TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Show HN: Malicious code detector

4 点作者 mgiladi3 个月前
Hey HN,<p>I built a GitHub app that detects malicious code in pull requests and notifies or blocks them. Alongside it, I published a Semgrep ruleset for any stage of the CI&#x2F;CD.<p>I started this after getting frustrated by all the FUD around malicious code - lots of noise, little effort to solve it. While discussing new threats is important, hyping every piece of code no one ever uses isn’t helping.<p>That said, malicious commits are a major attack vector - a stored RCE, with the codebase itself as the sink. That’s why I built this.<p>Would love to hear your feedback. Cheers, Matan

暂无评论

暂无评论