Lachie
504 posts


@Frogmann80 @kangminlee You know this is a skit from 1 bloke with filters for a job hiring platform right?
English


@Dev_Lachie You are absolutely right. But here’s where it gets real …
English

Rust will become a boring language.
Bold prediction from @vlad20012, but hear him out since boring might be exactly what Rust needs.
English

@Dev_Lachie Not clanker, but you are in fact a self loathing dumbass. Nice to meet you. Go fucking die in a hole if you cant handle internet conversations. Legit
English

@LewisCTech @traits_reality Ziguanas is not what I would call Zig programmers lmao
English

@traits_reality It's embarrassing when Ziguanas and Gopher pretend monads are this super nerdy obscure nonsense getting in the way of Real Programming, when it's like a fundamental design pattern.
English

@Dev_Lachie Ngl but if yall were actually good at this game, I would, theoretically and hypothetically and literally be dead already.
Someone placed some MEAN bets on yall and won a fuck ton of money. Im NOT lying.
English

@Dev_Lachie Aibis literally built from the internet. They think like us because its the only reference they have. Its like you just want to hate ai for no valid reason
English

@LewisCTech It's mostly the ultra-agreeable replies to posts with the classic "That's not X, it's Y" slop.
English

@Dev_Lachie you have to "garden" your feed, a lot of "see less from XYZ" and unfollowing people. it will clean up
English

@GHchangelog Why not force staged publishing but inside of npm which runs malware scans before it's published. This would stop everything. Think @SocketSecurity (maybe buy them out) or create your own AI scanning. No one will care if it takes 5-10 minutes for a package to publish.
English

Staged publishing is now generally available for npm, requiring maintainer approval before package versions become installable.
github.blog/changelog/2026…
English
Lachie retweetledi

remember the days when the SSL cert you bought lasted a year... with sectigo, they went from 12 months to 6 months. Soon to drop to 100 days and 47 days.
its like they the CRL or OCSP doesn't even matter at this point, everyone is getting short lived certs and everyone is going to pay for every issuance.
English
Lachie retweetledi

Socket found a malicious postinstall hook across 700+ GitHub repos, including #PHP packages on Packagist and #Nodejs project repos.
The campaign involved malicious commits to affected repositories and reused the same GitHub-hosted payload infrastructure.
socket.dev/blog/malicious…
English












