Dominique Righetto
banner
righettod.eu
Dominique Righetto
@righettod.eu
👨‍💻 AppSec enthusiast | 🐶 Addicted to Shetland Sheepdogs | 🌏 Open Source/AppSec/OWASP junkie | 🐝 OWASP Secure Headers Project Leader.
🚩 Opinions mentioned are mine.
- We added a reference to the page about headers for the framework "Next.js".
- We integrated into the ecosystem of the project OWASP Nest.

📖 owasp.org/www-project-...

💡 Source used:

- nest.owasp.org
- nextjs.org/docs/pages/a...
- github.com/santoru/shch...
- developer.mozilla.org/en-US/docs/W...
November 5, 2025 at 5:28 AM
Very cool design 😉
October 27, 2025 at 1:37 PM
POC results:
October 19, 2025 at 7:13 AM
October 19, 2025 at 7:13 AM
🧑‍💻 So, using a model running locally via ollama, I created a small script to "confront" each secret identified by GitLeaks against the model using an tuned system and user prompts to try to determine whether the secret is a real one or not.

💻 POC:

github.com/righettod/to...
October 19, 2025 at 7:13 AM
September 15, 2025 at 1:14 PM
Reposted by Dominique Righetto
You can configure it any way you want or need, but the extension comes with a bundled configuration files you can use out of the box. One of them disallows dangerous functions like var_dump() or put_env(), while another one blocks insecure functions like hash() with MD5 github.com/spaze/phpsta...
September 14, 2025 at 10:11 PM
Un grand merci !!!!
September 1, 2025 at 6:34 PM