Security
-
Check OpenTofu provider-cache symlinks before running init
-
Gate affected systeminformation versions in package-lock before deployment
-
Review cross-device authorization flow controls before rollout
-
Test Node.js TLS hostname verification before deploying a client
-
Find removed CodeQL Actions modules before an analysis upgrade
-
Verify an OpenSSL certificate chain before deployment
-
Test OPA policy regressions before a deployment
-
Test OpenBao policy boundaries before deployment
-
Measure a systemd service sandbox before changing it
-
Generate and check a local SBOM with Syft before an artifact leaves CI
-
Verify release manifests with Cosign bundles before deployment
-
Update an OpenTofu CI Toolchain Without Changing Provider Selections
-
Build a container image security gate with Trivy
-
Respond to the Cisco Secure FMC Static-Credential Vulnerability
-
Review Held GitHub Actions Workflows Without Expanding Their Blast Radius
-
Review GitHub AI Security Detections Without Making Them a Merge Gate
-
Prepare a Node.js Project for npm v12 Install Security
-
Prepare a Linux SSH Service for an OpenSSH 10.4 Upgrade
-
Build a Safe PF Firewall Baseline on FreeBSD
-
Hardening GitHub Actions Checkouts for Pull Requests
-
DNS Exfiltration With Python
-
GnuPG Cheat Sheet
-
Mitigating SSH Brute-Force Attempts on Junos
-
Introduction to Junos Firewall Filters
-
Content-Based Access Control with Cisco CBAC
-
Introduction to Network Access Lists, Part 2
-
Introduction to Network Access Lists, Part 1
-
Encrypt GRE Tunnels with IPsec
-
Configure Check Point-to-Juniper VPN Proxy IDs
-
Cisco IOS Firewall Security and Packet Filtering
-
Configure IP Filter on FreeBSD