Site uses cookies to provide basic functionality.
Javascript rendering is set to off by default when visiting the site via .onion and .i2p domains. It can be enabled back again in user's settings section. Javascript rendering set to off means, that you can disable javascript in your browser now and the site will remain functional.
There is also IRC server now available via native IRC clients or non javascript web based one.
Fonts can be adjusted in user's settings section as well.
Check FAQ for more.

OK

It's 2024, y'all. We're 20 days into the year, so I'm running out of time to write that end of year post I always do. I haven't quite known…


So the day before we left on our vacation to New Zealand last month, a guy who was not being careful rear ended use on Queen K highway stopping at a red light. He was almost stopped so there wasn’t much damage and no one was hurt. When we got home we followed up and … Continue reading The Internet can be so f’ing efficient!

Today, let’s go back to the topic of the first post in this series of Django tips. At the time, I focused on the python manage.py check --deploy command. In this article, I will explore the feature on which it is built and how it can be quite handy for many other scenarios. So, the […]

If you are one of the few following me on Substack, I have news: I’m leaving Substack and moving to a different platform . I actually left a couple of weeks ago; my latest posts are not on Substack and you can find them on my website (the source of all my content), or you can subscribe to the new newsletter or the RSS feed like hackers do. If you’re an old-time Substack subscriber, you already know because I transferred all the act..

A not insignificant part of my job is to go over code. Today I want to discuss how we approach code reviews at RavenDB, not from a process perspective but from an operational one. I have been a developer for nearly 25 years now, and I’ve come to realize that when I’m doing a code review I’m actually looking at the code from three separate perspectives. The first, and most obvious one, is when I’m actually looking for problems in the code -....

How can you measure the quality of a large language model? What tools can measure bias, toxicity, and truthfulness levels in a model using Python? This week on the show, Jodie Burchell, developer advocate for data science at JetBrains, returns to discuss techniques and tools for evaluating LLMs With Python.

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

Assumed Audience : Hackers and listeners of the Changelog podcast . Epistemic Status : Confident. So, apparently, the Changelog podcast thought that one of my blog posts was important enough to comment on. Cool! But they had a critique. They linked to another show of theirs with Kris Brandow who said : we should get rid of [the tech debt analogy], because I don’t think the thing that we’re talking about when we’re ta..

A prototype that makes it easier to navigate and research city council hearings using LLMs (links below). 👉 This blog post discusses a prototype I worked on which is now live at https://citymeetings.nyc. citymeetings.nyc is a tool built to help folks navigate NYC city meetings easily. I’ve been using LLMs to glean information from NYC city council meetings as part of my work writing this newsletter on NYC city council activity.

We’ve got some DEF CON content updates for you today! First, we’ve added some AppSec Village videos we were missing from DC30 and DC31. You can grab them at media.defcon.org . Second, the big torrent of all the goodies from DC31 is now also live on the media server . And third, if you’re looking for a 1.7T ‘everything DC’ torrent, that’s freshly updated and available for you on infocon.org . Make sure to stretch your..

I have a lot of thoughts about this book but I’ll try to keep this brief. To start, this book has a very odd citation format. The author directly cites journalists, blog posts, magazine surveys directly in line, but then deeper resources, ie Academic Studies, Medical Journals, are cited at the back of the book - and not many are cited compared to how many Journalists are. This creates a problem where many times in the book the author will..

This year, we asked the DevRel and SecRel team at Snyk and security experts from around the industry to drop in their personal and professional New Year's security resolutions for 2024.

Attention is a prized currency. Basically, every company around you is trying to grab your attention to get a return on investment. What does it mean for lifelong learners and knowledge workers? What are the pitfalls to avoid and ways to leverage that to learn better and be more productive?


On January 11th, 2024, a significant security vulnerability was disclosed in Jinja2, a widely used Python templating library. Identified as CVE-2024-22195, this cross-site scripting (XSS) vulnerability has raised concerns due to its impact on numerous projects.


Over the decades I've relied heavily on bash aliases and functions to automate common tasks, resulting in a .bash_profile that's over a thousand lines long. But lately I find myself writing many small scripts instead. These tiny scripts, which live in a directory on my $PATH, have several advantages: They compose nicely, in line with the Unix philosophy . They are reasonably portable. If it works for me on Linux, it'll often work on....




Over the decades I've relied heavily on bash aliases and functions to automate common tasks, resulting in a .bash_profile that's over a thousand lines long. But lately I find myself writing many small scripts instead. These tiny scripts, which live in a directory on my $PATH, have several advantages: They compose nicely, in line with the Unix philosophy . They are reasonably portable. If it works for me on Linux, it'll often work on....

Over the decades I've relied heavily on bash aliases and functions to automate common tasks, resulting in a .bash_profile that's over a thousand lines long. But lately I find myself writing many small scripts instead. These tiny scripts, which live in a directory on my $PATH, have several advantages: They compose nicely, in line with the Unix philosophy . They are reasonably portable. If it works for me on Linux, it'll often work on....

Hi, Deine E-Mail-Validierung ist falsch (wahrscheinlich). Und deine Modellierung, dass jeder Mensch einen Vor- und einen Nachnamen hat, ist ebenfalls falsch. Als ich in den vergangenen Tagen meine Bookmarks auf der Suche nach einem Artikel zu Project Management in BigTech durchforstet habe, bin ich auf einen alten Artikel von 2010 gestolpert: Falsehoods Programmers Believe About Names . Ein exzellentes Essay! Unsere Annahme..


Today’s fun was implementing OAuth2’s RFC 7636 ’s PKCE (Proof Key for Code Exchange) in C#. It’s relatively straightforward, but I decided to share my implementation should it be helpful to someone else out there. PKCE is an extension to the Authorization Code flow to prevent CSRF and authorization code injection attacks. [..] It was originally designed to protect the authorization code flow in mobile apps, but its ability to prevent ..

Date.now() - davidwalsh.name - 2 years ago - eng
Ask any software engineer and they’ll tell you that coding date logic can be a nightmare. Developers need to consider timezones, weird date defaults, and platform-specific date formats. The easiest way to work with dates is to reduce the date to the most simple format possible — usually a timestamp. To get the immediate time […] The post Date.now() appeared first on David Walsh Blog .

Date.now() - davidwalsh.name - 2 years ago - eng
Ask any software engineer and they’ll tell you that coding date logic can be a nightmare. Developers need to consider timezones, weird date defaults, and platform-specific date formats. The easiest way to work with dates is to reduce the date to the most simple format possible — usually a timestamp. To get the immediate time […] The post Date.now() appeared first on David Walsh Blog .

manifesto.neue - blog.webb.page - 2 years ago - eng

We all have secrets. Sometimes, these are guilty pleasures that we try to keep hidden, like watching cheesy reality TV or indulging in strange comfort food. We often worry: “How do we keep the secret safe?” “What could happen if someone finds out the secret?” “Who is keeping a secret?” “What happens if we lose […]

I can't believe I haven't written anything here in over a year. I increasingly want to move my experimental, art, hobby, and professional content away from platforms that exist to extract value from me and my friends. I'd also like to be less precious with this space, to treat it in the casual, experimental fashion I would treat Instagram or Facebook. So I'm going to be playing around with posting shorter posts, unfinished things, and ....

I can't believe I haven't written anything here in over a year. I increasingly want to move my experimental, art, hobby, and professional content away from platforms that exist to extract value from me and my friends. I'd also like to be less precious with this space, to treat it in the casual, experimental fashion I would treat Instagram or Facebook. So I'm going to be playing around with posting shorter posts, unfinished things, and ....

I can't believe I haven't written anything here in over a year. I increasingly want to move my experimental, art, hobby, and professional content away from platforms that exist to extract value from me and my friends. I'd also like to be less precious with this space, to treat it in the casual, experimental fashion I would treat Instagram or Facebook. So I'm going to be playing around with posting shorter posts, unfinished things, and ....

The post discusses my experience with learning and using Ruby, highlighting its good, bad, and weird parts.

Snyk announces acquisition of Helios, accelerating application security posture management (ASPM) capabilities with runtime insights.

Selling my company was a milestone that many entrepreneurs dream of. But today, I get to look back on all of that nearly two years later with the benefit of hindsight.

Using todoist as a cloud inbox for GTD in Emacs orgmode for better integration with services like Slack and Google Assistant

Using todoist as a cloud inbox for GTD in Emacs orgmode for better integration with services like Slack and Google Assistant

Using todoist as a cloud inbox for GTD in Emacs orgmode for better integration with services like Slack and Google Assistant

User input from HTML form fields is generally provided to JavaScript as a string. We’ve lived with that fact for decades but sometimes developers need to extract numbers from that string. There are multiple ways to get those numbers but let’s rely on regular expressions to extract those numbers! To employ a regular expression to […] The post Extract a Number from a String with JavaScript appeared first on David Walsh Blog .

64 visitors online