Logo
  • Home
  • Recent Posts
  • Experiences
  • Skills
  • Publications
  • More
    Education
  • Posts
  • Dark Theme
    Light Theme Dark Theme System Theme
Logo Inverted Logo
  • Posts
  • CVE-2024-21626
    • Exploring Hidden Vulnerabilities in Legacy DockerĀ Versions
    • Playing with CVE-2024-21626
  • DevSecOps
    • Building a Secure Local Hugo Environment
  • Reverse Engineering
    • Playing with Unicorn framework [1]
  • Software Development
    • Test Driven Development
      • Exercise: Catch and report setUp errors
      • Exercise: Create TestSuite from a TestCase class
      • Exercise: Invoke tearDown even if the test method fails
      • TDD by example
  • Workstation Setup
    • Second Life - Installing Ubuntu on MBP-2019 16-inch
Hero Image
Building a Secure and Clean Local Hugo Environment with Docker

I sat down to write a blog post about something else, but I ended up fighting dependency hell instead. You know the feeling. You open your IDE to write a simple article, and you remember that your personal site uses npm 🫠 (yes, I know, the original sin is mine). Suddenly, you remember the news: malicious preinstall scripts, supply chain attacks, and worms targeting developers. You look at your node_modules folder and realize you can’t in good conscience just “run the code” on your machine anymore. I mean, do I really trust the entire dependency tree of a static site theme?

    Sunday, December 21, 2025 | 7 minutes Read
    Navigation
    • Home
    • Recent Posts
    • Experiences
    • Skills
    • Publications
    • Education
    Find me:

    Toha Theme Logo Toha
    Ā© 2025 Sk3pper. All rights reserved.
    Powered by Hugo Logo