kaiser_cože 皇帝咩話

1.4K posts

kaiser_cože 皇帝咩話 banner
kaiser_cože 皇帝咩話

kaiser_cože 皇帝咩話

@solardank

digital siege engineer, brewer of most things, unetice culture fetishist, byzantine values, sci-fi writer, and former cascædian

Beigetreten Ağustos 2015
1.1K Folgt140 Follower
kaiser_cože 皇帝咩話 retweetet
CR1337
CR1337@CR1337·
These 7 tools are hidden gems & fly completely under the radar in 2026 - most people have never heard of them: 1. Portmaster is the ultimate application firewall and network monitor that shows you for example exactly where every app connects: safing.io/portmaster 2. SearXNG lets you self-host a private metasearch engine with Google-level results and zero tracking: searxng.org 3. PrivateBin is an encrypted self-hosted pastebin that keeps your notes, code snippets, etc., private: privatebin.info 4. RethinkDNS is the all-in-one firewall, DNS changer, and tracker blocker, enhancing Android privacy: rethinkdns.com 5. Picocrypt is the dead-simple yet ultra-secure file encryption tool that creates volumes indistinguishable from random data: github.com/Picocrypt/Pico… 6. NewPipe is a privacy-first Android YouTube client with no ads, no tracking, and background playback: newpipe.net 7. OnionShare enables secure file sharing and chat over Tor with zero servers or accounts: onionshare.org All tools are 100% free & Open Source!
CR1337 tweet media
English
13
229
950
30.5K
kaiser_cože 皇帝咩話 retweetet
Clément Dumas
Clément Dumas@Butanium_·
⚠️ Supply chain attack in progress: someone is squatting Anthropic-internal npm package names targeting people trying to compile the leaked Claude Code source. `color-diff-napi` and `modifiers-napi` — both registered today, same person, disposable email. Do NOT install them. 🧵
English
35
342
2K
220.5K
nixo.eth 🦇🔊🥐
nixo.eth 🦇🔊🥐@nixorokish·
when i haven't even slept long enough for my laptop to fully charge, i guess i shouldn't assume i'm fully charged
English
5
0
40
1.2K
kaiser_cože 皇帝咩話 retweetet
nic carter
nic carter@nic_carter·
Many are wondering "what Google saw" that caused them to revise their post-quantum cryptography transition deadline to 2029 last week. It was this: research.google/blog/safeguard…
English
97
947
7.4K
6.7M
alicia katz
alicia katz@aliciakatz·
i make the best business connections at crypto conferences while i am hiding in the bathroom, with the other women who are also hiding in the bathroom.
English
8
1
61
1.7K
kaiser_cože 皇帝咩話
@FromKulak Yes, there have been so many cultural assimilations over the Persian Gulf Wars that Americans and Aryans have become almost indistinguishable other than language and biryani recipes.
English
0
0
0
44
CatGirl Kulak 😻😿 (Anarchonomicon)
Americans have not internalized that a ground war in Iran will mean mothers and wives seeing videos and edits like this of their loved one's last moments. There were factions in Ukraine and Russia actively tracking down the families of dead soldiers to spam the videos at them.
English
59
271
2.5K
56.2K
kaiser_cože 皇帝咩話 retweetet
Marcel
Marcel@illnevercallitx·
That's it. That's the best picture from Saturday's No Kings protests in the USA. The literal Statue of Liberty being detained by police. It doesn't get much more poetic than this.
Marcel tweet media
English
7.9K
33.2K
136.8K
6.7M
Brian Allen
Brian Allen@allenanalysis·
Pete Hegseth just unveiled “Greater North America.” A new strategic map — from Greenland to the Gulf of America — claiming every sovereign nation north of the equator is part of America’s security perimeter.
English
1.6K
2.4K
5.8K
2M
Lord Bebo
Lord Bebo@MyLordBebo·
🇷🇺🇺🇦 While the US struggles with drone attacks across the Gulf, the Russia-Ukraine war has already progressed to the next stage of advanced future drone warfare. Drone-on-drone air battles with forks!
English
87
342
4.8K
570.8K
chrishobcroft
chrishobcroft@chrishobcroft·
@vojtechpraha Did you ever try following the signposts for the cycle route from Staroměstské náměstí to Vinohrady? It starts well, but the signposts vanish pretty quickly. I wonder which politician celebrated that with a photogenic opportunity in Prague 1.
1
0
2
98
Vojtěch Navrátil
Vojtěch Navrátil@vojtechpraha·
Nejkvalitnější a nejdelší nepřerušovaná infrastruktura pro jízdu na kole v celé Praze. Takhle běžně vypadá řešení nově postavených obousměrných stezek v Polsku. Takhle to má vypadat. Kdyby se po takové stezce dalo dostat napříč městem, bylo by vyhráno.
Čeština
18
2
191
24.4K
polar
polar@post_polar_·
if Ireland ever gets sent to the Hague it'll be because something Ryanair did
English
3
0
20
994
kaiser_cože 皇帝咩話 retweetet
Suzie rizzio
Suzie rizzio@Suzierizzo1·
This is a North Carolina Senator on a livestream trading stocks while on the Senate floor! No wonder they don’t get anything done and are billionaires! 🤬
English
715
27K
81K
1.2M
kaiser_cože 皇帝咩話 retweetet
𝖕𝖚𝖘𝖘𝖞 𝖗𝖎𝖔𝖙💦
Pussy Riot occupies headquarters of American tech company Ubiquiti which powers Russian war crimes Since the disabling of Starlink, Russian soldiers been panicking: “All we’ve got left now are radios, cables and pigeons.” But Ubiquiti’s hardware has emerged as the favorite replacement.  We demand that Ubiquiti: - Obey U.S. sanctions - Acknowledge Russian military use - Work with Ukraine to stop it
English
301
3.1K
14K
1M
kaiser_cože 皇帝咩話
@KarlreMarks I believe it's biblical: The Parable of the 8 Virgins “At that time the kingdom of heaven will be like 8 virgins who took their lamps and went out to meet the bridegroom. 4 of them were foolish and 4 were wise. The foolish ones took their lamps but did not take any oil with"
English
0
0
1
2.4K
Velina Tchakarova
Velina Tchakarova@vtchakarova·
@tillda I was booked for a close-door event. Unfortunately, already left for Vienna.
English
1
0
3
295
Patrick Webb
Patrick Webb@Patrickwebb·
BREAKING: Jeffrey Epstein likely had every major U.S. politician on video doing something terrible to a child, according to former CIA officer David Robert Steele.
English
370
4.5K
24.5K
890.2K
kaiser_cože 皇帝咩話 retweetet
Tuki
Tuki@TukiFromKL·
🚨 Andrej Karpathy just explained the scariest thing happening in software right now.. someone poisoned a Python package that gets 97 million downloads a month.. and a simple pip install was enough to steal everything on your machine.. SSH keys.. AWS credentials.. crypto wallets.. database passwords.. git credentials.. shell history.. SSL private keys.. everything.. and here's the part that should terrify every developer alive.. the attack was only discovered because the attacker wrote sloppy code.. the malware used so much RAM that it crashed someone's computer.. if the attacker had been better at coding.. nobody would have noticed for weeks.. one developer.. using Cursor with an MCP plugin.. had litellm pulled in as a dependency they didn't even know about.. their machine crashed.. and that crash saved thousands of companies from getting their entire infrastructure stolen.. Karpathy's take is the real wake up call.. every time you install any package you're trusting every single dependency in its tree.. and any one of them could be poisoned.. vibe coding saved us this time.. the attacker vibe coded the attack and it was too sloppy to work quietly.. next time they won't make that mistake.
Andrej Karpathy@karpathy

Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database passwords. LiteLLM itself has 97 million downloads per month which is already terrible, but much worse, the contagion spreads to any project that depends on litellm. For example, if you did `pip install dspy` (which depended on litellm>=1.64.0), you'd also be pwnd. Same for any other large project that depended on litellm. Afaict the poisoned version was up for only less than ~1 hour. The attack had a bug which led to its discovery - Callum McMahon was using an MCP plugin inside Cursor that pulled in litellm as a transitive dependency. When litellm 1.82.8 installed, their machine ran out of RAM and crashed. So if the attacker didn't vibe code this attack it could have been undetected for many days or weeks. Supply chain attacks like this are basically the scariest thing imaginable in modern software. Every time you install any depedency you could be pulling in a poisoned package anywhere deep inside its entire depedency tree. This is especially risky with large projects that might have lots and lots of dependencies. The credentials that do get stolen in each attack can then be used to take over more accounts and compromise more packages. Classical software engineering would have you believe that dependencies are good (we're building pyramids from bricks), but imo this has to be re-evaluated, and it's why I've been so growingly averse to them, preferring to use LLMs to "yoink" functionality when it's simple enough and possible.

English
286
2.3K
14K
3.2M