Javier Heredia

75 Followers
146 Following
691 Posts
Astrophotography, dogs, gaming, and other random thoughts, not necessarily in that order.
PronounsHe/Him

Today in InfoSec Job Security News:

I was looking into an obvious ../.. vulnerability introduced into a major web framework today, and it was committed by username Claude on GitHub. Vibe coded, basically.

So I started looking through Claude commits on GitHub, there’s over 2m of them and it’s about 5% of all open source code this month.

https://github.com/search?q=author%3Aclaude&type=commits&s=author-date&o=desc

As I looked through the code I saw the same class of vulns being introduced over, and over, again - several a minute.

Build software better, together

GitHub is where people build software. More than 150 million people use GitHub to discover, fork, and contribute to over 420 million projects.

GitHub

It’s lonely out in the black.

#elitedangerous #distantworlds3

Furthest point from Sol. Standing on the outermost moon of the furthest star from Sol. Nothing but black behind me.

#elitedangerous #distantworlds3312

We have reached a new era of civil engineering; now we can build bridges by simply dumping truckloads of shit into the river until the shit mountains are tall enough that some people and maybe cars can cross the river. Truly, it is a revolutionary technology that democraticizes access to bridges; now everyone can dump a truckload of shit over small rivers here and there and cross the rivers instead of asking an engineer to build the bridge for them. This approach completely removes all the bottlenecks in engineering, too: no need to navigate difficult legal or ethical frameworks. The biggest players on the market are staring to replace their bridges with shit mountains, you'd better be catching up and learning how to use this new groundbreaking technology. Some of you have ethical concerns, but this is beyond of the scope of my post. I also recognise that some might notice fish in the rivers dying, or simply slip on the shit; just you wait, I bet it'll be fixed in ~6 months

“Hey, let’s build giant computers in space where powering and cooling equipment is extremely expensive and then link it Earth with wireless signals with lag like gaming in the 90s.”

Recipe for success

This is incorrect. LLMs can be trained from data acquired legally and ethically, it’s just costly and slower. There aren’t any public LLMs that would qualify but it is possible to train a local LLM with data you own.

LA is in California. Newsom wants to make social media posts, not actual policy. But also…LA is within the traditional jurisdiction of ICE. The brutality was already normalized from two decades of this group…all that went up was scale.

Nothing was going to change until someone Republicans could relate to was affected.

People were upset. Just not Republicans (corollary: Republicans aren’t people).

It took a white cis male gun owner with a conceal carry permit for them to be frightened…

It took the government murdering a cis straight white male for Republicans to turn.

It didn’t happen for a brown five year old boy used as a lure nor for a queer white woman murdered by these same thugs.

They had to see themselves in the victim first. #minneapolis #minnesota

Since Distant Worlds is hanging out in Monde de la Mort, I decided to park myself there and record a full cycle of the planet’s orbit around the white dwarf. It’s two full orbits but you’ll get both the starset and starrise. https://youtu.be/7HXE2ifsP_0 #elitedangerous #distantworlds3312
Distant Worlds 3312: A Day on Monde de la Mort

YouTube