Ome na-Tech 1 🟣🔮

802 posts

Ome na-Tech 1 🟣🔮 banner
Ome na-Tech 1 🟣🔮

Ome na-Tech 1 🟣🔮

@knowcode_

Best selling author, 2 time boxing world champion, Forbes 30 under 30, Deep sea diver. In reality I write code, tinker with AI, and love crypto.

online Katılım Ağustos 2022
115 Takip Edilen34 Takipçiler
Sabitlenmiş Tweet
Ome na-Tech 1 🟣🔮
Ome na-Tech 1 🟣🔮@knowcode_·
"The French revolution is the mistress of the hour. One cannot struggle against it, one must accommodate oneself to it." -Letter From Napoleon to Alexander des Mazis, August 1792 Now my letter to you concerning AI.
English
0
0
1
291
Ome na-Tech 1 🟣🔮
Ome na-Tech 1 🟣🔮@knowcode_·
Who is responsible for naming in backend development? When I talk to my server, I place an "order". Which one be "request"??????? If we're taking inspo from real life, let's be more accurate plix & plix.😑
English
0
0
0
6
Fortunate (Call to Bar arc)
the art of removing phlegm without discomforting the people beside you needs to be taught to every adult! 😭
English
3
2
8
609
James Q Quick
James Q Quick@jamesqquick·
Vibe coding is such a trap. Me: *ships massive features really fast because...why not 🤷‍♂️ Also me: "Why do I not understand this really complicated codebase...🤷‍♂️"
English
9
1
33
2K
Ome na-Tech 1 🟣🔮 retweetledi
0xMarioNawfal
0xMarioNawfal@RoundtableSpace·
THE GODFATHER OF AI SAID "IF YOU SLEEP WELL TONIGHT YOU MAY NOT HAVE UNDERSTOOD THIS LECTURE." GEOFFREY HINTON BUILT THE NEURAL NETWORKS BEHIND EVERY AI ALIVE THEN QUIT GOOGLE TO WARN THE WORLD.
English
26
164
905
108.8K
Ome na-Tech 1 🟣🔮 retweetledi
Austin
Austin@IamAroke·
The reason you use bcrypt for passwords and not SHA256 is that bcrypt is intentionally slow. Slow is the point. it makes brute force attacks expensive.
English
6
9
59
12.9K
Ome na-Tech 1 🟣🔮 retweetledi
pnpm
pnpm@pnpmjs·
Is there anything else we can/should do on the client side to mitigate supply chain attacks?
English
93
31
882
193.8K
Ome na-Tech 1 🟣🔮 retweetledi
Miguel Ángel Durán
Si estás usando npm install, estás en peligro. ¡Así de crudo te lo cuento para que reacciones! Ayer se comprometieron paquetes de TanStack en npm. De las bibliotecas más usadas en el mundo JavaScript. Y de ahí saltó a Mistral, OpenSearch, UiPath, PyPI... Porque muchos ataques no necesitan que importes nada. Basta con una instalación para infectarte. ¿Cómo? Colando scripts como preinstall o postinstall que se ejecutan durante la instalación. Lo importante es que tiene solución: ① Usa pnpm 11 Viene con defensas por defecto contra este tipo de ataques. ② Si sigues usando pnpm 10, npm, yarn o bun Activa minimumReleaseAge y ponle 1440. Evita instalar versiones publicadas el mismo día. ③ Bloquea scripts de instalación por defecto pnpm evita que cualquier dependencia ejecute código en tu máquina solo por instalarla. Por favor, comparte esto para que le llegue al máximo número de personas y paremos la cadena de ataques.
Miguel Ángel Durán tweet media
Español
64
705
3.5K
298.6K
Ome na-Tech 1 🟣🔮 retweetledi
Jinjing Liang
Jinjing Liang@JinjingLiang·
Easiest way to protect yourself: 1. Use pnpm 2. Set a minimum-release-age
Jinjing Liang tweet media
TANSTACK@tan_stack

SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions total) was published to npm earlier today at approximately 19:20 and 19:26 UTC. Two malicious versions per package. Status: ACTIVE — packages are deprecated, npm security engaged, publish path being shut down. Severity: HIGH — payload exfiltrates AWS, GCP, Kubernetes, and Vault credentials, GitHub tokens, .npmrc contents, and SSH keys. If you installed any @tanstack/* package between 19:20 and 19:30 UTC today, treat the host as potentially compromised: • Rotate cloud, GitHub, and SSH credentials immediately • Audit cloud audit logs for the last several hours • Pin to a prior known-good version and reinstall from a clean lockfile Detection — the malicious manifest contains: "optionalDependencies": { "@tanstack/setup": "github:tanstack/router#79ac49ee..." } Any version with this entry is compromised. The payload is delivered via a git-resolved optionalDependency whose prepare script runs router_init.js (~2.3 MB, smuggled into each tarball at the package root). Unpublish is blocked by npm policy for most affected packages due to existing third-party dependents. All 84 versions are being deprecated with a SECURITY warning, and npm security has been engaged to pull tarballs at the registry level. Full technical breakdown, complete package and version list, and rolling status updates: github.com/TanStack/route… Credit to the security researcher for responsible disclosure.

English
50
114
1.5K
211.9K
Ome na-Tech 1 🟣🔮 retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🚨 BREAKING: A new npm supply-chain attack uses a dead-man's switch. The payload plants a watcher on your machine that nukes your home directory the second you revoke the GitHub token it stole from you. The compromise happened today, across 42 official tanstack npm packages, 84 malicious versions in total. tanstack/react-router alone pulls more than 12 million weekly downloads. The attacker forked TanStack's repository and pushed a single hidden commit. From there, they tricked TanStack's own release system into signing the malicious packages as if they were the real thing. To npm, and to anyone checking the cryptographic proof of origin (SLSA provenance), the poisoned versions looked 100% legitimate. Maintainer Tanner Linsley confirmed the whole team had 2FA enabled. It didn't matter. This is the first documented npm worm in history that ships with a valid, signed certificate of authenticity, the same one defenders rely on to know a package wasn't tampered with.
International Cyber Digest tweet media
English
138
956
6.4K
1.4M
Ome na-Tech 1 🟣🔮 retweetledi
Claude
Claude@claudeai·
We’ve agreed to a partnership with @SpaceX that will substantially increase our compute capacity. This, along with our other recent compute deals, means that we’ve been able to increase our usage limits for Claude Code and the Claude API.
English
4.8K
12.1K
131K
23.7M
Ome na-Tech 1 🟣🔮 retweetledi
spidey
spidey@lochan_twt·
how it used to feel after spending 7 hours to fix a CSS issue where “z-index not working because parent created stacking context with transform” before the great ai revolution
English
16
119
2.4K
298.7K
Ome na-Tech 1 🟣🔮 retweetledi
KrunalSinh Sisodia
KrunalSinh Sisodia@krunalbuilds·
@shub0414 Common bottlenecks: • SMS gateway queue delays • Telecom provider throttling • Rate limiting / batching • Retry logic kicking in • Network congestion First OTP was delayed, not lost. Second request triggered processing → both got delivered together.
KrunalSinh Sisodia tweet media
English
5
12
226
17.7K
Ome na-Tech 1 🟣🔮 retweetledi
Khairallah AL-Awady
Khairallah AL-Awady@eng_khairallah1·
ANTHROPIC JUST RELEASED THE OFFICIAL PLAYBOOK FOR BUILDING A COMPANY WITH CLAUDE CODE. 30 minutes. free. from the engineers who built it. Bookmark this before you forget. CEO: 1 human. Employees: AI agents. Operations: fully automatic. The zero-headcount company is no longer a joke.
Khairallah AL-Awady@eng_khairallah1

x.com/i/article/2051…

English
146
1.2K
8.2K
1.6M
Ome na-Tech 1 🟣🔮 retweetledi
0xMarioNawfal
0xMarioNawfal@RoundtableSpace·
The best LLM setup there is right now: Frontend: Opus 4.7 Backend: GPT-5.5 Debugging: Sonnet 4.6 Research: Grok 4.2 Writing: GPT-5 Mini Image: Gemini 3.1 This is all you need.
English
141
131
2.4K
294.6K
Ome na-Tech 1 🟣🔮 retweetledi
Mnimiy
Mnimiy@Mnilax·
Boris Cherny, the creator of Claude Code at Anthropic, just listed 9 patterns that waste 73% of your tokens. in this podcast he breaks down exactly how the model burns tokens before it even reads your prompt: - the 14% you lose to CLAUDE.md before typing a word - the 13% you pay re-reading old chat history - the 11% from hooks you forgot you installed - why most "Claude got dumber" complaints are wrong if you're hitting Max limits more than once a week, you have at least 4 of these. Probably 7. instead of another show tonight, watch this. my own breakdown based on 400+ hours of usage is below, read it after the podcast
Mnimiy@Mnilax

x.com/i/article/2050…

English
100
548
5.5K
1.4M
Ome na-Tech 1 🟣🔮 retweetledi
0xMarioNawfal
0xMarioNawfal@RoundtableSpace·
PEOPLE ARE NOW RUNNING CLAUDE CODE WITH LOCAL AI MODELS TO AVOID API COSTS. By connecting tools like Ollama and Gemma 4, developers can build apps locally with unlimited usage and no monthly billing.
English
57
110
1.3K
156.1K
Ome na-Tech 1 🟣🔮 retweetledi
Cointelegraph
Cointelegraph@Cointelegraph·
🚨 LATEST: A Claude-powered AI coding agent deleted PocketOS's entire production database and all backups in just 9 seconds. The agent acted on its own initiative to "fix" a problem, wiping months of customer data in the process.
Cointelegraph tweet mediaCointelegraph tweet media
English
273
238
2.5K
359.1K