social.tchncs.de is one of the many independent Mastodon servers you can use to participate in the fediverse.
A friendly server from Germany – which tends to attract techy people, but welcomes everybody. This is one of the oldest Mastodon instances.

Administered by:

Server stats:

3.8K
active users

#snyk

0 posts0 participants0 posts today

snyk CTF - laeuft. Bzw. lief, weil die Verlängerung nicht eingeplant war/ist. Für mich durch, aber es war toll!

Vorlaeufiger Teamplatz: 81 von knapp 900 mit min. 1 Flag - ich hatte mich erst am Coding Mountain Scripting festgebissen und die Hoehe und Erstbesteigungsjahr von Bergen geraten, und dann einen Lauf beim Reverse Engineering.

Bin gespannt auf Writeups, selbst wirds wohl keine geben. Notizen sind vorhanden auf Anfrage.

Today in #snyk: the fucking thing isn't running at all. Just says:

There was a problem running Code analysis.
Contact support if the problem persists.

It may be impossible to comprehend the unfathomable depths to which I am unimpressed by this fucking tool.

Continued thread

Fuck #snyk. I'm disabling the fucking thing to the best of my ability and raising a bug against the fuckers who enabled it on my repo. Let them do manual fuzz testing against an undocumented CLI in the hopes of stumbling across something that works.

We had a #snyk vulnerability report about an insecure TLS version. It looked reasonable so we changed the default minimum to TLS 1.3, but it kept complaining. What to do?

I can:
* Clicky in a GUI somewhere I'll never find again. That's a hard no.
* Edit a `.snyk` file to add an exclusion for this specific warning in this specific file. After reading the docs carefully I cannot make this work.
* Edit my `.snyk` file to tell it to fuck off entirely.

That last option is looking attractive.