Hacker Newsnew | past | comments | ask | show | jobs | submit | avnerner's commentslogin

Oh yeah, there are pitfalls for sure. It's a delicate balance and reading your comment, I tend to agree I focused on the pros and less about the cons and risks.


I think there are two main routed for code to leak, one way is the case of stealing code. While there are some ways to handle that, non is 100% covered and so, we focus on recruiting to mitigate that. The other way which in my mind, is the way more common situation, is mistakes. People play with some code on their personal code, post something as a public gist etc. We mitigate that with with education and a tool that was built in house to monitor and alert on all public activities, for the security team, it's usually easy to review the alerts to understand if there is a data leakage going on: https://github.com/AvnerCohen/github-public-monitor


Seems like the project was forked to an org: https://github.com/materializecss/materialize

But original maintainers still being backed for over 2 years: https://www.patreon.com/materialize

Would love to know, if anyone knows the insides, if this is something to be reported, I just feel bad for the people backing this and are unaware of the project status.


This extension is designed to assist is making less mistakes when working in gmail for business.

Code is fully open sourced (https://github.com/AvnerCohen/safer-send-gmail) with zero analytics, hopefully this will soon become the default gmail behavior :)

(I guess mainly relevant to gsuite companies)


Thanks, looking for a solution on the vendor end, not on the end user side. Did Slack ever had a data breach for example?


I came across this - https://en.wikipedia.org/wiki/List_of_data_breaches

But this seems incomplete, for example, this salesforce breach is not reported: https://lawstreetmedia.com/tech/salesforce-cloud-data-breach... And so Is this mailgun breach: https://www.zdnet.com/article/mailgun-hacked-part-of-massive...

So I am wondering if there is a more reliable source that aggregates all that?


Would love to hear other people's opinion and approachs to solving Multi-Tenant Application Configuration, solution that provides good solution to non-dev updates, cross environment replication and auditability.


Sharing also the medium post describing the details of the implementation - https://medium.com/hiredscore-engineering/multi-language-doc...


Crazy. Just crazy. Regardless if you are a fan or not, an all time top 5 player. Will always be remembered for the Kobe spirit - relentless to win and extreme hard working ethics. R.I.P


Seems facebook is back. a total of 55 min or so.


Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: