Readit News logoReadit News
bgschulman31 commented on Hacking Moltbook   wiz.io/blog/exposed-moltb... · Posted by u/galnagli
_fat_santa · a month ago
It's kinda shocking that the same Supabase RLS security hole we saw so many times in past vibe coded apps is still in this one. I've never used Supabase but at this point I'm kinda curious what steps actually lead to this security hole.

In every project I've worked on, PG is only accessible via your backend and your backend is the one that's actually enforcing the security policies. When I first heard about the Superbase RLS issue the voice inside of my head was screaming: "if RLS is the only thing stopping people from reading everything in your DB then you have much much bigger problems"

bgschulman31 · a month ago
My thought exactly. Is this standard practice with using Supabase to simply expose the production database endpoint to the world with only RLS to protect you?
bgschulman31 commented on The side hustle from hell   blog.jacobstechtavern.com... · Posted by u/jakey_bakey
bgschulman31 · 10 months ago
Loved this article! And I appreciated the BCS references - especially the subtler ones like the use of the word 'chicanery'
bgschulman31 commented on MLB says Yankees’ new “torpedo bats” are legal and likely coming   thelibertyline.com/2025/0... · Posted by u/cf100clunk
bgschulman31 · a year ago
I think the media is attributing too much to the bats. I was at the Yankees game, and the wind was blowing straight out and hard. Many of the home runs I saw hit would have been fly outs on a day with more normal wind.
bgschulman31 commented on Dataminr tracked Gaza-related protests   theintercept.com/2025/03/... · Posted by u/jbegley
bgschulman31 · a year ago
This seems like mostly a nothingburger. If you want to communicate privately there are plenty of pieces of software that allow for that.
bgschulman31 commented on Apple's Software Quality Crisis   eliseomartelli.it/blog/20... · Posted by u/ajdude
tbeseda · a year ago
Anecdotally, Apple Music has deteriorated exponentially for me. iTunes was such a stable, usable piece of software, but I can't get reliable use out of Apple Music for the life of me. It _feels_ like a shoddy Electron app. But that's not fair to the actual Electron (or similar) apps that actually work. For all its many design and product flaws, Spotify actually works.
bgschulman31 · a year ago
I canceled my Apple Music subscription a few years ago after leaving the app open for long times would heat up my computer and use 100% of the cpu. It no longer feels like they have the "it just works" feeling they used to in all of their software.
bgschulman31 commented on GitHub Is Down   githubstatus.com/incident... · Posted by u/bgschulman31
coalbin · a year ago
Seems to have been a temporary blip. Currently working for us again.

Did you reach your 500 karma yet ;)

bgschulman31 · a year ago
nearly there :)

u/bgschulman31

KarmaCake day376May 29, 2018View Original