@vivobr Por que vocês estão bloqueando em todo o país os seguintes endereços IPv4 e IPv6 da @Cloudflare se não há ordem judicial ou administrativa de autoridade brasileira para que se faça tal bloqueio? São os IPs:
104.21.0.216
172.67.128.80
2606:4700:3033::ac43:8050
2606:4700:3033::6815:d8
Não há de se cogitar problema de rota ou defeito já que endereços IP do mesmo IPv4 /24 e mesmo IPv6 /48 respondem normalmente através de links do Vivo Fibra, o que prova que há conectividade, há rota. Vide evidências em anexo.
Também envio em anexo os traceroutes mostrando o bloqueio dentro do Sistema Autônomo de vocês. Na Claro, Nio e Live TIM não há tal bloqueio.
Fico no aguardo de vossa resposta.
Our security bug bounty program is now public on HackerOne.
We've run the program privately within the security research community, and their findings have strengthened our products. Now anyone can report vulnerabilities and get rewarded.
Read more: https://t.co/li1QvSTCMs
Tô investigando aq uns casos de phishing e olha o que me deparo
Tantas memórias 😭🤣
Infelizmente os hackers sabem configurar o RLS
BTW, um dos domínios é *.lovable.app 🤣 #bolhasec
If your tests break every time the UI changes…
Are they testing anything?
This deep dive explores agentic testing and a better approach to QA 👇
https://t.co/8iZrCrMbN1
🚨‼️ We're in contact with the actor behind the Trivy and LiteLLM hack. They told us they are currently extorting several multi-billion-dollar companies from which they've exfiltrated data.
They've obtained 300 GB of compressed credentials and are working their way through them as we speak.
The LiteLLM compromise alone led to half a million stolen credentials, according to the threat actor.
Their message to the world: "TeamPCP is here to stay. Long live the supply chain."
They've sent us their new logo (see image) and also teamed up with several threat actors, including Xploiters and Vect.
🚨 Stop scrolling. This is the biggest betrayal in tech this year.
The company that built its entire reputation on BLOCKING scrapers just shipped the most powerful scraping tool ever made.
> Cloudflare just dropped a /crawl endpoint. One API call and you get an entire website back. Clean HTML, Markdown, or JSON. That's it. That's the whole thing.
Let me break it down. For years, Cloudflare sold anti-bot protection. Companies paid them to STOP crawlers. Now those same companies are watching Cloudflare hand everyone a free crawler that bypasses… other people's anti-bot protection.
They didn't switch sides. They're playing both sides. And getting paid twice.
Bug hunters: small Chrome DevTools tip that saved me a lot of time.
took me way too long to notice the Network → “Preserve log” checkbox in Chrome DevTools.
> be kippu
> some startup app or something
> idfk
> goes live
> people sign up
> realize it's vibe coded
> nerds get silly
> nerds do http get on api endpoint
> dumps entire database
*image censored, although it's all over xitter