConf Server
TrueConf Server contains a code injection vulnerability that could allow an unauthorized remote attacker with network access via port 4307/TCP to use a specially crafted script to break out of the isolated environment an…
TrueConf Server is vulnerable to unauthenticated remote code execution (RCE). An attacker can escape the isolated environment via port 4307/TCP and execute arbitrary code on the underlying host system.
CVE-2026-72529Unauthenticated RCE in TrueConf Server
TrueConf Server contains a missing authentication for critical function vulnerability which could allow a remote unauthorized attacker with network access via port 4307/TCP to execute an arbitrary script.
TrueConf Server versions up to 5.5.5 are vulnerable to unauthenticated remote script execution via port 4307/TCP. An attacker can execute arbitrary commands by calling an undocumented function without valid credentials.
CVE-2026-64849Unauthenticated SSRF in MLflow
MLflow contains a server-side request forgery vulnerability that can allow attackers to reach internal or cloud metadata services and receive response_status and response_body.
MLflow is vulnerable to an unauthenticated Server-Side Request Forgery (SSRF) via its webhook testing endpoint. Attackers can exploit this to reach internal services or cloud metadata endpoints (IMDS) and view response bodies, potentially leading to credential theft.
CVE-2026-65400Authentication bypass in Apple Screen Sharing for macOS
Apple macOS contains an improper authentication vulnerability that could allow an attacker on the network to authenticate to Screen Sharing without valid credentials.
A critical authentication bypass in macOS Screen Sharing allows an attacker on the same network to gain control of a machine without valid credentials. Users should update to macOS Sequoia 15.7.9, Sonoma 14.8.9, or Tahoe 26.6.1 immediately.
Documents
Workshops, presentations, and demos.
No resources available yet.
Courses
Complete course books and recommended external courses.
Weekly AI Course
Hands-on AI engineering, basic to advanced, with OpenAI and Google Gemini. 7 chapters.
Machine Learning, From Scratch
Every core ML idea built by hand — the math, animated visuals, and a head-to-head against the standard library. 37 chapters.
Data Structures & Algorithms, From Scratch
Every core data structure and algorithm built by hand — purpose, complexity, animations, and a head-to-head against the real library. 56 chapters.