Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
daudmalik06
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
11 ms
·
31.
▲
by
daudmalik06
5y ago
even i was amazed to see the quick response
32.
▲
by
daudmalik06
5y ago
yes, both of these features are on our roadmap, get in touch with us to stay updated. thanks
33.
▲
by
daudmalik06
5y ago
Well, actually we track all of the CVE lists, security advisories of vendors, package managers and as soon as there's an issue related to the software you use, we notify you. That's it.
34.
▲
by
daudmalik06
5y ago
Yeah, you can just upload a composer.lock file and that's it, we will track all of the open source you use and even the software that comes under first level. I.e we track the complete graph. Feel free to contact us.
35.
▲
by
daudmalik06
5y ago
Yes, it can send real time notification of any open source you use e.g maven requirement file.
36.
▲
by
daudmalik06
5y ago
Most welcome
37.
▲
by
daudmalik06
5y ago
There are 2 problems with dependabot, 1: it requires you to have a code on github orherwise you can't receive alerts 2: they send months old alerts, even if you go to check security advisory of github, you'll notice the date of t
38.
▲
Show HN: 700% Growth ( Discussion)
7 points
by
daudmalik06
5y ago
|
16 comments
39.
▲
by
daudmalik06
5y ago
This happens very often, Vulert.com is very useful in this case it notifies you as soon as a vulnerability found in any open source software you use.
40.
▲
by
daudmalik06
5y ago
Hi HN! We have developed new technology that helps companies to track the vulnerabilities in open source software they use, without sharing or integrating anything in the codebase. This will help companies to be ready from future Log4J atta
41.
▲
Show HN: Are you protected from Future Log4j Vulnerabilities?
(vulert.com)
4 points
by
daudmalik06
5y ago
|
1 comments
42.
▲
Severe Vulnerability Found in Another NPM Package
(twitter.com)
4 points
by
daudmalik06
5y ago
|
1 comments
43.
▲
by
daudmalik06
5y ago
A high severity vulnerability has been found in a widely used npm package "socket.io" with over 4M weekly downloads.
44.
▲
Found a Vulnerability In NPM Package
(twitter.com)
1 points
by
daudmalik06
5y ago
|
2 comments
45.
▲
by
daudmalik06
5y ago
A high severity vulnerability has been found in a widely used npm package "extend2" with over 46K weekly downloads.
46.
▲
by
daudmalik06
5y ago
yeah agree, but with the help of real time notification you can move really quickly i think.
47.
▲
by
daudmalik06
5y ago
how can i connect with you? do you have an email to share? mine is daudmalik06 (@) gmail
48.
▲
by
daudmalik06
5y ago
Totally agree with you, i think it's time to think carefully and immediately start using services like Vulert( https://bit.ly/336DZub ) that tracks your open-source softwares for free and notifies you in real-time if any
49.
▲
by
daudmalik06
5y ago
Totally agree with you, i think it's time to think carefully and immediately start using services like Vulert( https://bit.ly/336DZub ) that tracks your open-source softwares for free and notifies you in real-time if any
50.
▲
by
daudmalik06
5y ago
yeah, it's just the beggining of this, you will see supply chain attacks will increase more than 100% just in 2022, in short whole internet is at risk, it's time to think carefully and immediately start using services like Vulert(
51.
▲
by
daudmalik06
5y ago
Guys this is just beggining, I am working in cyber security since 2013, After the discovery of log4shell, almost whole internet is at risk of supply-chain attacks, Hackers are continuously targeting open-source packages because it's re
52.
▲
Future of Open Source
1 points
by
daudmalik06
5y ago
|
2 comments
53.
▲
by
daudmalik06
5y ago
Hey, yeah i would like to ask few questions about open source softwares, it's more about people who are using open source softwares in their applications.
54.
▲
Open Source Software Security
2 points
by
daudmalik06
5y ago
|
2 comments