xpinjection 🇺🇦

26.6K posts

xpinjection 🇺🇦 banner
xpinjection 🇺🇦

xpinjection 🇺🇦

@xpinjection

Tech & AI Consultant | Solution Architect & CTO | Digital Transformation Lead | Org & Agile Coach | Founder & Trainer at XP Injection | Speaker

Ukraine, Kiev เข้าร่วม Eylül 2010
58 กำลังติดตาม3.7K ผู้ติดตาม
xpinjection 🇺🇦 รีทวีตแล้ว
Noah Zweben
Noah Zweben@noahzweben·
You can now schedule recurring cloud-based tasks on Claude Code. Set a repo (or repos), a schedule, and a prompt. Claude runs it via cloud infra on your schedule, so you don’t need to keep Claude Code running on your local machine.
English
296
565
7.5K
2M
xpinjection 🇺🇦 รีทวีตแล้ว
Lydia Hallie ✨
Lydia Hallie ✨@lydiahallie·
Claude Code on desktop lets you select DOM elements directly, much easier than describing which component you want updated! Claude gets the tag, classes, key styles, surrounding HTML, and a cropped screenshot. React apps also get the source file, component name and props
English
193
297
4.7K
590.6K
xpinjection 🇺🇦 รีทวีตแล้ว
Andrej Karpathy
Andrej Karpathy@karpathy·
Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database passwords. LiteLLM itself has 97 million downloads per month which is already terrible, but much worse, the contagion spreads to any project that depends on litellm. For example, if you did `pip install dspy` (which depended on litellm>=1.64.0), you'd also be pwnd. Same for any other large project that depended on litellm. Afaict the poisoned version was up for only less than ~1 hour. The attack had a bug which led to its discovery - Callum McMahon was using an MCP plugin inside Cursor that pulled in litellm as a transitive dependency. When litellm 1.82.8 installed, their machine ran out of RAM and crashed. So if the attacker didn't vibe code this attack it could have been undetected for many days or weeks. Supply chain attacks like this are basically the scariest thing imaginable in modern software. Every time you install any depedency you could be pulling in a poisoned package anywhere deep inside its entire depedency tree. This is especially risky with large projects that might have lots and lots of dependencies. The credentials that do get stolen in each attack can then be used to take over more accounts and compromise more packages. Classical software engineering would have you believe that dependencies are good (we're building pyramids from bricks), but imo this has to be re-evaluated, and it's why I've been so growingly averse to them, preferring to use LLMs to "yoink" functionality when it's simple enough and possible.
Daniel Hnyk@hnykda

LiteLLM HAS BEEN COMPROMISED, DO NOT UPDATE. We just discovered that LiteLLM pypi release 1.82.8. It has been compromised, it contains litellm_init.pth with base64 encoded instructions to send all the credentials it can find to remote server + self-replicate. link below

English
1.3K
5.4K
27.9K
65.6M
xpinjection 🇺🇦 รีทวีตแล้ว
Claude
Claude@claudeai·
You can now enable Claude to use your computer to complete tasks. It opens your apps, navigates your browser, fills in spreadsheets—anything you'd do sitting at your desk. Research preview in Claude Cowork and Claude Code, macOS only.
English
4.9K
14.6K
139.5K
75M
xpinjection 🇺🇦 รีทวีตแล้ว
Claude
Claude@claudeai·
New in Claude Code: auto mode. Instead of approving every file write and bash command, or skipping permissions entirely, auto mode lets Claude make permission decisions on your behalf. Safeguards check each action before it runs.
English
2.1K
2.9K
39K
6.3M
xpinjection 🇺🇦 รีทวีตแล้ว
Thariq
Thariq@trq212·
We just added /btw to Claude Code! Use it to have side chain conversations while Claude is working.
English
1.2K
1.6K
26K
2.7M
xpinjection 🇺🇦 รีทวีตแล้ว
Andrew Curran
Andrew Curran@AndrewCurran_·
Striking image from the new Anthropic labor market impact report.
Andrew Curran tweet media
English
562
2.3K
13.5K
7.2M
xpinjection 🇺🇦 รีทวีตแล้ว
Thariq
Thariq@trq212·
Today we're launching local scheduled tasks in Claude Code desktop. Create a schedule for tasks that you want to run regularly. They'll run as long as your computer is awake.
English
672
1K
13.6K
3.7M
xpinjection 🇺🇦 รีทวีตแล้ว
Branko
Branko@brankopetric00·
Microservices are just monoliths with networking problems.
English
81
134
2.1K
96.4K
xpinjection 🇺🇦 รีทวีตแล้ว
Boris Cherny
Boris Cherny@bcherny·
Released today: /loop /loop is a powerful new way to schedule recurring tasks, for up to 3 days at a time eg. “/loop babysit all my PRs. Auto-fix build issues and when comments come in, use a worktree agent to fix them” eg. “/loop every morning use the Slack MCP to give me a summary of top posts I was tagged in” Let us know what you think!
English
573
843
12.9K
2.1M
xpinjection 🇺🇦 รีทวีตแล้ว
Bo Wang
Bo Wang@BoWang87·
Prof. Donald Knuth opened his new paper with "Shock! Shock!" Claude Opus 4.6 had just solved an open problem he'd been working on for weeks — a graph decomposition conjecture from The Art of Computer Programming. He named the paper "Claude's Cycles." 31 explorations. ~1 hour. Knuth read the output, wrote the formal proof, and closed with: "It seems I'll have to revise my opinions about generative AI one of these days." The man who wrote the bible of computer science just said that. In a paper named after an AI. Paper: cs.stanford.edu/~knuth/papers/…
Bo Wang tweet media
English
155
1.9K
9.1K
1.3M
xpinjection 🇺🇦 รีทวีตแล้ว
Piotr Sarna
Piotr Sarna@sarna_dev·
most important lesson from years of distributed systems: keep everything on a single machine for as long as humanly possible
English
52
231
4.8K
137K
xpinjection 🇺🇦 รีทวีตแล้ว
Claude
Claude@claudeai·
Memory is now available on the free plan. We've also made it easier to import saved memories into Claude. You can export them whenever you want.
Claude tweet media
English
1.3K
2.7K
38.3K
10.9M
xpinjection 🇺🇦 รีทวีตแล้ว
Т
Т@TarasChmut·
Росія програла «битву за зиму». А ми виграли. Перший день весни. Сонячний день довшає. Стає тепліше. Україна продовжує боротьбу. На фронті, вперше за багато місяців, а може й років, ми почали звільняти більше територій аніж втрачати. Дякуємо тим, хто тримає фронт. Дякуємо силам протиповітряної оборони. Енергетикам. Комунальникам. Місцевій та центральній владі. І кожному з нас, за стійкість. Україна виграла битву за зиму.
Українська
255
1.4K
13.9K
400.8K
xpinjection 🇺🇦 รีทวีตแล้ว
Mike Rundle
Mike Rundle@flyosity·
--dangerously-skip-permissions
Mike Rundle tweet media
English
190
1.1K
15.5K
650.7K
xpinjection 🇺🇦 รีทวีตแล้ว
Millie Marconi
Millie Marconi@MillieMarconnni·
🚨 BREAKING: A developer on GitHub just built a tool that turns any GitHub repo into an interactive knowledge graph and open sourced it for free. It's called GitNexus. Think of it as a visual X-ray of your codebase but with an AI agent you can actually talk to. No server. No subscription. No enterprise sales call. Here's what it does inside your browser: → Parses your entire GitHub repo or ZIP file in seconds → Builds a live interactive knowledge graph with D3.js → Maps every function, class, import, and call relationship → Runs a 4-pass AST pipeline: structure → parsing → imports → call graph → Stores everything in an embedded KuzuDB graph database → Lets you query your codebase in plain English with an AI agent Here's the wildest part: It uses Web Workers to parallelize parsing across threads so a massive monorepo doesn't freeze your tab. The Graph RAG agent traverses real graph relationships using Cypher queries not embeddings, not vector search. Actual graph logic. Ask it things like "What functions call this module?" or "Find all classes that inherit from X" and it traces the answer through the graph. This is the kind of code intelligence tool enterprise teams pay thousands per month for. It runs entirely in your browser. Works with TypeScript, JavaScript, and Python. 100% Open Source. MIT License. Repo: github.com/abhigyanpatwar…
English
117
675
4.4K
416K