Dominique Righetto
banner
righettod.eu
Dominique Righetto
@righettod.eu
👨‍💻 AppSec enthusiast | 🐶 Addicted to Shetland Sheepdogs | 🌏 Open Source/AppSec/OWASP junkie | 🐝 OWASP Secure Headers Project Leader.
🚩 Opinions mentioned are mine.
November 14, 2025 at 6:59 AM
The search is performed in the XML reference file, which can be downloaded free of charge from the CWE website.

Nothing very technical here, but I'm sharing it in case anyone else is interested in the same context as me.

#appsec #appsecurity #cwe

💻 Script:

gist.github.com/righettod/77...
November 14, 2025 at 6:59 AM
- We added a reference to the page about headers for the framework "Next.js".
- We integrated into the ecosystem of the project OWASP Nest.

📖 owasp.org/www-project-...

💡 Source used:

- nest.owasp.org
- nextjs.org/docs/pages/a...
- github.com/santoru/shch...
- developer.mozilla.org/en-US/docs/W...
November 5, 2025 at 5:28 AM
Very cool design 😉
October 27, 2025 at 1:37 PM
POC results:
October 19, 2025 at 7:13 AM
October 19, 2025 at 7:13 AM
🧑‍💻 So, using a model running locally via ollama, I created a small script to "confront" each secret identified by GitLeaks against the model using an tuned system and user prompts to try to determine whether the secret is a real one or not.

💻 POC:

github.com/righettod/to...
October 19, 2025 at 7:13 AM
September 15, 2025 at 1:14 PM