security 34
- Hermes vs OpenClaw, NanoClaw, ZeroClaw, IronClaw: Agent Architecture
- I Audited the OpenVPN Server I Wrote a Guide For
- Tightening a dev VM that was quietly living without a firewall
- Tightening Hermes Secrets with Bitwarden
- Shared AI Artifacts Aren't Private From a Hard-to-Guess URL
- Tightening Hermes Agent Security for Local Sensitive Work
- Securing Hermes Agent with OpenShell
- Giving Hermes Read-Only Access to GCP, AWS, and Kubernetes
- Identity-Aware GCS Access Instead of Hashed Secret URLs
- Sending Email from an Ubuntu VM on Oracle Cloud (OCI)
- An SSH SOCKS5 proxy that stops DNS leaks
- Why macOS ignores your manual DNS settings
- PostgreSQL MD5 to SCRAM-SHA-256: a zero-downtime migration
- Securing AWS Credentials: aws-vault vs 1Password
- Enabling Local HTTPS for Development and Debugging
- User Impersonation in Rails with the Pretender Gem
- Custom HTTP Headers in Rails: Picking the Right Format
- How Rails Sessions Work with Warden and Cookies
- Detecting Cloudflare Zero Trust Beyond the WARP Flag
- Monitor Cloudflare WARP Status on macOS with launchd
- Migrating OTP Secrets Out of Google Authenticator
- ARG, ENV, and BuildKit secrets: how each behaves in Docker
- Docker secrets: how layers leak them and how BuildKit fixes it
- Leapp vs aws-vault: Comparing AWS CLI Credential Tools
- OpenVPN: Restrict Client Access to Specific IPs Only
- Fixing Multi-Tab Session Bugs with JWT and sessionStorage
- How to Rotate GKE Cluster Credentials
- Container Security with Fine-Grained Permission Control
- Rails Session Stores: Cookie, ActiveRecord, and Redis
- Rails Secrets: Credentials, 1Password, and Cloud Vaults
- Config Approaches: Files, Env Vars, and Config Servers
- Database Auditing: pg_audit vs audited vs paper_trail
- Defending Against DoS Attacks
- NETSCREEN 5GT密码破解方法