"SSL.com: DCV bypass and issue fake certificates for any MX hostname"
https://bugzilla.mozilla.org/show_bug.cgi?id=1961406
ooouuchhh
#security #ssl #tls #ca #cybersecurity #infosec
20.4.2025 09:37"SSL.com: DCV bypass and issue fake certificates for any MX..."Secure software starts with those who write it: so empower your builders."
Guardrails over Gates -> Yes
#security #cybersecurity #softwaredevelopment
19.4.2025 18:18"Secure software starts with those who write it: so empower your builders."https://semgrep.dev/build/Guardrails over Gates..."European Union Vulnerability Database (EUVD)"
🤔
16.4.2025 13:48"European Union Vulnerability Database (EUVD)"https://euvd.enisa.europa.eu/🤔 #security #cybersecurity"How to win an argument with a toddler"
https://seths.blog/2025/04/how-to-win-an-argument-with-a-toddler/
15.4.2025 16:55"How to win an argument with a toddler"https://seths.blog/2025/04/how-to-win-an-argument-with-a-toddler/"Model Context Protocol has prompt injection security problems"
https://simonwillison.net/2025/Apr/9/mcp-prompt-injection/#atom-everything
#mcp #security #cybersecurity #llm #ai
10.4.2025 09:52"Model Context Protocol has prompt injection security..."Less htmx is More"
https://unplannedobsolescence.com/blog/less-htmx-is-more/
8.4.2025 15:57"Less htmx is More"https://unplannedobsolescence.com/blog/less-htmx-is-more/#html #htmx #webdev #http"Django: what’s new in 5.2"
https://adamj.eu/tech/2025/04/07/django-whats-new-5.2/
8.4.2025 13:59"Django: what’s new in 5.2"https://adamj.eu/tech/2025/04/07/django-whats-new-5.2/#python #django"Gmail E2E is as terrible as expected"
https://michal.sapka.pl/2025/gmail-e2e-is-as-terrible-as-expected/
#security #gmail #cybersecurity #email
7.4.2025 08:06"Gmail E2E is as terrible as expected"https://michal.sapka.pl/2025/gmail-e2e-is-as-terrible-as-expected/#security #gmail..."CodeQLEAKED – Public Secrets Exposure Leads to Supply Chain Attack on GitHub CodeQL"
#github #githubactions #supplychain #security #cicd
4.4.2025 09:48"CodeQLEAKED – Public Secrets Exposure Leads to Supply Chain Attack on GitHub..."Django security releases issued: 5.1.8 and 5.0.14"
https://www.djangoproject.com/weblog/2025/apr/02/security-releases/
"CVE-2025-27556: Potential denial-of-service vulnerability in LoginView, LogoutView, and set_language() on Windows"
2.4.2025 20:14"Django security releases issued: 5.1.8 and..."The EU Open Source Solutions Catalogue is now live"
"The EU OSS Catalogue currently hosts over 640 solutions, encompassing both complete solutions and individual building blocks to be used while building your own solution."
"Designed primarily for public administrations across the EU, the catalogue provides access to reusable solutions across more than 30 key areas relevant to public sector needs."
👏
31.3.2025 14:27"The EU Open Source Solutions Catalogue is now..."It's five grand a day to miss our S3 exit"
https://world.hey.com/dhh/it-s-five-grand-a-day-to-miss-our-s3-exit-b8293563
30.3.2025 15:37"It's five grand a day to miss our S3 exit"https://world.hey.com/dhh/it-s-five-grand-a-day-to-miss-our-s3-exit-b8293563#aws..."How to report a security issue in an open source project"
https://jacobian.org/2025/mar/27/reporting-security-issues-in-oss/
#security #cybersecurity #opensource
29.3.2025 22:31"How to report a security issue in an open source..."New Windows 11 build makes mandatory Microsoft Account sign-in even more mandatory"
Yesterday was already too late to ditch Windows. It is your computer, your hardware, you shouldn't need a cloud account to make use of it.
29.3.2025 18:00"New Windows 11 build makes mandatory Microsoft Account sign-in even more..."REST in Peace? Django's Framework Problem"
https://danlamanna.com/posts/rest-in-peace-djangos-framework-problem/
29.3.2025 11:13"REST in Peace? Django's Framework Problem"https://danlamanna.com/posts/rest-in-peace-djangos-framework-problem/#django..."Share Python Scripts Like a Pro: uv and PEP 723 for Easy Deployment"
https://thisdavej.com/share-python-scripts-like-a-pro-uv-and-pep-723-for-easy-deployment/
28.3.2025 11:22"Share Python Scripts Like a Pro: uv and PEP 723 for Easy..."Whose code am I running in GitHub Actions?"
https://alexwlchan.net/2025/github-actions-audit/
#security #supplychain #cicd #githubactions
27.3.2025 13:42"Whose code am I running in GitHub Actions?"https://alexwlchan.net/2025/github-actions-audit/#security #supplychain #cicd..."IngressNightmare: 9.8 Critical Unauthenticated Remote Code Execution Vulnerabilities in Ingress NGINX"
https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities
#security #cybersecurity #kubernetes #nginx
25.3.2025 17:42"IngressNightmare: 9.8 Critical Unauthenticated Remote Code Execution Vulnerabilities in Ingress..."Next.js Middleware Exploit: Deep Dive into CVE-2025-29927 Authorization Bypass"
https://zeropath.com/blog/nextjs-middleware-cve-2025-29927-auth-bypass
#security #cybersecurity #nextjs #webdev
23.3.2025 14:50"Next.js Middleware Exploit: Deep Dive into CVE-2025-29927 Authorization..."Orphaned DNS Records & Dangling IPs Still a problem in 2025"
https://guardyourdomain.com/blog/dns-danger-zone/
21.3.2025 19:08"Orphaned DNS Records & Dangling IPs Still a problem in 2025"https://guardyourdomain.com/blog/dns-danger-zone/#security...