Maxwell

17 posts

Maxwell banner
Maxwell

Maxwell

@mvxvvll

Building @WorkOS | Co-founder @ConnectReportHQ | Security + Enterprise

New York, NY Katılım Eylül 2011
174 Takip Edilen382 Takipçiler
Sabitlenmiş Tweet
Maxwell
Maxwell@mvxvvll·
@npmjs @GHSecurityLab there is an active supply chain attack on axios@1.14.1 which pulls in a malicious package published today - plain-crypto-js@4.2.1 - someone took over a maintainer account for Axios
English
60
391
1.4K
1.8M
Maxwell
Maxwell@mvxvvll·
@npmjs @GHSecurityLab Pin axios at v1.14.0 - this version is safe If you think you’ve been compromised - rotate your GH, NPM, and any keys available in any environments where you updated this package. The compromised package ran a script that called out to a remote C&C service
English
0
6
22
11.7K
Maxwell
Maxwell@mvxvvll·
@npmjs @GHSecurityLab there is an active supply chain attack on axios@1.14.1 which pulls in a malicious package published today - plain-crypto-js@4.2.1 - someone took over a maintainer account for Axios
English
60
391
1.4K
1.8M
Maxwell
Maxwell@mvxvvll·
@levelsio we’re not ready for the SaaSlop era
English
0
0
1
60
@levelsio
@levelsio@levelsio·
Ok I managed to make the code generated interactive so every idea is really becoming an app now Obvious next question, why not just generate every idea automatically and add Stripe to it and launch them?
@levelsio@levelsio

✨ Every idea on ideasai.com now also generates an app because just a landing page isn't enough of course In the fake Chrome browser you can switch [ Landing | App ] And download both mock ups to build it further

English
177
44
1.3K
488.1K
Maxwell
Maxwell@mvxvvll·
@auchenberg oh no, time to stop using a SOTA model to run `ls`
English
0
0
0
74
Kenneth Auchenberg 🛠
Thought: Enjoy the unlimited tokens plans while you can. Thinking a back to the cheap Uber rides...
English
7
1
29
2.9K
Maxwell retweetledi
Steve the Beaver
Steve the Beaver@beaversteever·
incredible that we built all this RAG and vector database stuff and it turns out that grep from 1973 works better than all that
English
181
362
8.6K
506.4K
Maxwell retweetledi
Michael Grinich
Michael Grinich@grinich·
🚨 Security Alert 🚨 WorkOS is disclosing a critical SAML authentication bypass in xml-crypto and Node.js libraries. This flaw allows attackers to forge SAML responses, potentially granting unauthorized access to any user account in affected applications—including admin accounts—without any user interaction. This enables full account takeovers. WorkOS customers are safe and were not impacted. Any service using xml-crypto or a Node.js SAML implementation using it should update immediately to the latest version. Full blog post with technical details 👇
Michael Grinich tweet media
English
2
5
27
3.5K
Maxwell
Maxwell@mvxvvll·
@csallen A wabi room, in the tradition of Axel Vervoordt. A sparse room where you go to reconnect
Maxwell tweet mediaMaxwell tweet media
English
0
0
1
0
Courtland Allen
Courtland Allen@csallen·
What are the coolest ideas you've seen for a spare room in your house/apartment?
English
36
1
36
0
Alex MacCaw
Alex MacCaw@maccaw·
What do you guys use to fill the void from Google Reader?
English
30
0
13
0
Maxwell
Maxwell@mvxvvll·
@gherget @levelsio Yeah, coworking is so hard for those of us who actually need to synchronously collaborate with our team here and there. I'm not a calls all day guy, but even just a few calls throughout the day make coworking a no-op for me (room booking, tiny phone booth)
English
0
0
0
0
Gabor Herget
Gabor Herget@gherget·
@levelsio There is always one guy on a call. Tried many co-working spaces and the reason I left was mainly cause of this.
English
5
1
31
0
@levelsio
@levelsio@levelsio·
🙏 I beg you not to do calls in a cafe
English
68
27
742
0
Maxwell
Maxwell@mvxvvll·
@dr low-touch customers don't owe you an explanation, unfortunately. in the US, the FTC recently decided co's must provide a cancellation mechanism, "at least as easy to use as the method the customer used to buy the product or service in the first place." niemanlab.org/2021/11/the-en…
English
1
0
2
0
Dan Rowden
Dan Rowden@dr·
Not adding a cancel flow into your app is looked down upon. But I ask Cove users to email to cancel, and I get so much data from that. Each user explains the cancellation reason without me even prompting, and I therefore have an amazing picture of why people churn. 🤷🏻‍♂️
English
16
1
56
0
Maxwell
Maxwell@mvxvvll·
@AnTheMaker I've generally had success with SES or Gmail servers, unless the destination is a super restrictive corporate inbox.
English
0
0
0
0
An | Anton Röhm
An | Anton Röhm@AnTheMaker·
Anyone is an expert in Email deliverability? Seems like some people receive my emails either in their spam folder or not at all if I send them from my company email address (only manual emails, no newsletters/transactional emails)... Any ideas on how to fix this? 😬
English
10
1
11
0
David Ulevitch 🇺🇸
One of the saddest things ever is that Yank Sing in SF no longer sells their chili sauce. Having tried dozens off the shelf for years to replicate it, nothing comes close. Anyone know the story about why they stopped? Or an actual identical alternative?
David Ulevitch 🇺🇸 tweet media
English
33
4
74
0
Maxwell
Maxwell@mvxvvll·
@csallen have ya tried liquidti.me? it has pretty good visualizations; sometimes a little buggy since it's very new but worth it
English
0
0
0
0