HNHacker News
TopNewBestAskShowJobs

cfabianski

168 karma · joined May 27, 2014

[ my public key: https://keybase.io/cfabianski; my proof: https://keybase.io/cfabianski/sigs/HJf9b2R_4tNPqT_icjGDzsQ9FsblNnlj2PPoPpppI1Q ]
submissionscomments
cfabianski··on Show HN: Bearer Code Security Scanner Add Support for Java, PHP, Go, and Python
I'm Cédric, co-founder and CTO @ Bearer.

I'm super pumped to come back here with a Show HN with not 1, nor 2 but 3 new languages support!!!

Amongst those languages, the most requested ones by our customers Java and PHP which brings the total to 6 languages supported. The rules associated to it will grow also.

Not only this, but the integration with GitLab and GitHub has never been easier.

Let us know what you think!

cfabianski··on Detecting sensitive data shared with OpenAI
I'm Cédric, CTO @ Bearer

I hope you will find this useful but I really enjoyed writing this one to help protect us (users) better. Let me know if there is anything you would like to improve.

Link to the Rule https://github.com/bearer/bearer-rules/blob/main/javascript/... Link to the Recipe https://github.com/Bearer/bearer/blob/main/pkg/classificatio...

cfabianski··on Show HN: TypeScript Security Scanner
Hi HN,

I'm super happy to provide TS support today. It has been a strong ask from the community after JS support.

Every rule written for JavaScript will work for both.

Please do let us know if you have any feedback!

cfabianski··on Cache configuration change leading to account vulnerability
We wrote about it here https://www.bearer.com/blog/loom-express-session-incident and we also updated the famous NodeGoat project to bring more awareness around that kind of mis configuration https://github.com/OWASP/NodeGoat/pull/286
cfabianski··on [dead]
I took the opportunity to even update the famous NodeGoat repo https://github.com/OWASP/NodeGoat/pull/286 so that people can get more familiar with that kind of mis-configuration issue. Really hope that helps
cfabianski··on Show HN: Bearer – Open-source code security scanning solution (SAST)
I’ve introduced the `absence` trigger that does that If express is present but helmet is missing then break.

Do you think that’d help achieve what you have in mind?

cfabianski··on Show HN: Bearer – Open-source code security scanning solution (SAST)
Hello HN community,

I'm Cédric Fabianski, Co-founder and CTO @ Bearer.

This is a big milestone for me personally and I'm super happy to be able to contribute to the Security space and help improve the security of others' applications.

This is by far the most challenging project I've ever worked on but as people say, if you don't make security simple and accessible enough, there is no way engineers are going to care about it.

Let me know what you think! Any feedback is more than welcome!!

cfabianski··on Show HN: I made an open-source marketplace to fasten OAuth API integrations
Super happy to OpenSource this bit that we used heavily @BearerSH. Once you’ve tried it, there is no way you are coming back to the old way.
cfabianski··on How Rust Lets Us Monitor 30k API calls/min
Yes we switched over from one to another because NewRelic doesn’t really support Rust and DD supports StatsD and there is no lock-in. Good spot ;-)
cfabianski··on We got 900 applications on our Developer Position
It doesn’t change the overall quality of the applicants and yet we received more than half from the US :-)
cfabianski··on We got 900 applications on our Developer Position
There is a shortage of remote jobs though :-)
cfabianski··on We got 900 applications on our Developer Position
Thank you. Please don’t hesitate to apply again in the future
cfabianski··on We got 900 applications on our Developer Position
I think it’s the least we can do!
cfabianski··on We got 900 applications on our Developer Position
It’s true but we did receive some applications from the US ;-)
cfabianski··on What does it mean to build a Developer Tool?
I’m Cédric, Co-founder and CTO @ Bearer. I’m super happy to share a bit of our experience. Hope that will help others!