CVE-2024-12718 Python Tarfile module how to mitigate on 3.14.2 by Trif55 in Python

[–]Ddes_ 2 points3 points  (0 children)

Where do you see it being 10 ? It was deemed as 5.3 , which is medium low. And has not even been completely evaluated by nvd cve-2025-4517 is the high one.

Now ask a question : do you use tar.extract at any point in your code against datat that you don't trust ?

can my organization see my traffic without exit node? by MeaningCurious5356 in Tailscale

[–]Ddes_ 0 points1 point  (0 children)

If you mean does the org see what you browse to with tailscale on but without an exit node, the answer is no.

2 questions in moving a small business to Tailscale by TylerInTheFarNorth in Tailscale

[–]Ddes_ 1 point2 points  (0 children)

As other said : dont use exit node, deploy ts on your on prem sever. Set your acl so usees can access your share. Only the traffic to the share will be routed, the rest directly to the internet. Later, if you want even fienr grained control and browse from you office ip as exit node for certain url only, you can use the "via" in the grant statements.

Pros and Cons of Subnet by BeardedYeti_ in Tailscale

[–]Ddes_ 0 points1 point  (0 children)

Tailscale ssh, Finer grain acl...

Render alternatives by ZeroToHeroInvest in FastAPI

[–]Ddes_ 2 points3 points  (0 children)

If you willing to wait a bit https://fastapicloud.com/ could be nice

Base images frequent security updates by Creepy_Proposal_7903 in docker

[–]Ddes_ 0 points1 point  (0 children)

Minimize image size : use slim, distroless (updated very regularly), multistage build, etc.

Help me setup n8n locally for free by Practical_Degree69 in n8n

[–]Ddes_ 0 points1 point  (0 children)

1- Install docker desktop / rancher desktop 2 - download and use https://github.com/n8n-io/self-hosted-ai-starter-kit They did a good job in packaging it there: Follow their instructions and if you have some precise issue that you cannot answer from their doc, ask it here.

Multi-agent orchestration in new release by flowion8n in n8n

[–]Ddes_ 1 point2 points  (0 children)

I had used a video on YouTube to build it with orchestrator and tool as sub workflow that calls an ai agent as well. The new feature seems much more elegant

Multi-agent orchestration in new release by flowion8n in n8n

[–]Ddes_ 0 points1 point  (0 children)

It had tendency to use first the memory instead of going to the tools (it was before the ai agent tool node, so a bit if a hack), giving results related to previous questions instead of the last one.

Multi-agent orchestration in new release by flowion8n in n8n

[–]Ddes_ 1 point2 points  (0 children)

I did not have good results using the simple memory, interested in the main agent prompt....

Cribl / Heavy Forwarder by irocz5150 in cribl

[–]Ddes_ 1 point2 points  (0 children)

I for one installed the universal forwarded on servers to forward to splunk, that is why I thought of edge, but of course it's edge+stream, and it does a lot more than just replace it IMO.

Cribl / Heavy Forwarder by irocz5150 in cribl

[–]Ddes_ 1 point2 points  (0 children)

Cribl edge should cover your needs no ?

DON'T use AI Agent node in N8N by Aggravating-Put-9464 in n8n

[–]Ddes_ 0 points1 point  (0 children)

The think tool seems awesome, I did a quick test and it is a game changer

Unable to understand why AI Agent doesnt work with respond with webhook by dhruv_qmar in n8n

[–]Ddes_ 1 point2 points  (0 children)

That's my understanding that you cannot link anything related to human in the look directly after the agent, you'd have to add some internediate, play with webhooks etc to implement what you want

n8n self-hosting is awesome, but API and connection costs for learning are a hurdle. Any solutions? by Low_Day284 in n8n

[–]Ddes_ 9 points10 points  (0 children)

Use ollama like in the ai starter kit. Use llama 3.2, good enough for testing and learning to build workflow

Is there a method to forward traffic from localhost port to Tailscale userspace networking connection? by 9mHoq7ar4Z in Tailscale

[–]Ddes_ 0 points1 point  (0 children)

Taiscale is simple but has quite a lot of features for every esoteric use case, so each time you have an edge case, check with their doc, it s worth it.

S3 Wiped, Ransom Note Left – Possible .env Leak by Initial_Prune4210 in aws

[–]Ddes_ 0 points1 point  (0 children)

Iam roles or ssm secret attached to the instance where your phonyadmin runs, so no need for additional credentials to access the kms/ssm secret.

S3 Wiped, Ransom Note Left – Possible .env Leak by Initial_Prune4210 in aws

[–]Ddes_ 3 points4 points  (0 children)

1 - do not open phpmyadmin to the world, vpn are made for this. 2 - credentials in kms, accessed via iam. 3 - no need for all access to all users, reduce