Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rambot
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
rambot
11y ago
From the talk they are doing about this at AppSecUSA ( http://sched.co/3VgM ): The only information which gets accessed and transmitted are listed below: 1. Application Name 2. Application Package Name
2.
▲
SecureMe scans your Android phone for publicly known vulnerabilities
(secureme.securitycompass.com)
6 points
by
rambot
11y ago
|
4 comments
3.
▲
by
rambot
12y ago
We started the project back in 2012. It's an open source version of Campfire. :)
4.
▲
by
rambot
12y ago
Our actual job is working on SD Elements ( http://securitycompass.com/sdelements/ ). Let's Chat is just a side project, but it's also something we use internally everyday. The features you wish were there we al
5.
▲
by
rambot
12y ago
We should add that we are using Gravatar to our Wiki. It's not obvious for people who aren't already using Gravatar what's going on.
6.
▲
by
rambot
14y ago
It sounds like they listen on localhost by default ( http://docs.mongodb.org/manual/reference/mongod/#options ), though i'm not sure if that's always been the case. It's also possible installers change the default behaviour. (i.e. when you
7.
▲
by
rambot
14y ago
Same. I was trying to suggest the attack vector most people would encounter is the web application MongoDB is servicing.
8.
▲
by
rambot
14y ago
I suspect a lot of people are using MongoDB as the database backend to their web applications or services, so they are probably being indirectly exposed to the Internet. (Just like your Postgres or MySQL database.)
9.
▲
Why you shouldn’t use the OWASP Top 10 as software security requirements
(blog.sdelements.com)
3 points
by
rambot
14y ago
|
0 comments
10.
▲
by
rambot
14y ago
Where does the post suggest Rails is the only framework with bugs like this? The article opens with: "The latest Rails security flaw is example of a common anti-pattern. ... a similar issue may also exist in Python’s YAML parser ... I am re
11.
▲
by
rambot
14y ago
You can use it to listen to music you like, or find new music. I'm using it right now to listen to the same stuff my coworkers are listening to in our office while I work from home. Does that help?
12.
▲
The Operational Reality of Opt-In Security Controls.
(labs.securitycompass.com)
3 points
by
rambot
14y ago
|
0 comments
13.
▲
by
rambot
15y ago
It wouldn't be a ponzi scheme if the value didn't go up, at least for a little while.