Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
neuroo
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
Finding vulnerabilities in Python web apps using Claude Code and OpenAI Codex
(semgrep.dev)
13 points
by
neuroo
1y ago
|
0 comments
2.
▲
by
neuroo
1y ago
Hi. Co-author of the post here. Good callout. Evidence so far points to `nx --version` itself being safe because this was in a post-install script but we changed the rec in our post. We took the versions in the Github security advisory and
3.
▲
Nx compromised: malware uses Claude code CLI to explore the filesystem
(semgrep.dev)
493 points
by
neuroo
1y ago
|
39 comments
4.
▲
by
neuroo
11y ago
The top 10 is way too high level to be of any use, but the cheatsheets are actually not bad: https://www.owasp.org/index.php/XSS_Prevention_Cheatsheet (end of the page)
5.
▲
Understanding Python Bytecode
(security.coverity.com)
84 points
by
neuroo
12y ago
|
6 comments
6.
▲
Equip: Python bytecode instrumentation library
(github.com)
9 points
by
neuroo
12y ago
|
0 comments
7.
▲
Handling web frameworks with static analysis; a case of Spring MVC – Part 1
(security.coverity.com)
1 points
by
neuroo
12y ago
|
0 comments
8.
▲
by
neuroo
12y ago
Not yet, we are looking at them right now.
9.
▲
by
neuroo
12y ago
The "model" makes reference of the model injection for memcpy. The modification made by the team is referenced in John's blog post "Their insight is that we might want to consider byte-swap operations to be sources of ta
10.
▲
A New Development for Coverity and Heartbleed
(blog.regehr.org)
125 points
by
neuroo
12y ago
|
46 comments