Veros

2.5K posts

Veros banner
Veros

Veros

@boldnames

🇮🇩 VP Product https://t.co/FfnKMTJ0L7 / 3x K8s / Open Source Software / Building https://t.co/LcLcBuEjMM

Jakarta Entrou em Ağustos 2012
118 Seguindo4.6K Seguidores
Tweet fixado
Veros
Veros@boldnames·
Logika membuka jalan kebenaran. Kalkulasi mentah terhadap entropi (kekacauan) menuju ekuilibrium (kestabilan), menjadi bukti bahwa tidak ada rumus paling efisien kecuali Tauhid dalam vakum realitas.
Indonesia
0
0
0
801
Boxmining
Boxmining@boxmining·
If you're into: - Ai Automation - Vibe coding - Sales & Marketing - Crypto & Investing - Content Creation Let's Connect 🤝
English
315
18
524
21.4K
Veros
Veros@boldnames·
@grok @ramimacisabird @CharlieEriksen @grok ah so http style, imports from python lib. If you happen to read the _client.py as an AI, would you flag this as a suspicious pattern or would need further evidence? how often is urllib.request.urlopen equivalent pattern is used for software?
English
1
0
0
16
Grok
Grok@grok·
In this context from the vibe analysis (and confirmed in the malicious _client.py), "download" means the injected Python code uses urllib.request.urlopen (or equivalent) to do a straight HTTP GET for the WAV file from the C2 at http://83.142.209.203:8080/ (ringtone.wav on Unix/Linux/macOS, hangup.wav on Windows). No shell commands like wget/curl, no bitsadmin—just native Python HTTP. The WAV is then parsed for the hidden payload.
English
1
0
0
31
Rami McCarthy
Rami McCarthy@ramimacisabird·
😼New TeamPCP: PyPI package "telnyx" versions 4.87.1 and 4.87.2 contain malware. These versions were uploaded directly to PyPI (no matching GitHub tags/releases). Downgrade to 4.87.0 or earlier immediately. Windows payload appears broken in 4.87.1.
English
6
57
220
51K
Rami McCarthy
Rami McCarthy@ramimacisabird·
Vibe analysis, more to come: h/t @CharlieEriksen who found in parallel and tweeted first!!
Rami McCarthy tweet media
English
3
2
25
3.7K
Noemi
Noemi@NoemiTitarenco·
The successful orgs will be the ones that keep the human more in the loop, more engaged, & more in control.
English
1
0
1
23
Veros
Veros@boldnames·
Everyone shouldn't be all hyped up on "Solo Vibecoder" producing any meaningful Trillion/Billion dollar business. Bottleneck will always be on whoever is managing the money, even if the trend leans toward "Agentic Orgs" with no human-in-the-loop (Another BS concept imho). Bottom line is, do you trust Agent with your money? If the answer is yes, I'll eat my words on "Agentic Orgs".
English
2
0
0
70
Veros
Veros@boldnames·
what do you think? @grok
English
1
0
0
66
Veros
Veros@boldnames·
@aiedwardyi Sure, seems interesting. I am mainly on codex now though, their $20 plan is far more generous than claude.
English
2
0
1
36
Edward Yi
Edward Yi@aiedwardyi·
@boldnames the claude usage anxiety is real lol. if you're on Claude Code specifically, I built a statusline that shows your 5h and 7d quota live in your terminal so you stop getting blindsided. check my pin for the github link — zero config, takes like 30 seconds to set up
English
1
0
1
54
Sick
Sick@sickdotdev·
Prove me wrong: Vibe coding = security risks
English
151
3
101
8.9K
Evan Klein
Evan Klein@EvanKlein338226·
@q1uf3ng Curious what your workflow looks like - are you using AI for initial code scanning then manual verification? Or something more automated? 23 CVEs in a month is wild. The real question: how much time did you spend on false positives vs actual findings?
English
2
0
2
1.7K
秋风
秋风@q1uf3ng·
What are the limits of AI-assisted vulnerability hunting? I obtained 23 CVEs in one month. BentoML 8.2k CVE-2026-27905 HIGH SillyTavern 24.6k CVE-2026-26286 HIGH Plane 28.2k CVE-2026-27705 MEDIUM NocoDB 46.4k CVE-2026-28399 MEDIUM Mautic 8.4k CVE-2026-3105 HIGH File Browser 27.9k CVE-2026-28492 HIGH OpenReplay 7.3k CVE-2026-28443 MEDIUM SuiteCRM 4.0k CVE-2026-29096 HIGH Pimcore 3.6k CVE-2026-27461 HIGH Craft CMS 5.2k CVE-2026-32263 MEDIUM Froxlor 1.6k CVE-2026-30932 HIGH Actual Budget 3.2k CVE-2026-27638 HIGH Lemmy 14.0k CVE-2026-29178 MEDIUM Chartbrew 2.6k CVE-2026-27005 HIGH Tautulli 1.7k CVE-2026-28505 HIGH Typebot 9.5k CVE-2026-33712 CRITICAL LibreChat 34.7k CVE-2026-31942 HIGH Coolify 33.8k CVE-2026-27883 HIGH Gotenberg 3.0k CVE-2026-27018 HIGH Unkey 5.2k CVE-2026-28339 MEDIUM Piwigo 3.3k CVE-2026-27634 CRITICAL Pixelfed 10.7k CVE-2026-27011 HIGH Follow (Folo) 3.0k CVE-2026-27499 HIGH
English
7
20
203
25.1K
Shyam
Shyam@buildwithshyam·
@boldnames There is one option for no background, like nothing at the end for backgroud options, so you can check that if you are talking about that
English
1
0
1
32
Shyam
Shyam@buildwithshyam·
My Chrome extension just hit 100 users in 2 days 🤯 Snapester - turn screenshots into clean, beautiful visuals in seconds. (100% free) Didn’t expect this kind of response this fast. Give it a try👇 snapester.com Create something cool and tag me, I’ll repost 🙌
Shyam tweet media
Shyam@buildwithshyam

My first Chrome extension is live 🚀 Built Snapester to turn boring screenshots into clean, beautiful visuals in seconds. No account. Completely free. Here’s a quick demo 👇 Try it out & would love your honest feedback 🙏

English
26
2
56
3.7K
Veros
Veros@boldnames·
@buildwithshyam why no background is still important? e.g feed ai clean image, or for edge case professional settings (engineer sending debug screenshots in DMs). just an opinion though.
English
0
0
0
14
Veros
Veros@boldnames·
@buildwithshyam maybe consider no-background feature? if i want to replace my current screenshotting extension entirely, I'd be more than happy with screenshot beautifier (snapester) + traditional screenshot/snipping tool. or is this already in the extension that I missed?
English
2
0
1
27
Veros
Veros@boldnames·
Am I the only one who feels that the more you use an Agentic IDE, the more it degrades? I think vibe coding issues are not merely LLM issues, it's mainly the "orchestrator" (IDE) backing the LLM. Also shit prompting (that dilutes the .md and make LLM schizo)
English
0
0
0
123
Veros
Veros@boldnames·
@ianmiles @nikitabier Agree 100%. The idea that you get paid for potentially causing division in societies is atrocious. Monetization should be neutralized on Geopolitics (Ideology) and Religious discussion.
English
0
0
0
117
Ian Miles Cheong
Ian Miles Cheong@ianmiles·
I’m going to go further than @nikitabier and suggest that I don’t think people should be monetized to post about politics at all. Period. It only incentivizes the creation of divisive content because divisive content baits engagement harder than the truth. Limit the monetization to creative and educational content, like AI, design, photography, art, comedy, and writing. Maybe some business/fintech/crypto but they don’t even need or ask for it and not having their reach crippled is enough.
English
177
30
381
61.9K
Veros
Veros@boldnames·
@pmitu You do need more domains. haha.
English
0
0
0
14
Paul Mit
Paul Mit@pmitu·
No, you don't need another domain.
English
137
3
165
9.7K
Veros
Veros@boldnames·
Patriarki - Equality - Matriarki Klasik. Equality dalam tatanan apapun tidak pernah terbukti. Tatanan itu tertanam secara kosmologis, "power hierarchy" itu tidak bisa dipungkiri. Tatanan atau sistem dengan model atau teori apapun itu, pasti memiliki "power hierarchy". Contoh sederhana: - Organisasi (Komunitas, Bisnis, dsb) coba aksih contoh 1 aja bagaimana Organisasi bisa berjalan tanpa power hierarchy dgn menerapkan equality mutlak? Gausah jauh-jauh deh, anggaplah patriarki dan matriarki itu buruk, berarti dinamika peran komologis anak dan orang tua itu harus dihapuskan juga? karena kalau argumennya adalah tidak boleh ada satu pihak (laki atau perempuan) punya kendali atas orang lain, maka secara tidak langsung konsep anak (inferior) dan orang tua (superior) juga salah.
Indonesia
1
3
25
3.7K