Symfony Station Communiqu©2023年2月3日。查看Symfony,Drupal,PHP和网络安全新闻!
#php #drupal #symfony #网络安全

这个公报originally appeared on Symfony Station,您的尖端Symfony,PHP和网络安全新闻的来源。

欢迎来到本周的Symfony Station Communiqu©。这是您对Symfony和PHP发展社区中基本新闻的评论。我们还涵盖了网络安全世界和其他编程项目。

请花点时间享受对您最相关和有价值的物品。尽管我们没有扩大策划,但我们添加了一些子类别以提高扫描性。

一如既往,感谢Javier Eguiluz和Symfony在其Week of Symfony中分享Week of Symfony

我的意见将大胆。


我们策划的许多项目都在媒介上。我建议您投资会员资格,因为您可以访问想要阅读的所有内容。这是提高您的职业生涯的一小部分投资。您可能已经注意到,非会员每月只能访问有限数量的文章。

Become a member here !我们从您使用此链接中获得的赔偿有助于为我们的每周公报付费。


Symfony logo

对称

一如既往,我们将从Symfony的官方新闻开始。

突出显示 - >本周,Symfony 5.4.19、6.0.19、6.1.11和6.2.5维护版本已发布。 6.0和6.1分支将不再收到任何更新,因此请考虑将您的项目更新为Symfony 6.2。同时,即将到来的Symfony 6.3版本将DSN标记为敏感参数,并将其从异常消息中删除,增加了对Cache中REDIS继电器的支持,并更新了Vardumper组件以显示所有不可见的字符。

A Week of Symfony #839 (23-29 January 2023)

Symfony宣布:

SymfonyLive Paris 2023 - Getting ready for Symfony certification - and beyond

SymfonyLive Paris 2023 - Announcement of all pre-conference workshops

SymfonyLive Paris 2023 - From social to tech - a plea for atypical profiles

SymfonyLive Paris 2023 - Welcome to the wonderful world of distributed systems!

SymfonyLive Paris 2023 - Announcement of all pre-conference workshops

SymfonyLive Paris 2023 - Generics (in PHP)

SymfonyLive Paris 2023 - Reinventing the Symfony Console component

Sponsoring Program - Symfony 6.2 backers

SymfonyLive Paris 2023 - Designing your API for the future

SymfonyLive Paris 2023 - Once upon a time, the Workflow component

SymfonyCasts在完全出色的API平台上继续其课程:

This week on SymfonyCasts


精选物品

Featured image graphic

跨国研究所对科里·医生(Cory Doctorow)进行了非常重要的采访,这与我们在开源社区中非常相关。它也很长,所以这是其许多点的摘要:

因此,我们的项目不需要淘汰技术,而是要弄清楚如何抓住计算手段,如何构建对人反应敏感的技术基材,使我们能够协调我们的意志和我们的努力和道德规范,建立一个我们想要的世界,包括碳较少,不公正,更多的劳动权等的世界。

* Seizing the means of computation – how popular movements can topple Big Tech monopolies *


本星期

Mislav Jantoljak分享:

Netgen Talk: Why We Love PHP for Building Next-Generation Websites

我正在开始Symfonycast NetGen布局课程,所以我很乐意跨越这个。

尽管这是一个显而易见的观点,但Ozan说,一个框架并不适合每个项目:

Symfony is not the best framework.

nacho colomina torregrosa exploores:

Accessing Symfony security user on the background

电子商务

Prestashop宣布:

PrestaShop 8.1 is now in feature freeze

Henguelbert Loyo向我们展示:

How to Create a Magento 2 Admin Config & Access to it

CMSS

Drupal Partners询问:

What is the future scope of Drupal as a CMS technology in 2023 and beyond?

除了看未来外,这主要是Drupal的历史。

琼脂库向我们展示:

How to filter a view by content that references the current node in modern Drupal

马特·格拉曼(Matt Glaman)查看以下内容:

The trinary states of Drupal access control: allowed, forbidden, neutral.

!#代码探索:

Drupal 10: Programmatically Injecting Context Into Blocks

下降时间报告:

Drupal Best Integrates WebGIS into a CMS

马丁·里肯(Martin Ricken)向我们展示:

How to create a Views bulk operation

和Aten设计组向我们展示了以下内容:

How to Use Cypress for Testing Drupal

Mike Herchel分享了一个案例研究。

Best Lawn Care Website on the Internet (built with Drupal)

我喜欢案例研究。尤其是从麦克(Mike)等迪鲁帕(Drupal)的泰坦(Titan)。

不断发展的网络向我们展示了如何:

How To Install Drupal WxT 4 for Canadian Government Websites

我将检查主题。

平台

WP小酒馆服用:

A Look Under the Hood at Engine Awesome, a Laravel-based SaaS App Using Gutenberg

前几周

civicuk向我们展示了如何:

Build a grid section creating a new Drupal Media type

Nick Skin Kl.Hoff分享:

8 Best Gutenberg Blocks (And How to Use Them)

kinsta向我们展示:

How To Add Meta Boxes and Custom Fields To Posts in Gutenberg

颜色菲尔德检查:

The state of GraphQL with Drupal 10 (part 1)

Bataweno Sacal Loos:

Implementing an aggressive Redis caching strategy

PHP logo

php

本星期

Ollie推荐:

Start Programming in PHP OOP Now to Harness its Power

安德烈·比尔塔(Andrei Birta)探索:

Understanding the Single Responsibility Principle

Functional Flexibility with PHP Callbacks

喷气桥宣布:

PhpStorm 2022.3.2 is now available

PHP基金会具有:

PHP Core Roundup #9

Stitcher分享:

My top-10 favorite functions in PHP

matus stafura看着:

PHP Array Reduce function

php [建筑师]探索:

Creating a PHP Library With Packagist

geni jaho检查:

Development Driven Testing

Marcus Brune问:

What are TDD and BDD, and why do we need to know about them?

威廉·P继续他的测试系列:

30 Days of Automated Testing:Using PHPUnit【D14】

30 Days of Automated Testing:Using PHPUnit【D15】

claudio ribeiro具有a:

Quick Tip: How to Manage Timezones in PHP

Nikola Stojiljkovic探索:

Mock nested PHP default functions in PHPUnit tests

[PHP Guidelines series] Final classes as a warning sign

Nacho Colomina Torregrosa探索:

Using PHP attributes easily

大卫参议院检查:

CSRF Prevention for PHP and jQuery

Tomas Vovorba说:

Good Bye, Monorepo

我会同意他的看法,但仅在互联网上5-10%。对于其他90%的人来说,这是过度的。

Ayesh Karunaratne分享:

How to extend lifetime of legacy PHP applications

Mahdad Kiyani有一些:

Some Tips for Optimizing PHP Code to Improve Performance

Michael Etokakpan演示:

Configuring PHP for debugging using Xdebug and VScode

MR。图托问:

Comment installer plusieurs version de PHP avec Homebrew ?

前几周

Ramiz Kongov探索:

Mastering the Strategy Design Pattern in PHP

Viktor Progger分享:

An example of setting up xDebug in Docker

Mitul Patel列表:

11 Horrible Mistakes You’re Making With PHP Website Development

Code logo

其他

Please visit our Support Ukraine page了解如何帮助俄罗斯从乌克兰踢出(最终)。

网络对俄罗斯战争罪和其他douchebaggery的反应

山丘报告:

Russia-Ukraine war has improved US cyber cooperation, says key official

寄存器报告:

Uncle Sam slaps $10m bounty on Hive while Russia ban-hammers FBI, CIA

法律博客报告:

Project Texas: The Details of TikTok’s Plan to Remain Operational in the United States

标记报告:

Members of Congress Call for IRS to Investigate Tax Companies Sharing Data with Facebook

邪恶的帝国反击

《纽约时报》报道:

Bias Played Part in F.B.I.’s Jan. 6 Failure, Documents Suggest

这并不奇怪,因为联邦调查局对民主的威胁更多,而不是第一天的帮助。

特拉华州在线报告:

ChristianaCare website down, as pro-Russia 'hacktivist' group takes credit on social media

黑客新闻报道:

Ukraine Hit with New Golang-based 'SwiftSlicer' Wiper Malware in Latest Cyber Attack

New Russian-Backed Gamaredon's Spyware Variants Targeting Ukrainian Authorities

North Korean Hackers Exploit Unpatched Zimbra Devices in 'No Pineapple' Campaign

Microsoft报告:

Iran responsible for Charlie Hebdo attacks

PC游戏玩家报告:

Belarusian KGB adds World of Tanks stand udio boss to terrorist list

幸运的是,当战争罪在乌克兰开始时,该公司有足够的意识离开普京的木偶州。

网络库报告:

Chinese influence operations may lack critical element: influence

除了压迫和网络犯罪以外,专制国家在所有事情上都无能为力。

网络安全/隐私

标记报告:

The FTC Is Taking on Telehealth’s Data Sharing Problem—Starting with GoodRx

CSO在线报告:

How passkeys are changing authentication

解密报告:

GitHub Says Attacker Stole Encrypted Code-Signing Certificates for Desktop, Atom

网络库问:

Reality check: Is ChatGPT really the next big cybersecurity threat?

和报告:

Cybercrime groups offer six-figure salaries, bonuses, paid time off to attract talent on the dark web

黑客新闻报道:

Experts Uncover the Identity of Mastermind Behind Golden Chickens Malware Service

New Threat: Stealthy HeadCrab Malware Compromised Over 1,200 Redis Servers

Atlassian's Jira Software Found Vulnerable to Critical Authentication Vulnerability

在世界各地的SEO从业人员的好消息中,ARS Technica报告:

Massive Yandex code leak reveals Russian search engine’s ranking factors

更多的

MIT宣布:

World Wide Web Consortium is now a public-interest nonprofit organization

《哈佛商业评论》探讨:

Cultivating the Four Kinds of Creativity

我肯定在图 - 地面逆转 camp。

《洛杉矶时报》占领:

The real aim of big tech’s layoffs: bringing workers to heel

不幸的是,这是该死的真理,而不是一种观点。

艾萨克·莱曼(Isaac Lyman)问:

Is software getting worse?

是。

TechCrunch报告:

Big changes coming for GDPR enforcement on Big Tech in Europe?

迟到总比没有好。

Verge报告:

White House goes after app store ‘gatekeepers’ Apple and Google

不幸的是,这大约十年了,可能一无所获。

Mozilla着眼于浏览器互操作性的努力:

Interop 2022: Outcomes

Addy Osmani分享:

Debugging Tactics

Norio Okawa看:

The 4 Essential Skills of the Software Developers

Ahmad Shaded提供了一个极好的:

Guide To Responsive Design In 2023 and Beyond -

我的亲戚,杰森·奈特(Jason Knight)探索:

Understanding CSS Position: Sticky

HTML Empty / Void / “Self Closing” Tags. We’re All Idiots.

Noble Okafor向我们展示:

How to Use CSS Variables Like a Pro

克里斯·科耶尔(Chris Coyier)说,就像ReactJ一样:

Hex Colors Aren't Great At Anything Except Being Popular

Shinichi Okada分享:

Two Easy Ways to Put a Svelte Project on GitHub Pages

联邦政府

Glenn Fleishman问:

Is Your Future Distributed? Welcome to the Fediverse!

希尔达·巴斯蒂安(Hilda Bastian)检查:

Social Media Regeneration and Divisiveness

kev Quirk探索:

An Algorithm vs. Time

缓冲区宣布:

Make Your Mark in the Fediverse with Buffer’s Mastodon Scheduler

我对此公告感到很兴奋。

Engadget报告:

Like users, app developers are fleeing Twitter for Mastodon

Lifewire Openes:

Twitter May Soon Be Irrelevant, Thanks to a Mastodon Version of Tweetbot

只有。
不幸的是,只有太空卡伦将Twitter驾驶破产才有机会。

说到哪个,TechCrunch报告:

Twitter to end free access to its API in Elon Musk’s latest monetization push

因此,Shitter的Cunteo在对最有可能为此付出的企业付出的几周后做出了这一举动。一个非常稳定的天才。

,这是什么真正使我对此烦恼。 Movetodon是/是一项服务,可让您找到也在Mastodon上的Twitter关注者,因此您可以在那里关注它们。

Matthew Sheffield (@mattsheffield@mastodon.social)

Elon Musk Is Running Scared From Mastodon; Cuts Off The Best Tool For Finding Your Twitter Followers There

除非您想通过鼻子付款,否则请通过Twitter登录登录。如果您制作了Twitter应用程序或机器人,我希望您有多元化。

CTA(又名向我们展示一些免费的爱)

您是否拥有或为对我们的促销机会感兴趣的组织工作?还是支持我们的新闻工作?如果是这样,请与我们联系。我们处于起步阶段,所以这是非常经济的。 ð

更重要的是,如果您是一家具有与编码相关产品的乌克兰公司,我们可以在our Support Ukraine page上免费促销。或者,如果您知道一个,请联系。

保持编码symfonistas!

作者

Reuben Walker headshot

鲁本·沃克

创始人
Symfony Station