Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
catatsuy
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
catatsuy
9mo ago
Thanks! I already emailed unicorn-public@yhbt.net. My message is in the public archive here: https://yhbt.net/unicorn-public/20251227071714.D9328160070@m...
2.
▲
Ask HN: Ruby 4 and unicorn segfault (kgio) how to get a gem release?
4 points
by
catatsuy
9mo ago
|
2 comments
3.
▲
by
catatsuy
1y ago
That’s a great real-world story. Exactly the kind of unexpected modification FIM can help surface—not only security incidents, but also operational surprises.
4.
▲
by
catatsuy
1y ago
Compliance is definitely one use case, but not the only one. It’s also useful for catching unexpected local changes in real-world operations. The goal is to provide a lightweight FIM that can be added to existing apps without too much frict
5.
▲
by
catatsuy
1y ago
Conceptually it’s the same as sha256sum, but Kekkai automates the workflow: hashes recorded automatically at deploy, stored in S3 with write/read separation, verification runs regularly. It saves you from scripting all of that by hand.
6.
▲
by
catatsuy
1y ago
By fast I mean two things: Files are hashed in parallel, so large sets can be processed quickly. On repeated runs, unchanged files skip hashing with a default 90% probability using a cache. This keeps checks lightweight even at scale
7.
▲
by
catatsuy
1y ago
You’re right that this doesn’t prevent compromise—it’s a detection control, not prevention. Things like read-only mounts or immutable bits are great, but in practice issues like command injection or misconfigured deployments still happen. F
8.
▲
by
catatsuy
1y ago
AIDE is a solid and mature tool. Kekkai focuses on being lightweight: content-only hashing to avoid false positives, S3 integration with strict write/read separation, a single Go binary with minimal dependencies. It’s designed to be ea
9.
▲
Show HN: Kekkai – a simple, fast file integrity monitoring tool in Go
(github.com)
59 points
by
catatsuy
1y ago
|
16 comments
10.
▲
Ask HN: Can Cloudflare Improve Transparency on CAA Records with Universal SSL?
2 points
by
catatsuy
2y ago
|
0 comments
11.
▲
by
catatsuy
2y ago
Thank you for your reply. I was thinking about whether to return an error. If we can’t find a UTF-8 start byte in the nearby 4 bytes, it’s unclear what to return. I thought maybe we could ignore this problem. I don’t return the string itsel
12.
▲
Show HN: u8p – A Go Utility for Precise UTF-8 String Truncation
(github.com)
3 points
by
catatsuy
2y ago
|
3 comments
13.
▲
by
catatsuy
2y ago
Thank you for your feedback. The current implementation of purl uses Go's regexp package for regex operations, which ensures consistent behavior across platforms. I acknowledge the README does not specify this yet, and I plan to update
14.
▲
by
catatsuy
2y ago
Thank you for trying out purl! Currently, the file name needs to be placed at the end of the command like this: purl -filter func main.go. This format helps purl understand which part of the command specifies the options and which part spec
15.
▲
by
catatsuy
2y ago
Thank you for the congratulations! Currently, purl does not include features similar to AWK. We appreciate your suggestion and will consider it for future development.
16.
▲
Show HN: Purl – A Simple Tool for Text Processing
(github.com)
71 points
by
catatsuy
2y ago
|
29 comments
17.
▲
Show HN: Post the standard output of the command to Slack once a second
(github.com)
3 points
by
catatsuy
5y ago
|
0 comments
18.
▲
Show HN: Get lists of files in a directory that contains a large number of files
(github.com)
53 points
by
catatsuy
5y ago
|
29 comments