Thursday, August 1, 2024

Show HN: Shadow IT Scan – Uncover SaaS Apps, Users and Risky OAuth Scopes https://ift.tt/SkjHuz9

Show HN: Shadow IT Scan – Uncover SaaS Apps, Users and Risky OAuth Scopes Hey HN, TL;DR: We’ve launched a free version of our Shadow IT scanner to identify which SaaS apps are used in your company, who uses them, and if they have high-risk OAuth scopes. Philip and I went through YC with AccessOwl in 2022. We started the company because, in our previous roles, we struggled to track all the SaaS apps, users, and granted OAuth scopes. The Shadow IT scanner started as a small feature within AccessOwl, which manages SaaS vendors and user accounts centrally. But a standalone scanner would have made our lives so much easier in our previous roles. So, we thought, why not release it? And here it is: a free, standalone Shadow IT scanner! Hope you find it useful :) The Shadow IT scan helps with: 1. Offboarding: Employees often don’t report all the apps they sign up for, making it tough to track and secure these accounts when they leave, especially with the common SSO tax. 2. Security: OAuth scopes are quickly granted but rarely reviewed or removed, leading to organizations unknowingly spreading their data. 3. Compliance: Auditors need a list of SaaS vendors, which is hard to compile when employees sign up for tools independently. Any surprises in your scan? What features would you like to see in the next version? Looking forward to your feedback! FAQ What’s Shadow IT? Unauthorized SaaS apps within an organization not centrally managed, posing security and compliance risks. How does it work? Our tool connects to your Google Workspace or M365 instance, identifies OAuth tokens granted, and maps them to known SaaS tools. Note: In this v1 version, it only detects apps using the “Sign in with Google/Microsoft” button. Who is this for? Typically IT and InfoSec teams, but in smaller companies, it may fall under the CTO. Is it safe to use? Yes, reading OAuth tokens is standard for SaaS management tools. Data extraction only occurs when you initiate a scan. AccessOwl is SOC 2 Type II audited and GDPR compliant. https://ift.tt/qbHOtdF July 31, 2024 at 05:35PM

Explore Our Vision Zero 10-Year Report and Shape the Program's Future

Explore Our Vision Zero 10-Year Report and Shape the Program's Future
By

Vision Zero is the city’s policy to end traffic fatalities. As we mark ten years since the launch of Vision Zero, we want to partner with you to shape the future of this traffic safety program. This week, we published a Vision Zero 10-Year Report. It summarizes the work we’ve done since 2014 to prevent traffic deaths and reduce severe injuries. Last month, we launched summer outreach. We published our Help Us Shape What’s Next for Vision Zero blog to hear from you about next steps for the program. We’ll be collecting feedback and priorities from the Vision Zero community through the end of...



Published July 31, 2024 at 05:30AM
https://ift.tt/56NVIOy

Show HN: Shimmr: Free iOS App Uses CIA Findings to Enhance Meditation and Focus https://ift.tt/qI9BEgz

Show HN: Shimmr: Free iOS App Uses CIA Findings to Enhance Meditation and Focus https://ift.tt/hkl6TNV July 31, 2024 at 11:58PM

Show HN: FP32 matmul of large matrices up to 24% faster than cuBLAS on a 4090 https://ift.tt/brZGm0U

Show HN: FP32 matmul of large matrices up to 24% faster than cuBLAS on a 4090 I decided to share a CUDA kernel I wrote over 5 months ago. Nvidia's hardware and software may surprise you. https://ift.tt/HrKBPtx August 1, 2024 at 12:09AM

Wednesday, July 31, 2024

Show HN: A Path-Based Data storage/retrieval web service to prevent crawling https://ift.tt/2N3WZvO

Show HN: A Path-Based Data storage/retrieval web service to prevent crawling I listed my email on GitHub, and it got collected and used without my consent... To prevent this, I created a simple service using Django and PostgreSQL. As you can see when you access the site, you can save data by specifying a path. Think of it as a global key-value storage designed simply to prevent crawling. The data is not stored in an encrypted form, so please do not save sensitive information. Thank you. P.S.: Yes, I am a Faker's fan. https://hideonbush.com/ July 31, 2024 at 04:40AM

Show HN: 10x cheaper GitHub Actions on your AWS account https://ift.tt/vSWAbi2

Show HN: 10x cheaper GitHub Actions on your AWS account I'm Surya and I'm super excited to announce WarpBuild's new capabilities. WarpBuild provides drop-in replacements for Github hosted runners that are faster and cheaper. WarpBuild got its first customers from our launch on HN last year and I'm excited to show our newest offering: WarpBuild managed Github actions runners on your AWS account that are up to 90% cheaper than Github-hosted runners. In the last couple of months, we released a ton of new capabilities to speed up your workflows and save on costs like: (1) BYOC: run Github actions in your AWS account, in ~5 mins. (2) Managed unlimited Github caches. (3) Static IPs for allowlisting. (4) Flexible runner and disk configurations. (5) Spot instances, arm64 and x86-64 runners. This has been a top ask from our users, and this is even cheaper than self-hosting on k8s using `actions-runner-controller`, while significantly improving job queuing times. We are rather unique in the breadth and depth of the product we offer. This is another capability that we think moves the ecosystem forward, including `action-debugger` via ssh, fast MacOS (M2 Pro) runners, CI analytics dashboards and more. We are making CI faster and cheaper for everyone. What are your biggest pain points with CI, and more broadly the release process? I'd love to learn more. https://ift.tt/KZh3uXo July 30, 2024 at 09:39PM

Join Us for Muni Discovery Days - A Summer Series for Youth

Join Us for Muni Discovery Days - A Summer Series for Youth
By Lawrence Festin

Making Muni-related crafts during our first Muni Discovery Day. We invite you to join us for a special summer series: Muni Discovery Days. The program aims to educate and excite San Francisco youth of all ages about Muni and the free services available to all young riders. Attendees who are 10 years old or younger must be accompanied by a parent or guardian. We're partnering with the San Francisco Public Library on each event in the series. Join us this month: Friday, Aug. 2: Event starts at 1 p.m. at the Glen Park Library. From there, we'll ride Muni together to the Bernal Heights Library...



Published July 30, 2024 at 05:30AM
https://ift.tt/LKy0zcH

Show HN: Anti-Cluely – Detect virtual devices and cheating tools on exam systems https://ift.tt/onuTQWR

Show HN: Anti-Cluely – Detect virtual devices and cheating tools on exam systems Anti-Cluely is a lightweight tool designed to detect common...