<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Hacker News: stsewd</title><link>https://news.ycombinator.com/user?id=stsewd</link><description>Hacker News RSS</description><docs>https://hnrss.org/</docs><generator>hnrss v2.1.1</generator><lastBuildDate>Fri, 08 May 2026 14:27:57 +0000</lastBuildDate><atom:link href="https://hnrss.org/user?id=stsewd" rel="self" type="application/rss+xml"></atom:link><item><title><![CDATA[New comment by stsewd in "Dirtyfrag: Universal Linux LPE"]]></title><description><![CDATA[
<p>I got the same running it inside a container, but got a shell when running it directly in the host. This only shows that the exploit doesn't work inside a container. So, containers aren't vulnerable, or the script needs some adjustments to make it work in containers.<p>Since copy fail can be used to escape containers (<a href="https://github.com/Percivalll/Copy-Fail-CVE-2026-31431-Kubernetes-PoC" rel="nofollow">https://github.com/Percivalll/Copy-Fail-CVE-2026-31431-Kuber...</a>), I'm guessing the exploit needs some changes only.</p>
]]></description><pubDate>Fri, 08 May 2026 00:15:37 +0000</pubDate><link>https://news.ycombinator.com/item?id=48056840</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=48056840</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=48056840</guid></item><item><title><![CDATA[Finding security-related commits on GitHub]]></title><description><![CDATA[
<p>Article URL: <a href="https://stsewd.dev/posts/github-search-security-commits/">https://stsewd.dev/posts/github-search-security-commits/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=45923452">https://news.ycombinator.com/item?id=45923452</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 14 Nov 2025 03:16:28 +0000</pubDate><link>https://stsewd.dev/posts/github-search-security-commits/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=45923452</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=45923452</guid></item><item><title><![CDATA[Django in Government]]></title><description><![CDATA[
<p>Article URL: <a href="https://thib.me/django-in-government">https://thib.me/django-in-government</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=43059857">https://news.ycombinator.com/item?id=43059857</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Sat, 15 Feb 2025 16:40:17 +0000</pubDate><link>https://thib.me/django-in-government</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=43059857</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=43059857</guid></item><item><title><![CDATA[Open Collective – closing our virtual card program in Dec 2023]]></title><description><![CDATA[
<p>Article URL: <a href="https://opencollective.com/opensource/updates/closing-our-virtual-card-program">https://opencollective.com/opensource/updates/closing-our-virtual-card-program</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=38589526">https://news.ycombinator.com/item?id=38589526</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Sun, 10 Dec 2023 06:04:43 +0000</pubDate><link>https://opencollective.com/opensource/updates/closing-our-virtual-card-program</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=38589526</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=38589526</guid></item><item><title><![CDATA[New comment by stsewd in "CodeCov is now Open Source"]]></title><description><![CDATA[
<p>Not really open source, they are releasing their code under the BSL (Business Source License <a href="https://github.com/codecov/self-hosted/blob/main/LICENSE">https://github.com/codecov/self-hosted/blob/main/LICENSE</a>). But still great, and they use Django :D<p>It's also interesting that they will no longer offer a commercial self-hosted solution.<p>> As a part of this shift, we are offering a new self-hosted repo that makes it easy to run Codecov in a minimal docker-compose based setup for proof-of-concept and small volume deployments. We are end-of-lifing our commercial self-hosted offering, but will continue to provide support to existing customers who are running Codecov on-prem.</p>
]]></description><pubDate>Wed, 02 Aug 2023 15:21:19 +0000</pubDate><link>https://news.ycombinator.com/item?id=36972121</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=36972121</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=36972121</guid></item><item><title><![CDATA[CSRFing VS Code's Debug Adapter Protocol]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.mcnulty.blog/posts/dap-csrf">https://www.mcnulty.blog/posts/dap-csrf</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=36957995">https://news.ycombinator.com/item?id=36957995</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 01 Aug 2023 16:11:53 +0000</pubDate><link>https://www.mcnulty.blog/posts/dap-csrf</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=36957995</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=36957995</guid></item><item><title><![CDATA[GitHub dataset research reveals millions potentially vulnerable to RepoJacking]]></title><description><![CDATA[
<p>Article URL: <a href="https://blog.aquasec.com/github-dataset-research-reveals-millions-potentially-vulnerable-to-repojacking">https://blog.aquasec.com/github-dataset-research-reveals-millions-potentially-vulnerable-to-repojacking</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=36442198">https://news.ycombinator.com/item?id=36442198</a></p>
<p>Points: 3</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 23 Jun 2023 02:44:06 +0000</pubDate><link>https://blog.aquasec.com/github-dataset-research-reveals-millions-potentially-vulnerable-to-repojacking</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=36442198</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=36442198</guid></item><item><title><![CDATA[Open Source Collective is disabling contributions in cryptocurrencies]]></title><description><![CDATA[
<p>Article URL: <a href="https://opencollective.com/opensource/updates/open-source-collective-is-disabling-contributions-in-cryptocurrencies">https://opencollective.com/opensource/updates/open-source-collective-is-disabling-contributions-in-cryptocurrencies</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=36004695">https://news.ycombinator.com/item?id=36004695</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 19 May 2023 17:40:07 +0000</pubDate><link>https://opencollective.com/opensource/updates/open-source-collective-is-disabling-contributions-in-cryptocurrencies</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=36004695</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=36004695</guid></item><item><title><![CDATA[Black 23.1a1 – please help us test the 2023 stable style]]></title><description><![CDATA[
<p>Article URL: <a href="https://ichard26.github.io/blog/2022/12/black-23.1a1/">https://ichard26.github.io/blog/2022/12/black-23.1a1/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=34075272">https://news.ycombinator.com/item?id=34075272</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Wed, 21 Dec 2022 00:55:14 +0000</pubDate><link>https://ichard26.github.io/blog/2022/12/black-23.1a1/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=34075272</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=34075272</guid></item><item><title><![CDATA[Why 2022 was a record-breaking year in bug bounty awards]]></title><description><![CDATA[
<p>Article URL: <a href="https://about.gitlab.com/blog/2022/12/19/why-2022-was-a-record-breaking-year-in-bug-bounty-awards/">https://about.gitlab.com/blog/2022/12/19/why-2022-was-a-record-breaking-year-in-bug-bounty-awards/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=34072169">https://news.ycombinator.com/item?id=34072169</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 20 Dec 2022 20:38:19 +0000</pubDate><link>https://about.gitlab.com/blog/2022/12/19/why-2022-was-a-record-breaking-year-in-bug-bounty-awards/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=34072169</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=34072169</guid></item><item><title><![CDATA[Russia banned to use foreign software for government agencies]]></title><description><![CDATA[
<p>Article URL: <a href="https://twitter.com/nexta_tv/status/1509182129162366986">https://twitter.com/nexta_tv/status/1509182129162366986</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=30856402">https://news.ycombinator.com/item?id=30856402</a></p>
<p>Points: 3</p>
<p># Comments: 1</p>
]]></description><pubDate>Wed, 30 Mar 2022 15:21:35 +0000</pubDate><link>https://twitter.com/nexta_tv/status/1509182129162366986</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=30856402</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30856402</guid></item><item><title><![CDATA[Suicide hotline shares data with for-profit spinoff, raising ethical questions]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.politico.com/news/2022/01/28/suicide-hotline-silicon-valley-privacy-debates-00002617">https://www.politico.com/news/2022/01/28/suicide-hotline-silicon-valley-privacy-debates-00002617</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=30121581">https://news.ycombinator.com/item?id=30121581</a></p>
<p>Points: 248</p>
<p># Comments: 62</p>
]]></description><pubDate>Fri, 28 Jan 2022 22:51:49 +0000</pubDate><link>https://www.politico.com/news/2022/01/28/suicide-hotline-silicon-valley-privacy-debates-00002617</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=30121581</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=30121581</guid></item><item><title><![CDATA[Securing Your Development Environment]]></title><description><![CDATA[
<p>Article URL: <a href="https://stsewd.dev/posts/securing-your-dev-environment/">https://stsewd.dev/posts/securing-your-dev-environment/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27955349">https://news.ycombinator.com/item?id=27955349</a></p>
<p>Points: 10</p>
<p># Comments: 0</p>
]]></description><pubDate>Mon, 26 Jul 2021 03:39:14 +0000</pubDate><link>https://stsewd.dev/posts/securing-your-dev-environment/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27955349</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27955349</guid></item><item><title><![CDATA[Telegram Desktop retirement notice from RPM fussion]]></title><description><![CDATA[
<p>Article URL: <a href="https://lists.rpmfusion.org/archives/list/rpmfusion-developers@lists.rpmfusion.org/thread/5A7MRE3BG66PQXSP263FUZ7XS5PMDNUV/">https://lists.rpmfusion.org/archives/list/rpmfusion-developers@lists.rpmfusion.org/thread/5A7MRE3BG66PQXSP263FUZ7XS5PMDNUV/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27874705">https://news.ycombinator.com/item?id=27874705</a></p>
<p>Points: 29</p>
<p># Comments: 8</p>
]]></description><pubDate>Sun, 18 Jul 2021 17:28:38 +0000</pubDate><link>https://lists.rpmfusion.org/archives/list/rpmfusion-developers@lists.rpmfusion.org/thread/5A7MRE3BG66PQXSP263FUZ7XS5PMDNUV/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27874705</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27874705</guid></item><item><title><![CDATA[New comment by stsewd in "Bat 0.18.2 released (Windows security fix)"]]></title><description><![CDATA[
<p>The same bug that affected ripgrep, wonder what other software is affected by this.</p>
]]></description><pubDate>Tue, 13 Jul 2021 13:33:09 +0000</pubDate><link>https://news.ycombinator.com/item?id=27820722</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27820722</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27820722</guid></item><item><title><![CDATA[Bat 0.18.2 released (Windows security fix)]]></title><description><![CDATA[
<p>Article URL: <a href="https://github.com/sharkdp/bat/releases/tag/v0.18.2">https://github.com/sharkdp/bat/releases/tag/v0.18.2</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27820721">https://news.ycombinator.com/item?id=27820721</a></p>
<p>Points: 2</p>
<p># Comments: 1</p>
]]></description><pubDate>Tue, 13 Jul 2021 13:33:09 +0000</pubDate><link>https://github.com/sharkdp/bat/releases/tag/v0.18.2</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27820721</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27820721</guid></item><item><title><![CDATA[Phantom. The Robotic Chessboard Made of Real Wood]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.kickstarter.com/projects/wondersubstance/phantom-the-most-advanced-chess-board-in-the-world">https://www.kickstarter.com/projects/wondersubstance/phantom-the-most-advanced-chess-board-in-the-world</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27787010">https://news.ycombinator.com/item?id=27787010</a></p>
<p>Points: 1</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 09 Jul 2021 18:42:53 +0000</pubDate><link>https://www.kickstarter.com/projects/wondersubstance/phantom-the-most-advanced-chess-board-in-the-world</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27787010</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27787010</guid></item><item><title><![CDATA[A tale about security in web apps or how I helped to save a bank from bankruptcy]]></title><description><![CDATA[
<p>Article URL: <a href="https://stsewd.dev/posts/a-tale-about-security-in-web-applications/">https://stsewd.dev/posts/a-tale-about-security-in-web-applications/</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27566004">https://news.ycombinator.com/item?id=27566004</a></p>
<p>Points: 5</p>
<p># Comments: 0</p>
]]></description><pubDate>Sun, 20 Jun 2021 00:52:39 +0000</pubDate><link>https://stsewd.dev/posts/a-tale-about-security-in-web-applications/</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27566004</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27566004</guid></item><item><title><![CDATA[Encrypted network run by de FBI led to at least 800 arrests]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.nytimes.com/2021/06/08/world/australia/operation-trojan-horse-anom.html">https://www.nytimes.com/2021/06/08/world/australia/operation-trojan-horse-anom.html</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27434770">https://news.ycombinator.com/item?id=27434770</a></p>
<p>Points: 10</p>
<p># Comments: 0</p>
]]></description><pubDate>Tue, 08 Jun 2021 13:20:19 +0000</pubDate><link>https://www.nytimes.com/2021/06/08/world/australia/operation-trojan-horse-anom.html</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27434770</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27434770</guid></item><item><title><![CDATA[Elastic License Update – Elastic License v2]]></title><description><![CDATA[
<p>Article URL: <a href="https://www.elastic.co/blog/elastic-license-update">https://www.elastic.co/blog/elastic-license-update</a></p>
<p>Comments URL: <a href="https://news.ycombinator.com/item?id=27393650">https://news.ycombinator.com/item?id=27393650</a></p>
<p>Points: 2</p>
<p># Comments: 0</p>
]]></description><pubDate>Fri, 04 Jun 2021 13:58:32 +0000</pubDate><link>https://www.elastic.co/blog/elastic-license-update</link><dc:creator>stsewd</dc:creator><comments>https://news.ycombinator.com/item?id=27393650</comments><guid isPermaLink="false">https://news.ycombinator.com/item?id=27393650</guid></item></channel></rss>