Git Product home page Git Product logo

Hi, I'm Liran πŸ‘‹

I wrote these two comprehensive deep-dive books on Secure Coding in Node.js to help developers master Node.js security with hands-on vulnerability review and remediation walkthroughs

Node.js Secure Coding: Defending Against Command Injection Vulnerabilities
Node.js Secure Coding: Defending Against Command Injection Vulnerabilities
Node.js Secure Coding:Prevention and Exploitation of Path Traversal Vulnerabilities
Node.js Secure Coding: Defending Against Command Injection Vulnerabilities

Software Engineer Β· Web Security Activist Β· Author

A GitHub Star, world-wide recognized for championing open source software and actively working within communities to inspire and lift other humans. Liran also received the OpenJS Foundation's Pathfinder for Security for his work on Node.js security. A JavaScript & Node.js software developer, building web applications and command-line tools. A web security activist , engaging in security research, software supply chain security, and regular contributor and project lead to OWASP Foundation projects. An avid member of the Node.js Foundation ecosystem security working group, dedicated to advancing Node.js security awareness and skill-set in the open source community. Developer Advocate at Snyk.

Twitter


Awarded:

Web Security Activism

My latest articles on the Snyk blog and my blog

Published Author

Essential Node.js Security
Essential Node.js Security

Liran Tal
Web Security: Learning HTTP Security Headers
Web Security: Learning HTTP Security Headers

Liran Tal
O'Reilly Serverless Security
O'Reilly Serverless Security

Guy Podjarny, Liran Tal
State of Open Source Security 2019
Snyk's State of Open Source Security 2019

Liran Tal

Liran Tal's Projects

012cable icon 012cable

A QT-based PPTP dialer for Linux users of the 012 Israel ISP

admin icon admin

Facilitating joint collaboration amongst the TSC and CommComm

anti-trojan-source icon anti-trojan-source

Detect trojan source attacks that employ unicode bidi attacks to inject malicious code

asciidoctor-pdf icon asciidoctor-pdf

:page_with_curl: Asciidoctor PDF: A native PDF converter for AsciiDoc based on Asciidoctor and Prawn, written entirely in Ruby.

astroship icon astroship

Astroship is a starter template for startups, marketing websites, landing pages & blog. Built with Astro & TailwindCSS

astrowind icon astrowind

πŸš€ A template to make your website using Astro + Tailwind CSS.

atombundles icon atombundles

Easily install all packages required to create an Atom Bundle for a Language or Platform

attackgen icon attackgen

AttackGen is a cybersecurity incident response testing tool that leverages the power of large language models and the comprehensive MITRE ATT&CK framework. The tool generates tailored incident response scenarios based on user-selected threat actor groups and your organisation's details.

awesome-appsec icon awesome-appsec

A curated list of resources for learning about application security

awesome-devsecops icon awesome-devsecops

An authoritative list of awesome devsecops tools with the help from community experiments and contributions.

awesome-nextjs icon awesome-nextjs

:notebook_with_decorative_cover: :books: A curated list of awesome resources : books, videos, articles about using Next.js (A minimalistic framework for universal server-rendered React applications)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    πŸ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. πŸ“ŠπŸ“ˆπŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❀️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.