Daily Shaarli

All links of one day in a single page.

April 13, 2023

CS 253 Web Security - YouTube

with material: https://web.stanford.edu/class/cs253/

Broad videos on the subject.

Snyk Open Source Advisor | Snyk

A package.json can be provided in order to scan dependencies. It searches for risks.

Socket - Secure your supply chain. Ship with confidence.

Checks how vulnerable is a package.
It provides informations to asses if a package is safe enough for the use case.

The tool provides analysis for each line of code too.

CASL

A library to handle right and permissions.

It is very useful if both backend and frontend are written in JS.

Introducing "safe npm", a Socket npm Wrapper - Socket

A wrapper that throws warnings about security risks

Rust: Your code can be PERFECT - YouTube

A playlist of rust video about rust.

Toools.design – An archive of 1000+ Design Resources
aquasecurity/trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

A tool that scans for security risks:

  • Container Image
  • Filesystem
  • Git Repository (remote)
  • Virtual Machine Image
  • Kubernetes
  • AWS