Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
atticusCr
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
atticusCr
6y ago
I (the author) am native Spanish speaker (Costa Rica) so thanks for your patience reading the article :)
2.
▲
A wake-up call for security on third-party packages
(michaelhidalgo.medium.com)
2 points
by
atticusCr
6y ago
|
1 comments
3.
▲
by
atticusCr
6y ago
How about using a hardening guide such as CIS as part of the build process?
4.
▲
by
atticusCr
6y ago
Although it is easier to see the benefits of using JSON as an interchange format because it is lightweight, I still believe that XML is more elegant and verbose than JSON. One of the complains for JSON has been the lack of schemas, although
5.
▲
by
atticusCr
6y ago
I do not see Powershell in there either, and we are aware of the exponential growth of the language for writing malware.
6.
▲
OWASP Open Security
(open-security-summit.org)
16 points
by
atticusCr
6y ago
|
1 comments
7.
▲
by
atticusCr
6y ago
OWASP Open Security Summit is happening this week.
8.
▲
Is it Go's regexp package vulnerable to ReDoS?
(blog.michaelhidalgo.info)
1 points
by
atticusCr
7y ago
|
0 comments
9.
▲
MITRE ATT&CK Enterprise Matrix as a ELK Dashboard
(github.com)
4 points
by
atticusCr
8y ago
|
0 comments
10.
▲
by
atticusCr
9y ago
I didn't know that in the 90's Google Analytics ever exists!.
11.
▲
by
atticusCr
9y ago
lol! thanks for your comments.
12.
▲
by
atticusCr
9y ago
Kind of, if you have a centralized place to perform input data validation, as it should, then it is just a matter to test that piece of code same if you are using a framework. However, I don't understand why you refer to a db in the fi
13.
▲
by
atticusCr
9y ago
That's actually, IMHO, a good asset that comes out of a good test and code coverage. I would be worried if after adding new piece of code or modifying an existing code if there is not a test that tells me that something is broken due m
14.
▲
by
atticusCr
9y ago
The author does not cover any question related to application security. Things like is this parameter/input value properly sanitized, does this piece is/is not vulnerable to injection attacks, does this piece of code performs auth
15.
▲
by
atticusCr
9y ago
When I saw "CSP" I thought of Content Security Policy instead https://developer.mozilla.org/en-US/docs/Web/HTTP/CSP
16.
▲
by
atticusCr
9y ago
Interesting article. I live in Costa Rica in the country side in the mountain and we are experiencing the same issue here. Back in the date, there were really big grasshoppers and all kind of colorful bugs. Now they no longer exists. I trie