guys, i honestly do not like clowning on Gary.
I don't find being the butt of a joke funny, so I imagine he does not either.
But, this is what worries me about where we are going. We are actively encouraging an entire generation that the tech is there when its not, and a couple of silly mistakes made on a website isn't the end of the world, but people's data and breaches are serious. We are entering a very VERY hackable world, and I do not like it one bit.
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages.
The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise.
This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now.
Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that:
• Deobfuscates embedded payloads and operational strings at runtime
• Dynamically loads fs, os, and execSync to evade static analysis
• Executes decoded shell commands
• Stages and copies payload files into OS temp and Windows ProgramData directories
• Deletes and renames artifacts post-execution to destroy forensic evidence
If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
@aminemat@DiamondJoe6969@theo Thanks there's someone with some sight. The problem here is that most of those companies don't ever need a crud and will be okay with just an Excel. When you really scale you have to have control of your analytics and your real data together
I took Opus 4.5 Max Mode for the ultimate test.
I asked it to search my code base for bugs
I took a lot of pride in this code, all hand rolled, by the sweat of my brow. It was mine and it was good.
Claude found 15 bugs
I was devastated
So I went to the first bug, and asked for a unit test. It produced a unit test in mere moments.
I ran the tests and saw it. A broken test. Property test of undefined. Rookie error
Ashamed, but determined I set forth to fix these bugs as penance. So I cracked open nvim getting ready to edit this typescript script
But... The code seemed correct. Weird.
So I checked the test, Claude faked bad data. The setup could never happen
Wtf
It's a lie, the whole thing.
I checked every bug Claude found. Every line item was not a bug. Everyone of them just some condition that cannot exist due to asserts or previous if statements
What an amazing $3s and 20 minutes spent
Normally when I waste time at least I learn something
We’re excited to introduce Pocket TTS: a 100M-parameter text-to-speech model with high-quality voice cloning that runs on your laptop—no GPU required.
Open-source, lightweight, and incredibly fast. 🧵👇
🚀 LTX-2 is now open source: text → audio + video.
Today we’re releasing LTX-2, the first open-source foundation model for joint audiovisual generation, together with a full technical report.
🧵👇
@kinkyhush A mí me pasaba antes con la gente de Twitter y decía “no me creo que esta gente sea real". Ahora en vez de texto son vídeos pero los mismos gili****