@ParthJadhav8 oh wow, that's interesting. I didn't know.
I'm specifically curious about the optimal time to wake up. In case you know, is it something calculated on the band? I don't think so, doesn't seem to work when I sleep with my phone's Bluetooth off
@tiagomanel@ricardodcborges estou novamente impressionado, não só com os novos dados de imigração, como também com estes dados do INE.
mais uma vez, parabéns
@joaofernandeszk i bought 6 months ago the m5 (pro laptop but not the pro chip, this was december last year). only 32gb ram was available. i was looking forward for the 48, but wnd up buying this one. satisfied, but it starts to look like that in another 6 months, i'll wish to have bought the 48
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
@joaofernandeszk Percebo. Mas eu estava a pensar mais em casos específicos como este, em que uma deu falência e poucos tempo depois existe outra, no mesmo local, com a mesma finalidade.
‼️🚨 This is wild. OpenAI just confirmed it got hit in the TanStack npm supply chain attack, and the attackers were close to being able to ship malicious code inside official OpenAI software, signed and trusted, if their incident response had not caught it in time.
The campaign is the work of TeamPCP, the same crew running the Mini Shai-Hulud wave.
Two employee devices in OpenAI's corporate environment were compromised through the malicious TanStack packages.
The attackers used that foothold to reach a limited subset of internal source code repositories.
OpenAI says only "limited credential material" was successfully exfiltrated, with no customer data, production systems, intellectual property or deployed software impacted.
Here is the part that should grab your attention.
OpenAI is rotating its code-signing certificates and forcing every macOS user to update their OpenAI apps.
You do not rotate signing certs for "limited credential material."
You rotate signing certs when the attacker was close enough to signing malicious binaries as OpenAI.
The "we contained it in time" framing is doing serious heavy lifting here.
For wider context, the same TeamPCP wave also hit Mistral AI, UiPath, Guardrails AI, OpenSearch and SAP npm packages. The TanStack compromise is tracked as CVE-2026-45321 at CVSS 9.6, and Mistral AI source code is already being advertised for sale by the group.
@claudiashandi@stats_feed Posso dizer por experiência, o Brasil não é tão mau quanto o pintam, especialmente quem nunca lá foi. Já fui 2 vezes, ambas as vezes passei mais de um mês. Caminho na rua como eles. Calção, chinelo. Sei que é diferente ser mulher. Mas os brasileiros são incríveis.