Daniel Rock
2.6K posts

Daniel Rock
@danielrock
Asst. Prof. in OID @Wharton @Penn. Cofounder @workhelix. Everyone can just do stuff and that's {good, bad}. I study the economics of AI.


Read about this and more of @modal's secrets to fast container starts on our blog. modal.com/blog/truly-ser…






Neural networks might speak English, but they think in shapes. Understanding their rich *neural geometry* is key to understanding how they work – and to debugging and controlling them with precision. Starting today, we’re releasing a series of posts on this research agenda. 🧵



🚨 BREAKING: 84 TanStack npm packages were compromised in an ongoing Mini Shai-Hulud supply chain attack, adding suspected CI credential-stealing malware. Socket flagged every malicious version within six minutes of publication. This is a developing story.

‼️🚨 UPDATE: The TanStack npm attack is now a full campaign. 'Mini' Shai-Hulud has hit: - OpenSearch - Mistral AI - Guardrails AI -UiPath - Squawk packages across npm and PyPI The malware specifically targets AI developer tooling. It hooks into Claude Code (.claude/settings.json) and VS Code (.vscode/tasks.json) to re-execute on every tool event, long after the infected package is gone. npm uninstall does not fix this.

Very interesting paper. Squares with my own thinking with @soumitrashukla9 that many “low exposure” jobs may be more at risk due to the nature of the tasks involved. open.substack.com/pub/aleximas/p… H/t @ben_golub






San Francisco is a deeply unserious place









