~/devreads

9 Aug 2021

1 min read

It’s the end of another dev internship season, and this one marked something of a transition, since halfway through the season, NY-based interns were invited back to the recently reinvigorated office. Which means that many more of us got the chance to meet and hang out with the interns in person than we did last year. And hopefully the interns…

8 Aug 2021

srinivas.tamada@gmail.com (Srinivas Tamada) 1 min read

Few days back one of my friend's project database credentials got exposed. After some investigation, we realized that it is because of the .git config commit. I would recommend configuring your sensitive credentials with operating system environment variables. This way you can protect information from the code base. This post will explain how to set up an environment variable for…

apacheenvironmentphpubuntuxampp

7 Aug 2021

bohops 3 min read

TL;DR Intel Driver & Support Assistant (DSA) is a driver and software update utility for Intel components. DSA version 20.8.30.6 (and likely prior) is vulnerable to a local privilege escalation reparse point bug. An unprivileged user has nominal control over configuration settings within the web-based interface. This includes the ability to configure the folder location […]

uncategorized

6 Aug 2021

5 Aug 2021

4 Aug 2021

kevin 2 min read

When you sign up for Datadog, you are immediately asked to choose whether you want to have your data stored in US1, US3, or Europe. This is an odd UI decision because Datadog provides no other information about US1 and US3, for example, where they are located or how old the infrastructure is in each […]

codeconsulting

Matt Cutts 3 min read

I wanted to write a bit about my partner Lindsay Aranoff and why I’m so grateful we found each other. I could talk about the stuff you could discover from the internet (inaugural Global Shaper with the World Economic Forum, curator of a TEDxKids event in Canada, co-founder of a company with the CTO of […]

personal

3 Aug 2021

Peter Bengtsson 5 min read

Last month, Gregor Weber and Peter Bengtsson added an autocomplete search to MDN Web Docs, that allows you to quickly jump straight to the document you're looking for by typing parts of the document title. This is the story about how that's implemented. The post How MDN’s autocomplete search works appeared first on Mozilla Hacks - the Web developer blog.

docsfeatured articlejavascriptmdnfirefox

Negisa Taymourian 1 min read

In our last post on SASE security, we covered two key benefits of Secure Access Service Edge architecture — the security and simplicity that come from converging multiple services in a single solution delivered from the cloud. Today, we’re talking about scaling that cybersecurity to meet the growing needs of your business. Cybersecurity at an […] The post Scaling cybersecurity…

securitycisco umbrella

David Walsh 1 min read

Coding HTML forms has been painful my entire career. Form controls look different between operating systems and browsers, coding client side and server side validation is a nightmare, and inevitably you forget something somewhere along the line. Some behaviors don’t act the way you’d hope, like onChange, which only fires when the user leaves (blurs) a given form controls. Enter…

2 Aug 2021

1 Aug 2021

Matthew Green 15 min read

A few weeks back, the messaging service WhatsApp sued the Indian government over new legislation that could undermine its end-to-end encryption (E2EE) software. The legislation requires, among other things, that social media and messaging companies must include the ability to “trace” the source of harmful viral content. This tracing capability has been a major issue … Continue reading Thinking about…

backdoors

30 Jul 2021

29 Jul 2021

Aanand Prasad 4 min read

As our suite of products has grown from a website builder and commerce tools to encompass much more, synchronizing frontend state across these products has become increasingly important. Complicating the matter, some products run in iframes, whereas others run in the main browser window. We’ve developed a scalable approach to synchronization that abstracts away these differences, which we call Universal…

Chloe Whitaker 1 min read

It’s been a week since the Akamai Edge DNS Service outage. In that time, a bevy of news articles, op-eds, and think pieces have popped up discussing how this most recent domain name system (DNS) failure proves that major enterprises like Amazon, American Airlines, Oracle Cloud, and UPS need to improve their network infrastructure. This […] The post How Cisco…

customer focusspotlightcisco umbrellasmartcache

28 Jul 2021

Sarah Henkens 10 min read

With the release of Slack Connect, people can now collaborate both with internal employees and external organizations in the same channel. To make this as smooth as possible, Slack does predictive email analysis to classify and recommend the best way for a user to work with people they want to collaborate with. To accomplish this,…

uncategorizedalgorithmsdata-engineeringinfrastructure

27 Jul 2021

lukaseder 1 min read

It’s been almost 1 year now since jOOQ 3.14 was released in October 19, 2020 with SQL/JSON (and SQL/XML) support. Half a year later, we’ve released jOOQ 3.15 with MULTISET support, which builds on top of these features to offer type-safe nested collections, the way every ORDBMS should implement them. Building (dogfooding) on top of … Continue reading Standard SQL/JSON…

jooq-developmentsqljooqjsonmariadb

Teresa Wingfield 1 min read

What is Shadow IT? Shadow IT is the use of IT-related hardware or software by a department or individual without the knowledge of the IT or security group within an organization. It can encompass cloud services, software, and hardware. For several reasons, business and IT/security groups are more at odds than ever before over whether […] The post Secure Shadow…

security

Stanko 1 min read

Shading was done by generating (a lot of) dots. Then I used saxi's option to connect nearby dots in order to create these squiggly lines. Created: July 2021 Size: 30x30cm Paper: Fabriano Black Black 300gsm Pens: Uni-ball Signo UM-153

26 Jul 2021

3 min read

On Monday Frances took me to the teamLab exhibition at the Asian Art museum. It was really wonderful! I hadn’t seen the one in Japan so I was new to it, but the interactive art nerd in me was all over the concept and trying to figure out what was static and what was interactive, and where the sensors were.…

25 Jul 2021

23 Jul 2021

jgamblin 2 min read

In a Study in Scarlet, Sherlock Holmes said, “It is a capital mistake to theorize before one has data,” which is one of my favorite Sherlock quotes. For the last month or so, my team has been dealing with missing CPE data points in the Mitre CPE data, and it finally forced me to set down and put together a…

uncategorized

22 Jul 2021

21 Jul 2021

kevin 4 min read

Allen Weisselberg, the chief financial officer of the Trump Organization, recently got indicted by the New York DA for fifteen counts of tax fraud. The charges say they said he didn't report benefits as taxes. If your company pays you a $100,000 per year cash salary, you will owe a chunk of that to the […]

housing

RisingStack Engineering 11 min read

In this React-Native sound and animation tutorial, you'll learn tips on how you can add animation and sound effects to your mobile application. The post React-Native Sound & Animation Tutorial appeared first on RisingStack Engineering.

reactedited

20 Jul 2021

Matthew Green 6 min read

This week a group of global newspapers is running a series of articles detailing abuses of NSO Group’s Pegasus spyware. If you haven’t seen any of these articles, they’re worth reading — and likely will continue to be so as more revelations leak out. The impetus for the stories is a leak comprising more than … Continue reading A case…

appleattacksbackdoorsmalware

Ruth John 1 min read

As we’re all aware by now, we made some big platform changes at the end of 2020. Whilst the big move has happened, it’s given us a great opportunity to clear out the cupboards and closets. The post Spring Cleaning MDN: Part 1 appeared first on Mozilla Hacks - the Web developer blog.

featured articlemdndatafirefoxgithub

lukaseder 1 min read

jOOQ 3.15 shipped with a ton of new features, the most important ones being: MULTISET support (type safe, nested collections) Reactive SQL support via R2DBC A very useful, lesser known new feature is “ad-hoc data type conversion”. Data type converters and bindings have been around in jOOQ for a long time. Their goal is to … Continue reading Ad-hoc Data…

jooq-in-usebindingconverterjdbcjooq

David Gormley 1 min read

Secure access service edge (SASE) — cloud-delivered security combining networking and security functions — is on the rise, fueled in part by the need to secure work from home in countless locations. The hybrid work model is here to stay –– and SASE solutions are critical to supporting this new normal. How do you determine which one is right for…

securitycasbcloud access security brokersasesd-wan

Zac Sweers 6 min read

Note: This article assumes some familiarity with Dagger, Anvil, and Kotlin. We use Dagger heavily in the Slack Android app for compile-time dependency injection. It’s powerful, flexible, supports basic Kotlin idioms, and allows for advanced dependency injection patterns with less boilerplate. It’s not without its sharp edges though. It slows down our builds with kapt,…

uncategorizedandroidkotlin

19 Jul 2021

David Walsh 1 min read

Dark mode has seemingly become the desired visual mode for websites and mobile apps alike. Dark mode is easier on the eyes, especially for those like me who like to burn the midnight oil by coding and reading tutorials. Unfortunately not all websites offer dark mode, so it’s up to me to remedy the situation. Though it’s not a true…

2 min read

First off: I think I’ve done a bad numbering in some of these recent weeks, because I wanted to write about what I actually did on July 13/14, but apparently I’ve already counted that week? Counting, man, a hell of a thing. My good friend Maeghan who aside from being a top drawer human being and tswift fan is an…

17 Jul 2021

jgamblin 1 min read

I was recently asked if I had ever thought about trying to predict CVE growth. I had not, or really didn’t even know where to start, but after some research, I found the Prophet project that is a forecasting algorithm open-sourced by Facebook and uses the GAM family of algorithms. Using prophet with the NVD data in a Jupyter notebook…

uncategorized

16 Jul 2021