Dave Stokes

20.8K posts

Dave Stokes banner
Dave Stokes

Dave Stokes

@stoker

Justin, TX 가입일 Ocak 2008
1.2K 팔로잉2.1K 팔로워
Dave Stokes 리트윗함
Chaya Tong
Chaya Tong@chaya_tong·
Remember those Austin IT firings from a couple of weeks ago? The American-Statesman dug deeper and found that all three employees were fired after officials discovered they had undisclosed second jobs - including working in IT for the city of Dallas. statesman.com/news/local/art…
English
12
30
104
4.4K
Dave Stokes 리트윗함
Massimo
Massimo@Rainmaker1973·
Artemis II Trajectory vs. Apollo 11 and Apollo 13 [🎞️ dflores.07]
English
162
2.5K
21.3K
1.4M
Dave Stokes 리트윗함
TheBrainMaze TBM
TheBrainMaze TBM@thebrainmaze·
Artemis Mission Route in 3D - This animation visualizes the Artemis mission trajectory in a dynamic 3D perspective, showing how the spacecraft travels through the Earth–Moon system while all celestial bodies are in motion. Instead of a static path, the Sun, Earth, and Moon move simultaneously, revealing the true complexity of orbital mechanics. The result highlights how the Artemis route is not a simple curve, but a constantly shifting trajectory shaped by gravity and motion. This view provides a clearer understanding of how modern space missions navigate through space in real time. Right now, Artemis is on its return path to Earth and is expected to arrive back soon as it completes its mission. The sizes and distances of the Sun, Earth, and Moon are not to scale and are adjusted for visual purposes.
English
194
4K
19.4K
1.3M
Dave Stokes 리트윗함
Physics & Astronomy Zone
Physics & Astronomy Zone@zone_astronomy·
The highest quality video of the moon was just released… this is so beautiful.
English
5.2K
65K
331.8K
10.9M
Dave Stokes 리트윗함
Physics & Astronomy Zone
Physics & Astronomy Zone@zone_astronomy·
To think that we aren't just going "to the Moon," but rather traveling to meet it at an exact point in space... changes everything. ​It all comes down to orbital mechanics: arriving at the precise location, at the precise moment. ​One tiny error... and it simply doesn't happen
English
725
5.9K
36.2K
3.4M
Dave Stokes 리트윗함
Kyle Daigle
Kyle Daigle@kdaigle·
Yup, platform activity is surging. There were 1 billion commits in 2025. Now, it's 275 million per week, on pace for 14 billion this year if growth remains linear (spoiler: it won't.) GitHub Actions has grown from 500M minutes/week in 2023 to 1B minutes/week in 2025, and now 2.1B minutes so far this week. So we're pushing incredibly hard on more CPUs, scaling services, and strengthening GitHub’s core features. And as a fine purveyor of hand-crafted shit code for many years, I'm not gonna weigh in on that. 🤣
ThePrimeagen@ThePrimeagen

I would like to make my apologies for defending M$, but I must from time to time. I have to put respect on github for handling the amount of shit code that has been added over the last 3 months. literally 10s of billions of lines of code that will never see the light of a CPU

English
132
442
5.9K
1.9M
Dave Stokes 리트윗함
Vintage Rock 🎸
Vintage Rock 🎸@VintageRockN_85·
Name a better pure Guitar player!!!
English
159
117
771
29K
Dave Stokes 리트윗함
Roy Rogers Happy Trails Music Shop 
🔥 Rare footage of Django Reinhardt playing guitar! The undisputed king of Gypsy Jazz — a man who lost the use of two fingers in a tragic fire yet still played with insane speed, swing, and soul that most guitarists could only dream of. Pure genius 🤯🎸
English
5
23
144
8K
Dave Stokes 리트윗함
HOW THINGS WORK
HOW THINGS WORK@HowThingsWork_·
Adding googly eyes to a pulverizer instantly makes the job better..
English
159
2.9K
18.9K
712.9K
Dave Stokes 리트윗함
Chris Combs (iterative design enjoyer)
ARTEMIS II AS SEEN BY THE OFFICIAL NASA CESSNA THIS IS THE BEST LAUNCH VIDEO AND IT ISN'T CLOSE
English
268
10.1K
69K
2.2M
Dave Stokes 리트윗함
siddontang
siddontang@siddontang·
Databricks just dropped real production data on how agents use databases. databricks.com/blog/how-agent… The numbers are wild: • Agents create 4x more databases than humans • 50% of those databases live less than 10 seconds • Average project branches ~10 times, some reach 500+ This isn't "more traffic." It's a completely different access pattern. Two implications nobody's talking about: - Pricing models break. You can't charge $50/month for a DB that lives 10 seconds. - Observability breaks. Your monitoring dashboard can't track a fleet of ephemeral instances that blink in and out of existence. The database of the agent era looks nothing like what we built for humans.
English
1
1
8
1.2K
Dave Stokes 리트윗함
William Shatner
William Shatner@WilliamShatner·
Hey @NASA 🤔 Did you tell the #ArtemisII crew to jiggle the handle? 👉🏻🚽 That usually works for me. 🤷🏼😉
English
534
1.1K
14.5K
218.3K
Dave Stokes 리트윗함
Stuff Worth Seeing
Stuff Worth Seeing@StuffWorthSee·
Why didn't our teachers make it this easy?
English
1.1K
768
9.6K
4.6M
Dave Stokes 리트윗함
Spaceballs The X Account
Now that Artemis II has launched we have 10 days to get everyone on Earth a Planet of the Apes costume so we can do something hilarious when the astronauts return 😁
Spaceballs The X Account tweet media
English
2.2K
17.6K
92.2K
2.5M
Dave Stokes 리트윗함
I am Ken
I am Ken@Ikennect·
Texans and people who have visited will understand😂
I am Ken tweet media
English
159
138
952
17.8K
Dave Stokes
Dave Stokes@stoker·
Wordle 1,746 3/6 🟩🟩⬜🟨⬜ 🟩🟩🟩⬜⬜ 🟩🟩🟩🟩🟩
English
0
0
0
19
Dave Stokes 리트윗함
DBeaver
DBeaver@dbeaver_news·
Analysts on your team can get the data they need without waiting for someone to run a query. Parameterized datasets are now available in DBeaver Team Edition 26.0. Learn more: #parameterized-datasets" target="_blank" rel="nofollow noopener">dbeaver.com/docs/team-edit…
English
0
3
26
1.5K
Dave Stokes 리트윗함
Anish Moonka
Anish Moonka@anishmoonka·
A tiny piece of code called axios runs inside almost every app on your phone and every website you visit. Developers download it 100 million times a week. A few hours ago, someone poisoned it with malware that hands an attacker full control of your computer. If you’ve never heard of axios, that’s normal. It does one boring but important job: it lets apps talk to the internet. When a website pulls up your feed or an online checkout processes your card, axios is probably doing the work underneath. Over 173,000 other code packages plug into it. It’s everywhere. The attacker stole a lead developer’s login for npm (think of it as an app store, but for code that programmers use to build software). Once inside, they swapped the developer’s email to an anonymous ProtonMail account and uploaded the poisoned version by hand. That jumped past every security check the project normally runs before new code goes live. And this was not some rushed job. The attacker staged the malware at least 18 hours before pulling the trigger. They built separate versions for Windows, Mac, and Linux. They poisoned both the current version and an older one within 39 minutes of each other, casting the widest net possible. Once the malware ran on a machine, it deleted itself to cover its tracks. The trick was smart. They never touched a single line of code inside axios itself. Instead, they tucked in a fake add-on called plain-crypto-js, built to pass as a well-known, trusted library. It copied the real library’s description and author info, so nothing looked off at a glance. When a developer installed axios, this fake package quietly ran the malware on its own. When a smaller package called ua-parser-js got hijacked back in 2021 with about 8 million weekly downloads, the security world treated it like a four-alarm fire. Axios has 100 million. Over 12x the exposure, with 173,000+ packages depending on it. Socket, the security firm that flagged this, caught it in about 6 minutes. That’s fast. But 6 minutes is still plenty of time for automated systems at companies everywhere to pull and install the bad version before anyone can react. If you or your team runs axios: lock your version to 1.14.0 (or 0.30.3 for the older branch). Change every password, API key, and access token on any machine that installed the compromised update. And check your network logs for connections to sfrclak dot com or the IP address 142.11.206.73.
Feross@feross

🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.

English
50
609
3.6K
657.9K
Dave Stokes 리트윗함
klöss
klöss@kloss_xyz·
do you understand what just happened to one of the most used npm packages on the internet? → axios gets downloaded over 100 million times a week and today it got compromised → an attacker hijacked the npm credentials of a lead axios maintainer… changed the account email to an anonymous ProtonMail address… and manually published two poisoned versions → axios@1.14.1 and axios@0.30.4… neither version contains a single line of malicious code inside axios itself. instead they inject a fake dependency called plain-crypto-js that drops a remote access trojan on your machine → the fake dependency was staged 18 hours in advance… three separate payloads were pre-built for macOS, Windows, and Linux… both release branches were hit within 39 minutes. every trace was designed to self-destruct after execution too → there’s no tag in the axios GitHub repo for 1.14.1. it was published outside the normal release process entirely... bypassed CI/CD completely → StepSecurity called it one of the most operationally sophisticated supply chain attacks ever against a top 10 npm package → a routine npm install silently opens a backdoor… no warning… no suspicious code visible in axios itself this is the wake up call all vibe coding bros need to hear right now: → if you installed either version… assume your system is compromised → pin to axios@1.14.0 or axios@0.30.3 → rotate all secrets, API keys, SSH keys, and credentials on affected machines → check network logs for C2 connections → add –ignore-scripts to CI npm installs going forward 100 million weekly downloads and one compromised maintainer account… that’s all it took to wreak absolute havoc and I imagine we see a whole lot more of these… crazy times ahead for cybersecurity and vibe coding be safe out there y’all
Feross@feross

🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.

English
107
487
3.5K
874K