Ryan

860 posts

Ryan banner
Ryan

Ryan

@hellorymi

Building with AI

Florida, USA Katılım Eylül 2023
583 Takip Edilen148 Takipçiler
Ryan
Ryan@hellorymi·
Is there a middle ground here? For example, a system where plates are checked against a narrow, warrant-backed or otherwise legally defined hotlist, and non-matching scans are immediately discarded rather than stored. That seems like a better privacy tradeoff than keeping a plaintext record of ordinary people’s movements alongside suspected criminals for cops to abuse…
English
1
0
6
372
Rahul Sidhu
Rahul Sidhu@rahul·
Last year, the city of Austin turned off their Flock cameras as the result of a targeted misinformation campaign. This weekend, for nearly 24 hours, three suspects drove around Austin in stolen vehicles, undetected, conducting a shooting spree at 12 separate locations. They shot multiple people, houses, apartment buildings, businesses, and fire stations. They committed multiple robberies and car thefts during the spree. Despite a full manhunt involving 200 officers, with helicopter and K9 support, they weren't able to locate the suspects, and the spree continued. Luckily, the suspects drove into the Flock-supported city of Manor, TX. Manor is a small city with ~20k residents, and a fraction of Austin's budget. What they do have is modern technology and the ability not to fall victim to misinformation campaigns. After the suspects drove into Manor to continue their shooting spree, Manor PD located them almost immediately. The residents of Manor stayed safe. This is a tale of two cities. I love Austin. I have plenty of friends who live there. I myself almost moved there years ago. I'm glad that the shooting spree is over, but I just wish it never happened.
Rahul Sidhu tweet media
English
497
380
3.2K
418.8K
Farmer
Farmer@bowtiedfarmer·
Pro tip for land owners: If you’ve been using side by sides and four wheelers all your life, go and buy a decent golf cart with a 3” lift kit and aggressive tires. You’ll quickly find yourself outside checking things even more. They’re easy to jump in and go. You can hear the birds, sneak up on deer, chat with the lady. High ROI
English
91
20
1.7K
181.8K
Ryan
Ryan@hellorymi·
@Jason This is better marketing
English
0
0
0
50
@jason
@jason@Jason·
What is happening!?!?!? Just let folks order these online and put them on a wait list... shut the stores down for 48 hours.
Swatch@Swatch

English
98
12
663
197.4K
Ryan
Ryan@hellorymi·
@CostaKapo Lately I’ve been thinking about paying for a change with their shitty oil and asking them to just use my own so this rocks
English
0
0
1
188
Ryan
Ryan@hellorymi·
@Shpigford No need to rename just file for a Trade Name/DBA
English
1
0
0
148
Josh Pigford
Josh Pigford@Shpigford·
good example of when the "sabotage" name feels...less than ideal. here's my family medical app (keptwell.org) in the app store and seeing the word "sabotage" sprinkled throughout doesn't exactly convey safety.
Josh Pigford tweet media
Josh Pigford@Shpigford

my holding company legal entity has been "Sabotage Media LLC" for nearly 20 years. but in the past ~6 months i've started getting complaints almost weekly of people saying that seeing that in legal docs, or app store listing names made them second guess/worry. what's the play?

English
17
1
27
12.1K
Ryan
Ryan@hellorymi·
@forgebitz I am sorry. But also this made me lol
English
0
0
0
73
Klaas
Klaas@forgebitz·
did you know that if you spill water on your desk the fans of your mac studio will suck it up i learned a 4800$ lesson today
English
52
6
258
19.7K
Adam
Adam@adamdotdev·
This is a deep cut for the Kimmy Schmidt fans
English
3
0
33
2.9K
Adam
Adam@adamdotdev·
I burnt out real hard and ended up taking an impromptu month off, haven't sat at my desk since April 8th. Fitting that this was the last quote I flipped over on my calendar. I have finally learned how to live (many useless afternoons later). What'd I miss? GPT 6? GTA 6!? AGI??? Do we still talk to computers with code or is it all binary sucked straight from our brains through a neurolink?
Adam tweet media
English
38
5
400
30.4K
Nick
Nick@nickcammarata·
given the average person i know built their whole sense of self-worth around being smart starting at age 4 and reinforced continuously for the next few decades, everyone is handling ai doubling every fourteen hours surprisingly well. they mostly just dropped it and work out more
English
25
34
1.7K
70.3K
Ryan
Ryan@hellorymi·
@winstonweinberg So… half of users don’t use it daily or monthly?
English
0
0
0
300
Winston Weinberg
Winston Weinberg@winstonweinberg·
Update: Harvey has crossed 50% DAU/MAU. More than half of our customers use Harvey every day.
Winston Weinberg tweet media
English
43
15
365
433.7K
Jonny Miller
Jonny Miller@jonnym1ller·
@nickcammarata There's a difference between agent mode vs. centaur mode. In centaur mode, I think working with AI makes people feel smarter (thus re-enforcing the identity)... This likely won't break down until human input + prompting make the output worse ;)
Jonny Miller tweet media
English
2
0
33
3.1K
Tseng
Tseng@TsengSR·
@dabit3 Checking fo 40x preem, wit GitHubs zero-9 uptime, everyones computers will be wiped down next time GitHub is unavailable rofl
English
1
0
6
1.1K
nader dabit
nader dabit@dabit3·
This is crazy. The hacker installed a dead-man's switch that will wipe your computer if you revoke the GitHub token they stole from you. Revoking the token is what triggers the wipe.
nader dabit tweet media
TANSTACK@tan_stack

SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions total) was published to npm earlier today at approximately 19:20 and 19:26 UTC. Two malicious versions per package. Status: ACTIVE — packages are deprecated, npm security engaged, publish path being shut down. Severity: HIGH — payload exfiltrates AWS, GCP, Kubernetes, and Vault credentials, GitHub tokens, .npmrc contents, and SSH keys. If you installed any @tanstack/* package between 19:20 and 19:30 UTC today, treat the host as potentially compromised: • Rotate cloud, GitHub, and SSH credentials immediately • Audit cloud audit logs for the last several hours • Pin to a prior known-good version and reinstall from a clean lockfile Detection — the malicious manifest contains: "optionalDependencies": { "@tanstack/setup": "github:tanstack/router#79ac49ee..." } Any version with this entry is compromised. The payload is delivered via a git-resolved optionalDependency whose prepare script runs router_init.js (~2.3 MB, smuggled into each tarball at the package root). Unpublish is blocked by npm policy for most affected packages due to existing third-party dependents. All 84 versions are being deprecated with a SECURITY warning, and npm security has been engaged to pull tarballs at the registry level. Full technical breakdown, complete package and version list, and rolling status updates: github.com/TanStack/route… Credit to the security researcher for responsible disclosure.

English
145
1K
9.6K
1.7M
Ryan
Ryan@hellorymi·
@speedrunjaen The /clear first so claude is on his a game
English
1
0
1
163
Jáen ff/sr
Jáen ff/sr@speedrunjaen·
simple trick to protect yourself from supply chain attacks.
Jáen ff/sr tweet media
Socket@SocketSecurity

🚨 UPDATE: Mini Shai-Hulud has crossed from @npmjs into @pypi and is still spreading. Newly confirmed compromised artifacts: @​opensearch-project/opensearch: 3.5.3, 3.6.2, 3.7.0, 3.8.0 (1.3M weekly downloads) mistralai: 2.4.6 on PyPI guardrails-ai: 0.10.1 on PyPI additional @​squawk/* packages on npm guardrails-ai 0.10.1 executes malicious code on import. On Linux, it downloads git-tanstack[.]com/transformers.​pyz, writes it to /tmp/transformers.​pyz, and runs it with python3 without integrity verification. The git-tanstack.​com domain displayed a message signed “With Love TeamPCP,” along with: “We've been online over 2 hours now stealing creds Regardless I just came to say hello :^)” The page also linked to a YouTube video and you can probably guess which one.

English
1
2
15
7.7K
Ryan
Ryan@hellorymi·
@ZackKorman Just a minute while I deworm my Claude
English
0
0
3
67
Zack Korman
Zack Korman@ZackKorman·
Calling this a LOLLM (Living Off the LLM)
Zack Korman tweet media
English
15
38
263
21.8K
Ryan
Ryan@hellorymi·
@theCTO lmfao no way this is wild
English
0
0
0
92
Ryan
Ryan@hellorymi·
@VirtuaStick @dabit3 If the call failed wouldn’t it still rm rf with the network disconnected
English
2
0
39
2.8K
Ryan
Ryan@hellorymi·
@zeeg But then they wouldn’t go down as often :(
English
0
0
0
194
David Cramer
David Cramer@zeeg·
imagine if LLM vendors focused on being infra instead of trying to build (mediocre) versions of all of their customers products
English
23
9
279
14.8K
Ryan
Ryan@hellorymi·
@dabit3 *and then revoke the token
English
0
0
3
2.3K
Ryan
Ryan@hellorymi·
@dabit3 Time to intercept local requests to api.github.com/user to return 200 no matter what as you clean up this mess
English
6
0
193
34.1K
Ryan
Ryan@hellorymi·
@levelsio @Cloudflare Used Namecheap basicDNS for a site and it returned absolutely blank records for hours as I switched a client away from their custom NS... Looking for an alternative when I can't use CF, but leaning towards refusing to use anything else
English
0
0
0
107
@levelsio
@levelsio@levelsio·
Request for @Cloudflare to add these remaining TLDs so I can transfer these domains from Namecheap into there and have one less vendor: .bio, .nl, .vc, .cm
@levelsio tweet media
English
91
1
464
81.3K