Sign in

Arkadii Yakovets · CCSP · CISSP · CSSLP

@arkid15r.com
353 followers 29 following 30 posts

Cybersecurity lead (@nest.owasp.org, @nettacker.owasp.org), #opensource contributor, home #automation and #hydroponic gardening enthusiast. arkid15r.com arkid15r.dev

PostsRepliesMedia
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 17/09/2026
Communities get the #Slack they tolerate. Yeah, somebody gotta do it -- arkid15r.dev/slack-commun...
arkid15r.dev
Attention tax: your Slack habits are other people's unread count
Communities get the Slack they tolerate. Most Slack friction in large communities is not scam or clear CoC abuse. It is attention tax: wrong channel, wrong reply surface, untrimmed unfurls, and habits...
000
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 16/09/2026
Formal open source programs run on their own calendar, and promising contributors are often ready before the next cycle opens. Maintainer, mentor, manager: why I fund contributors before programs do arkid15r.dev/open-source-...
arkid15r.dev
Maintainer, mentor, manager: why I fund contributors before programs do
Maintainer, mentor, then manager -- and when personal sponsorship bridges the gap so strong contributors keep shipping before a formal program says yes.
021
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 07/09/2026
security.txt is a tiny file with an outsized job: tell researchers where to report vulnerabilities. But it is still not as well-known as it should be. I wrote up what good-enough looks like, a shipping checklist, and patterns from live files -- arkid15r.dev/security-txt...
arkid15r.dev
Not as well-known as it should be: shipping security.txt
security.txt lives at a well-known URI and costs almost nothing -- yet adoption is uneven. What good-enough looks like, live examples, and the file this site ships.
010
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 06/09/2026
GSoC 2026's 12-week timeline wrapped final evaluations last month. This post reads the official projects page and Google's program announcements for scale, what is marked complete versus still active, the top organizations, and my personal top 50 completed projects. arkid15r.dev/gsoc-2026-pr...
arkid15r.dev
I know what you did last summer: GSoC 2026 top 50 projects to check out
GSoC 2026 work is mostly marked complete. A personal 50 from orgs like Apache, Debian, Django, Git, Linux Foundation, OWASP, and PSF, org volume, and a hope that 2027 still happens.
010
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Nest @nest.owasp.org · 20/01/2026
🎉 OWASP Nest Achieves OpenSSF Best Practices Passing Badge! We're thrilled to announce that OWASP Nest has officially earned the OpenSSF Best Practices Passing Badge! www.bestpractices.dev/en/projects/...
001
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Nest @nest.owasp.org · 11/10/2025
🎉 Big news from the OWASP Nest Team! 🎉 We're thrilled to share that OWASP Nest has officially been promoted from the Incubator level to the Lab level! www.linkedin.com/feed/update/...
3124
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Nest @nest.owasp.org · 08/05/2025
🎉We're proud to announce that 3 proposals from OWASP Nest have been accepted for GSoC 2025 🎉 - OWASP Contribution Hub Development by Raj Gupta - OWASP Nest API and Schema Development by Abhay Mishra - OWASP NestBot as an AI Agent/Assistant by Dishant Miyani #GSoC #OpenSource #OWASP #OWASPNest
032
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Nest @nest.owasp.org · 18/03/2025
🚀 GSoC 2025 is just around the corner! 🚀 GSoC 2025 contributor application period opens March 24 and we’re looking for passionate developers to help shape the future of OWASP Nest! Check out our project ideas and consider applying: owasp.org/www-communit... #GSoC #OWASP #OpenSource
085
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Juice Shop @owasp-juice.shop · 29/01/2025
We are proudly announcing that @jannik@infosec.exchange is as of today officially co-leading the @owasp.org Juice Shop project together with @bkimminich.bsky.social! 🧃🥳 👉 Read more about this in our blog post owasp.org/blog/2025/01/29/juice-sho…
owasp.org
OWASP Juice Shop leadership changes & contributor recognition | OWASP Foundation
OWASP Juice Shop leadership changes & contributor recognition on the main website for The OWASP Foundation. OWASP is a nonprofit foundation that works to improve the security of software.
1186
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
Seth Larson @sethmlarson.dev · 11/12/2024
Last week the Python package "Ultralytics" suffered a supply-chain attack on its build and release process. This is a review of the attack from @pypi.org's perspective. There's plenty of advice for how Python projects can increase their #security posture: blog.pypi.org/posts/2024-1...
blog.pypi.org
Supply-chain attack analysis: Ultralytics - The Python Package Index Blog
Analysis of a package targeted by a supply-chain attack to the build and release process
04018
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 08/12/2024
Is it just me, or is the entire world waiting for the #npm scheduled infrastructure upgrade to be completed?
100
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 06/12/2024
@securitylabs.datadoghq.com has just released a supply-chain firewall v1.0.2 securitylabs.datadoghq.com/articles/int...
securitylabs.datadoghq.com
Introducing Supply-Chain Firewall: Protecting Developers from Malicious Open Source Packages | Datadog Security Labs
Release of Supply-Chain Firewall, an open source tool for preventing the installation of malicious PyPI and npm packages
100
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
VictoriaMetrics @victoriametrics.bsky.social · 03/12/2024
When we discussed string interning earlier, we mentioned a concept #Go uses to implement its unique map feature: the “weak pointer”. Discover more about GoLang in the last Phuong Le post ➡️ victoriametrics.com/blog/go-weak... #golang #go #programming #TechInsights
victoriametrics.com
Weak Pointers in Go: Why They Matter Now
Through the weak package, you can create these special pointers that automatically become nil when their target memory gets collected. While they’re a bit trickier to use than regular pointers, they’r...
062
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 02/12/2024
60% OFF #CKA + #CKAD + #CKS Bundle -- $438 with CYBER24BUNDLE code (expires Dec 11, 2024, 12-months to schedule & take the exam, 2 exam attempts). training.linuxfoundation.org/training/cka... -- Certified Kubernetes Security Specialist (CKS) requires passed Certified Kubernetes Administrator (CKA).
60% OFF #CKA + #CKAD+ #CKS Certification Bundle -- $438 with CYBER24BUNDLE code (offer ends December 11, 2024)
020
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 24/11/2024
🌱 My ultimate goal is to bring my #hydroponics #garden back to a setup similar to this (it all started from #cilantro for tacos)! I’m especially hopeful that the #onions and #celery will thrive this time around. And I’ve got big hopes for the 🥦 -- it’s my first time growing it! 🌱
010
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 24/11/2024
🌱 Speaking of my #hydroponics #garden, I dug up some photos from a couple of years ago of my very first indoor setup! I repurposed my laundry room, building the system right on top of the washer and dryer. It was a humble start, but such a rewarding journey to see it come to life! 🌱
BeforeAfter
120
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 24/11/2024
I just started planting #seeds for my #hydroponics garden! This time, I’m growing cilantro, parsley, #basil, dill, onions, salad bowl lettuce, broccoli, and celery. I decided to skip #sorrel for now. It’s my first time trying #broccoli, and I’m giving #lettuce, onions, and celery another shot.
110
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 24/11/2024
I think it’s time to revive 🌱 my #indoor #hydroponics #garden! Last month, I had to step back when the parsley and #basil fell ill, but the sorrel thrived, producing an incredible harvest of lush leaves. Sadly, #KubeCon'24 timing wasn’t kind to these green friends too 🌿 #gardening #plants
110
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 23/11/2024
I'm going to migrate Open World Holidays Framework (github.com/vacanza/holi...) documentation from #sphinx + #rst to #MkDocs + #Markdown. Any suggestions? Here is my pro vs con list:
github.com
GitHub - vacanza/holidays: Open World Holidays Framework
Open World Holidays Framework. Contribute to vacanza/holidays development by creating an account on GitHub.
510
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 22/11/2024
How to set a website as your Bluesky username bsky.social/about/blog/4...
bsky.social
How to verify your Bluesky account - Bluesky
Here's how to verify your Bluesky account by setting your website as your username.
000
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 22/11/2024
GitHub Open Source Fund accepts applications until Jan, 7th 2025: $10,000 per project, 3-week educational program, GitHub Security office hours and more. #github #security #open-source #funding github.blog/news-insight...
github.blog
Announcing GitHub Secure Open Source Fund: Help secure the open source ecosystem for everyone
Applications for the new GitHub Secure Open Source Fund are now open! Applications will be reviewed on a rolling basis until they close on January 7 at 11:59 pm PT. Programming and funding will begin ...
200
Arkadii Yakovets · CCSP · CISSP · CSSLP @arkid15r.com · 20/11/2024
PyPI package maintainers can now publish signed digital attestations when publishing, in order to further increase trust in the supply-chain security of their projects. Additionally, a new API is available for consumers and installers to verify published attestations. blog.pypi.org/posts/2024-1...
blog.pypi.org
PyPI now supports digital attestations - The Python Package Index Blog
Announcing support for PEP 740 on the Python Package Index
120
Reposted by Arkadii Yakovets · CCSP · CISSP · CSSLP
OWASP Nettacker @nettacker.owasp.org · 20/11/2024
**OWASP Nettacker Update** 🚀 We're excited to share that Nettacker has applied for a project-level promotion (Incubator → Lab) within #OWASP! This step will help us: - Boost adoption & credibility - Attract contributors & sponsors - Secure long-term sustainability through visibility & support
064