Skip to content
Avatar
🐞
from node-ipc protester to Spring4Shell in 60 seconds!
🐞
from node-ipc protester to Spring4Shell in 60 seconds!

Achievements

Achievements

Block or Report

Block or report lirantal

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
lirantal/README.md

Hi, I'm Liran 👋

Software Engineer · Web Security Activist · Open Source Software Champion

A GitHub Star, world-wide recognized for championing open source software and actively working within communities to inspire and lift other humans. A JavaScript & Node.js software developer, building web applications and command-line tools. A web security activist , engaging in security research, software supply chain security, and regular contributor and project lead to OWASP Foundation projects. An avid member of the Node.js Foundation ecosystem security working group, dedicated to advancing Node.js security awareness and skillset in the open source community. Developer Advocate at Snyk.

Twitter


Web Security Activism

Latest blog posts

Published Author

Essential Node.js Security
Essential Node.js Security

Liran Tal
Web Security: Learning HTTP Security Headers
Web Security: Learning HTTP Security Headers

Liran Tal
O'Reilly Serverless Security
O'Reilly Serverless Security

Guy Podjarny, Liran Tal
State of Open Source Security 2019
Snyk's State of Open Source Security 2019

Liran Tal

Pinned

  1. dockly Public

    Immersive terminal interface for managing docker containers and services

    JavaScript 3.3k 152

  2. The largest Node.js CLI Apps best practices list

    JavaScript 2.2k 111

  3. finds publicly known security vulnerabilities in a website's frontend JavaScript libraries

    JavaScript 1.7k 100

  4. Awesome Node.js Security resources

    JavaScript 1.9k 176

  5. Lint an npm or yarn lockfile to analyze and detect security issues

    JavaScript 562 27

  6. npq Public

    🎖safely* install packages with npm or yarn by auditing them as part of your install process

    JavaScript 680 24

Contribution activity

April 2022

Created 3 repositories

Created a pull request in github/advisory-database that received 5 comments

Contribution to "Command Injection in pullit"

Updates Description References Source code location

+10 −2 5 comments
Opened 3 other pull requests in 3 repositories
feross/git-pull-or-clone 1 merged
AviramV/AviramV 1 closed
lirantal/awesome-nodejs-security 1 open
Reviewed 2 pull requests in 2 repositories
lirantal/cypress-social-logins 1 pull request
ReadyCodePush/.github 1 pull request
Opened 1 issue in 1 repository
Started 2 discussions in 2 repositories
1 contribution in private repositories Apr 2

Seeing something unexpected? Take a look at the GitHub profile guide.