Skip to content

Instantly share code, notes, and snippets.

View wp-playground-bot's full-sized avatar

wp-playground-bot

View GitHub Profile
@wp-playground-bot
wp-playground-bot / 001_readme.md
Last active April 29, 2026 18:57
Code Review Skills — 20 evidence-based security review patterns extracted from 300+ real-world CVEs

Code Review Skills — Evidence-Based Security Review Patterns

This gist bundles 20 security-focused code review skills as a single reference. Files are numbered 01- through 20- to match the ordering below.

20 code review skills extracted from the analysis of 300+ real-world bugs in major open source projects (200 missed in review, 106 caught before exploitation). Each skill is grounded in specific CVEs, security advisories, published audit findings, and documented review processes from projects including the Linux kernel, OpenSSL, Chromium, Firefox, curl, Go, Rust, Kubernetes, and dozens more.