Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
s-mon
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
1.
▲
by
s-mon
10mo ago
Congratulations to the team. Knowing some of the folks on the Bun team I can not say I am surprised. They are the top 0,001% of engineers, writing code out of love. I’m hugely bullish on Anthropic, this is a great first acquisition.
2.
▲
How to Bypass JavaScript Agents, CSP and Crawlers (Client-Side Security Testing)
(cside.com)
1 points
by
s-mon
11mo ago
|
0 comments
3.
▲
by
s-mon
1y ago
And its faster than Vercel!
4.
▲
Exploiting Vulnerabilities in Cellebrite UFED and Physical Analyzer
(signal.org)
2 points
by
s-mon
1y ago
|
0 comments
5.
▲
Cosmic Ray Bit Flips and the Hidden Risk at Scale
(cside.dev)
10 points
by
s-mon
1y ago
|
1 comments
6.
▲
by
s-mon
1y ago
Vistors are successfully bypassing age verification by using showing pictures of movie characters or their dog to complete photo age verification.
7.
▲
Around 6k porn sites start checking ages in UK
(bbc.com)
7 points
by
s-mon
1y ago
|
2 comments
8.
▲
by
s-mon
1y ago
Something to understand about the word “leak” is that it implies at some point it was keeping things in. Microsoft security is so underfunded and garbage, it is fundamentally making technology as a whole unsafe. Example: if Kroger or whatev
9.
▲
by
s-mon
1y ago
Back at one of my previous employers we had a long internal briefing about why our latest device did not have USB-C when other solutions on the market by then had. The connector is solid but my god have there been disasters because of USB-C
10.
▲
by
s-mon
1y ago
Having worked on bot detection in the past. Some really simple old fashioned attacks happened by doing the opposite of what the robots.txt file says. While I doubt it does much today, that file really only matters to those that want to play
11.
▲
by
s-mon
1y ago
Wondering what the hotels in Vegas around Defcon will think of it this year lol.
12.
▲
CoinMarketCap Client-Side Attack
(cside.dev)
3 points
by
s-mon
1y ago
|
0 comments
13.
▲
by
s-mon
1y ago
Love Elixir so much, building a kick-ass notification engine with it now. Its so so good.
14.
▲
Making CSP more usable for organizations at scale
(github.com)
3 points
by
s-mon
1y ago
|
0 comments
15.
▲
by
s-mon
1y ago
While I like the blogpost, I think the use of unexplained acronyms undermines the opportunity of this blogpost to be useful to the wider audience. Small nit: make sure acronyms and jargon is explained.
16.
▲
Exploiting Vulnerabilities in Cellebrite UFED (2021)
(signal.org)
7 points
by
s-mon
1y ago
|
0 comments
17.
▲
Weaponized Google OAuth Triggers Malicious WebSocket
(cside.dev)
9 points
by
s-mon
1y ago
|
1 comments
18.
▲
by
s-mon
1y ago
Great presentation and thanks for sharing the slides. Wondering, can any of these methods be used for 3D too?
19.
▲
by
s-mon
1y ago
Who else here is going to the Zod meetup tonight?
20.
▲
by
s-mon
1y ago
https://www.wired.com/story/north-korea-stole-your-tech-job-... - same day, what a coincidence!
21.
▲
Bytebit Attack: $1.5B stolen through malicious JavaScript
(cside.dev)
3 points
by
s-mon
2y ago
|
0 comments
22.
▲
by
s-mon
2y ago
Poor Wordpress...
23.
▲
by
s-mon
2y ago
Love WASM (used to be love hate...)
24.
▲
by
s-mon
2y ago
Crazy, Wordpress hasn’t had the best 12 months…
25.
▲
by
s-mon
2y ago
Man this is so cool!
26.
▲
by
s-mon
2y ago
Hey folks, CEO of c/side here. Sorry to keep you waiting. Answering a few points here: 1. This is not an ad, or at least it was not intended to be one. We feel like this is a microsite which like most blogs has a little "this is w
27.
▲
How the British Airways' breach kickstarted today's web security challenge
(baways.com)
50 points
by
s-mon
2y ago
|
36 comments
28.
▲
by
s-mon
2y ago
Can’t help but notice how Magento is the centre of so much misery.
29.
▲
by
s-mon
2y ago
The amount of client-side fetched third party tools fighting for the upper layer is so funny and accurate. Intercom + cookie settings + a newsletter popup + ads…
30.
▲
by
s-mon
2y ago
Cookie banners… the most silly idea made by non technical people mandated upon technical people. Does anyone remember P3P? If that was pushed and managed better it would have solved the entire problem.
More ›