

GitHub 放出了他們整理過的 GitHub Advisory Database
source link: https://blog.gslin.org/archives/2022/02/28/10573/github-%e6%94%be%e5%87%ba%e4%ba%86%e4%bb%96%e5%80%91%e6%95%b4%e7%90%86%e9%81%8e%e7%9a%84-github-advisory-database/
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.

GitHub 放出了他們整理過的 GitHub Advisory Database
GitHub 宣佈開放他們整理過的 GitHub Advisory Database:「GitHub Advisory Database now open to community contributions」,Hacker News 上有 GitHub 的 PM 回答一些問題,也可以看看:「GitHub’s database of security advisories is now open source (github.blog)」。
對應的 repository 在「github/advisory-database」這邊可以看到,用的格式是 Open Source Vulnerability format,裡面都是 JSON 檔案。
裡面看起來是從 2017/10 開始的資料,這樣算起來大約累積了四年半,算是一個來源...
Related
GitHub 的 MySQL 架構與數字
前幾天 GitHub 有寫一篇文章提到他們的 MySQL 是怎麼 scale 的,另外裡面也有一些數字可以看:「Partitioning GitHub’s relational databases to handle scale」。 他們最主要的 database cluster 叫做 mysql1,裡面有提到 2019 年的時候這個 cluster 是 950K qps,其中 primary 有 50K qps: In 2019, mysql1 answered 950,000 queries/s on average, 900,000 queries/s on replicas, and 50,000 queries/s on the primary. 在 2021 年的時候變成 1.125M…
September 30, 2021In "Computer"
MangoDB 改名為 FerretDB (雪貂)
先前提到的 MongoDB 相容方案 MangoDB,透過PostgreSQL 當底層而且維持 open source license 的方案 (參考先前寫的「MangoDB:拿 PostgreSQL 當作後端的 MongoDB 相容層」),正式改名為 FerretDB:「MangoDB has a new name, and the momentum is stronger than ever. Meet FerretDB!」。 依照官方的說明,應該就是收到 C&D notice 了: Moreover, a representative of MongoDB Inc. asked us to stop using the MangoDB name on our website, GitHub,…
December 8, 2021In "Computer"
GitHub 升級到 Rails 3 了...
GitHub 從 2.3.github 特製版升級到 Rails 3:「Upgrading GitHub to Rails 3 with Zero Downtime」,其中切換的原因之一是維護成本: This choice has bitten us in the form of gem incompatibility, having to manually backport security patches, missing out on core framework performance and feature improvements, and being unable to easily contribute back to the open source…
September 21, 2014In "Computer"
Author Gea-Suan LinPosted on February 28, 2022Categories Computer, Murmuring, Network, Security, ServiceTags advisory, database, github, security, vulnerability
Leave a Reply
Your email address will not be published. Required fields are marked *
Comment *
Name *
Email *
Website
Notify me of follow-up comments by email.
Notify me of new posts by email.
To respond on your own website, enter the URL of your response which should contain a link to this post's permalink URL. Your response will then appear (possibly after moderation) on this page. Want to update or remove your response? Update or delete your post and re-enter your post's URL again. (Learn More)
Post navigation
Recommend
About Joyk
Aggregate valuable and interesting links.
Joyk means Joy of geeK