-
Updated
Feb 14, 2020
Security
Cybersecurity (security) includes controlling physical access to hardware as well as protection from attacks that come via network access, data injection, and code injection.
Here are 9,086 public repositories matching this topic...
-
Updated
Mar 8, 2020
1. What would you like to have changed?
Right now caddy2 has two config adapters: Caddyfile and JSON.
I have to admit, that I am not a big fan of json, because it's not possible to insert comments and it's difficult to write manual.
JSON is a format that should be used only from one comput
There is a typo in "Securely transporting stuff: HTTPS explained":
So, https servers two main purpose
must be
So, https serves two main purpose
Problem Description
In https://github.com/mitmproxy/mitmproxy/blame/master/docs/src/content/tute-clientreplay.md#L35, Toggle Proxy is linked, but it no longer exists.
Steps to reproduce the behavior:
- GOTO https://docs.mitmproxy.org/stable/tute-clientreplay/
- GOTO https://addons.mozilla.org/en-us/firefox/addon/toggle-proxy-51740/
- SEE Oops! We can’t find that page
Sy
The hvci_status table implemented in https://github.com/osquery/osquery/pull/5426/files does not have the appropriate CMake configuration. This means the table is not included in the official release (or any CMake builds).
-
Updated
Feb 7, 2020 - Python
-
Updated
Mar 12, 2020 - Python
Should mention CORS
It looks like most of the advice from the OWASP REST Cheat Sheet is discussed in this API-Security-Checklist, but OWASP talks about the importance of CORS, which is not mentioned at all in this API-Security-Checklist. Probably good to make mention. Also, the OWASP REST Cheat Sheet provides a bit more guidance regarding validation that might be good to incorporate.
-
Updated
Mar 2, 2020
-
Updated
Mar 11, 2020 - Python
What is missing or needs to be updated?
In the "Regular expressions" section, It would be nice to add in some part 2 concepts:
1- Regular expressions are slow and on the overall strategy must be used after all the others checks.
2- When you are building regex to validate syntactics, be very careful with denial of service caused by backtracking. Check if your language is using NFA or D
Currently the feature is poorly tested.
We need more tests, see for example:
- https://github.com/d4em0n/exrop/tree/master/tests
- https://github.com/d4em0n/exrop/tree/master/examples
- https://github.com/sashs/Ropper/tree/master/testcases
- https://github.com/sashs/Ropper/tree/master/test-binaries
- https://github.com/pakt/ropc/tree/master/example
- https://github.com/pakt/ropc/tree/master
-
Updated
Mar 10, 2020 - Shell
The current repository description is identical to the name of the repository, this is not very informative when parsing the json reply from a repository search using the github api. I would recommend adding a short meaningful description, for example: "a free class for web security" .
-
Updated
Feb 3, 2020 - HTML
-
Updated
Jan 21, 2020
The C++ howto and //examples/helloworld/cc:hello_world target depend on //cc:cleartext_keytext_handle which does not have public visibility in Bazel. As far as I can tell it is not
Which lab is it that you're having issues with?
Lab: Docker for Java Developers
Description
When deploying Java applications in production one usually specifies the amount of memory available to the JVM (-Xmx) and other assorted configuration settings. Unfortunately, this is (usually) static configuration and therefore fixed in the container image. When specifying memory constraints
Would it make sense to add this project to the list of password managers on Wikipedia?
Right now the error messages look like this:
time="2019-12-11T19:36:35-05:00" level=fatal msg="docker-slim: failure" error="json: cannot unmarshal array into Go value of type docker.Image" stack="goroutine 1 [running]:\nruntime/debug.Stack(0x0, 0x0, 0xc0004c7e01)\n\truntime/debug/stack.go:24 +0x9d\ngithub.com/docker-slim/docker-slim/pkg/util/errutil.FailOn(0xb6be20, 0xc000218050)\n\tgithub.c
-
Updated
Dec 11, 2019
Is your feature request related to a problem? Please describe.
When querying the Clients/Consent Sessions using pagination, ORY Hydra will only return results with some links, but not the total count of the items, which is useful to display in the frontend, you know, showing the total pages or something.
Describe the solution you'd like
Add the total_count parameter into Hea
Mailpile should automatically stop trying to re-check a mailbox/folder which has been deleted from the source/server.
This should be done in such a way that if the mailbox reappears, polling starts again. This should be relatively straightforward, mostly we need to make sure that each individual mailbox type communicates clearly that it's "gone" (not just temporarily unavailable) and the master
Update OneLogin
https://gravitational.com/teleport/docs/ssh_one_login/#enable-saml-authentication
OneLogin have updated their UI, we should re-run our docs and update images.
We should include a function SafeCast.toUint256(int256) returns (uint256). It should check that the value isn't negative.
We may also want to consider the inverse, unsigned to signed: SafeCast.toInt256(uint256) returns (int256).
- Wikipedia
- Wikipedia
Security apps
Snyk
Find, fix (and prevent!) known vulnerabilities in your code
Sonatype DepShield
Monitor your open source components for security vulnerabilities - goodbye muda, hello kaizen
LGTM
Find and prevent zero-days and other critical bugs, with customizable alerts and automated code review
WhiteSource Bolt
Detect open source vulnerabilities in real time with suggested fixes for quick remediation
BackHub
Reliable GitHub repository backup, set up in minutes
GuardRails
GuardRails provides continuous security feedback for modern development teams
Renovate
Keep dependencies up-to-date with automated Pull Requests
Dependabot Preview
Automated dependency updates for Ruby, JavaScript, Python, Go, PHP, Elixir, Rust, Java and .NET

add please to sdk