Live data from Hacker News

Viewing profile — hackermondev

hackermondev

HN member
Joined
Mon, Jun 07, 2021, 9:35 PM UTC
HN karma
1,107
Public activity
36 items

About hackermondev

breaking stuff https://hackerone.com/daniel x

Recent public activity

  1. comment
    Comment #47041436

    the fact they're not even trying to hide this is beyond crazy > openai-watchlistdb.withpersona.com > openai-watchlistdb-testing.withpersona.com

  2. comment
    Comment #46320374

    Discord puts the authentication token in local storage

  3. comment
    Comment #46318978

    the impact varied by customer. in Discord's case, the auth token is stored in local storage and their docs is hosted on the primary domain; they were susceptible to a full account …

  4. comment
    Comment #46318547

    imo, the impact is pretty clear here. an unsuspecting user clicks (or is redirected) to one of these malicious links on the platform (ex. vercel); the script grabs their cookie and…

  5. story
  6. comment
    Comment #44958402

    Thanks for the feedback, I've updated the README!

  7. comment
    Comment #44958375

    That's what the `window` option does ( https://github.com/hackermondev/batched?tab=readme-ov-file#b... ). After the first item is added to the buffer, it waits for the maximum wind…

  8. comment
    Comment #44958363

    Need to be specified at build time, but you can set a dynamic window length based on the current buffer length. https://github.com/hackermondev/batched?tab=readme-ov-file#b...

  9. story
  10. comment
    Comment #44261013

    seriously doubt Google Cloud is relying on Cloudflare KV lol

  11. comment
    Comment #42782177

    that's a hackerone bug, that 8-year-old report is not mine :)

  12. story
  13. story
  14. story
  15. story
  16. story
  17. story
  18. story
  19. story
  20. story
  21. story
  22. story
  23. story
  24. story
  25. comment
    Comment #31438943

    replit better