Popular JavaScript libraries eslint-config-prettier and eslint-plugin-prettier were hijacked this week and turned into malware droppers, in a supply chain attack achieved via targeted phishing and credential theft.
@cR0w @SecurityWriter saw this toot in isolation and immediately knew what it was in response to
Unrelated: inhaling coffee is not pleasant
Popular JavaScript libraries eslint-config-prettier and eslint-plugin-prettier were hijacked this week and turned into malware droppers, in a supply chain attack achieved via targeted phishing and credential theft.
Didcot Repair cafe today. 2pm till 5pm in the green hub (round the back of the Soha building near the station, there will be a flag up)
Bring along your broken things and we'll see what we can do. Clothes and fabric things, jewellery, electronics, garden tools, anything you can carry in to the place that's not a microwave, crt, or weapon.
In 2020, Scotland generated 32TWh of electricity from wind alone.
https://www.scottishrenewables.com/our-industry/statistics
In 2023, Scotland consumed 21.8TWh of electricity in total.
33.8% of electricity generated in Scotland was exported.
Yet we pay a higher standing charge in Scotland for that electricity than people in England do:
https://www.ofgem.gov.uk/get-energy-price-cap-standing-charges-and-unit-rates-region
So, in short, we're paying to ship our own energy across the border.
Continued:
Arch Linux has pulled three malicious packages uploaded to the Arch User Repository (AUR) were used to install the CHAOS remote access trojan (RAT) on Linux devices.
… why someone saw the Bluesky post and wanted to warn Harriett. I fully understand how Harriett could feel shocked that it looked like I was talking about her on another platform. And I fully understand how Gottalaff would amplify that and try to stop me from harassing Harriett.
So please, do not send any negativity their way. Let us just all learn from this:
Never jump to conclusions about other people. If you see sudden strange behaviour from someone, ask questions before concluding.
7/7
New blog post: I am a Rust compiler engineer looking for a new job
https://nnethercote.github.io/2025/07/18/looking-for-a-new-job.html
Not so happy, this one :(
For the past 3.75 years I have been fortunate to work on Futurewei’s Rust team, where I had enormous freedom to “make Rust better” however I see fit. It has been the highlight of my career and I am grateful to Sid Askary and other Futurewei folks that helped make it happen.