Dan Chang

124 posts

Dan Chang

Dan Chang

@TheDanChang

Vancouver, BC Katılım Şubat 2020
174 Takip Edilen34 Takipçiler
Dan Chang retweetledi
Naval
Naval@naval·
Vibe coding is more addictive than any video game ever made (if you know what you want to build).
English
1.6K
2.8K
28.4K
1.5M
Dan Chang retweetledi
Cheng Lou
Cheng Lou@_chenglou·
My dear front-end developers (and anyone who’s interested in the future of interfaces): I have crawled through depths of hell to bring you, for the foreseeable years, one of the more important foundational pieces of UI engineering (if not in implementation then certainly at least in concept): Fast, accurate and comprehensive userland text measurement algorithm in pure TypeScript, usable for laying out entire web pages without CSS, bypassing DOM measurements and reflow
English
1.3K
8.3K
65K
23.1M
Dan Chang retweetledi
Andrej Karpathy
Andrej Karpathy@karpathy·
Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database passwords. LiteLLM itself has 97 million downloads per month which is already terrible, but much worse, the contagion spreads to any project that depends on litellm. For example, if you did `pip install dspy` (which depended on litellm>=1.64.0), you'd also be pwnd. Same for any other large project that depended on litellm. Afaict the poisoned version was up for only less than ~1 hour. The attack had a bug which led to its discovery - Callum McMahon was using an MCP plugin inside Cursor that pulled in litellm as a transitive dependency. When litellm 1.82.8 installed, their machine ran out of RAM and crashed. So if the attacker didn't vibe code this attack it could have been undetected for many days or weeks. Supply chain attacks like this are basically the scariest thing imaginable in modern software. Every time you install any depedency you could be pulling in a poisoned package anywhere deep inside its entire depedency tree. This is especially risky with large projects that might have lots and lots of dependencies. The credentials that do get stolen in each attack can then be used to take over more accounts and compromise more packages. Classical software engineering would have you believe that dependencies are good (we're building pyramids from bricks), but imo this has to be re-evaluated, and it's why I've been so growingly averse to them, preferring to use LLMs to "yoink" functionality when it's simple enough and possible.
Daniel Hnyk@hnykda

LiteLLM HAS BEEN COMPROMISED, DO NOT UPDATE. We just discovered that LiteLLM pypi release 1.82.8. It has been compromised, it contains litellm_init.pth with base64 encoded instructions to send all the credentials it can find to remote server + self-replicate. link below

English
1.4K
5.4K
28.2K
66.2M
Dan Chang retweetledi
Google AI
Google AI@GoogleAI·
We’re launching a brand new, full-stack vibe coding experience in @GoogleAIStudio, made possible by integrations with the @Antigravity coding agent and @Firebase backends. This unlocks: — Full-stack multiplayer experiences: Create complex, multiplayer apps with fully-featured UIs and backends directly within AI Studio — Connection to real-world services: Build applications that connect to live data sources, databases, or payment processors and the Antigravity agent will securely store your API credentials for you — A smarter agent that works even when you don't: By maintaining a deeper understanding of your project structure and chat history, the agent can execute multi-step code edits from simpler prompts. It also remembers where you left off and completes your tasks while you’re away, so you can seamlessly resume your builds from anywhere — Configuration of database connections and authentication flows: Add Firebase integration to provision Cloud Firestore for databases and Firebase authentication for secure sign-in This demo displays what can be built in the new vibe coding experience in AI Studio. Geoseeker is a full-stack application that manages real-time multiplayer states, compass-based logic, and an external API integration with @GoogleMaps 🕹️
English
484
1.6K
12.3K
4.7M
toki
toki@tokifyi·
hey founders & builders! after months of building solo, i’m hosting a lowkey builder happy hour in vancouver + drinks, stories, real human connection (something ai can’t do) no pitches, no panels, just builders hanging out irl spots are tiny, reply/dm if you want to join and i’ll send you the rsvp form
English
80
3
142
28.4K
Dan Chang retweetledi
Kr$na
Kr$na@krishdotdev·
Did anyone realize what just happened here? This is one of the strangest things happening in tech right now. Scientists put 200,000 human brain cells on a chip and taught them to play Doom. Yes. Real neurons. > $35K per system > 30 units run on ~1000W > Your brain runs on ~20W > AI data centers burn megawatts They’re now selling Wetware as a Service. Developers can literally deploy code to living neurons in the cloud. This neither simulation nor silicon, this is Actual brain cells. Welcome to biological computing.
Polymarket@Polymarket

JUST IN: Petri dish of human brain cells grown on a microchip has learned to play DOOM.

English
1K
4.2K
43K
4.7M
Dan Chang
Dan Chang@TheDanChang·
@oliverburdick If the shroud of Turin is in fact a real relic of Jesus, then it is possible that the imprint that’s left there was caused by light faster than the speed of light. Jesus then would have illuminated so fast he could in theory ‘resurrect’ and be where the disciples are before them.
English
0
0
0
3
Oliver Burdick
Oliver Burdick@oliverburdick·
Do you really believe this happened?
Oliver Burdick tweet media
English
4.1K
1.5K
24.6K
536.7K
Dan Chang retweetledi
Garry Tan
Garry Tan@garrytan·
One of the most important questions for founders is: How do I make sure agents know about my product and service and choose it? All the old tricks won’t work. People who figure this out will win big
Garry Tan tweet media
brian flynn@Flynnjamm

x.com/i/article/2023…

English
186
276
3K
676.3K
Dan Chang retweetledi
miss white
miss white@cinecitta2030·
Wake up babe there’s a Portuguese Catholic priest who mixes Gregorian chants with industrial techno house music
English
1.5K
10.8K
83.1K
4.7M
Dan Chang retweetledi
Tim Urban
Tim Urban@waitbutwhy·
@DouthatNYT Came across a moltbook post that said this
Tim Urban tweet media
English
65
189
2.3K
184.4K
Dan Chang
Dan Chang@TheDanChang·
One of the most fascinating things for me from being a Christian, an atheist and now a born again Christian is the realization that at the end of every path of science I’ve explored, I end up with the same conclusion that God is very real.
Chris Williamson@ChrisWillx

Learning The Art Of Surrender

English
0
0
0
4
Dan Chang retweetledi
Jesse
Jesse@d0wnsideofme·
holy fucking shit
Jesse tweet media
English
3.5K
31.2K
196.8K
37.9M
Dan Chang
Dan Chang@TheDanChang·
@anxietymsgs Hitting the gym everyday made life more and more approachable to conquer
English
0
0
0
3
Feelings ღ
Feelings ღ@anxietymsgs·
During a very dark period, what was the best thing you ever did for your mental health?
English
8.3K
687
10.5K
4.8M