Alexis Tual

322 posts

Alexis Tual

Alexis Tual

@alex_tual

Nothing too serious

Katılım Ekim 2015
79 Takip Edilen109 Takipçiler
Alexis Tual
Alexis Tual@alex_tual·
@ndeloof Content de lire ce tweet, ses réponses et me sentir moins seul. Le "business trip" en question m'aurait couté en émissions 1 an de mes déplacements en voiture (nécessaires) pour 5 jours de travail/sociabilisation
Français
0
0
0
0
Alexis Tual retweetledi
Gradle Technologies
Gradle Technologies@gradle·
🧵 Announcing Predictive Test Selection gradle.com/gradle-enterpr… Run only tests likely to provide useful feedback on a code change using a probabilistic machine learning model. [1/10]
English
3
32
49
0
Alexis Tual
Alexis Tual@alex_tual·
@glaforge @jljouannic Je confirme, ce brouter m’a sorti de bons itinéraires alternatifs que google maps n’envisage pas 👍🏻
Français
0
0
1
0
Guillaume Laforge
Guillaume Laforge@glaforge·
Bonne résolution du matin : on va tenter l'aventure du trajet au bureau en vélo 🚴‍♀️ Paraît que c'est bon pour la planète 🌍
Français
3
0
27
0
Alexis Tual retweetledi
JFrog Security
JFrog Security@JFrogSecurity·
Earlier today, the Spring maintainers confirmed a new 0-day vulnerability - #SpringShell (or #Spring4Shell) - which lies at the heart of an extremely popular framework for building web applications. Learn all about SpringShell in this new blog: jfrog.com/blog/springshe…
English
0
1
3
0
Alexis Tual
Alexis Tual@alex_tual·
@Sh0ckFR Yes👍this is one is taylored for this binding issue and was righfully advised in blog posts, there might be also more generic ways like docs.spring.io/spring-securit…. But "domain code oriented" ways like custom validators come too late in the party to be effective I'm afraid
English
0
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
@Sh0ckFR No worries, I meant: as long as the greeting handler takes a POJO (of any type), it will trigger the vulnerable code. Sanitizing would have to be done upfront prior to reaching the Controller code with a kind of generic interceptor (forgot the name in Spring/Tomcat world)
English
0
0
0
0
Ray
Ray@_Ray4all·
@alex_tual Ah génial, une version 5.x ou 6 directement?
Français
1
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
Reproduced the SpringShell, it’s brilliant, reminded me of the old days 😅
English
2
0
2
0
Alexis Tual
Alexis Tual@alex_tual·
@Sh0ckFR Well, the vulnerable code sits in spring libs and is executed prior to reaching user/dev code 🙃
English
0
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
@_Ray4all Oui le patch vient de sortir, à appliquer urgemment
Français
1
0
0
0
Ray
Ray@_Ray4all·
@alex_tual Dans les établissements c’est plus la partie mvc qu’on utilise. On va devoir faire une mise à jour
Français
1
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
@poenicum Oui, Tomcat 8 en standalone, a priori ça ne fonctionne pas en embedded pour l’instant
Français
0
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
@_Ray4all Celuu de spring cloud est facile, celui sur spring mvc est plus dur à exploiter mais fun 😅
Français
1
0
0
0
Ray
Ray@_Ray4all·
@alex_tual Il y a François qui m’a dit que tu lui as signalé sur spring cloud.
Français
1
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
@CedricChampeau Perso je suis pas ultra fan de ma PAC air/air (sauf l’été en mode froid): bruit, sensation du chaud pulsé, rendement si températures extérieures autour de 0… mais ds un autre logement j’ai eu du air/eau avec plancher chauffant et c’était le top 🤷🏼‍♂️
Français
0
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
Did not know Boris Johnson was a rubygem maintainer 🙃
Alexis Tual tweet media
English
0
0
1
0
Ray
Ray@_Ray4all·
@alex_tual Certains n’ont pas de prénom ?
Français
1
0
0
0
Alexis Tual
Alexis Tual@alex_tual·
Ah bon ? 😅
Alexis Tual tweet mediaAlexis Tual tweet media
Français
1
0
0
0
Alexis Tual retweetledi
Gradle Technologies
Gradle Technologies@gradle·
Thrilled to announce that we closed $27M in Series C funding. The round was led by Triangle Peak Partners and participating investors including True Ventures, DCVC, Bain Capital Ventures, Harmony Partners, and StepStone Group. ➡️ Learn more - gradl.es/3HtKBC9
Gradle Technologies tweet media
English
0
8
41
0
Guillaume Laforge
Guillaume Laforge@glaforge·
"Browsix: Unix in the browser tab" Woah, that's fun, running some unix programs in web workers in your browser! buff.ly/3zvGmCv
Guillaume Laforge tweet media
English
1
2
2
0
Alexis Tual
Alexis Tual@alex_tual·
Log4Shell's unfriendly reminder: 3rd party increase your attack surface over features you don't use or you don't even know they exist... 🥲
English
0
0
2
0