🚨 BREAKING: Claude has a feature called Red Team Mode.
You can use it to attack your own business the way a competitor, investor, or angry customer would, and fix the weak spots before they become real problems.
Here are 7 prompts to access it: 👇
My Laravel security advice on dealing with external packages.
Can we (still) trust "composer require" or "composer update"?
A 2-minute excerpt from my longer YouTube video.
Full 17-minute video on YouTube: https://t.co/gcpoMbiQiU
I have just turned on my robot vacuum cleaner and left the house for a few hours.
And I thought about an analogy with AI coding agents.
We will probably be doing the same or some developers already are doing the same, right? We instruct the agent and we may leave for a while.
With analogy to the vacuum cleaner, yes, it sometimes fails. Yes it sometimes gets stuck somewhere.
But the habit of people is so strong that they would probably be more motivated to clean the path for the vacuum for the next time or buy a better robot vacuum instead of getting back to doing the vacuuming and cleaning by hand, right?
I think there is something to think about the future of developers. We should work on better "vacuums" and systems for them to do their work better.
You're a Laravel dev and wanna create a mobile app?
Can't choose: React Native / Flutter / NativePHP?
I suggest (very simplified) algorithm based on your current skills:
1. You're a Laravel dev with little/no React exp? And don't wanna learn any new lang/framework?
NativePHP.
2. You have experience in React?
React Native.
3. You're starting mobile fresh and want to learn new language/framework for that?
Flutter. (+Dart language)
introducing laravel moat
as an open source maintainer, recent supply chain attacks in the ecosystem made me want a simple cli to audit the security of my GitHub organizations and repositories
built in Rust. for any open source project on GitHub
Attention Filament users: we’ve identified and resolved a few security vulnerabilities.
To address these vulnerabilities in your applications, please update to the following versions:
v3.3.52
v4.11.5
v5.6.5
Wow my first real Android app is getting USED!
Checklisty got 100+ downloads, and 4.8/5 rating!
Reminder: it was built with @NativePHP
So it's actually a Laravel + Livewire app. Just for Android.
Get it here: https://t.co/dzwOfs6IXf
Expect more from me soon on NativePHP.
With new security incident(s), we PHP/Laravel devs probably should stop running `composer update` blindly, trusting the latest versions.
Modern apps are mostly DEPENDENCIES.
Security is no longer just about your code, SQL injections or XSS attacks on your website.
So, for packages, probably lock SPECIFIC versions.
Probably do not install anything "too fresh".
Consider NOT using external packages when possible/logical.
I'm currently writing a much longer tutorial with security recommendations, possibly will even turn it into a course.
You are using Lorem Ipsum on your website, and you're trying to charge me 20k for "license"? A whole government website. Supposed ICT Authority.
Scrap the whole organisation. What a flipping joke.
You are using Lorem Ipsum on your website, and you're trying to charge me 20k for "license"? A whole government website. Supposed ICT Authority.
Scrap the whole organisation. What a flipping joke.
This is a criminal offense if the bill is passed and they don’t have a NITA license.
What makes this absurd is in section 59(2)it says
“The Authority shall promote partnerships with technology firms, start-ups, and academia to support indigenous ICT innovation.”
Yet that same licensing framework could technically criminalize the very innovation the bill claims to encourage.