Avatar
Gonçalo Valério
c1f508d6095df2f21aad0aa196584a9cb74f804fe8e181daf205ecdc9a74b700
Full-stack developer with special interest in cybersecurity. Advocate of a free and safe Internet. Nature admirer and sports enthusiast.

"zizmor would have caught the Ultralytics workflow vulnerability"

https://blog.yossarian.net/2024/12/06/zizmor-ultralytics-injection#tracking-the-payload

#security #cybersecurity #supplychain #cicd #githubactions

"Django security releases issued: 5.1.4, 5.0.10, and 4.2.17"

https://www.djangoproject.com/weblog/2024/dec/04/security-releases/

#python #django #security

"The Day We Unveiled the Secret Rotation Illusion"

https://www.clutch.security/blog/the-day-we-unveiled-the-secret-rotation-illusion

#security #cybersecurity #infosec

"Don't Fuck With Scroll"

https://dontfuckwithscroll.com/

#web #browsers #javascript

KDE Krunner: "Web Search Keywords"

https://blog.marcdeop.com/?p=302

#kde #plasma

"The Practical Guide to Scaling Django"

https://slimsaas.com/blog/django-scaling-performance

#python #django #web

"Package compatibility tracker:

Python 3.13 free-threading and subinterpreters"

https://parallel.python.tips/

#python

"Apple Confirms Zero-Day Attacks Hitting macOS Systems"

https://www.securityweek.com/apple-confirms-zero-day-attacks-hitting-intel-based-macs/

#security #cybersecurity #apple

"Importing a frontend Javascript library without a build system"

https://jvns.ca/blog/2024/11/18/how-to-import-a-javascript-library/

#javascript #browsers

"I Waited 10 Billion Cycles and All I Got Was This Loading Screen"

https://blog.preyneyv.dev/doing-less-with-more

#performance #web #softwaredevelopment

"Protecting Signal Keys on Desktop"

https://cryptographycaffe.sandboxaq.com/posts/protecting-signal-desktop-keys/

I love signal, but its desktop app always seemed an inferior product when compared with the mobile app.

#signal #security #desktop #infosec

"Writing a blog on the internet"

https://sethmlarson.dev/writing-for-the-internet

Yes, go for it.

#blog #writing #web

"What I Wish Someone Told Me About Postgres"

https://challahscript.com/what_i_wish_someone_told_me_about_postgres

#databases #postgresql #sql

"Abusing Ubuntu 24.04 features for root privilege escalation"

https://snyk.io/blog/abusing-ubuntu-root-privilege-escalation/

#security #ubuntu #cybersecurity

Sentry: "We Just Gave $750,000 to Open Source Maintainers"

https://blog.sentry.io/we-just-gave-750-000-dollars-to-open-source-maintainers/

👏 👏 👏

#opensource #freesoftware #supplychain #foss #sustainability