<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated>2024-02-20T23:10:04Z</updated>
  <generator>https://yabu.me</generator>

  <title>Nostr notes by dethos</title>
  <author>
    <name>dethos</name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://yabu.me/npub1c86s34sfthe0yx4dp2sevkz2njm5lqz0arscrkhjqhkdexn5kuqqtlvmv9.rss" />
  <link href="https://yabu.me/npub1c86s34sfthe0yx4dp2sevkz2njm5lqz0arscrkhjqhkdexn5kuqqtlvmv9" />
  <id>https://yabu.me/npub1c86s34sfthe0yx4dp2sevkz2njm5lqz0arscrkhjqhkdexn5kuqqtlvmv9</id>
  <icon>https://m.primal.net/HcUd.jpg</icon>
  <logo>https://m.primal.net/HcUd.jpg</logo>




  <entry>
    <id>https://yabu.me/nevent1qqs9mq4vrsyeem4r283tann59vztk8parqwzwhqgaurem20pqkehrjgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsquqzqud</id>
    
      <title type="html">&amp;#34;Microsoft&amp;#39;s GitHub bans security researcher who posted ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs9mq4vrsyeem4r283tann59vztk8parqwzwhqgaurem20pqkehrjgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsquqzqud" />
    <content type="html">
      &amp;#34;Microsoft&amp;#39;s GitHub bans security researcher who posted zero-day Windows exploits because company &amp;#39;ruined their life&amp;#39; — expert claims action is vindictive and promises further retaliation&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.tomshardware.com/tech-industry/cyber-security/microsofts-github-bans-security-researcher-who-posted-zero-day-windows-exploits-because-company-ruined-their-life-expert-claims-action-is-vindictive-and-promises-further-retaliation&#34;&gt;https://www.tomshardware.com/tech-industry/cyber-security/microsofts-github-bans-security-researcher-who-posted-zero-day-windows-exploits-because-company-ruined-their-life-expert-claims-action-is-vindictive-and-promises-further-retaliation&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;Bad move.&lt;br/&gt;&lt;br/&gt;#security #microsoft #cybersecurity #infosec&lt;br/&gt;&lt;br/&gt; &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2026-05-29T09:38:32Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv6f6ra9t39ztdvwr6nzruwft5glf5mp0q5n2a0hw5l82fd9hm0gczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxk7pe0</id>
    
      <title type="html">&amp;#34;Lock the Ghost: In the software world, “remove” is not ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv6f6ra9t39ztdvwr6nzruwft5glf5mp0q5n2a0hw5l82fd9hm0gczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxk7pe0" />
    <content type="html">
      &amp;#34;Lock the Ghost: In the software world, “remove” is not equal to &amp;#34;gone.&amp;#34;&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.cert.at/en/blog/2026/3/lock-the-ghost&#34;&gt;https://www.cert.at/en/blog/2026/3/lock-the-ghost&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#pypi #dependencies #supplychain #lockfiles #python  &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2026-03-18T14:00:56Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgl6nstp50uptjlzwag5su84v80lggqm8y0a2dztnffh0ms6s6y7qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjl69yj</id>
    
      <title type="html">&amp;#34;Replacing tox with UV&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgl6nstp50uptjlzwag5su84v80lggqm8y0a2dztnffh0ms6s6y7qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjl69yj" />
    <content type="html">
      &amp;#34;Replacing tox with UV&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.changs.co.uk/replacing-tox-with-uv.html&#34;&gt;https://blog.changs.co.uk/replacing-tox-with-uv.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #testing #uv  &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2026-03-11T17:55:40Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs25kjprxfc038vdfsgznu4ufa9f86cqy2w3jy8qkx6rmjpx4elhgszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa7s89v</id>
    
      <title type="html">I get it using the distro&amp;#39;s package manager. That&amp;#39;s it. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs25kjprxfc038vdfsgznu4ufa9f86cqy2w3jy8qkx6rmjpx4elhgszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa7s89v" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqs0jt5zq0lwla6smkydapjlyaxhu5yw9rfde9m3tz73h2ktfr3dvvqpr9mhxue69uhk2umsv4kxsmewva5hy6twduhx7un89u54v0ku&#39;&gt;nevent1q…v0ku&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;I get it using the distro&amp;#39;s package manager. That&amp;#39;s it. &lt;br/&gt;&lt;br/&gt;If something is not there, or I need a bleeding edge version, I use flatpak.&lt;br/&gt;&lt;br/&gt;Overtime I found that this approach works very well for me. &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2026-02-28T12:00:52Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2zuu7v0dn69nyykl5n77x9av07h8wu86rwyufcc3q2lyg78kpr9szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqsuu6u</id>
    
      <title type="html">&amp;#34;How I Almost Got Hacked By A &amp;#39;Job Interview&amp;#39;&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2zuu7v0dn69nyykl5n77x9av07h8wu86rwyufcc3q2lyg78kpr9szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqsuu6u" />
    <content type="html">
      &amp;#34;How I Almost Got Hacked By A &amp;#39;Job Interview&amp;#39;&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.daviddodda.com/how-i-almost-got-hacked-by-a-job-interview&#34;&gt;https://blog.daviddodda.com/how-i-almost-got-hacked-by-a-job-interview&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #developers #programmers &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-10-15T16:43:06Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsxw58uyms6ydpcj6y4vryvecetlel6ttxhmn462cgtvnxcawn2u6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvnh265</id>
    
      <title type="html">&amp;#34;CamoLeak: Critical GitHub Copilot Vulnerability Leaks ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsxw58uyms6ydpcj6y4vryvecetlel6ttxhmn462cgtvnxcawn2u6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvnh265" />
    <content type="html">
      &amp;#34;CamoLeak: Critical GitHub Copilot Vulnerability Leaks Private Source Code&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code&#34;&gt;https://www.legitsecurity.com/blog/camoleak-critical-github-copilot-vulnerability-leaks-private-source-code&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #github #copilot &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-10-13T11:20:47Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspv6wt23ej0hrk96gc6a25mmssha6z0hyfc43rzc6wd99jv5vmluszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqv7uuxg</id>
    
      <title type="html">&amp;#34;What is &amp;#34;good taste&amp;#34; in software engineering?&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspv6wt23ej0hrk96gc6a25mmssha6z0hyfc43rzc6wd99jv5vmluszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqv7uuxg" />
    <content type="html">
      &amp;#34;What is &amp;#34;good taste&amp;#34; in software engineering?&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.seangoedecke.com/taste/&#34;&gt;https://www.seangoedecke.com/taste/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;&amp;#34;In other words, most bad taste comes from inflexibility. I will always distrust engineers who justify decisions by saying “it’s best practice”. No engineering decision is “best practice” in all contexts! You have to make the right decision for the specific problem you’re facing.&amp;#34;&lt;br/&gt;&lt;br/&gt;#softwaredevelopment #programming #softwareengineering &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-10-04T10:45:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2sawrejauf2gakfysualqu6hc548z6hjsdtvljga5gwhsvl4scqszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzefev0</id>
    
      <title type="html">&amp;#34;Django security releases issued: 5.2.7, 5.1.13, and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2sawrejauf2gakfysualqu6hc548z6hjsdtvljga5gwhsvl4scqszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzefev0" />
    <content type="html">
      &amp;#34;Django security releases issued: 5.2.7, 5.1.13, and 4.2.25&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.djangoproject.com/weblog/2025/oct/01/security-releases/&#34;&gt;https://www.djangoproject.com/weblog/2025/oct/01/security-releases/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #python #django &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-10-02T12:22:27Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdaef5yhv6aw3tsrefdkdulg3gdw634wvpq5suj5qjz5408fvcwgszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpnfudd</id>
    
      <title type="html">&amp;#34;... proof-of-concept transparent proxy PyPI mirror that ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdaef5yhv6aw3tsrefdkdulg3gdw634wvpq5suj5qjz5408fvcwgszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpnfudd" />
    <content type="html">
      &amp;#34;... proof-of-concept transparent proxy PyPI mirror that demonstrates how code can be modified inline and pass hash checks&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://dtm.uk/badpie/&#34;&gt;https://dtm.uk/badpie/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #pypi #security &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-09-26T08:33:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsyjt0mrq7pcyq7yelcurtd6gtsf62u2yfxv7454uzadc8354wjnmczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrnc34j</id>
    
      <title type="html">&amp;#34;One Token to rule them all - obtaining Global Admin in every ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsyjt0mrq7pcyq7yelcurtd6gtsf62u2yfxv7454uzadc8354wjnmczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrnc34j" />
    <content type="html">
      &amp;#34;One Token to rule them all - obtaining Global Admin in every Entra ID tenant via Actor tokens&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/&#34;&gt;https://dirkjanm.io/obtaining-global-admin-in-every-entra-id-tenant-with-actor-tokens/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #microsoft #entraid &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-09-18T09:14:23Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsguqjvec7nm7aw68jesrev2zc20h9xutkyzx4494z8rc70e8d05xgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqhpusx7</id>
    
      <title type="html">&amp;#34;Self-Replicating Worm Hits 180&#43; Software Packages&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsguqjvec7nm7aw68jesrev2zc20h9xutkyzx4494z8rc70e8d05xgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqhpusx7" />
    <content type="html">
      &amp;#34;Self-Replicating Worm Hits 180&#43; Software Packages&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://krebsonsecurity.com/2025/09/self-replicating-worm-hits-180-software-packages/&#34;&gt;https://krebsonsecurity.com/2025/09/self-replicating-worm-hits-180-software-packages/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #npm #supplychain &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-09-16T16:28:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0tnpn8cs65qgdsejvawpqud4m8tv66ugaszpk24ekp8xdg8x0tlgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr4xyp9</id>
    
      <title type="html">&amp;#34;npm debug and chalk packages compromised&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0tnpn8cs65qgdsejvawpqud4m8tv66ugaszpk24ekp8xdg8x0tlgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr4xyp9" />
    <content type="html">
      &amp;#34;npm debug and chalk packages compromised&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised&#34;&gt;https://www.aikido.dev/blog/npm-debug-and-chalk-packages-compromised&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #supplychain #npm #javascript &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-09-09T08:09:13Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswtc5d4gtjsfex9nqwfuq8ztpjpfjcdtjl0hsehemsvdgp75dwn6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrtj8l9</id>
    
      <title type="html">&amp;#34;Django security releases issued: 5.2.6, 5.1.12, and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswtc5d4gtjsfex9nqwfuq8ztpjpfjcdtjl0hsehemsvdgp75dwn6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrtj8l9" />
    <content type="html">
      &amp;#34;Django security releases issued: 5.2.6, 5.1.12, and 4.2.24&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.djangoproject.com/weblog/2025/sep/03/security-releases/&#34;&gt;https://www.djangoproject.com/weblog/2025/sep/03/security-releases/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;* CVE-2025-57833: Potential SQL injection in FilteredRelation column aliases&lt;br/&gt;&lt;br/&gt;#security #websec #python #django &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-09-03T14:21:23Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs00dstxw88gtjrhqt5pyp0sfx9hxtd3ky2zp0wxmj26d3c4sfhe9szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq7dsfwk</id>
    
      <title type="html">&amp;#34;Supply Chain Security Alert: Popular Nx Build System Package ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs00dstxw88gtjrhqt5pyp0sfx9hxtd3ky2zp0wxmj26d3c4sfhe9szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq7dsfwk" />
    <content type="html">
      &amp;#34;Supply Chain Security Alert: Popular Nx Build System Package Compromised with Data-Stealing Malware&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.stepsecurity.io/blog/supply-chain-security-alert-popular-nx-build-system-package-compromised-with-data-stealing-malware&#34;&gt;https://www.stepsecurity.io/blog/supply-chain-security-alert-popular-nx-build-system-package-compromised-with-data-stealing-malware&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #supplychain #npm #github &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-28T08:58:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstl082q6qswrmaugwz8l7sp4ejfr9vwmhgk5aw6daavgfl9xflu6czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqtkk4ty</id>
    
      <title type="html">&amp;#34;Burner Phone 101&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstl082q6qswrmaugwz8l7sp4ejfr9vwmhgk5aw6daavgfl9xflu6czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqtkk4ty" />
    <content type="html">
      &amp;#34;Burner Phone 101&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://rebeccawilliams.info/burner-phone-101/&#34;&gt;https://rebeccawilliams.info/burner-phone-101/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;``&lt;br/&gt;Privacy Tips for All Phones:&lt;br/&gt;* Keep device &amp;amp; OS as updated as possible&lt;br/&gt;* Strong PIN, not biometrics&lt;br/&gt;* Disable cloud backups / use encrypted backups&lt;br/&gt;* Install Signal&lt;br/&gt;* Enforce strict app permissions (deny mic, camera, location) unless needed&lt;br/&gt;* Radios off (GPS/Wi-Fi/Bluetooth) unless needed&lt;br/&gt;* Store minimal sensitive data (including photos)&lt;br/&gt;``&lt;br/&gt;&lt;br/&gt;#security #privacy &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-26T16:30:30Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs98f78cuxr8y0lvyzvrwv2jwxfrghas3vpfsy820ewfgn3jnrz2cgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq2ze6nx</id>
    
      <title type="html">&amp;#34;DOM-based Extension Clickjacking: Your Password Manager Data ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs98f78cuxr8y0lvyzvrwv2jwxfrghas3vpfsy820ewfgn3jnrz2cgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq2ze6nx" />
    <content type="html">
      &amp;#34;DOM-based Extension Clickjacking: Your Password Manager Data at Risk&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://marektoth.com/blog/dom-based-extension-clickjacking/&#34;&gt;https://marektoth.com/blog/dom-based-extension-clickjacking/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #passwordmanagers &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-25T09:52:35Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqkw4xnvy4lnttfa7s335jlhm3evs8593alv4h8m9arw48f6arj7gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqww3j77</id>
    
      <title type="html">&amp;#34;ghrc.io Appears to be Malicious&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqkw4xnvy4lnttfa7s335jlhm3evs8593alv4h8m9arw48f6arj7gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqww3j77" />
    <content type="html">
      &amp;#34;ghrc.io Appears to be Malicious&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://bmitch.net/blog/2025-08-22-ghrc-appears-malicious/&#34;&gt;https://bmitch.net/blog/2025-08-22-ghrc-appears-malicious/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #containers #github &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-25T08:19:25Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2ek5555zv3mf4ngxpqsgket29g8vm3zsmwu368xs2tvuptxnf9vczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjew8l5</id>
    
      <title type="html">&amp;#34;Copilot Broke Your Audit Log, but Microsoft Won’t Tell ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2ek5555zv3mf4ngxpqsgket29g8vm3zsmwu368xs2tvuptxnf9vczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjew8l5" />
    <content type="html">
      &amp;#34;Copilot Broke Your Audit Log, but Microsoft Won’t Tell You&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pistachioapp.com/blog/copilot-broke-your-audit-log&#34;&gt;https://pistachioapp.com/blog/copilot-broke-your-audit-log&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #microsoft #ai &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-24T21:33:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdj28jruqv5ehkq7h8uxgtp03mp3tx5f49r58hrpnpadl7lpqd75szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqv0gs0u</id>
    
      <title type="html">&amp;#34;SystemD Service Hardening&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdj28jruqv5ehkq7h8uxgtp03mp3tx5f49r58hrpnpadl7lpqd75szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqv0gs0u" />
    <content type="html">
      &amp;#34;SystemD Service Hardening&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://roguesecurity.dev/blog/systemd-hardening&#34;&gt;https://roguesecurity.dev/blog/systemd-hardening&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#linux #systemd #security &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-18T12:07:09Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0rnpca9j00jpn5ld9thd0md89q8j5vnv3529dt00m5gxlwcepctszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqf2sakz</id>
    
      <title type="html">&amp;#34;Smuggling arbitrary data through an emoji&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0rnpca9j00jpn5ld9thd0md89q8j5vnv3529dt00m5gxlwcepctszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqf2sakz" />
    <content type="html">
      &amp;#34;Smuggling arbitrary data through an emoji&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://paulbutler.org/2025/smuggling-arbitrary-data-through-an-emoji/&#34;&gt;https://paulbutler.org/2025/smuggling-arbitrary-data-through-an-emoji/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#emoji #hiddendata #fun &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-09T17:04:13Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsx904um8wj6swp0crd425elgumx4mf6j2mlkrdhrvn4q6qzp4mvrczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqaajep5</id>
    
      <title type="html">&amp;#34;Cracking the Vault: how we found zero-day flaws in ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsx904um8wj6swp0crd425elgumx4mf6j2mlkrdhrvn4q6qzp4mvrczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqaajep5" />
    <content type="html">
      &amp;#34;Cracking the Vault: how we found zero-day flaws in authentication, identity, and authorization in HashiCorp Vault&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://cyata.ai/blog/cracking-the-vault-how-we-found-zero-day-flaws-in-authentication-identity-and-authorization-in-hashicorp-vault/&#34;&gt;https://cyata.ai/blog/cracking-the-vault-how-we-found-zero-day-flaws-in-authentication-identity-and-authorization-in-hashicorp-vault/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #hashicorp #vault &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-08T09:58:06Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsy6f8tshnx9g7qxp235ahk55kzsnqs0utsaaj7nqrh5apehwqd7eszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzpzxl4</id>
    
      <title type="html">&amp;#34;We replaced passwords with something worse&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsy6f8tshnx9g7qxp235ahk55kzsnqs0utsaaj7nqrh5apehwqd7eszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzpzxl4" />
    <content type="html">
      &amp;#34;We replaced passwords with something worse&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.danielh.cc/blog/passwords&#34;&gt;https://blog.danielh.cc/blog/passwords&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #passwords #web #authentication &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-08-07T08:58:54Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqnpsat92leug4g9h28p4jp90u0p5jwjks9p4s9x6ykqgfkq9as4szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzdc6jn</id>
    
      <title type="html">Interesting approach... Probably a better system than the rest. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqnpsat92leug4g9h28p4jp90u0p5jwjks9p4s9x6ykqgfkq9as4szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzdc6jn" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqszejt69yu4z6kpyyhl8dq4cxqmcf3j6dwtl9a2pltugg8x7xm4z7cprfmhxue69uhhq7tjv9kkjepwve5kzar2v9nzucm0d5hszawnpf&#39;&gt;nevent1q…wnpf&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;Interesting approach... Probably a better system than the rest. Let&amp;#39;s see. &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-07-27T23:28:32Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg7wv9jfzrg08smjymfpj7va2tw8uak3k957njh6ervgy3xchf2pgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9tsmq6</id>
    
      <title type="html">&amp;#34;How I Scanned all of GitHub’s “Oops Commits” for ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg7wv9jfzrg08smjymfpj7va2tw8uak3k957njh6ervgy3xchf2pgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9tsmq6" />
    <content type="html">
      &amp;#34;How I Scanned all of GitHub’s “Oops Commits” for Leaked Secrets&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://trufflesecurity.com/blog/guest-post-how-i-scanned-all-of-github-s-oops-commits-for-leaked-secrets&#34;&gt;https://trufflesecurity.com/blog/guest-post-how-i-scanned-all-of-github-s-oops-commits-for-leaked-secrets&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#git #github #security #infosec &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-07-02T20:04:16Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqvd7y5zzrjhjvhazdm5kne7taa4ph2wcmchx8zjd693gw4f6xc2gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqsg5wgz</id>
    
      <title type="html">&amp;#34;New Linux udisks flaw lets attackers get root on major Linux ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqvd7y5zzrjhjvhazdm5kne7taa4ph2wcmchx8zjd693gw4f6xc2gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqsg5wgz" />
    <content type="html">
      &amp;#34;New Linux udisks flaw lets attackers get root on major Linux distros&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.bleepingcomputer.com/news/linux/new-linux-udisks-flaw-lets-attackers-get-root-on-major-linux-distros/&#34;&gt;https://www.bleepingcomputer.com/news/linux/new-linux-udisks-flaw-lets-attackers-get-root-on-major-linux-distros/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#linux #security &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-06-23T21:27:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd3j9epc3wguvaaerngvk4jvcfndy0kup0rarvj9u7xq0q74u6gmszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq2u6zpk</id>
    
      <title type="html">&amp;#34;History of the browser user-agent string&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd3j9epc3wguvaaerngvk4jvcfndy0kup0rarvj9u7xq0q74u6gmszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq2u6zpk" />
    <content type="html">
      &amp;#34;History of the browser user-agent string&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://webaim.org/blog/user-agent-string-history&#34;&gt;https://webaim.org/blog/user-agent-string-history&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#browsers #history #useragent #web &lt;br/&gt;&lt;br/&gt;
    </content>
    <updated>2025-06-23T10:36:02Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg8hvpx4qfregjzwdr9g36vmdkx492r30ft2ry0vwy7384lzup32qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqz2e2xc</id>
    
      <title type="html">&amp;#34;Websites Are Tracking You Via Browser Fingerprinting&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg8hvpx4qfregjzwdr9g36vmdkx492r30ft2ry0vwy7384lzup32qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqz2e2xc" />
    <content type="html">
      &amp;#34;Websites Are Tracking You Via Browser Fingerprinting&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://engineering.tamu.edu/news/2025/06/websites-are-tracking-you-via-browser-fingerprinting.html&#34;&gt;https://engineering.tamu.edu/news/2025/06/websites-are-tracking-you-via-browser-fingerprinting.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;You can have an idea about your case by using: &lt;a href=&#34;https://www.amiunique.org/&#34;&gt;https://www.amiunique.org/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#privacy #security
    </content>
    <updated>2025-06-19T11:28:22Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspqvfnkxflsh7576g3ft9dpzcfwrnrgvuq2acgsqr2st7kzt4w58gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr4rq6d</id>
    
      <title type="html">&amp;#34;Optimizing Django Docker Builds with Astral’s `uv`&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspqvfnkxflsh7576g3ft9dpzcfwrnrgvuq2acgsqr2st7kzt4w58gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr4rq6d" />
    <content type="html">
      &amp;#34;Optimizing Django Docker Builds with Astral’s `uv`&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://rob.cogit8.org/posts/optimizing-django-docker-builds-with-astrals-uv/&#34;&gt;https://rob.cogit8.org/posts/optimizing-django-docker-builds-with-astrals-uv/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #uv #docker
    </content>
    <updated>2025-06-15T15:37:22Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg02sescaujrzx3vwketa667rwez70t9u62p2nym28q0c7nuu2qcqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqnpnkyt</id>
    
      <title type="html">&amp;#34;Mac Contacted 63 Different Apple Owned Domains in One Hour - ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg02sescaujrzx3vwketa667rwez70t9u62p2nym28q0c7nuu2qcqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqnpnkyt" />
    <content type="html">
      &amp;#34;Mac Contacted 63 Different Apple Owned Domains in One Hour - While Not is Use&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://appaddict.app/post/my-mac-contacted-63-different-apple-owned-domains-in-one-hour-while-not-is-use&#34;&gt;https://appaddict.app/post/my-mac-contacted-63-different-apple-owned-domains-in-one-hour-while-not-is-use&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;A Pi-hole (or similar setup) is definitely a must in this day and age.&lt;br/&gt;&lt;br/&gt;#tech #privacy #localsoftware
    </content>
    <updated>2025-06-12T15:59:39Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsyxhqqmeuxpgz3lhshvlz2n3vdc6z4887d0xdnd27tey6y5f4g60qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqmfm49t</id>
    
      <title type="html">&amp;#34;Breaking down ‘EchoLeak’, the First Zero-Click AI ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsyxhqqmeuxpgz3lhshvlz2n3vdc6z4887d0xdnd27tey6y5f4g60qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqmfm49t" />
    <content type="html">
      &amp;#34;Breaking down ‘EchoLeak’, the First Zero-Click AI Vulnerability Enabling Data Exfiltration from Microsoft 365 Copilot&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.aim.security/lp/aim-labs-echoleak-blogpost&#34;&gt;https://www.aim.security/lp/aim-labs-echoleak-blogpost&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #ai #infosec #microsoft #copilot
    </content>
    <updated>2025-06-12T09:28:30Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsyf0jnsf5hh7ewd027gf2mcapmdxt2u0q4un7fl9h9xfacckfh2aszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq224gzr</id>
    
      <title type="html">&amp;#34;CVE-2025-47934 – Spoofing OpenPGP.js signature ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsyf0jnsf5hh7ewd027gf2mcapmdxt2u0q4un7fl9h9xfacckfh2aszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq224gzr" />
    <content type="html">
      &amp;#34;CVE-2025-47934 – Spoofing OpenPGP.js signature verification&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://codeanlabs.com/blog/research/cve-2025-47934-spoofing-openpgp-js-signatures/&#34;&gt;https://codeanlabs.com/blog/research/cve-2025-47934-spoofing-openpgp-js-signatures/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #openpgp #openpgpjs
    </content>
    <updated>2025-06-10T16:43:23Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv7segkw56n99anjzuxlevk7jh6nty7nqg2597p2v5jslawnezjzqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa28rcu</id>
    
      <title type="html">&amp;#34;Disclosure: Covert Web-to-App Tracking via Localhost on ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv7segkw56n99anjzuxlevk7jh6nty7nqg2597p2v5jslawnezjzqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa28rcu" />
    <content type="html">
      &amp;#34;Disclosure: Covert Web-to-App Tracking via Localhost on Android&amp;#34;&lt;br/&gt;&lt;br/&gt;or &lt;br/&gt;&lt;br/&gt;Meta and Yandex &amp;#34;native Android apps receive browsers&amp;#39; metadata, cookies and commands from the Meta Pixel and Yandex Metrica scripts embedded on thousands of web sites.&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://localmess.github.io/&#34;&gt;https://localmess.github.io/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #android #browsers #privacy
    </content>
    <updated>2025-06-03T16:52:33Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8t05dhlr65qnhglva7rnkjjjhl3g7njr0a3rkrknvfltlqyclzmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrxqwxn</id>
    
      <title type="html">Django: Deferred constrain enforcement Another Friday, another ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8t05dhlr65qnhglva7rnkjjjhl3g7njr0a3rkrknvfltlqyclzmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrxqwxn" />
    <content type="html">
      Django: Deferred constrain enforcement&lt;br/&gt;&lt;br/&gt;Another Friday, another Django related post. I guess this blog is becoming a bit monothematic. I promise the next ones will bring the much-needed diversity of contents, but today let’s explore a very useful feature of the Django’s ORM. &lt;br/&gt;&lt;br/&gt;Ok… Ok… it’s more of a feature of PostgreSQL that Django supports, and it isn’t available on the other database backend. But let’s dive in any way. […]&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.ovalerio.net/archives/3160&#34;&gt;https://blog.ovalerio.net/archives/3160&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#Django #djangofridaytips #postgresql #Python
    </content>
    <updated>2025-05-30T17:11:15Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2m89qn24hxnrxlfcx8f0re6jy4qwtfmjjmetutjyfkxj3pr3vwpczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8p3x52</id>
    
      <title type="html">&amp;#34;Why are 2025/05/28 and 2025-05-28 different days in ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2m89qn24hxnrxlfcx8f0re6jy4qwtfmjjmetutjyfkxj3pr3vwpczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8p3x52" />
    <content type="html">
      &lt;br/&gt;&amp;#34;Why are 2025/05/28 and 2025-05-28 different days in JavaScript?&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://brandondong.github.io/blog/javascript_dates/&#34;&gt;https://brandondong.github.io/blog/javascript_dates/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;🤯&lt;br/&gt;&lt;br/&gt;#javascript
    </content>
    <updated>2025-05-28T10:58:41Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqmjscgn5srtr3p3l9jeeslu0scql8ax4wj6vpvh8q64r7dcgdmtqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxtcsfy</id>
    
      <title type="html">&amp;#34;Python: The Documentary&amp;#34; [trailer] ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqmjscgn5srtr3p3l9jeeslu0scql8ax4wj6vpvh8q64r7dcgdmtqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxtcsfy" />
    <content type="html">
      &amp;#34;Python: The Documentary&amp;#34; [trailer]&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.youtube.com/watch?v=pqBqdNIPrbo&#34;&gt;https://www.youtube.com/watch?v=pqBqdNIPrbo&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python
    </content>
    <updated>2025-05-27T20:04:50Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszwtgyk94lsujvrdnhz5lumfg4ux7td7kc0866tqx0qy5cgd5n5uqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpgt6f5</id>
    
      <title type="html">&amp;#34;Remote Prompt Injection in GitLab Duo Leads to Source Code ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszwtgyk94lsujvrdnhz5lumfg4ux7td7kc0866tqx0qy5cgd5n5uqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpgt6f5" />
    <content type="html">
      &amp;#34;Remote Prompt Injection in GitLab Duo Leads to Source Code Theft&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.legitsecurity.com/blog/remote-prompt-injection-in-gitlab-duo&#34;&gt;https://www.legitsecurity.com/blog/remote-prompt-injection-in-gitlab-duo&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #ai #gitlab
    </content>
    <updated>2025-05-26T00:07:17Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsytmqxfg6p2nv4un90c58ahtmjakvrl2805a4sz908gtq8ef2m0rqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq622xq3</id>
    
      <title type="html">&amp;#34;Loading Pydantic models from JSON without running out of ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsytmqxfg6p2nv4un90c58ahtmjakvrl2805a4sz908gtq8ef2m0rqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq622xq3" />
    <content type="html">
      &amp;#34;Loading Pydantic models from JSON without running out of memory&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pythonspeed.com/articles/pydantic-json-memory/&#34;&gt;https://pythonspeed.com/articles/pydantic-json-memory/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #pydantic
    </content>
    <updated>2025-05-23T09:58:11Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszy4xu8earw5mdkw2qy0d7mxeg3dwk6c6qmd649eq8swz59xd85eczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqm58u45</id>
    
      <title type="html">&amp;#34;Django Security Best Practices: A Comprehensive Guide for ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszy4xu8earw5mdkw2qy0d7mxeg3dwk6c6qmd649eq8swz59xd85eczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqm58u45" />
    <content type="html">
      &amp;#34;Django Security Best Practices: A Comprehensive Guide for Software Engineers&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://corgea.com/Learn/django-security-best-practices-a-comprehensive-guid-for-software-engineers&#34;&gt;https://corgea.com/Learn/django-security-best-practices-a-comprehensive-guid-for-software-engineers&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #django #security
    </content>
    <updated>2025-05-21T09:28:05Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2yqvuehgqcmjsnw6kkhd5mn0vclgr9rhjmaknc3zs63lpj28lu5qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqp53kzu</id>
    
      <title type="html">&amp;#34;The 18-point secrets management checklist&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2yqvuehgqcmjsnw6kkhd5mn0vclgr9rhjmaknc3zs63lpj28lu5qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqp53kzu" />
    <content type="html">
      &amp;#34;The 18-point secrets management checklist&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.hashicorp.com/en/blog/the-18-point-secrets-management-checklist&#34;&gt;https://www.hashicorp.com/en/blog/the-18-point-secrets-management-checklist&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #secrets #secretmanagement
    </content>
    <updated>2025-05-20T17:50:16Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszcaq7x6n5x89ghwh2ns8tvcsp76sdytglcsfekqyv8qs4le2qteszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqd4merq</id>
    
      <title type="html">&amp;#34;Security Vulnerabilities fixed in Firefox 138.0.4&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszcaq7x6n5x89ghwh2ns8tvcsp76sdytglcsfekqyv8qs4le2qteszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqd4merq" />
    <content type="html">
      &amp;#34;Security Vulnerabilities fixed in Firefox 138.0.4&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.mozilla.org/en-US/security/advisories/mfsa2025-36/&#34;&gt;https://www.mozilla.org/en-US/security/advisories/mfsa2025-36/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;* CVE-2025-4920: Out-of-bounds access when resolving Promise objects&lt;br/&gt;* CVE-2025-4921: Out-of-bounds access when optimizing linear sums&lt;br/&gt;&lt;br/&gt;#firefox #security
    </content>
    <updated>2025-05-18T15:55:23Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8unp2zmtrruumdj4swga4pwkv49hpgjqt5skjmfnxr3wc3s5mktqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqty6hy7</id>
    
      <title type="html">&amp;#34;The cryptography behind passkeys&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8unp2zmtrruumdj4swga4pwkv49hpgjqt5skjmfnxr3wc3s5mktqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqty6hy7" />
    <content type="html">
      &amp;#34;The cryptography behind passkeys&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.trailofbits.com/2025/05/14/the-cryptography-behind-passkeys/&#34;&gt;https://blog.trailofbits.com/2025/05/14/the-cryptography-behind-passkeys/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#authentication #security #passkeys
    </content>
    <updated>2025-05-16T09:17:02Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqw3jhhvul3yevzkcuq8qfpk4ueptmqq3ewd59hlkew8fpvkm9cmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqhqfc2f</id>
    
      <title type="html">Node.js Security Release ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqw3jhhvul3yevzkcuq8qfpk4ueptmqq3ewd59hlkew8fpvkm9cmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqhqfc2f" />
    <content type="html">
      Node.js Security Release&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://nodejs.org/en/blog/vulnerability/may-2025-security-releases&#34;&gt;https://nodejs.org/en/blog/vulnerability/may-2025-security-releases&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;* Improper error handling in async cryptographic operations crashes process&lt;br/&gt;* Improper HTTP header block termination in llhttp &lt;br/&gt;* Corrupted pointer in node::fs::ReadFileUtf8(const FunctionCallbackInfo&amp;lt;Value&amp;gt;&amp;amp; args) when args[0] is a string.&lt;br/&gt;&lt;br/&gt;#nodejs #security
    </content>
    <updated>2025-05-15T10:06:20Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsxx2fx3tr8jnd9ud07vlww83xux95e0w25p29vw4zdpppn9w4s57qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq4r2wvm</id>
    
      <title type="html">&amp;#34;Passkeys for Normal People&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsxx2fx3tr8jnd9ud07vlww83xux95e0w25p29vw4zdpppn9w4s57qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq4r2wvm" />
    <content type="html">
      &amp;#34;Passkeys for Normal People&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.troyhunt.com/passkeys-for-normal-people/&#34;&gt;https://www.troyhunt.com/passkeys-for-normal-people/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#authentication #passkeys #webauthn #mfa #security
    </content>
    <updated>2025-05-13T14:02:12Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszjnva4rnwy9ugqd3u2kg0rus5gpmyd40fmm6qz8v6lgrl9jyva0czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqshj48</id>
    
      <title type="html">&amp;#34;Tech &amp;amp; Non-Tech Stacks to Run Listen Notes (2025)&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszjnva4rnwy9ugqd3u2kg0rus5gpmyd40fmm6qz8v6lgrl9jyva0czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqshj48" />
    <content type="html">
      &amp;#34;Tech &amp;amp; Non-Tech Stacks to Run Listen Notes (2025)&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.listennotes.com/blog/tech-non-tech-stacks-to-run-listen-notes-2025-113/&#34;&gt;https://www.listennotes.com/blog/tech-non-tech-stacks-to-run-listen-notes-2025-113/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#techstack #startups
    </content>
    <updated>2025-05-11T18:09:56Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv9azg96fh4ystq6xszs0as5f4vvqj476s6qcl4c8hjsms7xcnmmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrd3dmx</id>
    
      <title type="html">&amp;#34;How to Harden GitHub Actions: The Unofficial Guide&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv9azg96fh4ystq6xszs0as5f4vvqj476s6qcl4c8hjsms7xcnmmgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqrd3dmx" />
    <content type="html">
      &amp;#34;How to Harden GitHub Actions: The Unofficial Guide&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.wiz.io/blog/github-actions-security-guide&#34;&gt;https://www.wiz.io/blog/github-actions-security-guide&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #supplychain #github #githubactions
    </content>
    <updated>2025-05-09T14:13:46Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsf4m7gcldve8swfpezgl7qd0f0n37agfrq6mdfl97u5sv2n2qqyzczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqydu4pa</id>
    
      <title type="html">&amp;#34;The Beauty Of Having A Pi-hole&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsf4m7gcldve8swfpezgl7qd0f0n37agfrq6mdfl97u5sv2n2qqyzczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqydu4pa" />
    <content type="html">
      &amp;#34;The Beauty Of Having A Pi-hole&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://den.dev/blog/pihole/&#34;&gt;https://den.dev/blog/pihole/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#ads #privacy #dns #tracking #web #iot
    </content>
    <updated>2025-05-05T19:45:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0zhtr36na697cmy76rg8gszxu8mwxv9yc4rvua7ckrm3zfhwrplczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpjxx3h</id>
    
      <title type="html">&amp;#34;Insecure credential storage plagues MCP&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0zhtr36na697cmy76rg8gszxu8mwxv9yc4rvua7ckrm3zfhwrplczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpjxx3h" />
    <content type="html">
      &amp;#34;Insecure credential storage plagues MCP&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp/&#34;&gt;https://blog.trailofbits.com/2025/04/30/insecure-credential-storage-plagues-mcp/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #ai #mcp #cybersecurity
    </content>
    <updated>2025-05-05T13:05:25Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8fu64yvsrls8jmdnfdcu90fsk2hh9auy9ktekhf0vetpn3h4h4sgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqxvsfd</id>
    
      <title type="html">&amp;#34;I use Zip Bombs to Protect my Server&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8fu64yvsrls8jmdnfdcu90fsk2hh9auy9ktekhf0vetpn3h4h4sgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqqxvsfd" />
    <content type="html">
      &amp;#34;I use Zip Bombs to Protect my Server&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://idiallo.com/blog/zipbomb-protection&#34;&gt;https://idiallo.com/blog/zipbomb-protection&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #spam #bots
    </content>
    <updated>2025-05-01T17:11:29Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswtemxc26h8mlrtl8xnx3ml7fqkgf7juwtahagu6g8ctyycpyentczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqemz6ws</id>
    
      <title type="html">&amp;#34;Cross-Site WebSocket Hijacking Exploitation in 2025&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswtemxc26h8mlrtl8xnx3ml7fqkgf7juwtahagu6g8ctyycpyentczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqemz6ws" />
    <content type="html">
      &amp;#34;Cross-Site WebSocket Hijacking Exploitation in 2025&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.includesecurity.com/2025/04/cross-site-websocket-hijacking-exploitation-in-2025/&#34;&gt;https://blog.includesecurity.com/2025/04/cross-site-websocket-hijacking-exploitation-in-2025/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;I remember, a few years ago, finding this kind of issue in a project, that I ended up working on.&lt;br/&gt;&lt;br/&gt;#security #websec #web #webdev
    </content>
    <updated>2025-05-01T15:36:39Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs9pv7plkkgwv88ks0f3799gppayjp68fdct4a6qd4vvv8ca7aqtrqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqmac28n</id>
    
      <title type="html">&amp;#34;Principles for coding securely with LLMs&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs9pv7plkkgwv88ks0f3799gppayjp68fdct4a6qd4vvv8ca7aqtrqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqmac28n" />
    <content type="html">
      &amp;#34;Principles for coding securely with LLMs&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.seangoedecke.com/ai-security/&#34;&gt;https://www.seangoedecke.com/ai-security/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #ai #llm
    </content>
    <updated>2025-04-29T19:20:39Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2mpg75uql0ztpl7zkn7fpydzfqhrtequhwfhuv7y985ydq2nrp4czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfzdc6t</id>
    
      <title type="html">&amp;#34;SSL.com: DCV bypass and issue fake certificates for any MX ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2mpg75uql0ztpl7zkn7fpydzfqhrtequhwfhuv7y985ydq2nrp4czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfzdc6t" />
    <content type="html">
      &amp;#34;SSL.com: DCV bypass and issue fake certificates for any MX hostname&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://bugzilla.mozilla.org/show_bug.cgi?id=1961406&#34;&gt;https://bugzilla.mozilla.org/show_bug.cgi?id=1961406&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;ooouuchhh&lt;br/&gt;&lt;br/&gt;#security #ssl #tls #ca #cybersecurity #infosec
    </content>
    <updated>2025-04-20T09:43:10Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdde50229anaq7jh256akk2klcdqhccsyhswchs3gn7at96syayhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwlpm6j</id>
    
      <title type="html">&amp;#34;European Union Vulnerability Database (EUVD)&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdde50229anaq7jh256akk2klcdqhccsyhswchs3gn7at96syayhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwlpm6j" />
    <content type="html">
      &amp;#34;European Union Vulnerability Database (EUVD)&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://euvd.enisa.europa.eu/&#34;&gt;https://euvd.enisa.europa.eu/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;🤔&lt;br/&gt;&lt;br/&gt;#security #cybersecurity
    </content>
    <updated>2025-04-16T13:49:43Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswxfke2253eyfd9x597wqaq9g22uuup2f8z9j86nj4uauzdxm59kgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq6c652n</id>
    
      <title type="html">&amp;#34;Model Context Protocol has prompt injection security ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswxfke2253eyfd9x597wqaq9g22uuup2f8z9j86nj4uauzdxm59kgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq6c652n" />
    <content type="html">
      &amp;#34;Model Context Protocol has prompt injection security problems&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://simonwillison.net/2025/Apr/9/mcp-prompt-injection/#atom-everything&#34;&gt;https://simonwillison.net/2025/Apr/9/mcp-prompt-injection/#atom-everything&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#mcp #security #cybersecurity #llm #ai&lt;br/&gt;
    </content>
    <updated>2025-04-10T09:53:18Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswwkn2s77uxv6r24dzu8n2rrllz64p5jg7sg3kualhh7spyue5zhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzr523w</id>
    
      <title type="html">&amp;#34;Less htmx is More&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswwkn2s77uxv6r24dzu8n2rrllz64p5jg7sg3kualhh7spyue5zhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzr523w" />
    <content type="html">
      &amp;#34;Less htmx is More&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://unplannedobsolescence.com/blog/less-htmx-is-more/&#34;&gt;https://unplannedobsolescence.com/blog/less-htmx-is-more/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#html #htmx #webdev #http
    </content>
    <updated>2025-04-08T15:58:09Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg4pkwyg9wq3weknkfsqghz0rlwsdt8gxwfsxlfujhay0hm0e6xdszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqurdkww</id>
    
      <title type="html">&amp;#34;CodeQLEAKED – Public Secrets Exposure Leads to Supply ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg4pkwyg9wq3weknkfsqghz0rlwsdt8gxwfsxlfujhay0hm0e6xdszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqurdkww" />
    <content type="html">
      &amp;#34;CodeQLEAKED – Public Secrets Exposure Leads to Supply Chain Attack on GitHub CodeQL&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.praetorian.com/blog/codeqleaked-public-secrets-exposure-leads-to-supply-chain-attack-on-github-codeql/&#34;&gt;https://www.praetorian.com/blog/codeqleaked-public-secrets-exposure-leads-to-supply-chain-attack-on-github-codeql/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#github #githubactions #supplychain #security #cicd
    </content>
    <updated>2025-04-04T09:50:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqst4ha8wrnth3rgh85nfxzgjdtxknrzlgpkec86vrvkhvyluhxyvzqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjqm0aa</id>
    
      <title type="html">&amp;#34;The EU Open Source Solutions Catalogue is now live&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqst4ha8wrnth3rgh85nfxzgjdtxknrzlgpkec86vrvkhvyluhxyvzqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqjqm0aa" />
    <content type="html">
      &amp;#34;The EU Open Source Solutions Catalogue is now live&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://interoperable-europe.ec.europa.eu/interoperable-europe/news/eu-open-source-solutions-catalogue-now-live&#34;&gt;https://interoperable-europe.ec.europa.eu/interoperable-europe/news/eu-open-source-solutions-catalogue-now-live&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;&amp;#34;The EU OSS Catalogue currently hosts over 640 solutions, encompassing both complete solutions and individual building blocks to be used while building your own solution.&amp;#34;&lt;br/&gt;&lt;br/&gt;&amp;#34;Designed primarily for public administrations across the EU, the catalogue provides access to reusable solutions across more than 30 key areas relevant to public sector needs.&amp;#34;&lt;br/&gt;&lt;br/&gt;👏&lt;br/&gt;&lt;br/&gt;#eu #opensource #publiccode
    </content>
    <updated>2025-03-31T14:28:52Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsylu77yc0ku84cd3kj8prnss3atm77ycmy9y58kduem7t382c8hsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwvc77d</id>
    
      <title type="html">&amp;#34;How to report a security issue in an open source ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsylu77yc0ku84cd3kj8prnss3atm77ycmy9y58kduem7t382c8hsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwvc77d" />
    <content type="html">
      &amp;#34;How to report a security issue in an open source project&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://jacobian.org/2025/mar/27/reporting-security-issues-in-oss/&#34;&gt;https://jacobian.org/2025/mar/27/reporting-security-issues-in-oss/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #opensource
    </content>
    <updated>2025-03-29T22:35:14Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8xd5knu2yeu0xja8msgmn9lgp445r8arfl027emdhtukl4xz6vdgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq4z6lz0</id>
    
      <title type="html">&amp;#34;REST in Peace? Django&amp;#39;s Framework Problem&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8xd5knu2yeu0xja8msgmn9lgp445r8arfl027emdhtukl4xz6vdgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq4z6lz0" />
    <content type="html">
      &amp;#34;REST in Peace? Django&amp;#39;s Framework Problem&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://danlamanna.com/posts/rest-in-peace-djangos-framework-problem/&#34;&gt;https://danlamanna.com/posts/rest-in-peace-djangos-framework-problem/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#django #djangorestframework
    </content>
    <updated>2025-03-29T11:14:10Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv7untr5g34fjaf4599fr43fv87secnnwqtwdysa2uh4ujgjmeqtczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq79606q</id>
    
      <title type="html">&amp;#34;Share Python Scripts Like a Pro: uv and PEP 723 for Easy ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv7untr5g34fjaf4599fr43fv87secnnwqtwdysa2uh4ujgjmeqtczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq79606q" />
    <content type="html">
      &amp;#34;Share Python Scripts Like a Pro: uv and PEP 723 for Easy Deployment&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://thisdavej.com/share-python-scripts-like-a-pro-uv-and-pep-723-for-easy-deployment/&#34;&gt;https://thisdavej.com/share-python-scripts-like-a-pro-uv-and-pep-723-for-easy-deployment/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #uv
    </content>
    <updated>2025-03-28T11:35:15Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8cces5n5knra2p02kazw8gk6z0p7c6xu726fgslxy0kxg2qjwx6szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsquj2qdy</id>
    
      <title type="html">&amp;#34;Whose code am I running in GitHub Actions?&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8cces5n5knra2p02kazw8gk6z0p7c6xu726fgslxy0kxg2qjwx6szyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsquj2qdy" />
    <content type="html">
      &amp;#34;Whose code am I running in GitHub Actions?&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://alexwlchan.net/2025/github-actions-audit/&#34;&gt;https://alexwlchan.net/2025/github-actions-audit/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #supplychain #cicd #githubactions
    </content>
    <updated>2025-03-27T13:43:24Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspjrjvwz88ugcshq9gcsvtftqga6365xhdg2ytfvrwr2hryxpa5ygzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqldd4yd</id>
    
      <title type="html">&amp;#34;IngressNightmare: 9.8 Critical Unauthenticated Remote Code ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspjrjvwz88ugcshq9gcsvtftqga6365xhdg2ytfvrwr2hryxpa5ygzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqldd4yd" />
    <content type="html">
      &amp;#34;IngressNightmare: 9.8 Critical Unauthenticated Remote Code Execution Vulnerabilities in Ingress NGINX&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities&#34;&gt;https://www.wiz.io/blog/ingress-nginx-kubernetes-vulnerabilities&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #kubernetes #nginx
    </content>
    <updated>2025-03-25T17:50:46Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsq8e8lqa96xyk3eu9k4tq45wgx5tgvg3806qsw780nhgyqeuqedsqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqlfc005</id>
    
      <title type="html">&amp;#34;Next.js Middleware Exploit: Deep Dive into CVE-2025-29927 ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsq8e8lqa96xyk3eu9k4tq45wgx5tgvg3806qsw780nhgyqeuqedsqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqlfc005" />
    <content type="html">
      &amp;#34;Next.js Middleware Exploit: Deep Dive into CVE-2025-29927 Authorization Bypass&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://zeropath.com/blog/nextjs-middleware-cve-2025-29927-auth-bypass&#34;&gt;https://zeropath.com/blog/nextjs-middleware-cve-2025-29927-auth-bypass&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #nextjs #webdev
    </content>
    <updated>2025-03-23T14:51:49Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqv6eg2h0xqa80yndclsrxpnj27ypluh9jc66wa0yfmusakqqyv5gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzggm76</id>
    
      <title type="html">I guess updating your mobile browser would suffice (at least ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqv6eg2h0xqa80yndclsrxpnj27ypluh9jc66wa0yfmusakqqyv5gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqzggm76" />
    <content type="html">
      In reply to &lt;a href=&#39;/nevent1qqsqladcqk5dz55ryumrnqpl3eggk4vddrncphhl5rvl4qecg7fhmxspremhxue69uhkvet9v3ejumn0wd68ytnzv9hxgtmvv9hxwtm9dcsc3lqk&#39;&gt;nevent1q…3lqk&lt;/a&gt;&lt;br/&gt;_________________________&lt;br/&gt;&lt;br/&gt;I guess updating your mobile browser would suffice (at least according to the article)
    </content>
    <updated>2025-03-21T18:51:35Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsty8g93llapzwepmuzcv0hn09stdmayqycdmdxn39y4ml0ewzlpngzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqnmsug4</id>
    
      <title type="html">&amp;#34;CVE-2024-9956 - PassKey Account Takeover in All Mobile ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsty8g93llapzwepmuzcv0hn09stdmayqycdmdxn39y4ml0ewzlpngzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqnmsug4" />
    <content type="html">
      &amp;#34;CVE-2024-9956 - PassKey Account Takeover in All Mobile Browsers&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://mastersplinter.work/research/passkey/&#34;&gt;https://mastersplinter.work/research/passkey/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #authentication #passkeys
    </content>
    <updated>2025-03-20T13:57:39Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstw7el4j4wyqpjpqlqd5mknummq0j73nq5qhs8jql7and3v66657gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvgg4kd</id>
    
      <title type="html">&amp;#34;Apache Tomcat Vulnerability Actively Exploited Just 30 Hours ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstw7el4j4wyqpjpqlqd5mknummq0j73nq5qhs8jql7and3v66657gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvgg4kd" />
    <content type="html">
      &amp;#34;Apache Tomcat Vulnerability Actively Exploited Just 30 Hours After Public Disclosure&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://thehackernews.com/2025/03/apache-tomcat-vulnerability-comes-under.html&#34;&gt;https://thehackernews.com/2025/03/apache-tomcat-vulnerability-comes-under.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#java #tomcat #security #cybersecurity #netsec
    </content>
    <updated>2025-03-19T11:38:44Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2rcgf0wn4spmulcc2khw967l9m5ygmrf2xj69ehsz7emeejf5t6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfl0m99</id>
    
      <title type="html">&amp;#34;Password reuse is rampant: nearly half of observed user ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2rcgf0wn4spmulcc2khw967l9m5ygmrf2xj69ehsz7emeejf5t6qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfl0m99" />
    <content type="html">
      &amp;#34;Password reuse is rampant: nearly half of observed user logins are compromised&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.cloudflare.com/password-reuse-rampant-half-user-logins-compromised/&#34;&gt;https://blog.cloudflare.com/password-reuse-rampant-half-user-logins-compromised/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #passwords #authentication
    </content>
    <updated>2025-03-18T13:08:25Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsppnzrlgkemyhr5sflxhyvd0l0r0la832we2kcrrtrhr0hzwngw4czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqegeg9s</id>
    
      <title type="html">GitHub action &amp;#34;tj-actions/changed-files&amp;#34; is compromised ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsppnzrlgkemyhr5sflxhyvd0l0r0la832we2kcrrtrhr0hzwngw4czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqegeg9s" />
    <content type="html">
      GitHub action &amp;#34;tj-actions/changed-files&amp;#34; is compromised&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.stepsecurity.io/blog/harden-runner-detection-tj-actions-changed-files-action-is-compromised&#34;&gt;https://www.stepsecurity.io/blog/harden-runner-detection-tj-actions-changed-files-action-is-compromised&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #githubactions #github #cicd&lt;br/&gt;
    </content>
    <updated>2025-03-15T10:42:16Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspv30a4axnulud76y503j9qv8m2l067ag5w7cgs5hp403zdkatpjqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq94t6pz</id>
    
      <title type="html">&amp;#34;Everything you say to your Echo will be sent to Amazon ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspv30a4axnulud76y503j9qv8m2l067ag5w7cgs5hp403zdkatpjqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq94t6pz" />
    <content type="html">
      &amp;#34;Everything you say to your Echo will be sent to Amazon starting on March 28&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://arstechnica.com/gadgets/2025/03/everything-you-say-to-your-echo-will-be-sent-to-amazon-starting-on-march-28/&#34;&gt;https://arstechnica.com/gadgets/2025/03/everything-you-say-to-your-echo-will-be-sent-to-amazon-starting-on-march-28/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;Ouch. The best place for these listening devices is in the garbage.&lt;br/&gt;&lt;br/&gt;#amazon #alexa #echo #privacy
    </content>
    <updated>2025-03-14T23:03:40Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswm93hg6n0gls3nvpvcag620tx8pz3nvxu0pakmk34fflm8e9dufczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqexx0zu</id>
    
      <title type="html">&amp;#34;Django security releases issued: 5.1.7, 5.0.13 and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswm93hg6n0gls3nvpvcag620tx8pz3nvxu0pakmk34fflm8e9dufczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqexx0zu" />
    <content type="html">
      &amp;#34;Django security releases issued: 5.1.7, 5.0.13 and 4.2.20&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.djangoproject.com/weblog/2025/mar/06/security-releases/&#34;&gt;https://www.djangoproject.com/weblog/2025/mar/06/security-releases/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #django #python
    </content>
    <updated>2025-03-06T17:31:59Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszvnpgkay44udhuks8kfxrs7urdpsve7egre4l5x4lvzahvx7443qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqst3kza</id>
    
      <title type="html">Status of old PyPI projects: archived Since late January, the ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszvnpgkay44udhuks8kfxrs7urdpsve7egre4l5x4lvzahvx7443qzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqst3kza" />
    <content type="html">
      Status of old PyPI projects: archived&lt;br/&gt;&lt;br/&gt;Since late January, the python package index (PyPI) supports archiving projects/packages. This is, in fact, a very welcome feature, since it clearly tells without any doubt when a package is no longer maintained and will not receive any further updates. &lt;br/&gt;&lt;br/&gt;It makes it easier for the person looking for packages, to know which ones deserve a closer inspection and which ones are there abandoned, […]&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.ovalerio.net/archives/3112&#34;&gt;https://blog.ovalerio.net/archives/3112&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#pypi #Python
    </content>
    <updated>2025-03-05T21:08:22Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs26nrxveuvcj34zw3c7a545dyn60z0q6kmj2mcn4xtl9qy63ryhxszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq02d2xd</id>
    
      <title type="html">&amp;#34;Advanced Nginx Hardening&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs26nrxveuvcj34zw3c7a545dyn60z0q6kmj2mcn4xtl9qy63ryhxszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq02d2xd" />
    <content type="html">
      &amp;#34;Advanced Nginx Hardening&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://medium.com/@js_9757/advanced-nginx-hardening-15bf96058327&#34;&gt;https://medium.com/@js_9757/advanced-nginx-hardening-15bf96058327&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#nginx
    </content>
    <updated>2025-03-03T21:02:24Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsz0tch6dj2xtt2hsxflxfdpn09cda3pwjxv2z3zxhxsedkh02fy9gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqyp3h6u</id>
    
      <title type="html">&amp;#34;form-action Content-Security-Policy Bypass And Other Tactics ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsz0tch6dj2xtt2hsxflxfdpn09cda3pwjxv2z3zxhxsedkh02fy9gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqyp3h6u" />
    <content type="html">
      &amp;#34;form-action Content-Security-Policy Bypass And Other Tactics For Dealing With The CSP&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://nzt-48.org/form-action-content-security-policy-bypass-and-other-tactics-for-dealing-with-the-csp&#34;&gt;https://nzt-48.org/form-action-content-security-policy-bypass-and-other-tactics-for-dealing-with-the-csp&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #browsers #web #csp
    </content>
    <updated>2025-03-02T19:26:29Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsrrfew39j38dw6823qrlksymrwxgn00ulc69c7zufy0eehg93vdqszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9wq7mt</id>
    
      <title type="html">&amp;#34;git checkout -&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsrrfew39j38dw6823qrlksymrwxgn00ulc69c7zufy0eehg93vdqszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9wq7mt" />
    <content type="html">
      &amp;#34;git checkout -&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://mathspp.com/blog/til/git-checkout&#34;&gt;https://mathspp.com/blog/til/git-checkout&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#git
    </content>
    <updated>2025-03-01T09:21:22Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswx7d63lyv4h2s2rpv3dptp77m2uxh7zgmmpg2xrj20cardrsmwsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq078ac2</id>
    
      <title type="html">&amp;#34;Microsoft begins turning off uBlock Origin and other ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswx7d63lyv4h2s2rpv3dptp77m2uxh7zgmmpg2xrj20cardrsmwsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq078ac2" />
    <content type="html">
      &amp;#34;Microsoft begins turning off uBlock Origin and other extensions in Edge&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.neowin.net/news/microsoft-begins-turning-off-ublock-origin-and-other-extensions-in-edge/&#34;&gt;https://www.neowin.net/news/microsoft-begins-turning-off-ublock-origin-and-other-extensions-in-edge/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;👎… Use Firefox (or a reputable and actively maintained fork).&lt;br/&gt;&lt;br/&gt;#pricavy #ads #web #ublockorigin
    </content>
    <updated>2025-02-28T10:15:17Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8aptss66rxrc6vrwzch2srchg6rr4qdhx9pedmp5hj88heavhhhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvdqfcp</id>
    
      <title type="html">&amp;#34;It is no longer safe to move our governments and societies ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8aptss66rxrc6vrwzch2srchg6rr4qdhx9pedmp5hj88heavhhhgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqvdqfcp" />
    <content type="html">
      &amp;#34;It is no longer safe to move our governments and societies to US clouds&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://berthub.eu/articles/posts/you-can-no-longer-base-your-government-and-society-on-us-clouds/&#34;&gt;https://berthub.eu/articles/posts/you-can-no-longer-base-your-government-and-society-on-us-clouds/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;Guess what? It never was!&lt;br/&gt;&lt;br/&gt;#security #cybersecuriy #digitalsoverenity
    </content>
    <updated>2025-02-23T17:29:18Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs2cns9xdhj9h9ex0p5jyzcacvlvluvj6tr8t4rxdhg6sg8kqprhuczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxdqlw5</id>
    
      <title type="html">“A year of uv: pros, cons, and should you migrate” ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs2cns9xdhj9h9ex0p5jyzcacvlvluvj6tr8t4rxdhg6sg8kqprhuczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxdqlw5" />
    <content type="html">
      “A year of uv: pros, cons, and should you migrate”&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.bitecode.dev/p/a-year-of-uv-pros-cons-and-should&#34;&gt;https://www.bitecode.dev/p/a-year-of-uv-pros-cons-and-should&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;I&amp;#39;ve also been using uv lately, I agree it is a pleasure to use. I still have many projects and other setups that rely on “pyenv”, “pipx”, “poetry”, “pip-tools”, etc. &lt;br/&gt;&lt;br/&gt;I was comfortable with my setup, and it served my purposes well, but I&amp;#39;ve to admit that uv is very appealing.&lt;br/&gt;&lt;br/&gt;Nevertheless, it will take time to migrate them all (if I decide to go in that direction).&lt;br/&gt;&lt;br/&gt;#python #uv #pip
    </content>
    <updated>2025-02-19T19:12:52Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsya7n4c38fhjtrflhj27xfkq6z6x4mn2lv38a6wshup082rn7ek9czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8m4j0a</id>
    
      <title type="html">&amp;#34;Attacks on Maven proxy repositories&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsya7n4c38fhjtrflhj27xfkq6z6x4mn2lv38a6wshup082rn7ek9czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8m4j0a" />
    <content type="html">
      &amp;#34;Attacks on Maven proxy repositories&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://github.blog/security/vulnerability-research/attacks-on-maven-proxy-repositories/&#34;&gt;https://github.blog/security/vulnerability-research/attacks-on-maven-proxy-repositories/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #supplychain #java #maven
    </content>
    <updated>2025-02-19T15:01:34Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8ss6p482jpmte479knka2cqajcwjaa42q7vaphcjzdnx4g4xt2tqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwccjpp</id>
    
      <title type="html">&amp;#34;No, Privacy is Not Dead: Beware the All-or-Nothing ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8ss6p482jpmte479knka2cqajcwjaa42q7vaphcjzdnx4g4xt2tqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqwccjpp" />
    <content type="html">
      &amp;#34;No, Privacy is Not Dead: Beware the All-or-Nothing Mindset&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.privacyguides.org/articles/2025/02/17/privacy-is-not-dead/&#34;&gt;https://www.privacyguides.org/articles/2025/02/17/privacy-is-not-dead/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #privacy
    </content>
    <updated>2025-02-18T11:24:10Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszf005suqfja7nn30s8q2qlsnpdzzhcw95pj85a0sjx3d3gu0kkyszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr7kf3e</id>
    
      <title type="html">&amp;#34;Common OAuth Vulnerabilities&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszf005suqfja7nn30s8q2qlsnpdzzhcw95pj85a0sjx3d3gu0kkyszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqr7kf3e" />
    <content type="html">
      &amp;#34;Common OAuth Vulnerabilities&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://blog.doyensec.com/2025/01/30/oauth-common-vulnerabilities.html&#34;&gt;https://blog.doyensec.com/2025/01/30/oauth-common-vulnerabilities.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #auth #oauth
    </content>
    <updated>2025-02-14T17:28:54Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswh9qttrew7p29edunm0qrdv9m76xzm97fq4aam7gef52gu26s3pczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqerx0u4</id>
    
      <title type="html">&amp;#34;Nearly a Year Later, Mozilla is Still Promoting OneRep&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswh9qttrew7p29edunm0qrdv9m76xzm97fq4aam7gef52gu26s3pczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqerx0u4" />
    <content type="html">
      &amp;#34;Nearly a Year Later, Mozilla is Still Promoting OneRep&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://krebsonsecurity.com/2025/02/nearly-a-year-later-mozilla-is-still-promoting-onerep/&#34;&gt;https://krebsonsecurity.com/2025/02/nearly-a-year-later-mozilla-is-still-promoting-onerep/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#mozilla #privacy #mozillamonitor
    </content>
    <updated>2025-02-14T10:06:21Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsw9fw9yv7stlzrd74nqq9fkntux9esud9j8pw6e3kyzv7lfmkvcsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq7ans4x</id>
    
      <title type="html">&amp;#34;Leaking the email of any YouTube user for $10,000&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsw9fw9yv7stlzrd74nqq9fkntux9esud9j8pw6e3kyzv7lfmkvcsszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq7ans4x" />
    <content type="html">
      &amp;#34;Leaking the email of any YouTube user for $10,000&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://brutecat.com/articles/leaking-youtube-emails&#34;&gt;https://brutecat.com/articles/leaking-youtube-emails&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #google
    </content>
    <updated>2025-02-12T12:50:26Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsrfx4ntd00gw6qzurvyk20hel3dlv7ucfkz4axq82zcy6z48553qczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqe090ml</id>
    
      <title type="html">&amp;#34;Go Supply Chain Attack: Malicious Package Exploits Go Module ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsrfx4ntd00gw6qzurvyk20hel3dlv7ucfkz4axq82zcy6z48553qczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqe090ml" />
    <content type="html">
      &amp;#34;Go Supply Chain Attack: Malicious Package Exploits Go Module Proxy Caching for Persistence&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://socket.dev/blog/malicious-package-exploits-go-module-proxy-caching-for-persistence&#34;&gt;https://socket.dev/blog/malicious-package-exploits-go-module-proxy-caching-for-persistence&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #go #supplychain
    </content>
    <updated>2025-02-06T10:35:12Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszvv9yjt57ujez9yhm2tg46jlh2m55x8nlf928uwc5c9nsv25pmrszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpay0wj</id>
    
      <title type="html">&amp;#34;The surprising way to save memory with BytesIO&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszvv9yjt57ujez9yhm2tg46jlh2m55x8nlf928uwc5c9nsv25pmrszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqpay0wj" />
    <content type="html">
      &amp;#34;The surprising way to save memory with BytesIO&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pythonspeed.com/articles/bytesio-reduce-memory-usage/&#34;&gt;https://pythonspeed.com/articles/bytesio-reduce-memory-usage/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python
    </content>
    <updated>2025-02-02T21:15:58Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsz2xew3jhva0yvwezpxhu0hvw829fanwh4sydzqj4l32urz59fneczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqapezua</id>
    
      <title type="html">&amp;#34;Avoid ISP routers&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsz2xew3jhva0yvwezpxhu0hvw829fanwh4sydzqj4l32urz59fneczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqapezua" />
    <content type="html">
      &amp;#34;Avoid ISP routers&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://routersecurity.org/ISProuters.php&#34;&gt;https://routersecurity.org/ISProuters.php&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #netsec
    </content>
    <updated>2025-02-02T11:53:05Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgevhex7hvnxpual6p6tpsleusvafpfwmk2jvdywdlx7epqewsn0gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9g0wgg</id>
    
      <title type="html">&amp;#34;Faster pip installs: caching, bytecode compilation, and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgevhex7hvnxpual6p6tpsleusvafpfwmk2jvdywdlx7epqewsn0gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9g0wgg" />
    <content type="html">
      &amp;#34;Faster pip installs: caching, bytecode compilation, and uv&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pythonspeed.com/articles/faster-pip-installs/&#34;&gt;https://pythonspeed.com/articles/faster-pip-installs/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #pip #uv #ci
    </content>
    <updated>2025-01-25T11:06:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv83kn549lgfadj35a502s842a4nxxs92222ptdpv8kdpemeqzgfszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9tmw54</id>
    
      <title type="html">&amp;#34;The thing that&amp;#39;s crazy is that if I followed the 2 ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv83kn549lgfadj35a502s842a4nxxs92222ptdpv8kdpemeqzgfszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq9tmw54" />
    <content type="html">
      &amp;#34;The thing that&amp;#39;s crazy is that if I followed the 2 &amp;#34;best practices&amp;#34; of verifying the phone number &#43; getting them to send an email to you from a legit domain, I would have been compromised.&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://gist.github.com/zachlatta/f86317493654b550c689dc6509973aa4&#34;&gt;https://gist.github.com/zachlatta/f86317493654b550c689dc6509973aa4&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;Wow, this phishing attempt was elaborate indeed.&lt;br/&gt;&lt;br/&gt;#security #google #socialengineering #phishing
    </content>
    <updated>2025-01-24T11:59:40Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswm4nenv7rk7hetvalgk5v75579eu0jgmsgwhwruq0m8u8n38gx2czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxqchx6</id>
    
      <title type="html">New node.js security release ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswm4nenv7rk7hetvalgk5v75579eu0jgmsgwhwruq0m8u8n38gx2czyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxqchx6" />
    <content type="html">
      New node.js security release&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://nodejs.org/en/blog/vulnerability/january-2025-security-releases&#34;&gt;https://nodejs.org/en/blog/vulnerability/january-2025-security-releases&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;- Worker permission bypass via InternalWorker leak in diagnostics (CVE-2025-23083) - (high)&lt;br/&gt;- Path traversal by drive name in Windows environment (CVE-2025-23084) - (medium)&lt;br/&gt;- GOAWAY HTTP/2 frames cause memory leak outside heap (CVE-2025-23085) - (medium)&lt;br/&gt;&lt;br/&gt;#security #nodejs
    </content>
    <updated>2025-01-21T21:17:08Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8u0e9deh9krxktjgu43ap4797h7rcdkw3jpluczlp8vd7net38ygzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqktglha</id>
    
      <title type="html">&amp;#34;Catching memory leaks with your test suite&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8u0e9deh9krxktjgu43ap4797h7rcdkw3jpluczlp8vd7net38ygzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqktglha" />
    <content type="html">
      &amp;#34;Catching memory leaks with your test suite&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pythonspeed.com/articles/identifying-resource-leaks-with-pytest/&#34;&gt;https://pythonspeed.com/articles/identifying-resource-leaks-with-pytest/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#programming #softwaredevelopment #python #pytest
    </content>
    <updated>2025-01-21T13:45:11Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg68ex3lswly4v5c39rp6yu93ta4ysz3vshq9uhpvanvxzvg49hrgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqtq9kwq</id>
    
      <title type="html">&amp;#34;Millions of Accounts Vulnerable due to Google’s OAuth ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg68ex3lswly4v5c39rp6yu93ta4ysz3vshq9uhpvanvxzvg49hrgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqtq9kwq" />
    <content type="html">
      &amp;#34;Millions of Accounts Vulnerable due to Google’s OAuth Flaw&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://trufflesecurity.com/blog/millions-at-risk-due-to-google-s-oauth-flaw&#34;&gt;https://trufflesecurity.com/blog/millions-at-risk-due-to-google-s-oauth-flaw&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;I wonder if any other OAuth providers have similar issues and how they solve it.&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #infosec #oauth #googe
    </content>
    <updated>2025-01-17T16:12:43Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdya7cxzx6p85yzc5evx25ljgx8u8q33mzqpdtmka03fgfk9crfqqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqws5dfp</id>
    
      <title type="html">&amp;#34;Don’t Use Session (Signal Fork)&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdya7cxzx6p85yzc5evx25ljgx8u8q33mzqpdtmka03fgfk9crfqqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqws5dfp" />
    <content type="html">
      &amp;#34;Don’t Use Session (Signal Fork)&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://soatok.blog/2025/01/14/dont-use-session-signal-fork/&#34;&gt;https://soatok.blog/2025/01/14/dont-use-session-signal-fork/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #infosec #signal #session #cybersecurity
    </content>
    <updated>2025-01-16T09:35:21Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspyc9p8xx4j0xmujkmqr4fusax7r53u3ak2y3xmspuc0z5h754degzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfdvn64</id>
    
      <title type="html">&amp;#34;Two independent groups of researchers have identified a ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspyc9p8xx4j0xmujkmqr4fusax7r53u3ak2y3xmspuc0z5h754degzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfdvn64" />
    <content type="html">
      &amp;#34;Two independent groups of researchers have identified a total of 6&lt;br/&gt;vulnerabilities in rsync. In the most severe CVE, an attacker only requires&lt;br/&gt;anonymous read access to a rsync server, such as a public mirror, to&lt;br/&gt;execute arbitrary code on the machine the server is running on.&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://seclists.org/oss-sec/2025/q1/16&#34;&gt;https://seclists.org/oss-sec/2025/q1/16&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #rsync
    </content>
    <updated>2025-01-15T11:00:29Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsre0lsn5ddsflpu9txzmkueu0swd0z9ae9wwzqa2lfq4c7ntxghfgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxk7m72</id>
    
      <title type="html">&amp;#34;Django security releases issued: 5.1.5, 5.0.11, and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsre0lsn5ddsflpu9txzmkueu0swd0z9ae9wwzqa2lfq4c7ntxghfgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqxk7m72" />
    <content type="html">
      &amp;#34;Django security releases issued: 5.1.5, 5.0.11, and 4.2.18&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.djangoproject.com/weblog/2025/jan/14/security-releases/&#34;&gt;https://www.djangoproject.com/weblog/2025/jan/14/security-releases/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;* CVE-2024-56374: Potential denial-of-service vulnerability in IPv6 validation&lt;br/&gt;&lt;br/&gt;#security #django
    </content>
    <updated>2025-01-14T16:44:05Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswhmtyflj93s5js7qnhcn8ac56k8a32gnvud7jn4asw32m662f2gszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqyar00j</id>
    
      <title type="html">&amp;#34;Container capabilities: a short tour&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswhmtyflj93s5js7qnhcn8ac56k8a32gnvud7jn4asw32m662f2gszyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqyar00j" />
    <content type="html">
      &amp;#34;Container capabilities: a short tour&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://padlock.argh.in/2024/12/15/container-capabilities.html&#34;&gt;https://padlock.argh.in/2024/12/15/container-capabilities.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #containers #docker
    </content>
    <updated>2025-01-14T10:11:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs98nc0mdt78efr70djl6ulv2mcps4ndxtrlxpug0qpvguq7j5fgrczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfcd6rn</id>
    
      <title type="html">&amp;#34;Database optimization isn&amp;#39;t always obvious&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs98nc0mdt78efr70djl6ulv2mcps4ndxtrlxpug0qpvguq7j5fgrczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqfcd6rn" />
    <content type="html">
      &amp;#34;Database optimization isn&amp;#39;t always obvious&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://kenwhitesell.github.io/2025/01/01/Database-optimization-is-not-alway-obvious.html&#34;&gt;https://kenwhitesell.github.io/2025/01/01/Database-optimization-is-not-alway-obvious.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#sql #databases
    </content>
    <updated>2025-01-09T20:49:10Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspxsaaagem4yu75jftc2p0l69n7asyd6pjlvfr4zw9ud6apxhxdeqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq5yxhqc</id>
    
      <title type="html">&amp;#34;Effective Python Developer Tooling in December 2024&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspxsaaagem4yu75jftc2p0l69n7asyd6pjlvfr4zw9ud6apxhxdeqzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq5yxhqc" />
    <content type="html">
      &amp;#34;Effective Python Developer Tooling in December 2024&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://pydevtools.com/blog/effective-python-developer-tooling-in-december-2024/&#34;&gt;https://pydevtools.com/blog/effective-python-developer-tooling-in-december-2024/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #programming #softwaredevelopment
    </content>
    <updated>2025-01-09T20:31:36Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsvwfapjyqk0er7u8rltrng33tl39tzvesx097m4kmv94qr0g4k4kczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8qe4ug</id>
    
      <title type="html">&amp;#34;Getting Started Contributing to Django&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsvwfapjyqk0er7u8rltrng33tl39tzvesx097m4kmv94qr0g4k4kczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsq8qe4ug" />
    <content type="html">
      &amp;#34;Getting Started Contributing to Django&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.better-simple.com/django/2024/12/25/getting-started-contributing-django/&#34;&gt;https://www.better-simple.com/django/2024/12/25/getting-started-contributing-django/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#python #django
    </content>
    <updated>2025-01-08T18:09:21Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs23ka3g7l7jl8gea8rnuc6et7jw4uyrlz7zt77h2s02h9eyacmznczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa80c7k</id>
    
      <title type="html">&amp;#34;Hat Trick: AWS introduced same RCE vulnerability three times ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs23ka3g7l7jl8gea8rnuc6et7jw4uyrlz7zt77h2s02h9eyacmznczyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqa80c7k" />
    <content type="html">
      &amp;#34;Hat Trick: AWS introduced same RCE vulnerability three times in four years&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://giraffesecurity.dev/posts/amazon-hat-trick/&#34;&gt;https://giraffesecurity.dev/posts/amazon-hat-trick/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#security #cybersecurity #aws #supplychain
    </content>
    <updated>2025-01-04T14:24:27Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs9dw9gzul3c3wtq4jkpt0rjnmupuu450ytzrws4j57tshnldsqpggzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqgefsuu</id>
    
      <title type="html">Passkey technology is elegant, but it’s most definitely not ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs9dw9gzul3c3wtq4jkpt0rjnmupuu450ytzrws4j57tshnldsqpggzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqgefsuu" />
    <content type="html">
      Passkey technology is elegant, but it’s most definitely not usable security&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://arstechnica.com/security/2024/12/passkey-technology-is-elegant-but-its-most-definitely-not-usable-security/&#34;&gt;https://arstechnica.com/security/2024/12/passkey-technology-is-elegant-but-its-most-definitely-not-usable-security/&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;Yet&lt;br/&gt;&lt;br/&gt;#passwors #passkeys #webauthn #authentication
    </content>
    <updated>2024-12-31T00:12:09Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspnwwn5de28skqfp0mkxutsdltw9vw7e79cvg7y3g5h9r5adjl3dgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqj7dqy6</id>
    
      <title type="html">&amp;#34;A Tour of WebAuthn&amp;#34; HTML version of the book ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspnwwn5de28skqfp0mkxutsdltw9vw7e79cvg7y3g5h9r5adjl3dgzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqj7dqy6" />
    <content type="html">
      &amp;#34;A Tour of WebAuthn&amp;#34;&lt;br/&gt;&lt;br/&gt;HTML version of the book&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.imperialviolet.org/tourofwebauthn/tourofwebauthn.html&#34;&gt;https://www.imperialviolet.org/tourofwebauthn/tourofwebauthn.html&lt;/a&gt;&lt;br/&gt;&lt;br/&gt;#webauthn #passkeys #authentication #2FA #security #cybersecurity
    </content>
    <updated>2024-12-28T12:13:25Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd5rp6y2q8fyh8a60d53czlev8lv0s35ms64pcf93e6kz78wdwp0gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqcn4m4m</id>
    
      <title type="html">&amp;#34;Small teams&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd5rp6y2q8fyh8a60d53czlev8lv0s35ms64pcf93e6kz78wdwp0gzyrql2zxkp9wl9us64592r9jcf2wtwnuqfl5wrqw67gz7ehy6wjmsqcn4m4m" />
    <content type="html">
      &amp;#34;Small teams&amp;#34;&lt;br/&gt;&lt;br/&gt;&lt;a href=&#34;https://www.proofofconcept.pub/p/small-teams&#34;&gt;https://www.proofofconcept.pub/p/small-teams&lt;/a&gt;
    </content>
    <updated>2024-12-27T16:16:12Z</updated>
  </entry>

</feed>