Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
rdegges
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
6 ms
·
1.
▲
by
rdegges
2mo ago
I've built quite a few projects from 0 -> business over the last 20 years, and I think the fundamentals are still true today. First rule: if you're building the product solo, is it something you're the target user of? I&#x
2.
▲
by
rdegges
2mo ago
Nice project! One question I have on the `tool boundary` methodology -- does this penalize a skill for having any sort of scripts/ embedded? I've found it really helpful to take larger skills, like ones I've built at Snyk whi
3.
▲
by
rdegges
2mo ago
Good post, breaks down the threat models really well. =) One small note, I think there may be a small issue in one of the code blocks explaining the client key: > cache_namespace = tenant_id || client_secret I believe that should say `te
4.
▲
by
rdegges
3mo ago
:o
5.
▲
by
rdegges
3mo ago
=0 I stumbled across this post and was thinking that it's interesting to see this topic trending now, since I've done a lot of work on it in the past. Then I clicked through and realized the author is linking to some of my stuff!
6.
▲
by
rdegges
6mo ago
> Yes US citizens that are putting themselves in a situation they shouldn’t have been in to begin with while threatening and provoking a violent reaction. This is not at all true. Plus, it's inconsequential -- ICE agents have no aut
7.
▲
by
rdegges
6mo ago
Throwaway accounts and more propaganda isn’t proof of anything. I think it’s pretty clear that untrained, unaccountable armed people who have already killed multiple US citizens that they have no jurisdiction over is a real-world worry that
8.
▲
by
rdegges
6mo ago
This is straight up untrue. There are clean bill proposals to fund TSA that Republicans have rejected. https://www.perplexity.ai/search/are-the-proposed-tsa-fundin...
9.
▲
by
rdegges
6mo ago
Straight white US citizen male here. This scares the shit out of me. I travel for work all the time, but understanding that we will now have barely trained, and in many cases completely lawless, consequence-free federal officers in direct,
10.
▲
Style Is a Consistent Constraint
(stephango.com)
3 points
by
rdegges
6mo ago
|
0 comments
11.
▲
I Read Cursor's Security Agent Prompts, So You Don't Have To
(snyk.io)
2 points
by
rdegges
6mo ago
|
0 comments
12.
▲
by
rdegges
7mo ago
This is such a great idea. When I'm building net-new projects, I typically end up working with the AI assistant to build a comprehensive AGENTS.md as the first thing before any work gets done: specify tools, dependencies, architecture
13.
▲
Agent Swarms, like the one Cursor created
(mrinal.com)
4 points
by
rdegges
8mo ago
|
0 comments
14.
▲
by
rdegges
10mo ago
He also taught me networking in C in the early 2000's! A few years ago I moved from the Bay Area up to Bend, Oregon and ended up running into him in-person at one of the tech meetups. I was so floored to meet him in person, and as you&
15.
▲
by
rdegges
11mo ago
I believe one of the main differences is that our scanner looks for toxic flows between mcp endpoints regarding how they interact with one another. Unless I'm missing something, the Cisco tool does not support this. Our research lab di
16.
▲
by
rdegges
11mo ago
At Snyk, we've been working on this for a while. Here's our flagship open source project consolidating a lot of the MCP risk factors we've discovered over the last year or so into actionable info: https://github.co
17.
▲
Can the 50-Year-Old Actor Model Rescue Agentic AI?
(thenewstack.io)
4 points
by
rdegges
11mo ago
|
0 comments
18.
▲
by
rdegges
1y ago
Here's a better option -- what we've been working on at Snyk. - Take something like Cursor and plug the Snyk MCP server into it: https://docs.snyk.io/integrations/developer-guardrails-for-a... (it has a one-c
19.
▲
New MCP Security Research and OSS Tooling: Toxic Flow Analysis
(invariantlabs.ai)
4 points
by
rdegges
1y ago
|
0 comments
20.
▲
by
rdegges
1y ago
Great article. This may be my all-time favorite deep dive post on RAG strategies. It’s super interesting to me how the process of fully making audio/video searchable requires so much processing. Like, extracting the audio and video, tr
21.
▲
NixOS Privilege Escalation –> Root
(labs.snyk.io)
2 points
by
rdegges
1y ago
|
0 comments
22.
▲
by
rdegges
1y ago
Turning 37 in two days. =D Been programming since I was 12. The passion has never left. <333
23.
▲
by
rdegges
1y ago
I wasn't sure if I should post this or not, but if you ever met Michael you probably remember him. He was a kind soul and helped grow the Python developer community in LA for well over a decade. In addition to being an excellent engine
24.
▲
"Goodwill", key member of the SoCal Python Community has passed away
(socalpython.org)
47 points
by
rdegges
1y ago
|
8 comments
25.
▲
by
rdegges
1y ago
Ragie (a RAG company) published an interactive chatbot that lets you ask questions about the JFK files. It’s pretty interesting, they had to do a lot of OCR on old docs to get it to a usable state. https://chat.ragie.ai/o&#x
26.
▲
by
rdegges
1y ago
The way XML digital signatures work is so weird. This routinely comes up year-after-year. When I was working at Okta this also resulted in a number of annoying breaches, including this one: https://developer.okta.com/blog&#x
27.
▲
SAML's signature problem: It's not you, it's XML
(workos.com)
8 points
by
rdegges
1y ago
|
1 comments
28.
▲
by
rdegges
1y ago
I’m not aware of any!
29.
▲
by
rdegges
1y ago
I have a decently-sized homelab and I've been renting out unused disk space. I actually allocated 20TB of disk space (RAID 1) and have been renting the space out via the Storj network ( https://www.storj.io ). If you haven&#x
30.
▲
In Localhost We Trust
(snyk.io)
3 points
by
rdegges
1y ago
|
0 comments
More ›