<?xml version="1.0" encoding="UTF-8"?>
<feed xmlns="http://www.w3.org/2005/Atom">
  <updated>2026-06-30T20:46:10Z</updated>
  <generator>https://yabu.me</generator>

  <title>Nostr notes by vulny.app</title>
  <author>
    <name>vulny.app</name>
  </author>
  <link rel="self" type="application/atom+xml" href="https://yabu.me/npub1utht3rr9q3u4sp299d8p58dhx8075zr65lg2c0jga7a0pmjpdjwspk0hfd.rss" />
  <link href="https://yabu.me/npub1utht3rr9q3u4sp299d8p58dhx8075zr65lg2c0jga7a0pmjpdjwspk0hfd" />
  <id>https://yabu.me/npub1utht3rr9q3u4sp299d8p58dhx8075zr65lg2c0jga7a0pmjpdjwspk0hfd</id>
  <icon>https://image.nostr.build/937452a5c8f796ac2e8806f54580f605ee6dc07e4456206eb95a01756c00465b.png</icon>
  <logo>https://image.nostr.build/937452a5c8f796ac2e8806f54580f605ee6dc07e4456206eb95a01756c00465b.png</logo>




  <entry>
    <id>https://yabu.me/nevent1qqsfmdwxx8nwp790kehtc02cugqtvwzxgdvhgu667vjs6utleprtwkgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6p0a5cs</id>
    
      <title type="html">A quick website health check looks at updates, logins and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfmdwxx8nwp790kehtc02cugqtvwzxgdvhgu667vjs6utleprtwkgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6p0a5cs" />
    <content type="html">
      A quick website health check looks at updates, logins and settings.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/269c1b55a69c8475d8d678ce2df5bce59b1772d0e020c3c9dbab63c2b0ad94e7.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-22T17:09:41Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0vwp3qa45djqyq3k9g97wea75j24agdxvvwmavhl8n3umcwsw42czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69aj7d2</id>
    
      <title type="html">&amp;#34;It&amp;#39;s all in Terraform, so the config is under ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0vwp3qa45djqyq3k9g97wea75j24agdxvvwmavhl8n3umcwsw42czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69aj7d2" />
    <content type="html">
      &amp;#34;It&amp;#39;s all in Terraform, so the config is under control.&amp;#34; Until someone changes it by hand and the code drifts out of sync. Then your IaC describes a system that no longer exists. Detecting drift keeps it honest.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #devsecops #appsec
    </content>
    <updated>2026-07-16T18:32:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspk0aff332avanxcmu2wmn8p4jcfv3r0mnp4wqpsrl0knhtyzetyszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69ez7sa</id>
    
      <title type="html">XXE feels like a dusty old bug, yet XML hides inside SVGs, office ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspk0aff332avanxcmu2wmn8p4jcfv3r0mnp4wqpsrl0knhtyzetyszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69ez7sa" />
    <content type="html">
      XXE feels like a dusty old bug, yet XML hides inside SVGs, office docs, and SOAP everywhere. If you parse any of those, the default-on entity resolution still bites.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #owasp
    </content>
    <updated>2026-07-10T01:05:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqspqrq9d7ys8gmstptlx7d0d7ej7fzj8c5880lr5c5fs2gydaqaqrczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6pa6h7v</id>
    
      <title type="html">Your app borrows code from other people&amp;#39;s packages. Sometimes ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqspqrq9d7ys8gmstptlx7d0d7ej7fzj8c5880lr5c5fs2gydaqaqrczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6pa6h7v" />
    <content type="html">
      Your app borrows code from other people&amp;#39;s packages. Sometimes one of those gets a fix. An audit is just asking, &amp;#34;any of my borrowed parts need the new version?&amp;#34; Then you update them.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-06T02:52:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqst0ud6g0545kmxp7um2r4xs4937mrdwn4cw4zklrpf2ecrttuu9fszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6cy5har</id>
    
      <title type="html">&amp;#34;Just disable SELinux, it breaks things.&amp;#34; It breaks ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqst0ud6g0545kmxp7um2r4xs4937mrdwn4cw4zklrpf2ecrttuu9fszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6cy5har" />
    <content type="html">
      &amp;#34;Just disable SELinux, it breaks things.&amp;#34; It breaks things because it caught something. The fix is usually one policy tweak, not turning it off.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #serversecurity #sysadmin
    </content>
    <updated>2026-07-06T00:49:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsf3e7g8dms2r4cksc965xeellxrcra38rtzu8ua7zcmkj4ue3sz9czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6483vnu</id>
    
      <title type="html">A critical-severity fix just shipped for Litellm. If your stack ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsf3e7g8dms2r4cksc965xeellxrcra38rtzu8ua7zcmkj4ue3sz9czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6483vnu" />
    <content type="html">
      A critical-severity fix just shipped for Litellm. If your stack uses it, patch to the fixed release soon. Quietly closes the gap before anyone goes looking. CVE-2026-49468&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability
    </content>
    <updated>2026-07-05T22:35:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsdztu67ppfsvhzxksjjwfe03tjkwxs0tcaxyu6cppc7npquvsyurczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62xzjzl</id>
    
      <title type="html">Build your asset list from four places: your DNS records, your ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsdztu67ppfsvhzxksjjwfe03tjkwxs0tcaxyu6cppc7npquvsyurczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62xzjzl" />
    <content type="html">
      Build your asset list from four places: your DNS records, your cloud console, your password manager, and the SaaS invoices in accounting. Cross those and you&amp;#39;ll find logins you forgot existed.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #security #compliance
    </content>
    <updated>2026-07-05T21:01:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsrm470ally5u45pgxwcxvupzp52n8f0l7zsm73yuk6p8afc04f4cqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6e27z6t</id>
    
      <title type="html">An access key is a password your code uses. Like any password, ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsrm470ally5u45pgxwcxvupzp52n8f0l7zsm73yuk6p8afc04f4cqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6e27z6t" />
    <content type="html">
      An access key is a password your code uses. Like any password, the longer it lives, the more places it can slip out. Rotation just means swapping it for a fresh one on a regular beat.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cloudsecurity #devsecops
    </content>
    <updated>2026-07-05T18:11:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsff25qgv0nrxxgzrl4s83fvgjlhy27q6zl63thta50untge049jtqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6jvjp3n</id>
    
      <title type="html">A quick website health check looks at updates, logins and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsff25qgv0nrxxgzrl4s83fvgjlhy27q6zl63thta50untge049jtqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6jvjp3n" />
    <content type="html">
      A quick website health check looks at updates, logins and settings.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/47ae6260b71938bb837c9a8e4202204a89d5041a270479b28724be4fe60d70fe.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-05T16:36:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstqzu36eljurvfud04mt6ffx6vqh30ehzys8622zg4jx2wrae886qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vhc0r8</id>
    
      <title type="html">Open faceted nav is a copier stuck on. One category page becomes ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstqzu36eljurvfud04mt6ffx6vqh30ehzys8622zg4jx2wrae886qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vhc0r8" />
    <content type="html">
      Open faceted nav is a copier stuck on. One category page becomes a thousand slightly different copies, and Google has to sort the originals from the noise.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #seo #marketing
    </content>
    <updated>2026-07-05T15:59:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg67xrqek0e7ql28p4xdc6mglsppqjrqshax0ml3e8h5jqe6psqcczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6x5n08e</id>
    
      <title type="html">Database hygiene: bind to localhost or private subnet, block the ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg67xrqek0e7ql28p4xdc6mglsppqjrqshax0ml3e8h5jqe6psqcczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6x5n08e" />
    <content type="html">
      Database hygiene: bind to localhost or private subnet, block the DB port at the firewall, require auth, never tunnel it raw to the public internet. App talks to DB privately.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-05T15:32:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd5y8p0y79su263frtl373hz09alux3wah7d9f833vey8m756urjgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vauunt</id>
    
      <title type="html">Log connections to your exposed ports and actually watch them. A ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd5y8p0y79su263frtl373hz09alux3wah7d9f833vey8m756urjgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vauunt" />
    <content type="html">
      Log connections to your exposed ports and actually watch them. A sudden spike of attempts on a service is your early warning. You can&amp;#39;t respond to what you never recorded.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-05T13:46:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsvwx5f790u2xw22sq2267sxg2w5ln0y7e9mlvttmumszrluvdasegzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6flutg4</id>
    
      <title type="html">You don&amp;#39;t need enterprise gear to start. Even your basic ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsvwx5f790u2xw22sq2267sxg2w5ln0y7e9mlvttmumszrluvdasegzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6flutg4" />
    <content type="html">
      You don&amp;#39;t need enterprise gear to start. Even your basic router&amp;#39;s guest network is a free first split. Perfect segmentation can wait; getting visitors off your main network shouldn&amp;#39;t.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #security #compliance
    </content>
    <updated>2026-07-05T02:08:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg9raewhwyhwuknjwaj857z3x8pc0v4t5khun7zcd2uqzcyn28yrczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69kkgen</id>
    
      <title type="html">Put internal tools behind a VPN, not a public port. Dashboards, ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg9raewhwyhwuknjwaj857z3x8pc0v4t5khun7zcd2uqzcyn28yrczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69kkgen" />
    <content type="html">
      Put internal tools behind a VPN, not a public port. Dashboards, staging sites, databases, admin consoles. If only staff should reach it, only the VPN should expose it.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-05T00:37:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs99z6tfrlermdmnmhu9nf8d2xj2epycj5pf8wfhrffeem539qf89gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf67gq6k9</id>
    
      <title type="html">Share Vulny and earn a referral commission. #cybersecurity ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs99z6tfrlermdmnmhu9nf8d2xj2epycj5pf8wfhrffeem539qf89gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf67gq6k9" />
    <content type="html">
      Share Vulny and earn a referral commission.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/aeb5a3013e293b095b22adf828eb626e438126f5b88b5107ef498f6c91d38f21.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-04T22:55:02Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsy5hxaqwg3ak7t5455y70k7tl6svjxn80ewwhagxlt6xzhu7tk9kqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf65jfasf</id>
    
      <title type="html">An employee&amp;#39;s password showed up in a leaked list and someone ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsy5hxaqwg3ak7t5455y70k7tl6svjxn80ewwhagxlt6xzhu7tk9kqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf65jfasf" />
    <content type="html">
      An employee&amp;#39;s password showed up in a leaked list and someone tried it at 3am. The login prompt asked for a code on her phone. No code, no entry. She slept through the whole thing.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #security #compliance
    </content>
    <updated>2026-07-04T22:40:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgg9factpyvzk4m6awth74m2ydd4zvzq44zmy9z5pvqm4asepvfdszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6a0ceug</id>
    
      <title type="html">Turn on authentication for Redis, Memcached, and Elasticsearch. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgg9factpyvzk4m6awth74m2ydd4zvzq44zmy9z5pvqm4asepvfdszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6a0ceug" />
    <content type="html">
      Turn on authentication for Redis, Memcached, and Elasticsearch. Several ship with no password by default. An exposed instance with auth off lets anyone who reaches the port read and wipe it.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-04T20:28:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8gzdjmvhtuee4rkk0fv8h4q7wqcchygwwc68d5hk24gcs2phxurszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66594rz</id>
    
      <title type="html">Two pages targeting the same phrase don&amp;#39;t double your odds. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8gzdjmvhtuee4rkk0fv8h4q7wqcchygwwc68d5hk24gcs2phxurszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66594rz" />
    <content type="html">
      Two pages targeting the same phrase don&amp;#39;t double your odds. They split your authority, and Google often ranks the weaker one, leaving your best page on page two.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #seo #marketing
    </content>
    <updated>2026-07-04T19:24:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsr3efeeg4dxxg3cjjpa6nustyvszqe9punxghtp4rs686y002yfrqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6xs69dv</id>
    
      <title type="html">Here&amp;#39;s a quick site checklist. #cybersecurity #infosec #nostr ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsr3efeeg4dxxg3cjjpa6nustyvszqe9punxghtp4rs686y002yfrqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6xs69dv" />
    <content type="html">
      Here&amp;#39;s a quick site checklist.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/997b71433c36db8a9ee07a39847d9e94f5f33e1a9f351585856f71913efd8a49.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-04T17:02:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsx6pnksvjzqcnpcyx3m5cw869wq3t90z5hfn3j3c3mkft9nwrh24szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zgfxhg</id>
    
      <title type="html">Tags are sticky labels on your cloud stuff: who made it, what ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsx6pnksvjzqcnpcyx3m5cw869wq3t90z5hfn3j3c3mkft9nwrh24szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zgfxhg" />
    <content type="html">
      Tags are sticky labels on your cloud stuff: who made it, what it&amp;#39;s for, how sensitive it is. With labels, you can find and protect things. Without them, every resource is an anonymous mystery box.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cloudsecurity #devsecops
    </content>
    <updated>2026-07-04T16:00:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsw2a7svl06aapxjs0pjhezwrmh6yvnjgrxecx3dnfeat3elyj4s7qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vwadkk</id>
    
      <title type="html">Before you blanket-block bots, decide which AI crawlers you want ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsw2a7svl06aapxjs0pjhezwrmh6yvnjgrxecx3dnfeat3elyj4s7qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vwadkk" />
    <content type="html">
      Before you blanket-block bots, decide which AI crawlers you want citing you. If you disallow GPTBot and ClaudeBot in robots.txt, don&amp;#39;t be surprised when those engines never mention your brand.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #AI #LLM
    </content>
    <updated>2026-07-04T15:37:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszn37gy3djh47xmhgue03ja90hemz66fgdpsfppfu3mtffrjywrqszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69mxuyn</id>
    
      <title type="html">A critical-severity fix just shipped for Vowpalwabbit Vowpal ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszn37gy3djh47xmhgue03ja90hemz66fgdpsfppfu3mtffrjywrqszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf69mxuyn" />
    <content type="html">
      A critical-severity fix just shipped for Vowpalwabbit Vowpal Wabbit. If your stack uses it, patch to the fixed release soon. Quietly closes the gap before anyone goes looking. CVE-2026-44723&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability
    </content>
    <updated>2026-07-04T13:37:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs94ghs9vqc3zr2z6tpnszjcuhyvvms4t552uuvkktxjx7w49a0kzgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6039pm7</id>
    
      <title type="html">If someone clones your repo right now, how many live credentials ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs94ghs9vqc3zr2z6tpnszjcuhyvvms4t552uuvkktxjx7w49a0kzgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6039pm7" />
    <content type="html">
      If someone clones your repo right now, how many live credentials do they get for free? Run a secret scanner across the full history. The count is rarely zero, and every hit needs a rotation.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #devsecops #appsec
    </content>
    <updated>2026-07-04T02:31:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsytfdpdz3h9c80setdnw9c3grxkhgm5xn35zv3up428ndpuwat32szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6n6pvcf</id>
    
      <title type="html">&amp;#34;Cookies are encrypted over HTTPS, so they&amp;#39;re safe.&amp;#34; ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsytfdpdz3h9c80setdnw9c3grxkhgm5xn35zv3up428ndpuwat32szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6n6pvcf" />
    <content type="html">
      &amp;#34;Cookies are encrypted over HTTPS, so they&amp;#39;re safe.&amp;#34; HTTPS protects them in transit, not from a script on your own page. HttpOnly is what keeps client-side JavaScript from reading the session token.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #owasp
    </content>
    <updated>2026-07-04T01:11:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsf7aaldwph5dttf0j2n796vlng9tfa9ewr30xzl2qklj0l04jfwggzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62lv3jz</id>
    
      <title type="html">&amp;#34;Allow from anywhere&amp;#34; is the lazy default that quietly ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsf7aaldwph5dttf0j2n796vlng9tfa9ewr30xzl2qklj0l04jfwggzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62lv3jz" />
    <content type="html">
      &amp;#34;Allow from anywhere&amp;#34; is the lazy default that quietly maximizes your exposure. Spend two minutes scoping each rule to who needs it. Least privilege applies to ports, not just users.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-04T00:10:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqswqf3dcg87czpj3chelnamw7rszqgu4kt8tmfpfg7u4j8rerd6g5czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66djhyu</id>
    
      <title type="html">Buildings post fire exits before there&amp;#39;s a fire, not during. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqswqf3dcg87czpj3chelnamw7rszqgu4kt8tmfpfg7u4j8rerd6g5czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66djhyu" />
    <content type="html">
      Buildings post fire exits before there&amp;#39;s a fire, not during. An incident plan is the same idea. You want the map on the wall long before the room fills with smoke.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #security #compliance
    </content>
    <updated>2026-07-03T22:05:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsymnc0t3nw69da9srmuuenfmfzff6sjxmqyv7pl4ll9kdv5ge5t3czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf60f6ne2</id>
    
      <title type="html">Verifying a payment request is checking the peephole before you ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsymnc0t3nw69da9srmuuenfmfzff6sjxmqyv7pl4ll9kdv5ge5t3czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf60f6ne2" />
    <content type="html">
      Verifying a payment request is checking the peephole before you open the door. The knock might be exactly who it claims. A two-second look costs nothing and ends the doubt.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #phishing #awareness
    </content>
    <updated>2026-07-03T21:34:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstgnpw7sdv5zfcdah0ketndpzt3gv92w0sa2qfqhc6kn56l33gjvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6rn72dx</id>
    
      <title type="html">The mistake almost everyone makes: locking down files but leaving ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstgnpw7sdv5zfcdah0ketndpzt3gv92w0sa2qfqhc6kn56l33gjvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6rn72dx" />
    <content type="html">
      The mistake almost everyone makes: locking down files but leaving unencrypted swap and open core dumps, the two places memory secrets quietly land.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #serversecurity #sysadmin
    </content>
    <updated>2026-07-03T19:53:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszr6pe87ldlt974qcwwnxdykd5vkjmg904lcanf3cfrtel6dqplqczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6j8e3up</id>
    
      <title type="html">A fake login page asks for the password and the texted code. The ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszr6pe87ldlt974qcwwnxdykd5vkjmg904lcanf3cfrtel6dqplqczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6j8e3up" />
    <content type="html">
      A fake login page asks for the password and the texted code. The employee types both. With SMS, the attacker walks in. With a passkey, there&amp;#39;s no code to hand over, so the trick fails.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #phishing #awareness
    </content>
    <updated>2026-07-03T19:22:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs25kvytdw3trfk2hns3l99l8q5s03pru0z4829sejsxajd7dq0u0czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf65vxlpj</id>
    
      <title type="html">If a user renamed a script to photo.jpg and uploaded it, what ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs25kvytdw3trfk2hns3l99l8q5s03pru0z4829sejsxajd7dq0u0czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf65vxlpj" />
    <content type="html">
      If a user renamed a script to photo.jpg and uploaded it, what would your server do with it? If it trusts the extension, that&amp;#39;s a problem. Check the real content type before you accept anything.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-03T17:14:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszg8ws6ggh3egz9d28s4fa8wfzksw542qn633uwnnwwg9us84kn3qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6g66y00</id>
    
      <title type="html">A critical-severity fix just shipped for Flowintel. If your stack ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszg8ws6ggh3egz9d28s4fa8wfzksw542qn633uwnnwwg9us84kn3qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6g66y00" />
    <content type="html">
      A critical-severity fix just shipped for Flowintel. If your stack uses it, patch to the fixed release soon. Quietly closes the gap before anyone goes looking. CVE-2026-9813&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability
    </content>
    <updated>2026-07-03T15:58:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqszsxwxcnl5et30le8j55qpr3xkuugzqpyk2wfhyq6tfmn8w3njz5gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6mjwy2m</id>
    
      <title type="html">GuardDuty is a smoke detector for your cloud account. Installing ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqszsxwxcnl5et30le8j55qpr3xkuugzqpyk2wfhyq6tfmn8w3njz5gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6mjwy2m" />
    <content type="html">
      GuardDuty is a smoke detector for your cloud account. Installing one in the kitchen and skipping the basement misses where the fire usually starts. Cover every region, including the ones you forgot you had.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cloudsecurity #devsecops
    </content>
    <updated>2026-07-03T15:24:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsyr3c4pf5lvp88ympnz7f9gkzpevdxzu9qwvnagvv94c3qyg8454czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66xta98</id>
    
      <title type="html">A common website myth — and the reality. #cybersecurity ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsyr3c4pf5lvp88ympnz7f9gkzpevdxzu9qwvnagvv94c3qyg8454czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf66xta98" />
    <content type="html">
      A common website myth — and the reality.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/c54eb0363b40d6d40c5932f6066304eeeac2c793c806d8ecc809e25350dbe293.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-03T15:07:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs96e2l2zyv6c553v38y4d65q5s3hu6h2s7ssppa6r8s2srphwy9sqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6jvwpq9</id>
    
      <title type="html">When code breaks, it can print a detailed report about how your ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs96e2l2zyv6c553v38y4d65q5s3hu6h2s7ssppa6r8s2srphwy9sqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6jvwpq9" />
    <content type="html">
      When code breaks, it can print a detailed report about how your site is built. Visitors shouldn&amp;#39;t see that. Send the report to your private logs and show them a simple &amp;#34;something went wrong&amp;#34; page.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-03T13:52:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8uq4l8r3w59mwkfd5360rm2z768enf6kud60zteuwargwjdkhqvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6z6sx4d</id>
    
      <title type="html">&amp;#34;It&amp;#39;s just a printer, who&amp;#39;d target that?&amp;#34; A ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8uq4l8r3w59mwkfd5360rm2z768enf6kud60zteuwargwjdkhqvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6z6sx4d" />
    <content type="html">
      &amp;#34;It&amp;#39;s just a printer, who&amp;#39;d target that?&amp;#34; A reachable printer with default settings is a foothold onto your network. Attackers don&amp;#39;t want the printer; they want where it sits. Isolate it.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-03T13:08:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstm3ug25nh6rf82cykqmcxvtyy90qz4kp7phz5shde4crdcyv0mxgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6l6zfpf</id>
    
      <title type="html">Blocklisting bad path patterns is a losing game against ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstm3ug25nh6rf82cykqmcxvtyy90qz4kp7phz5shde4crdcyv0mxgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6l6zfpf" />
    <content type="html">
      Blocklisting bad path patterns is a losing game against encodings. Don&amp;#39;t filter the input — validate the output: resolve, then check it lives where it should.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #owasp
    </content>
    <updated>2026-07-03T02:47:01Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsv7pxwtzq5emfksxznkpxrnne8lmk7egxs57zxgcjxnwkafnhg5rgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vmp53l</id>
    
      <title type="html">A critical-severity fix just shipped for Linuxfoundation ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsv7pxwtzq5emfksxznkpxrnne8lmk7egxs57zxgcjxnwkafnhg5rgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vmp53l" />
    <content type="html">
      A critical-severity fix just shipped for Linuxfoundation Cloudnativepg. If your stack uses it, patch to the fixed release soon. Quietly closes the gap before anyone goes looking. CVE-2026-44477&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability
    </content>
    <updated>2026-07-03T00:15:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs0yrcajpwv9s4v57ez4najs8w8ysypty3pr9e57sxnwjv4dfutk8gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6q2cguw</id>
    
      <title type="html">A signed file link with no expiry showed up months later in a ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs0yrcajpwv9s4v57ez4najs8w8ysypty3pr9e57sxnwjv4dfutk8gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6q2cguw" />
    <content type="html">
      A signed file link with no expiry showed up months later in a forwarded email and still worked. Adding a 15-minute TTL made stale links harmless on sight.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #owasp
    </content>
    <updated>2026-07-02T23:37:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgwzx9jtpjyum6lqvzss7qazsjj83mv84q8w8ckgxl40yygaud7mszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vcdv6q</id>
    
      <title type="html">Keep cloud workloads current with three habits: enable managed ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgwzx9jtpjyum6lqvzss7qazsjj83mv84q8w8ckgxl40yygaud7mszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vcdv6q" />
    <content type="html">
      Keep cloud workloads current with three habits: enable managed patching, rebuild from fresh images often, and retire long-lived instances. The less time a VM runs unpatched, the less there is to exploit.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cloudsecurity #devsecops
    </content>
    <updated>2026-07-02T22:16:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8v53wrgc6xmgxrr65w5zvt3cmcxj97waf9zvlgj7qkszk8zdgdeqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62x8vm3</id>
    
      <title type="html">Paste your URL, run the check, get your fixes — that&amp;#39;s it. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8v53wrgc6xmgxrr65w5zvt3cmcxj97waf9zvlgj7qkszk8zdgdeqzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf62x8vm3" />
    <content type="html">
      Paste your URL, run the check, get your fixes — that&amp;#39;s it.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/abf0de7e153ec17030f970dea86d46b7753e5d03a2c3ce42de9e9e4d430453a5.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-02T22:01:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsz8m7cqnt4h70xuskdd5ja657wgr9z5893v7gctk4hfrqrjqzd4jszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6et890r</id>
    
      <title type="html">Code that runs in the browser can be read by anyone using the ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsz8m7cqnt4h70xuskdd5ja657wgr9z5893v7gctk4hfrqrjqzd4jszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6et890r" />
    <content type="html">
      Code that runs in the browser can be read by anyone using the site. So a password or API key in your frontend isn&amp;#39;t hidden, it&amp;#39;s printed for everyone. Keep real secrets on the server.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-02T19:31:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsfdu9lvqkhcufkgvm042ua735vf06dmzlp8297zlck6zdd9tu8xmszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vruz2e</id>
    
      <title type="html">A team running default-deny spun up a new service that bound to ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsfdu9lvqkhcufkgvm042ua735vf06dmzlp8297zlck6zdd9tu8xmszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vruz2e" />
    <content type="html">
      A team running default-deny spun up a new service that bound to all interfaces. Nothing leaked, because the firewall said no by default. They opened the one port on purpose later.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-02T19:14:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsw64htl2cs2t4kaurrsj0h2p6qmkzaw6e0edvpf0g2sfcnfqc47vgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zpts7l</id>
    
      <title type="html">When customers ask AI for a recommendation, is your brand in the ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsw64htl2cs2t4kaurrsj0h2p6qmkzaw6e0edvpf0g2sfcnfqc47vgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zpts7l" />
    <content type="html">
      When customers ask AI for a recommendation, is your brand in the answer?&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/3225b6ae1f3051be8b6bc72917354df0251ef4d8952df697888a63fed0adb36e.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-02T19:05:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs25jx20h6k8uxynrcj9yxchwrn9hx02lma2hkx9l606gswvnknq8qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6z8m8qy</id>
    
      <title type="html">A caller insists they&amp;#39;re a VP locked out before a board ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs25jx20h6k8uxynrcj9yxchwrn9hx02lma2hkx9l606gswvnknq8qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6z8m8qy" />
    <content type="html">
      A caller insists they&amp;#39;re a VP locked out before a board meeting, pushing for a fast reset. The agent says &amp;#34;I&amp;#39;ll call you back on your listed number,&amp;#34; and the caller suddenly has to go.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #phishing #awareness
    </content>
    <updated>2026-07-02T16:57:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqeuqkzuh642kpk46x77wut6p9rf74wsxx6mnyzc58z9288ewnt0gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vhj0q5</id>
    
      <title type="html">The top results get most of the clicks. #cybersecurity #infosec ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqeuqkzuh642kpk46x77wut6p9rf74wsxx6mnyzc58z9288ewnt0gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6vhj0q5" />
    <content type="html">
      The top results get most of the clicks.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/5484fe1228f71e54c57a44a24f87484a2f95292c50ffb97450486ab25abfb83c.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-02T16:00:08Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8833pa8a8wwj6sy6kvs4haqpvvx8gfhv6dhdcfczgmj4rkdel2uszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6hp2cu3</id>
    
      <title type="html">A landing page full of &amp;#34;revolutionary&amp;#34; and ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8833pa8a8wwj6sy6kvs4haqpvvx8gfhv6dhdcfczgmj4rkdel2uszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6hp2cu3" />
    <content type="html">
      A landing page full of &amp;#34;revolutionary&amp;#34; and &amp;#34;cutting-edge&amp;#34; never got quoted. They swapped the hype for specifics, integration counts, setup time, uptime, and AI started pulling those facts into answers.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #AI #LLM
    </content>
    <updated>2026-07-02T15:04:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsg7kn3psmr66uz24cjll375sjwn7qekg0rca3u7hycrw78r37t7tczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zup9g2</id>
    
      <title type="html">Hiding a page with robots.txt is putting a &amp;#34;please don&amp;#39;t ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsg7kn3psmr66uz24cjll375sjwn7qekg0rca3u7hycrw78r37t7tczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zup9g2" />
    <content type="html">
      Hiding a page with robots.txt is putting a &amp;#34;please don&amp;#39;t look in here&amp;#34; note on an unlocked door, then taping the note where everyone passes. The note is the map. Lock the door.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-02T13:45:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8kgzn8kn2z6csywsxqr6tchq854mctsz02nr677k5rnyslrdhe8gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6807jay</id>
    
      <title type="html">Hardening the admin panel: restrict by IP or VPN, require MFA, ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8kgzn8kn2z6csywsxqr6tchq854mctsz02nr677k5rnyslrdhe8gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6807jay" />
    <content type="html">
      Hardening the admin panel: restrict by IP or VPN, require MFA, rename the default path, log every attempt, and alert on failures. Each layer thins the crowd that ever reaches the form.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-02T12:32:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8js4dewls4w58494hg8zykg06vpt983as6d46sgnhfjmlng4y5kszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6ztpq5c</id>
    
      <title type="html">Servers ask a time source what time it is. If that source is ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8js4dewls4w58494hg8zykg06vpt983as6d46sgnhfjmlng4y5kszyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6ztpq5c" />
    <content type="html">
      Servers ask a time source what time it is. If that source is wrong or untrusted, your logs, certificates, and login tokens can all go sideways.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #serversecurity #sysadmin
    </content>
    <updated>2026-07-02T02:10:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqy5ct85czdyxll5yj23p4qnkgmp79l47h9jnyxryet97nn9cmq9czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6f62zn5</id>
    
      <title type="html">TLS comes in versions like an app. The old ones have known weak ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqy5ct85czdyxll5yj23p4qnkgmp79l47h9jnyxryet97nn9cmq9czyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6f62zn5" />
    <content type="html">
      TLS comes in versions like an app. The old ones have known weak spots. Telling your server to only use the newer ones means visitors connect over the parts that still hold up.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #appsec #websecurity
    </content>
    <updated>2026-07-02T01:19:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsq4a2xkdas4gvw7jlkr38vf0ylhauk0xw0c4d8pp6un03kjresn5qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6kwnshn</id>
    
      <title type="html">Secure, ranked and AI-cited — one check covers all three. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsq4a2xkdas4gvw7jlkr38vf0ylhauk0xw0c4d8pp6un03kjresn5qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6kwnshn" />
    <content type="html">
      Secure, ranked and AI-cited — one check covers all three.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/6f1fdb92ddff7901fefe342247557d609830c5a6cad1a7565b22eb5b57291a3f.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-02T00:32:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsqf5v72ged6l9fwfngejnknf6fetejt84n9l009j075qnur5zke5qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6gzenxy</id>
    
      <title type="html">Suspicious process on a node? We didn&amp;#39;t forensic it for ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsqf5v72ged6l9fwfngejnknf6fetejt84n9l009j075qnur5zke5qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6gzenxy" />
    <content type="html">
      Suspicious process on a node? We didn&amp;#39;t forensic it for hours. We drained it, killed it, and let the pipeline spin a clean replacement from the image.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #serversecurity #sysadmin
    </content>
    <updated>2026-07-01T22:07:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs09nx6k68v3vvz9lpkzc937ra6xvau6ma2ae494kh6ltlye9awlxczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6hang6u</id>
    
      <title type="html">Search your target keyword and look at what&amp;#39;s ranking. If ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs09nx6k68v3vvz9lpkzc937ra6xvau6ma2ae494kh6ltlye9awlxczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6hang6u" />
    <content type="html">
      Search your target keyword and look at what&amp;#39;s ranking. If page one is all comparison lists and you wrote a product page, you&amp;#39;ve matched the wrong intent. Match the format that ranks.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #seo #marketing
    </content>
    <updated>2026-07-01T21:32:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsvqfyuvdyalff8neq56f9jlsmdtktu39w7kdzwzqqhfux57nxahmgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zuxu0p</id>
    
      <title type="html">Long lists split across pages 1, 2, 3 and so on. Each of those ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsvqfyuvdyalff8neq56f9jlsmdtktu39w7kdzwzqqhfux57nxahmgzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6zuxu0p" />
    <content type="html">
      Long lists split across pages 1, 2, 3 and so on. Each of those pages needs its own address Google can visit. Point them all at page 1 and the rest vanish.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #seo #marketing
    </content>
    <updated>2026-07-01T18:53:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqs8gl9y2lqnsgjx9ehztw9a0c4atfxgxtr40tpwwtntpzr0pufhp0qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6j77m2x</id>
    
      <title type="html">Turn off UPnP on your router. It lets any device on your network ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqs8gl9y2lqnsgjx9ehztw9a0c4atfxgxtr40tpwwtntpzr0pufhp0qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6j77m2x" />
    <content type="html">
      Turn off UPnP on your router. It lets any device on your network punch its own holes in the firewall, opening ports to the internet without asking you. Forward ports manually, on purpose.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #pentesting #networksecurity
    </content>
    <updated>2026-07-01T18:22:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsps64tk55jtwhvn0mn9watd6fwjelt5jsjklnsu0rrvdsv4g9e60qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6nrpckq</id>
    
      <title type="html">Security, SEO and AI in one daily check, one price. ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsps64tk55jtwhvn0mn9watd6fwjelt5jsjklnsu0rrvdsv4g9e60qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6nrpckq" />
    <content type="html">
      Security, SEO and AI in one daily check, one price.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/fadf265c921fbf6b76ec43ded49c69ed784e37cb24d00bbd16a515a28e685f7d.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-07-01T18:09:03Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsthncq0q0aj67sx3nsvw6d7tru4lqkw36gggjsfqju7s62ahhx82szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6rrsv9j</id>
    
      <title type="html">A critical-severity fix just shipped for Portainer. If your stack ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsthncq0q0aj67sx3nsvw6d7tru4lqkw36gggjsfqju7s62ahhx82szyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6rrsv9j" />
    <content type="html">
      A critical-severity fix just shipped for Portainer. If your stack uses it, patch to the fixed release soon. Quietly closes the gap before anyone goes looking. CVE-2026-44881&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability
    </content>
    <updated>2026-07-01T15:52:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstpd8hfuxqclz0cw99nda25g9cds0ft8l8mcdt9k7ffjt2gj9f56qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6sdlu4t</id>
    
      <title type="html">Could a model that never touched the product have written your ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstpd8hfuxqclz0cw99nda25g9cds0ft8l8mcdt9k7ffjt2gj9f56qzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6sdlu4t" />
    <content type="html">
      Could a model that never touched the product have written your review? If yes, it reads like every other summary. First-hand detail, what you actually saw, is what makes AI treat it as real.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #AI #LLM
    </content>
    <updated>2026-07-01T14:15:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsgltyh8v477rzty9dc4t9jck9y92wk4s0qmxt6cgxd258cl3pausczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6cvptnj</id>
    
      <title type="html">Vaulting a long-lived secret feels like the secure answer, and it ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsgltyh8v477rzty9dc4t9jck9y92wk4s0qmxt6cgxd258cl3pausczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6cvptnj" />
    <content type="html">
      Vaulting a long-lived secret feels like the secure answer, and it still leaves a long-lived secret to leak. Better than a vaulted permanent key is a temporary one that never outlives the job that used it.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #devsecops #appsec
    </content>
    <updated>2026-07-01T12:41:00Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqsd2lrkafkn7c36jpqq5f86w5gv6yl6aaeqed44saup2a69rz9n83gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6renhps</id>
    
      <title type="html">Quick security reminder from Vulny. #cybersecurity #infosec ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqsd2lrkafkn7c36jpqq5f86w5gv6yl6aaeqed44saup2a69rz9n83gzyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6renhps" />
    <content type="html">
      Quick security reminder from Vulny.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cve #vulnerability&lt;br/&gt;&lt;br/&gt;&lt;video controls width=&#34;100%&#34; class=&#34;max-h-[90vh] bg-neutral-300 dark:bg-zinc-700&#34;&gt;&lt;source src=&#34;https://video.nostr.build/09d9391e8883afd556ba1f8906e8f1e9985bc839fd1eb9159cf44ee66903fe58.mp4&#34;&gt;&lt;/video&gt;
    </content>
    <updated>2026-06-30T20:59:04Z</updated>
  </entry>

  <entry>
    <id>https://yabu.me/nevent1qqstev3hckxn4ncjez0c3y2n8jfm83ekk4yx8l62hykyj8tkzdlmcvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6p5jnt6</id>
    
      <title type="html">Rotate your API keys every 90 days. Leaked tokens are the top ...</title>
    
    <link rel="alternate" href="https://yabu.me/nevent1qqstev3hckxn4ncjez0c3y2n8jfm83ekk4yx8l62hykyj8tkzdlmcvczyr3wawyvv5z8jkq9g545uxsakucal6sg02naptp7frhm4u8wg9kf6p5jnt6" />
    <content type="html">
      Rotate your API keys every 90 days. Leaked tokens are the top cause of cloud breaches.&lt;br/&gt;&lt;br/&gt;#cybersecurity #infosec #nostr #cloudsecurity #devsecops
    </content>
    <updated>2026-06-30T20:41:33Z</updated>
  </entry>

</feed>