romancortes

426 posts

romancortes

romancortes

@romancortes

Spain Katılım Mayıs 2008
850 Takip Edilen1.6K Takipçiler
romancortes retweetledi
Gilles
Gilles@gilles·
Good discussion with @siliconlabs on where smart home security is actually heading. The industry is converging on open standards like Matter. That’s the right direction. But in connected safety, the real problem isn’t interoperability. It’s reliability at the system level. Multi-protocol environments, deterministic sensing, and fail-safe behavior under real-world conditions are what actually determine outcomes. Protocols will standardize. Orchestration and reliability are where differentiation lives.
Silicon Labs@siliconlabs

ADT is redefining what connected safety looks like. In our latest Connect With episode, @ADT CTO Gilles Drieu joins Silicon Labs’ John Dixon to discuss: ▪️ The evolution of smart home security ▪️ The role of Matter ▪️ Why reliability is non-negotiable

English
1
4
2
169
romancortes retweetledi
Silicon Labs
Silicon Labs@siliconlabs·
ADT is redefining what connected safety looks like. In our latest Connect With episode, @ADT CTO Gilles Drieu joins Silicon Labs’ John Dixon to discuss: ▪️ The evolution of smart home security ▪️ The role of Matter ▪️ Why reliability is non-negotiable
English
3
7
10
1.1K
romancortes
romancortes@romancortes·
@ErrorGramatica Vacaciones de Navidad en el pueblo. Los 3 días que se quedan son festividades: viernes de Nochebuena, viernes de Nochevieja y jueves de Reyes. Se va al día siguiente: viernes.
Español
0
0
0
2.6K
Errores gramaticales
Errores gramaticales@ErrorGramatica·
Solo los más inteligentes podrán responder correctamente
Español
284
21
265
488.9K
romancortes retweetledi
Feross
Feross@feross·
🚨 New critical vuln discovered in NestJS Devtools → Full RCE via the browser 😱 All you have to do is… visit a website. 🧵 Here’s how we went from “harmless dev tool” to “pop calc on your Mac”: @​nestjs/devtools-integration ships with a local HTTP server that accepts POST requests to /inspector/graph/interact That endpoint? It executes arbitrary JS using a “sandbox” 🤡 built on safe-eval — which is hilariously named. The sandbox uses vm.runInNewContext() — even though NodeJS explicitly says this is not a security mechanism. This means you can break out of it. And we did. Just needed a tiny payload to escape and run shell commands. But the real magic? You can trigger this from any website, thanks to a CSRF bypass trick using text/plain form posts. The result? Remote Code Execution just by visiting a webpage. No clicking required. We responsibly disclosed this to the NestJS team — they fixed it fast and with grace. Props to them 👏 🎯 CVE-2025-54782 📎 GHSA-85cg-cmq5-qjm7 🔍 Found via @SocketSecurity's AI-driven malware detection Full write-up (including POC): socket.dev/blog/nestjs-rc… This is why you don’t run “devtools” that parse and exec random JSON from localhost. Especially not using safe-eval.
Socket@SocketSecurity

🚨 Critical RCE in @nestjs/devtools-integration: A broken sandbox + CSRF lets any website trigger code execution on your dev machine if the dev server is running. Full disclosure: socket.dev/blog/nestjs-rc…

English
3
11
34
7.4K
romancortes retweetledi
Gary Marcus
Gary Marcus@GaryMarcus·
A physics PhD’s disillusioned perspective on AI for science.
Nick McGreivy@NMcGreivy

In a guest post for Understanding AI (@binarybits), I write about how I got fooled by AI-for-science hype, and what it taught me. I argue that AI is unlikely to revolutionize science, and much more likely to be a normal tool of incremental, uneven scientific progress.

English
5
23
120
12.7K
romancortes retweetledi
Keith Clark
Keith Clark@keithclarkcouk·
I'm currently looking for a front-end role. If you're looking for an experienced UK-based developer/engineer, please drop me a DM.
English
0
4
1
957
romancortes retweetledi
0b5vr
0b5vr@0b5vr·
Brainfiller by 0b5vr My entry for Revision 2024 PC 4K Intro! The compo was excellent! glad to be a part of the compo! youtu.be/OewtzMN0qO0
YouTube video
YouTube
English
4
43
154
17.3K
romancortes retweetledi
WebKit
WebKit@webkit·
Today we’re excited to announce Speedometer 3 in collaboration with @googlechrome, @Firefox, & @MicrosoftEdge. This benchmark measures speed & guides browser teams as they make websites & web apps run faster than ever — now with a new generation of tests. webkit.org/blog/15131/spe…
WebKit tweet media
English
12
87
521
296.3K
romancortes retweetledi
Peter van der Zee
Peter van der Zee@kuvos·
Boosting it for my US friends. I've left Vercel (like last month) and am now going to look for the next role to lose myself in :) Lemme know if there's a remote role (NL) that's perfect for me and we can always have a chat. twitter.com/kuvos/status/1…
Peter van der Zee@kuvos

📢 Looking for my next (remote) job 🎉 I'm a JS expert. 15y+ experience. Build pipelines, performance, parsers, nodejs, and platform abuse. I can do anything with JS Previously Vercel, Gatsby, facebook. See pvdz.ee/projects for other kinds of portfolio DMs are open 🫡

English
0
2
4
789
romancortes retweetledi
Prakash
Prakash@8teAPi·
Vicious Self-Degradation > you Google > Quora spots query and id’s as frequent > Quora uses ChatGPT to generate answer > ChatGPT hallucinates > Google picks up Quora answer as highest probability correct answer > ChatGPT hallucination is now canonical Google answer
Prakash tweet mediaPrakash tweet media
English
170
2.5K
11.2K
2.4M
romancortes retweetledi
Andreas Kling
Andreas Kling@awesomekling·
Hard times create strong programmers Strong programmers create frameworks Frameworks create weak programmers Weak programmers create hard times
English
10
103
600
0
romancortes retweetledi
🍉 Mathieu 'p01' Henri @p01@mastodon.social
Let me present to you: 🧑🏽‍🚀🌠 EXPI p01.org/expi/ Winning audio-visual animation in 1024 bytes of HTML, JS, CSS, 2D Canvas, Web Audio, Brotli by @p01 and Pestis for the legendary Assembly Party competition. Absolutely stoked 🥰 Share the love for EXPI far and wide 💕🪐
English
8
28
101
20.3K
romancortes retweetledi
Chrome for Developers
Chrome for Developers@ChromiumDev·
💻 WebGPU is now available for Chrome! This #GoogleIO session describes WebGPU's history, demos various aspects of how WebGPU improves compared to WebGL, and gives a sneak peek at what's next in the future for WebGPU → goo.gle/42HcY9K
Chrome for Developers tweet media
English
6
26
104
18.4K
romancortes retweetledi
じゃがりきん
じゃがりきん@jagarikin·
スタートとゴールをつまんで引っ張ると迷路が解けるってやつをGIFにしました
GIF
日本語
42
4.3K
16.8K
0