nginx Docker image secure by default
• HTTPS support with transparent Let's Encrypt automation
• State-of-the-art web security : HTTP security headers, prevent leaks, TLS hardening, ...
• Integrated ModSecurity WAF with the OWASP Core Rule Set
• Automatic ban of strange behaviors
• Antibot challenge through cookie, javanoscript, captcha or recaptcha v3
• Block TOR, proxies, bad user-agents, countries, ...
• Block known bad IP with DNSBL and CrowdSec
• Prevent bruteforce attacks with rate limiting
• Plugins system for external security checks (e.g. : ClamAV)
• Easy to configure with environment variables or web UI
• Automatic configuration with container labels
• Docker Swarm support
https://github.com/bunkerity/bunkerized-nginx
• HTTPS support with transparent Let's Encrypt automation
• State-of-the-art web security : HTTP security headers, prevent leaks, TLS hardening, ...
• Integrated ModSecurity WAF with the OWASP Core Rule Set
• Automatic ban of strange behaviors
• Antibot challenge through cookie, javanoscript, captcha or recaptcha v3
• Block TOR, proxies, bad user-agents, countries, ...
• Block known bad IP with DNSBL and CrowdSec
• Prevent bruteforce attacks with rate limiting
• Plugins system for external security checks (e.g. : ClamAV)
• Easy to configure with environment variables or web UI
• Automatic configuration with container labels
• Docker Swarm support
https://github.com/bunkerity/bunkerized-nginx
GitHub
GitHub - bunkerity/bunkerweb: 🛡️ Open-source and next-generation Web Application Firewall (WAF)
🛡️ Open-source and next-generation Web Application Firewall (WAF) - bunkerity/bunkerweb
The Bastion
Bastions are a cluster of machines used as the unique entry point by operational teams (such as sysadmins, developers, database admins, ...) to securely connect to devices (servers, virtual machines, cloud instances, network equipment, ...), usually using
Достаточно много фич и возможностей, представлен авторами от OVH Cloud
https://github.com/ovh/the-bastion
Bastions are a cluster of machines used as the unique entry point by operational teams (such as sysadmins, developers, database admins, ...) to securely connect to devices (servers, virtual machines, cloud instances, network equipment, ...), usually using
ssh.Достаточно много фич и возможностей, представлен авторами от OVH Cloud
https://github.com/ovh/the-bastion
GitHub
GitHub - ovh/the-bastion: Authentication, authorization, traceability and auditability for SSH accesses.
Authentication, authorization, traceability and auditability for SSH accesses. - ovh/the-bastion
Active Directory Exploitation Cheat Sheet
This repository contains a general methodology in the Active Directory environment. It is offered with a selection of quick commands from the most efficient tools based on Powershell, C, .Net 3.5 and .Net 4.5.
https://github.com/Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
This repository contains a general methodology in the Active Directory environment. It is offered with a selection of quick commands from the most efficient tools based on Powershell, C, .Net 3.5 and .Net 4.5.
https://github.com/Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
GitHub
GitHub - Integration-IT/Active-Directory-Exploitation-Cheat-Sheet: A cheat sheet that contains common enumeration and attack methods…
A cheat sheet that contains common enumeration and attack methods for Windows Active Directory. - Integration-IT/Active-Directory-Exploitation-Cheat-Sheet
GitHub - kool-dev/kool: From local development to the cloud: development workflow made easy.
https://github.com/kool-dev/kool
https://github.com/kool-dev/kool
GitHub
GitHub - kool-dev/kool: From local development to the cloud: web apps development with containers made easy.
From local development to the cloud: web apps development with containers made easy. - kool-dev/kool
https://jsbin.com/ - Онлайн инструментарий для экспериментов с HTML, CSS, JavaScript. Инструментарий позволяет делиться кодом, примерами. Имеет внятный видео-help с примерами использования.
Jsbin
JS Bin
Sample of the bin:
Learn Git with Our Free Online Book | Learn Version Control with Git
https://www.git-tower.com/learn/git/ebook/
https://www.git-tower.com/learn/git/ebook/
Git-Tower
Learn Git with Our Free Online Book
Git is an essential tool for developers. This free online book will help you master Version Control with ease.
Forwarded from Sys-Admin InfoSec
Yo! Yo! Open SysConf'21 Завтра (10 июля)
Будет трансляция. Будет оффлайн. Будет Open SysConf'21!
- Трансляция - завтра будет ссылка, здесь и в дружественных каналах и чатиках
- Оффлайн - завтра встречаемся в обозначенном месте к ~9:30 (помним про "Ашик" и свои статусы, на входе будем чекать).
Внимание: в виду ограничений, связанных с сан. нормами, вход на фейс2фейс конференцию только для зарегистрированных.
Все детали можно найти на SysConf.io
Yo! Yo! Open SysConf'21 Завтра (10 июля)
Будет трансляция. Будет оффлайн. Будет Open SysConf'21!
- Трансляция - завтра будет ссылка, здесь и в дружественных каналах и чатиках
- Оффлайн - завтра встречаемся в обозначенном месте к ~9:30 (помним про "Ашик" и свои статусы, на входе будем чекать).
Внимание: в виду ограничений, связанных с сан. нормами, вход на фейс2фейс конференцию только для зарегистрированных.
Все детали можно найти на SysConf.io
projectdiscovery/nuclei: Nuclei is a fast tool for configurable targeted vulnerability scanning based on templates offering massive extensibility and ease of use.
https://github.com/projectdiscovery/nuclei
https://github.com/projectdiscovery/nuclei
GitHub
GitHub - projectdiscovery/nuclei: Nuclei is a fast, customizable vulnerability scanner powered by the global security community…
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the ...
Managing Your Dotfiles With Git. Simplifying the backup process | by Eric Chi | Better Programming
https://betterprogramming.pub/managing-your-dotfiles-with-git-4dee603a19a2
https://betterprogramming.pub/managing-your-dotfiles-with-git-4dee603a19a2
Medium
Managing Your Dotfiles With Git
Simplifying the backup process
How do I get Started in Cyber Security? — My Perspective & Learning Path!
https://hbothra22.medium.com/how-do-i-get-started-in-cyber-security-my-perspective-learning-path-b53065189ba5
https://hbothra22.medium.com/how-do-i-get-started-in-cyber-security-my-perspective-learning-path-b53065189ba5
Medium
How do I get Started in Cyber Security? — My Perspective & Learning Path!
Cyber Security, Ethical Hacking, Application Security, Penetration Testing, Bug Bounties, etc., these career options are blooming and…
microsoft/CBL-Mariner: Linux OS for Azure 1P services and edge appliances
https://github.com/microsoft/CBL-Mariner
https://github.com/microsoft/CBL-Mariner
GitHub
GitHub - microsoft/azurelinux: Linux OS for Azure 1P services and edge appliances
Linux OS for Azure 1P services and edge appliances - microsoft/azurelinux
How to Keep Docker Containers Running When the Daemon Stops – CloudSavvy IT
https://www.cloudsavvyit.com/12361/how-to-keep-docker-containers-running-when-the-daemon-stops/
https://www.cloudsavvyit.com/12361/how-to-keep-docker-containers-running-when-the-daemon-stops/
Optimize Node.js performance with clustering - LogRocket Blog
https://blog.logrocket.com/optimize-node-js-performance-with-clustering/
https://blog.logrocket.com/optimize-node-js-performance-with-clustering/
LogRocket Blog
Optimizing your Node.js app’s performance with clustering - LogRocket Blog
Boost the performance of your Node.js apps with the cluster module, which allows you to fully utilize the CPUs at your disposal.
Как на самом деле работает РСЯ в «Яндекс.Директ»
https://vc.ru/marketing/269544-kak-na-samom-dele-rabotaet-rsya-v-yandeks-direkt-sovety-po-nastroyke-lyuboy-nishi
https://vc.ru/marketing/269544-kak-na-samom-dele-rabotaet-rsya-v-yandeks-direkt-sovety-po-nastroyke-lyuboy-nishi
vc.ru
Как на самом деле работает РСЯ в «Яндекс.Директ». Советы по настройке любой ниши — Маркетинг на vc.ru
Как известно, «Яндекс.Директ» имеет два основных рекламных формата: реклама на Поиске и реклама в «Рекламной системе Яндекс». Если в случае с Поиском все более менее понимают, как он устроен, то с РСЯ дело обстоит сложнее. Сегодня расскажу, как работают сети…
SigNoz/signoz: SigNoz helps developers monitor their applications & troubleshoot problems, an open-source alternative to DataDog, NewRelic, etc. 🔥 🖥
https://github.com/SigNoz/signoz
https://github.com/SigNoz/signoz
GitHub
GitHub - SigNoz/signoz: SigNoz is an open-source observability platform native to OpenTelemetry with logs, traces and metrics in…
SigNoz is an open-source observability platform native to OpenTelemetry with logs, traces and metrics in a single application. An open-source alternative to DataDog, NewRelic, etc. 🔥 🖥. 👉 Open s...
Docker and Kubernetes Updates in IntelliJ IDEA 2021.2 | The IntelliJ IDEA Blog
https://blog.jetbrains.com/idea/2021/07/docker-and-kubernetes-2021-2/
https://blog.jetbrains.com/idea/2021/07/docker-and-kubernetes-2021-2/
The JetBrains Blog
Docker and Kubernetes Updates in IntelliJ IDEA 2021.2 | The IntelliJ IDEA Blog
Apart from other helpful features we’ve described over the EAP period, IntelliJ IDEA 2021.2 contains some useful updates for Kubernetes and Docker. You can test them now by getting the latest build fr