Valentinus Sofa 🎗

10.3K posts

Valentinus Sofa 🎗 banner
Valentinus Sofa 🎗

Valentinus Sofa 🎗

@SofaValentinus

● Interested in distributed computing, cryptography, and cybersecurity ● Lelaki pecinta film kolosal (lagi melakukan riset untuk penulisan novel)

Katılım Aralık 2021
2.3K Takip Edilen327 Takipçiler
Valentinus Sofa 🎗
Valentinus Sofa 🎗@SofaValentinus·
@kompascom Menurut laporan intelijen Pakistan, jika Ghalibaf dan Araghchi dibunuh maka tak ada lagi yang bisa diajak bicara dan kekuasaan bakal jatuh ke tangan orang-orang garis keras dari IRGC.
Indonesia
0
0
0
22
Kompas.com
Kompas.com@kompascom·
AS-Israel menghapus nama Mohammad Bagher Ghalibaf dan Abbas Araghchi dari daftar target serangan. ~RS
Indonesia
13
2
31
4.5K
Valentinus Sofa 🎗 retweetledi
nic carter
nic carter@nic_carter·
Elliptic curve cryptography is on the brink of obsolescence. Whether it’s 3 or 10 years; it’s over and we need to accept that The only thing that matters is how quickly blockchain developers recognize that they need to bake in cryptographic mutability into their networks This of course requires an entire reimagining of how these systems work. Today the crypto is hardcoded in. That will have to change ETH people have already figured this out. Everyone else seems to be petrified in fear. Unless something changes quickly ETHBTC will start to reflect the divergence in prioritisation
English
76
64
722
123.6K
Valentinus Sofa 🎗 retweetledi
Marin Ivezic
Marin Ivezic@infosec·
🧵 I recently made two predictions: 1. ECC - not RSA - is the easier quantum target, and estimates will keep falling. 2. Bitcoin's quantum risk is underestimated because everyone benchmarks against RSA A EUROCRYPT 2026 paper just confirmed both. Here's what happened:
English
1
4
18
942
Valentinus Sofa 🎗
Valentinus Sofa 🎗@SofaValentinus·
The Cost of Concurrency Coordination with Jon Gjengset @jonhoo In this talk, Jon Gjengset explores the true cost of concurrency coordination – from Amdahl's law down to CPU cache lines – and what we can do about it. youtu.be/tND-wBBZ8RY?si…
YouTube video
YouTube
English
0
0
0
37
Valentinus Sofa 🎗
Valentinus Sofa 🎗@SofaValentinus·
@republikaonline Dengan gurun luas di sebelah timur dan Laut Mediterania di sebelah barat, Israel memang menjadi jalur migrasi utama dan transit bagi ratusan juta burung yang bermigrasi antara Eropa, Asia dan Afrika setiap musim semi dan musim gugur.
Indonesia
0
0
0
115
Valentinus Sofa 🎗 retweetledi
Craig Gidney
Craig Gidney@CraigGidney·
I would bet against Q day by 2030, but I wouldn't bet against it at 10:1 odds. ~10% risk is unacceptably high here, so I'm very in favor of transitioning to quantum-safe cryptography by 2029: blog.google/innovation-and… Yes this means I 90% expect to be made fun of in 2030. Oh well.
English
8
25
110
23.5K
Valentinus Sofa 🎗 retweetledi
Zero Knowledge Podcast
Zero Knowledge Podcast@zeroknowledgefm·
How do you actually formally verify the code underpinning Ethereum's future? In this episode (the finale of the @leanEthereum miniseries), @nico_mnbl sits down with Alex Hicks (@alexanderlhicks), lead of Protocol Snarkification at the @ethereumfndn, to break down formal verification from first principles. They cover: – What formal verification actually is and the trust boundaries between proof assistants, SMT solvers, and kernels – The full verification stack for RISC-V ZKVMs: from SAIL specs to constraint extraction to soundness proofs – Why writing constraints directly in Lean makes proofs 10–100x more ergonomic – How AI is now proving hard theorems in hours for $200 — and what that unlocks for the whole pipeline They also explore the boundaries problem, why specs can have bugs too, and the end goal of a full Lean stack that bypasses Rust and LLVM entirely. Listen to the full episode ------------------------------------------------------------ TIMECODES: 09:16 – What is formal verification? Proof assistants vs SMT solvers 18:33 – Formal verification of code: specs, semantics, and trust boundaries 29:30 – Formally verifying the Lean Ethereum stack: RISC-V ZKVMs in focus 33:02 – Extracting ZKVM constraints into Lean and proving soundness 36:35 – Writing constraints directly in Lean: 10–100x better proof ergonomics 44:02 – Proving Polishchuk–Spielman in 8 hours for $200 with AI 51:01 – The end goal: a full Lean stack bypassing Rust and LLVM
English
1
8
30
8.7K
Valentinus Sofa 🎗 retweetledi
KoalateeCtrl
KoalateeCtrl@KoalateeCtrl·
Last episode on zkSNARKs for a while! After this one, if you've been following the series, we have gone from zero to knowing how to make a full zk-SNARK! This episode is all about the PLONK PIOP! It is the magic behind PLONK, the zk-SNARK proving system that powers fast, secure, and private computations on blockchains like Ethereum, as well as off-chain systems. It's the protocol that lets a prover convince a verifier that the PLONK constraints are satisfied, all without revealing any secret data, using polynomial commitments and clever checks. Heard the term "PLONK" before but never really understood how it works? In Episode 6 of my series 🎬 I break it down step-by-step. Check it out here: youtube.com/watch?v=rikbGO…
YouTube video
YouTube
English
0
7
26
1.7K
Valentinus Sofa 🎗 retweetledi
AVB
AVB@neural_avb·
Nobody is talking about ARXIV going independent in less than 100 days. - They are leaving Cornell behind after 35 years and gonna become standalone. Cornell office work and bureaucracy was holding them back. - The blog says that they will hire faster, adopt to technology faster, and raise money faster starting July 1. - This can mean better AI features to study papers, better plagiarism/quality checkers, expansion into more domains? (my take) I am kinda excited. Arxiv is the backbone for open research access, and if all goes well, they are probably gonna do something big by end of the year.
AVB tweet media
English
17
35
515
28.8K
Valentinus Sofa 🎗
Valentinus Sofa 🎗@SofaValentinus·
@KenjiTanigaki Congratulations. I hope this movie success. As an Indonesian, I thank you for involving my favorite Indonesian action actors.
English
0
0
0
91
Valentinus Sofa 🎗 retweetledi
Tuki
Tuki@TukiFromKL·
🚨 Andrej Karpathy just explained the scariest thing happening in software right now.. someone poisoned a Python package that gets 97 million downloads a month.. and a simple pip install was enough to steal everything on your machine.. SSH keys.. AWS credentials.. crypto wallets.. database passwords.. git credentials.. shell history.. SSL private keys.. everything.. and here's the part that should terrify every developer alive.. the attack was only discovered because the attacker wrote sloppy code.. the malware used so much RAM that it crashed someone's computer.. if the attacker had been better at coding.. nobody would have noticed for weeks.. one developer.. using Cursor with an MCP plugin.. had litellm pulled in as a dependency they didn't even know about.. their machine crashed.. and that crash saved thousands of companies from getting their entire infrastructure stolen.. Karpathy's take is the real wake up call.. every time you install any package you're trusting every single dependency in its tree.. and any one of them could be poisoned.. vibe coding saved us this time.. the attacker vibe coded the attack and it was too sloppy to work quietly.. next time they won't make that mistake.
Andrej Karpathy@karpathy

Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database passwords. LiteLLM itself has 97 million downloads per month which is already terrible, but much worse, the contagion spreads to any project that depends on litellm. For example, if you did `pip install dspy` (which depended on litellm>=1.64.0), you'd also be pwnd. Same for any other large project that depended on litellm. Afaict the poisoned version was up for only less than ~1 hour. The attack had a bug which led to its discovery - Callum McMahon was using an MCP plugin inside Cursor that pulled in litellm as a transitive dependency. When litellm 1.82.8 installed, their machine ran out of RAM and crashed. So if the attacker didn't vibe code this attack it could have been undetected for many days or weeks. Supply chain attacks like this are basically the scariest thing imaginable in modern software. Every time you install any depedency you could be pulling in a poisoned package anywhere deep inside its entire depedency tree. This is especially risky with large projects that might have lots and lots of dependencies. The credentials that do get stolen in each attack can then be used to take over more accounts and compromise more packages. Classical software engineering would have you believe that dependencies are good (we're building pyramids from bricks), but imo this has to be re-evaluated, and it's why I've been so growingly averse to them, preferring to use LLMs to "yoink" functionality when it's simple enough and possible.

English
284
2.3K
13.9K
3.1M
Valentinus Sofa 🎗 retweetledi
VectorWare
VectorWare@vectorware·
We are excited to announce that we can successfully use Rust's std::thread on the GPU. This has never been done before. vectorware.com/blog/threads-o… Supporting Rust's std::thread enables existing Rust code to work on the GPU and makes GPU programming more ergonomic.
English
17
100
638
38.1K