frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Show HN: Integration Security Top 10: An OWASP-style framework

https://github.com/vikram-s-narayan/integration-security-top-10
2•leo1452•19h ago
The Salesloft–Drift breach (more context - https://news.ycombinator.com/item?id=45106340) this August showed how one weak integration can ripple across 700+ orgs (Cloudflare, Palo Alto, Zscaler, etc.). Attackers stole tokens from a single app and used them like skeleton keys to exfiltrate Salesforce, Google Workspace, and Slack data.

Looking around, I found no clear framework or set of controls to track and improve integration security.

So, I’ve published the Integration Security Top 10 (ISF) and open-sourced it on GitHub. It’s modeled after the OWASP Top 10: short, memorable, and focused on the most critical risks in SaaS-to-SaaS and API integrations. Each item also has an actionable “playbook” to help move theory into practice.

The goal is to help orgs prevent the sorry situation that we saw unfold at so many supposedly "secure" companies over the last few weeks. I'm doing this by creating a clear set of controls that orgs can look at and use like a checklist to fix integration security issues.

Comments

aria_vikram•9h ago
this is the missing piece of the puzzle - very deep insight

Cook County Assessor's Office Open Source AVM (Automated Valuation Model)

https://github.com/ccao-data
1•larsiusprime•2m ago•0 comments

YouTube views are down (don't panic)

https://www.jeffgeerling.com/blog/2025/youtube-views-are-down-dont-panic
1•mikece•2m ago•0 comments

Serving up delicious cocktails in plain text

https://asciibar.com/
2•basilikum•6m ago•0 comments

Nick Clegg and Tim Berners-Lee: the battle for the soul of the Internet

https://observer.co.uk/culture/books/article/nick-clegg-and-tim-berners-lee-the-battle-for-the-so...
1•Anon84•9m ago•0 comments

Elon Musk's $1T Tesla pay package: Here are the major caveats

https://www.fastcompany.com/91399114/elon-musk-1-trillion-tesla-pay-package-here-are-the-major-ca...
1•makerdiety•9m ago•0 comments

European public service channel ARTE's YouTube channel likely hijacked [video]

https://www.youtube.com/watch?v=sTCOAqxg_WU
1•mastazi•16m ago•1 comments

Show HN: Frontier – draw with the world live on an infinite grid of pixels

https://frontier.place
1•rmjmdr•21m ago•0 comments

Show HN: Percentage Increase Calculator:calculate changes between two values

https://percentage-increase-calculator.net/
1•jumpdong•22m ago•0 comments

Why Ken Loach's "Kes" Features Film's Best Football Scene (2023)

https://www.top10films.co.uk/22409-kes-film-review/
1•mellosouls•22m ago•1 comments

The three stages of religious decline around the world

https://www.nature.com/articles/s41467-025-62452-z
2•toomuchtodo•26m ago•0 comments

Computers Are for Girls – Datagubbe.se

https://datagubbe.se/girls/
6•mastazi•27m ago•0 comments

Show HN: NotePulse - Simple Notion Analytics

https://notepulse.net/
1•snam23•27m ago•0 comments

Share a tool for migrating Git repositories to SHA256

https://github.com/antgroup/hugescm/releases/tag/v0.19.0
2•fcharlie•32m ago•1 comments

The End of the American City

https://kevinerdmann.substack.com/p/the-end-of-the-american-city
5•paulpauper•42m ago•0 comments

The Case Against Social Media Is Stronger Than You Think

https://arachnemag.substack.com/p/the-case-against-social-media-is
4•paulpauper•42m ago•1 comments

The brompton-ness of it all

https://backofmind.substack.com/p/the-brompton-ness-of-it-all
3•paulpauper•42m ago•0 comments

Cloud Storage Is Full Email Scam: What It Is and How to Protect Yourself

https://malwaretips.com/blogs/your-cloud-storage-is-full-email-scam/
3•rolph•45m ago•1 comments

What It Costs to Be a Sorority Girl

https://www.theatlantic.com/ideas/archive/2025/09/sorority-rush-coaches-recruitment-sec/684094/
2•tkgally•48m ago•0 comments

Ready Prek Go

https://hugovk.dev/blog/2025/ready-prek-go/
1•Bogdanp•48m ago•0 comments

Internet slowdowns could last months after Red Sea cable damage

https://www.thenationalnews.com/future/technology/2025/09/07/middle-east-internet-slowdowns-could...
2•geox•51m ago•1 comments

Harvey Mudd Miniature Machine

https://www.cs.hmc.edu/~cs5grad/cs5/hmmm/documentation/documentation.html
1•nill0•52m ago•0 comments

peekaping: selfhosted uptime monitoring similar to UptimeKuma (Go/React)

https://github.com/0xfurai/peekaping
2•luckman212•55m ago•0 comments

Show HN: Convert Google Sheets to Code

https://sheet2code.com/
2•joeemison•57m ago•0 comments

John Law at the front lines of San Francisco counterculture

https://www.sfgate.com/sf-culture/article/burning-man-co-founder-least-interesting-thing-20826295...
1•gmays•1h ago•0 comments

Bob Stein and Voyager (2021)

https://www.filfre.net/2021/06/bob-stein-and-voyager/
3•doppp•1h ago•0 comments

The Limits of Logic [pdf]

https://jefelino.github.io/limits-of-logic.pdf
3•nill0•1h ago•0 comments

Go Is the Language of Vibe Coding

https://sinwoobang.notion.site/Why-Golang-Matters-in-the-Vibe-Coding-Era-2656746440e28017af0cc623...
3•maitrouble•1h ago•1 comments

Is that a deprecation? Or is it just removed?

https://huonw.github.io/blog/2025/09/deprecating-vs-removing/
1•dbaupp•1h ago•0 comments

Show HN: Dog Age Calculator

https://dogcatagedcalculator.com/
1•yangyiming•1h ago•0 comments

Loverse: Japan's New AI Dating App Where Every Match Is Virtual

https://www.tokyoweekender.com/entertainment/tech-trends/japanese-ai-dating-app/
2•techdar42•1h ago•1 comments