Web Hack List

Preliminary research

Hidden security risks in Jupyter notebooks

AI-collected research leads through 6 October 2026, including bounded month-by-month reviews of selected social and community sources from January through September. Unranked, incomplete, not community-vetted, and subject to change.

Examines Jupyter Desktop and JetBrains notebook boundaries. Navigation can retain a privileged preload bridge that reveals a local server token, while widget protocol configuration can load script into a trusted localhost origin; the cases distinguish page origin, window privileges and optional terminal-plugin access.

Record

Researcher
Yaniv Nizry
Published by
Sonar
Date

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Yaniv Nizry, first published at the original source. Preserved copies are kept so the citation survives its host.