Josh Wilson

2.9K posts

Josh Wilson

Josh Wilson

@ghostnthebricks

Privacy is a human right | Security and Systems Engineer | 2 SANS Certs | AWS Certified | Opinions are my own

Kentucky, USA Beigetreten Nisan 2016
1.5K Folgt434 Follower
Josh Wilson retweetet
Jeremy
Jeremy@Jeremybtc·
Anthropic accidentally leaked their entire source code yesterday. What happened next is one of the most insane stories in tech history. > Anthropic pushed a software update for Claude Code at 4AM. > A debugging file was accidentally bundled inside it. > That file contained 512,000 lines of their proprietary source code. > A researcher named Chaofan Shou spotted it within minutes and posted the download link on X. > 21 million people have seen the thread. > The entire codebase was downloaded, copied and mirrored across GitHub before Anthropic's team had even woken up. > Anthropic pulled the package and started firing DMCA takedowns at every repo hosting it. > That's when a Korean developer named Sigrid Jin woke up at 4AM to his phone blowing up. > He is the most active Claude Code user in the world with the Wall Street Journal reporting he personally used 25 billion tokens last year. > His girlfriend was worried he'd get sued just for having the code on his machine. > So he did what any engineer would do. > He rewrote the entire thing in Python from scratch before sunrise. > Called it claw-code and Pushed it to GitHub. > A Python rewrite is a new creative work. DMCA can't touch it. > The repo hit 30,000 stars faster than any repository in GitHub history. > He wasn't satisfied. He started rewriting it again in Rust. > It now has 49,000 stars and 56,000 forks. > Someone mirrored the original to a decentralised platform with one message, "will never be taken down." > The code is now permanent. Anthropic cannot get it back. Anthropic built a system called Undercover Mode specifically to stop Claude from leaking internal secrets. Then they leaked their own source code themselves. You cannot make this up.
Jeremy tweet mediaJeremy tweet media
English
1.5K
8.6K
53.9K
3.7M
Josh Wilson retweetet
vx-underground
vx-underground@vxunderground·
There is a project on GitHub called Axios. Axios is extremely popular. It is used by millions upon millions of applications. Axios is a programming library that helps your JavaScript code make HTTP/S requests (communicate with websites). In simple terms, if you're a programmer doing something with JavaScript, and want to do stuff that communicates with a website in literally any capacity, people heavily recommend using Axios due to its simplicity. Using Axios you don't have to reinvent the wheel and do a bunch of work. All you need to do is import Axios into your code and you're off to the races. Someone (currently unknown) compromised Axios (currently unknown how) to deliver malware to people. When someone updates or installs Axios, Axios itself contains malware. What the malware does is (currently) unknown, but it is being reversed engineered by probably every malware analyst on the planet at this moment. In a few hours more details will emerge. Information is being exchanged in real time on social media and private communication platforms as I write this. Due to the size and popularity of Axios, it is unknown how many are impacted, it could be millions, it could be thousands, or if we're lucky, only hundreds of people or organizations will be impacted. If this is absolute worst case scenario, millions of organizations across the planet have been infected with malware which (currently) we do not understand. However, the likelihood of this is low. It appears Axios being compromised was detected quickly, potentially within minutes (or hours) of it being compromised to deliver malware. Additionally, the likelihood of every single Axios user updating Axios as soon as it was compromised to deliver malware is astronomically low. It is basically zero. The impact from Axios being compromised is devastating, the fallout from this will be a massive headache. This is unironically a malware nuclear missile and will likely be studied in the future.
English
107
846
7.8K
582.6K
VXUG Giveaways
VXUG Giveaways@vxgiveaways·
$1,000 Hack The Box Labs Giveaway 10 winners | $100 giftcard each To enter: follow @vxgiveaways and @ObvaneGroup, then comment below sharing why you'd like to win Winners picked in a week
English
268
91
330
30.5K
Josh Wilson retweetet
No Starch Press
No Starch Press@nostarch·
We've been baking for you. Use code SLICE.
No Starch Press tweet media
English
0
6
44
2.3K
Dmitrii Kovanikov
Dmitrii Kovanikov@ChShersh·
People often ask me for resources to learn C++ I highly recommend “Embracing Modern C++ Safely” by John Lakos, Vittorio Romeo, Rostislav Khlebnikov and Alisdair Meredith. This book does a masterful job at describing C++ features recommendations: how to use and when to avoid.
Dmitrii Kovanikov tweet media
English
27
127
1.6K
47.8K
Josh Wilson
Josh Wilson@ghostnthebricks·
@SteamDeckHQ I'm playing it on steam deck and it's going well
English
0
0
1
58
Josh Wilson
Josh Wilson@ghostnthebricks·
@Jr0dR87 This is on my very long list of books to buy from no starch press
English
0
0
1
82
Jarrod
Jarrod@Jr0dR87·
New book ❤️
Jarrod tweet media
English
11
15
241
6.4K
Josh Wilson
Josh Wilson@ghostnthebricks·
@pcgamer Half of my purchases are on GOG
English
0
0
2
109
PC Gamer
PC Gamer@pcgamer·
GOG declares 'The future of preservation is decided by players who give a sh*t' after New Blood CEO expresses concern for the storefront's lifespan pcgamer.com/software/platf…
English
15
24
252
18.4K