Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
ramimac
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
ramimac
1y ago
In case it's helpful, I also collate quality blog posts in this genre over at https://rami.wiki/soc2/
32.
▲
Supply Chain Attacks on Linux Distributions
(fenrisk.com)
26 points
by
ramimac
2y ago
|
1 comments
33.
▲
GitHub Action supply chain attack: reviewdog/action-setup
(wiz.io)
5 points
by
ramimac
2y ago
|
1 comments
34.
▲
History: What Happened with Ciscogate
(cybersect.substack.com)
3 points
by
ramimac
2y ago
|
0 comments
35.
▲
My LLM Codegen Workflow
(harper.blog)
3 points
by
ramimac
2y ago
|
0 comments
36.
▲
Thirty Things
(thirtythings.timiajiboye.com)
1 points
by
ramimac
2y ago
|
0 comments
37.
▲
Codename Goose
(block.github.io)
19 points
by
ramimac
2y ago
|
0 comments
38.
▲
Hacking Subaru: Tracking and controlling cars via the admin panel
(samcurry.net)
548 points
by
ramimac
2y ago
|
320 comments
39.
▲
Big Bets
(jackdanger.com)
4 points
by
ramimac
2y ago
|
0 comments
40.
▲
Story of a Pentester Recruitment
(blog.silentsignal.eu)
6 points
by
ramimac
2y ago
|
0 comments
41.
▲
Systematizing Systematization of Knowledge
(oaklandsok.github.io)
2 points
by
ramimac
2y ago
|
0 comments
42.
▲
SoK: On the Offensive Potential of AI
(sok-offensive-ai.github.io)
5 points
by
ramimac
2y ago
|
0 comments
43.
▲
A User's Guide to Building a Subculture
(asteriskmag.com)
3 points
by
ramimac
2y ago
|
0 comments
44.
▲
The death of Glitch, the birth of Slack
(buildingslack.com)
124 points
by
ramimac
2y ago
|
37 comments
45.
▲
(Re)-Introducing La Cryptographie Militaire
(militarycryptography.xyz)
2 points
by
ramimac
2y ago
|
0 comments
46.
▲
Security ProbLLMs in XAI's Grok
(embracethered.com)
6 points
by
ramimac
2y ago
|
0 comments
47.
▲
Encryption using data-specific keys
(code.cash.app)
1 points
by
ramimac
2y ago
|
0 comments
48.
▲
Death Generator: Create Game over/You Died Screens
(deathgenerator.com)
1 points
by
ramimac
2y ago
|
0 comments
49.
▲
Ninja Threat Modeling (2009)
(web.archive.org)
4 points
by
ramimac
2y ago
|
0 comments
50.
▲
The Secret School for the Best Founders
(generalist.com)
2 points
by
ramimac
2y ago
|
0 comments
51.
▲
To Build a Meritocracy
(max.levch.in)
3 points
by
ramimac
2y ago
|
0 comments
52.
▲
Source and Binary has ceased operations
(rcrowley.org)
3 points
by
ramimac
2y ago
|
0 comments
53.
▲
by
ramimac
2y ago
It's not available in this case, or every case. When available, you can search "The data was provided by" in https://haveibeenpwned.com/PwnedWebsites
54.
▲
by
ramimac
2y ago
https://github.com/juliocesarfort/public-pentesting-reports is a substantial collection of public reports Off the top of my head, DoyenSec has some good reports in there targeting web apps
55.
▲
Client-side filtering of private data is a bad idea
(mjg59.dreamwidth.org)
141 points
by
ramimac
2y ago
|
49 comments
56.
▲
by
ramimac
2y ago
Press Release version in case anyone gets paywalled: https://www.prnewswire.com/news-releases/iverfiy-discovers-s...
57.
▲
Google Pixel Phones Have Unpatched Flaw in Hidden Android App
(wired.com)
8 points
by
ramimac
2y ago
|
3 comments
58.
▲
Revealing the Inner Structure of AWS Session Tokens
(medium.com)
51 points
by
ramimac
2y ago
|
9 comments
59.
▲
by
ramimac
2y ago
Not sure how the link got munged, but the root is https://docs.aws.amazon.com/securityhub/latest/userguide/gua... It's definitely a bit of a simplification - although I'm not aware of large orgs usi
60.
▲
by
ramimac
2y ago
> GuardDuty does what AWS says it will do What do you view as AWS' commitments around GuardDuty? I see pretty clear positioning by AWS of GuardDuty as a one-and-done solution for threat detection. Top level marketing claims include:
More ›