<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Security on Lynx Tech Blog</title><link>https://blog.lynxflow.co/en/categories/security/</link><description>Recent content in Security on Lynx Tech Blog</description><generator>Hugo -- gohugo.io</generator><language>en</language><lastBuildDate>Thu, 10 Sep 2026 09:00:00 +0800</lastBuildDate><atom:link href="https://blog.lynxflow.co/en/categories/security/index.xml" rel="self" type="application/rss+xml"/><item><title>C Drive Full but WSL Says Otherwise? The "Grow-Only" Virtual Disk Trap — Reclaiming 150 GB in One Pass</title><link>https://blog.lynxflow.co/en/posts/wsl-docker-vhdx-shrink-reclaim-disk/</link><pubDate>Thu, 10 Sep 2026 09:00:00 +0800</pubDate><guid>https://blog.lynxflow.co/en/posts/wsl-docker-vhdx-shrink-reclaim-disk/</guid><description>The numbers didn&amp;rsquo;t add up During a routine disk health check, I hit a discrepancy:
Windows showed the C drive at 949 GB with 652 GB used — in the red. But df -h / inside WSL (Ubuntu) reported only 135 GB used. That left 500+ GB unaccounted for. Common sense says deleting a file in Linux should shrink usage on the Windows side too — I&amp;rsquo;d deleted 62 GB of video output the night before, so the C drive should have loosened up considerably. It didn&amp;rsquo;t budge.</description></item><item><title>Stop Pasting API Keys and Bank Cards into LLM Relays: A Guide to Self-Hosted Privacy Gateways</title><link>https://blog.lynxflow.co/en/posts/llm-privacy-self-hosted-gateway-guide/</link><pubDate>Mon, 31 Aug 2026 00:00:00 +0800</pubDate><guid>https://blog.lynxflow.co/en/posts/llm-privacy-self-hosted-gateway-guide/</guid><description>&lt;img src="https://blog.lynxflow.co/images/llm-privacy-self-hosted-gateway-guide.png" alt="Featured image of post Stop Pasting API Keys and Bank Cards into LLM Relays: A Guide to Self-Hosted Privacy Gateways" /&gt;Using a third-party LLM relay to access Claude, GPT, or Gemini is cheap and convenient—but have you considered this: the relay operator can see every single word you send to the model.
That includes API keys you casually paste in, bank card numbers, login passwords, ID numbers, medical records&amp;hellip; all sitting in someone&amp;rsquo;s server logs, in plaintext.
This isn&amp;rsquo;t paranoia—it&amp;rsquo;s architecture. A relay is fundamentally a reverse proxy: your request hits their server, gets unwrapped</description></item></channel></rss>