
Show this to Msian bosses, theyd get impressed. Then dunno how to execute or push thru changes. Or even essemble a team required.
烤猪肉🏴
32.5K posts

@nel1j0
I know how to center a div

Show this to Msian bosses, theyd get impressed. Then dunno how to execute or push thru changes. Or even essemble a team required.

CVE-2026-44578 ⚠️ Next.js – WebSocket Upgrade SSRF (CVSS 8.6) A server-side request forgery vulnerability in Next.js allows unauthenticated attackers to force self-hosted instances to make internal HTTP requests via the WebSocket upgrade handler. By sending a crafted absolute-form HTTP request with Upgrade: websocket headers, attackers can access internal services, cloud metadata endpoints, admin panels, and internal APIs reachable from the Next.js server on port 80. Successful exploitation may expose cloud credentials, API keys, secrets, and configuration data. Affected: Next.js 13.4.13+, 14.x, 15.x <15.5.16, 16.0.0–16.2.4 Mitigation: Upgrade immediately to 15.5.16 or 16.2.5. Modat Magnify Query: technology="Next.js" The platform: magnify.modat.io #threatintel #vulnerability #CVE202644578 #Nextjs #SSRF #WebSocket #CloudSecurity #infosec #Critical #ModatMagnify

🇵🇭 Police in the Philippines rode a city bus through a dedicated lane, watched as cars and motorcycles illegally tailed it to skip traffic, then stepped off at the end and ticketed every single one. They didn't even stand a chance ☠️😂


A former Astro employee who pleaded not guilty to 743 charges of unlawfully converting standard user accounts into corporate ones has been ordered to undergo psychiatric observation. "The doctor suspects she may be suffering from PTSD," her lawyer told the KL Sessions Court. 🧵1

Corporate life will really have you beefing with a 66 year old man at 9am




🚨 Update: @mistralai npm packages are now confirmed compromised as part of the ongoing Mini Shai Hulud attack. Affected versions: @mistralai/mistralai 2.2.2, 2.2.3, 2.2.4@mistralai/mistralai-azure 1.7.1, 1.7.2, 1.7.3@mistralai/mistralai-gcp 1.7.1, 1.7.2, 1.7.3If you use the Mistral SDK in any CI pipeline, treat your environment as compromised. Rotate npm tokens, GitHub PATs, and cloud credentials immediately.



🚨 BREAKING: 84 TanStack npm packages were compromised in an ongoing Mini Shai-Hulud supply chain attack, adding suspected CI credential-stealing malware. Socket flagged every malicious version within six minutes of publication. This is a developing story.


@RT_com Malaysia has a king?


If you have a job, don't let your guards down, adapt, contribute more, etc etc...

How it felt to be a software developer before ai.