| | What Every Developer Needs to Know About GitHub Branch Protection (arnica.io) |
| 1 point by eranation on March 26, 2024 | past | 1 comment |
|
| | Show HN: Semgrep Rule That Identifies GitHub Repo Confusion Attack IOCs (arnica.io) |
| 2 points by niros_valtos on March 7, 2024 | past |
|
| | Sourcegraph got hacked so we built a Sourcegraph token validator (arnica.io) |
| 3 points by securitysimon on Sept 4, 2023 | past | 2 comments |
|
| | We Converted a GitHub Tool into a General Purpose Webhook Proxy (arnica.io) |
| 1 point by GavCo on June 20, 2023 | past |
|
| | What Developers Can Learn from Taylor Swift's Re-Recording Strategy (arnica.io) |
| 2 points by eranation on June 13, 2023 | past |
|
| | Trying to identify spoofing in GitHub? May the 4th (or 5th) be with you (arnica.io) |
| 1 point by niros_valtos on May 5, 2023 | past |
|
| | Local webhook development: A Guide to customizing smee.io for fun and profit (arnica.io) |
| 3 points by eranation on April 19, 2023 | past | 1 comment |
|
| | The Importance of EPSS in Vulnerability Prioritization: A Holistic Approach (arnica.io) |
| 1 point by eranation on April 14, 2023 | past |
|
| | What Is Pippelineless Security? (arnica.io) |
| 2 points by niros_valtos on Feb 21, 2023 | past |
|
| | What Is Pipelineless Security? (arnica.io) |
| 1 point by eranation on Dec 6, 2022 | past |
|
| | Considerations for choosing GitHub-hosted or self-hosted runners (arnica.io) |
| 1 point by eranation on Nov 9, 2022 | past |
|
| | Have trouble keeping track of your keys? So does Toyota (arnica.io) |
| 2 points by eranation on Oct 12, 2022 | past |
|
| | Hardening software development environments 101 (arnica.io) |
| 3 points by niros_valtos on Sept 22, 2022 | past |
|
| | NSA's software supply chain security recommendations need some refinement (arnica.io) |
| 2 points by niros_valtos on Sept 13, 2022 | past |
|
| | Hold the pitchforks. What LastPass did right. (arnica.io) |
| 1 point by niros_valtos on Aug 26, 2022 | past |
|
| | Demystifying the Pl0x GitHub Attack (arnica.io) |
| 1 point by eranation on Aug 18, 2022 | past |
|
| | What every developer should know about GitHub CODEOWNERS (arnica.io) |
| 3 points by niros_valtos on July 25, 2022 | past |
|
| | How to Protect Stale Source Code Repositories on GitHub (arnica.io) |
| 5 points by niros_valtos on July 19, 2022 | past |
|
| | Why we offer our advanced secret scanning for free, even for private repos (arnica.io) |
| 3 points by niros_valtos on July 9, 2022 | past |
|
| | We offer our secret scanning service for free, even for private repos (arnica.io) |
| 3 points by eranation on July 8, 2022 | past |
|
| | Hacking Upstream: Finding a 0-Day in an OpenSSH Key Parser Library (arnica.io) |
| 2 points by eranation on July 6, 2022 | past |
|
| | GitGoat: Misconfigured GitHub Organization (arnica.io) |
| 1 point by thunderbong on June 29, 2022 | past |
|
| | GitGoat: Misconfigured GitHub Organization (Open Source) (arnica.io) |
| 8 points by eranation on June 28, 2022 | past |
|
| | Supply Chain Breach: Tracing the Impact of a Clothing Retailer on Your Prod Env (arnica.io) |
| 5 points by niros_valtos on May 25, 2022 | past |
|
| | Show HN: Free secrets scanning for unlimited private GitHub repos (arnica.io) |
| 19 points by niros_valtos on May 12, 2022 | past | 3 comments |
|
| | AppSec vs. Software Supply-Chain Security (arnica.io) |
| 3 points by eranation on April 19, 2022 | past |
|
| | How to Protect Yourself Against GitHub/OAuth Apps Supply Chain Attacks (arnica.io) |
| 9 points by niros_valtos on April 17, 2022 | past |
|
| | How to survive a state-actor trying to put a backdoor in your code? (arnica.io) |
| 20 points by niros_valtos on March 8, 2022 | past | 2 comments |
|
| | App SEC vs. Software Supply Chain Security Explained (arnica.io) |
| 3 points by niros_valtos on Feb 28, 2022 | past | 1 comment |
|
| | Hacking Hacker News for fun and profit (arnica.io) |
| 2 points by niros_valtos on Feb 17, 2022 | past | 1 comment |
|
|
| More |