Vranac Srdjan

59.7K posts

Vranac Srdjan

Vranac Srdjan

@vranac

Novi Sad, Vojvodina Katılım Temmuz 2008
1.6K Takip Edilen1.7K Takipçiler
Vranac Srdjan retweetledi
Adnan Khan
Adnan Khan@adnanthekhan·
I don’t think people are realizing how bad this is. A ransomware gang (TeamPCP is claiming responsibility) turned one of the most popular vulnerability scanners into an info-stealer.
Feross@feross

🚨 Breaking: Trivy GitHub Actions supply chain attack – 75 out of 76 version tags compromised. If your CI/CD pipelines reference “aquasecurity/trivy-action” by version tag, you’re likely running malware right now. At Socket, we identified that an attacker force-pushed nearly every version tag in the official aquasecurity/trivy-action repository. That’s @​0.0.1 all the way through @​0.34.2. Over 10,000 GitHub workflow files reference this action. The malicious payload runs silently before the legitimate Trivy scan, so nothing looks broken. Meanwhile it’s: - Dumping runner process memory to extract secrets - Harvesting SSH keys - Exfiltrating AWS, GCP, and Azure credentials - Stealing Kubernetes service account tokens The only unaffected tag right now appears to be @​0.35.0. Socket independently detected this at 19:15 UTC and generated 182 threat feed entries tied to this campaign – all correctly classified as Backdoor, Infostealer, or Reconnaissance malware. This is the second Trivy compromise this month. Earlier in March, attackers injected code into the Aqua Trivy VS Code extension on OpenVSX to abuse local AI coding agents. The compromised tags are still active. Pin to @​0.35.0 or use a SHA reference until this is fully remediated. Full write-up: socket.dev/blog/trivy-und…

English
4
16
148
49K
Vranac Srdjan retweetledi
Dark Web Intelligence
Dark Web Intelligence@DailyDarkWeb·
Serbia 🇷🇸 - Telekom Serbia allegedly suffered a data breach exposing 160,000 customer records, including names, addresses, dates of birth, and ID numbers leaked from an internal scheduling portal. dailydarkweb.net/telekom-serbia…
Dark Web Intelligence tweet media
English
20
272
836
142.8K
Vranac Srdjan retweetledi
Claude
Claude@claudeai·
A small thank you to everyone using Claude: We’re doubling usage outside our peak hours for the next two weeks.
English
1.9K
3.6K
48.4K
12.3M
Vranac Srdjan retweetledi
Ayaan 🐧
Ayaan 🐧@twtayaan·
DevOps engineers turning a simple app into a Kubernetes cluster.
English
104
579
9.2K
395K
Vranac Srdjan retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
🚨‼️ BREAKING: The source code of Swedish e-government services from CGI's "E-plattform" has been leaked. A threat actor sent us samples. Our initial analysis shows the breached repositories originate from an internal CGI GitLab instance. The leak exposes architecture, microservices, and configurations for Sweden's digital public infrastructure. Leaked files: ▪️ Database passwords ▪️ Email/SMTP passwords ▪️ Keystore/truststore passwords & key passwords ▪️ SHS credentials / keystore details ▪️ Signe portal credentials/config ▪️ Embedded Git credentials ▪️ CGI staff data Key components exposed: ▪️ Mina Engagemang: Frontend and backend code (me-portals) for citizen-facing apps and case management. ▪️ Signe & e-ID: E-signature portal configs, SAML/OpenSAML metadata (keyservice), and signing workflow templates. ▪️ Företrädarregister: Authorization registry services (foreg) governing who can legally represent organizations. ▪️ SHS Integration: Routing and config files (eintegration3) for secure inter-agency data exchange. The leaked repos contain .git/config files with embedded credentials, severely elevating the risk of lateral movement or further supply chain compromise. A major exposure of the trust anchors and identity routing powering Sweden's digital state.
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
94
457
1.6K
549.8K
Ivan Burazin
Ivan Burazin@ivanburazin·
I've never seen this before in my career: 28-30 year olds who refuse to use AI coding tools. You show them what they can do augmented (not replaced) with AI and you see in their eyes that they have no damn clue of what's happening. You can't work with these people anymore. Time used to pass over older generations slowly. Now it's passing over us at the peak of our careers. Sadly, adaptability isn't optional at this point.
English
148
35
598
104.4K
Vranac Srdjan retweetledi
Wholesome Side of 𝕏
Wholesome Side of 𝕏@itsme_urstruly·
Wildlife photographer Dani Connor records the sound of a 7 week old baby red squirrel makes while eating.
English
130
3.1K
28.2K
1.2M
Vranac Srdjan retweetledi
Proud Native Americans
Proud Native Americans@proud_native_am·
My daughter poured her heart into this school project . A bit of support would mean everything to her.
Proud Native Americans tweet media
English
492
637
7.9K
84.7K
Vranac Srdjan retweetledi
SSSSRW.D180223 #SRW
SSSSRW.D180223 #SRW@180223·
On the 2nd of March 1985, the 1st episode of Zeta Gundam aired. The sequel to Mobile Suit Gundam & created by Yoshiyuki Tomino, it ran for 50 episodes & received a sequel in the form of ZZ Gundam in 1986. It debuted in the 1st SRW (Gameboy) in 1991. Happy 41st Anniversary 🎉
English
5
344
995
22.7K
Vranac Srdjan retweetledi
オッズくん
オッズくん@odds_kun·
#コストコで2度見させられた商品
QME
24
559
2.9K
174.2K
Vranac Srdjan retweetledi
ナ
@_I__l__l__l__I_·
Macbookがアコーディオンになるアプリ作った #メイカーズ長岡まつり
日本語
93
3.4K
19.4K
1.6M
Vranac Srdjan retweetledi
Gundam Bros
Gundam Bros@GundamBro·
ZXX
17
886
4.4K
141.6K
Vranac Srdjan
Vranac Srdjan@vranac·
@sudoingX One thing not clear (at least to me), is what temperature setting are you using? unsloth guide says (AFAIU) for web coding to set it to at least .6
English
0
0
0
585
Sudo su
Sudo su@sudoingX·
this is what a 24gb VRAM builds in 2026. one prompt. ten files. 3,483 lines of code. zero handholding. i gave Qwen3.5-35B-A3B a single detailed spec describing the full game architecture and hit enter. enemy types, particle systems, procedural audio, powerups, boss fights, ship upgrades, parallax backgrounds, everything in one message. the model planned the file structure itself, wrote every module in dependency order, wired all the imports, and served the game on port 3001. it ran on first load. when it hit a bug in collision detection it read its own error output, found the issue, fixed it, and kept building. this is pure agent loop running on local hardware. what you're looking at is pixelated octopus aliens with tentacle animations, 4 layer parallax space background with planets at different depths, a full particle system handling explosions and ink splatter and engine trails and bullet impacts, procedural audio through Web Audio API with zero sound files loaded, unleash mode with combo multiplier, boss fights every 5 levels, ship upgrades that unlock as you progress. no libraries. no frameworks. vanilla JS and Canvas. 3B active parameters. single RTX 3090. llama.cpp with q8_0 KV cache at 262K context. Claude Code pointed at localhost:8080 through the native Anthropic endpoint. no API costs. 112 tok/s. a GPU you can buy used for $800. game is called Octopus Invaders and i actually like playing it.
Sudo su@sudoingX

testing Qwen3.5-35B-A3B latest optimized version by UnslothAI on a single RTX 3090. one detailed prompt. zero handholding. watch a 3B model scaffold an entire multifile game project autonomously. the setup: > model: Qwen3.5-35B-A3B (80B total, only 3B active per token) > quant: UD-Q4_K_XL by Unsloth (MXFP4 layers removed in latest update) > speed: 112 tok/s generation, ~130 tok/s prefill > context: 262K tokens > flags: -ngl 99 -c 262144 -np 1 --cache-type-k q8_0 --cache-type-v q8_0 > engine: llama.cpp > agent: Claude Code talk to localhost:8080 (llama.cpp now has native Anthropic API endpoint. no LiteLLM needed) q8_0 KV cache cuts VRAM usage in half vs f16 at 262K. -np 1 is default but worth noting. parallel slots multiply KV cache and at 262K that's an instant OOM. the prompt was more detailed than this but you get the idea: build a space shooter with parallax backgrounds, particle systems, procedural audio, 4 enemy types, boss fights, power-up system, and ship upgrades. 8 JavaScript modules. no libraries. game's called Octopus Invaders. gameplay footage dropping next.

English
68
116
1.1K
152.9K
Vranac Srdjan retweetledi
CCP IS ASSHOE
CCP IS ASSHOE@CCPISASSH0E·
Wait wut 🤯
English
204
947
7.6K
293.2K
Vranac Srdjan retweetledi
💥Texas Girl💥
💥Texas Girl💥@Ilegvm·
Caesar, the Dog Whisperer show techniques could work equally well with kids—minus the leash 🤣🤣🤣
English
63
556
2.6K
76.4K
Vranac Srdjan retweetledi
Chase Passive Income
Chase Passive Income@chasedownleads·
I took 217 Waymo rides yesterday Each ride cost $7 I urinated in the backseat of every car Guess who owns the company that charges $250 to thoroughly clean each car $243 in pure profit for each ride
Chase Passive Income tweet media
English
417
1.7K
59.7K
2M
Vranac Srdjan retweetledi
John A De Goes
John A De Goes@jdegoes·
In Time 2, the sequel.
John A De Goes tweet media
English
115
774
10.5K
274.2K