@B_Rjones89 Well despite sharing a name with Ben, I have no inside line. Sorry! Your story absolutely sucks ass. And I feel terrible. I couldnโt imagine
@GeeksGrimoire@myxburneracct@mholt6 Yeah I agree. The training is all being done on hdd due to the vast nature of input data. So both consumers running from ssd, and ai consuming hdd directly is bumping the price
@jtregunna ok this is impressive. for the S3 compatibility, I'm assuming you are using minio or similar. For the nvme stuff, do you need to break S3 compatibility? Seems like writing your own SDK is a disadvantage if you can borrow from something else that has an existing base
โ๏ธ Over 30 official Red Hat npm packages were compromised. How they got in:
- A Red Hat employee's GitHub account was compromised.
- Attackers pushed "orphan commits" (detached from branch history) straight in, bypassing code review with no pull request.
- Payload "Miasma" (Mini Shai-Hulud variant) steals GitHub/cloud/Vault/SSH/npm secrets. Rotate everything since June 1.
- The commits added a workflow (ci.yaml) + script (_index.js) that abused npm trusted publishing, requesting a real OIDC token to publish backdoored versions.