使用PyPI软件包 "Colorslib"、"Httpslib "和 "Libhttps "的供应链攻击

2023 年 第 3 周归档(01.16 - 01.23)

static.simonwillison.net image
How to implement Q&A against your docs with GPT3 embeddings and Datasette (simonwillison.net)
static.arxiv.org image
Negative-weight single-source shortest paths in near-linear time (arxiv.org)
cdn.arstechnica.net image
Supreme Court allows Reddit mods to anonymously defend Section 230 (arstechnica.com)
vpnoverview.com image
WiFi Routers Used to Produce 3D Images of Humans (vpnoverview.com)
www.cell.com image
Brief structured respiration enhances mood and reduces physiological arousal (www.cell.com)
www.gsb.stanford.edu image
“Copycat” layoffs won’t help tech companies or their employees (www.gsb.stanford.edu)
initialcommit.com image
Git-SIM: Visually simulate Git operations in your own repos (initialcommit.com)
ichef.bbci.co.uk image
Japan was the future but it's stuck in the past (www.bbc.com)
Binance says banking partner will stop processing SWIFT transfers under $100K (twitter.com)
i0.wp.com image
AI is in danger of being swallowed up by copyright law (heathermeeker.com)
thegradient.pub image
Do Large Language Models learn world models or just surface statistics? (thegradient.pub)
New AI edits images based on text instructions (github.com)
www.economist.com image
TSMC is making the best of a bad geopolitical situation (www.economist.com)
lh3.googleusercontent.com image
The Globus INK: a mechanical navigation computer for Soviet spaceflight (www.righto.com)
cdn.mos.cms.futurecdn.net image
Microsoft has laid off entire teams behind Virtual, Mixed Reality, and HoloLens (www.windowscentral.com)
maps.google.com image
A large network of fake Google Maps comments/reviews and fake businesses (www.google.com)
eep.io image
Information about a recent security incident at Mailchimp (mailchimp.com)
offsec.tools image
Offsec.tools – A vast collection of security tools (offsec.tools)
General technology for enabling AI capabilities with LLMs and Generative models (github.com)
www.cnx-software.com image
Quiet, ultrathin AirJet solid state active cooling chips could replace fans (www.cnx-software.com)
techcrunch.com image
Area 120, Google’s in-house incubator, severely impacted by Alphabet mass layoff (techcrunch.com)
images.ctfassets.net image
Buy Hi-Resolution Satellite Images of Any Place on Earth (www.skyfi.com)
The Website Obesity Crisis (2015) (idlewords.com)
A Dump of the Raw Stadia Controller BT Firmware (github.com)
Direct Memory Access computing machine RP2040 (people.ece.cornell.edu)
media.cnn.com image
US Pilot Shot Down Four Soviet MiGs in 30 minutes – A secret for 50 years (www.cnn.com)
tidbits.com image
iPhones and iPads Now Require a Passcode on Every Backup/Sync (tidbits.com)
Andromeda Invaders: A retro-style game written in HTML5, Canvas, and Web Audio (susam.net)
An instruction oddity in the ppc64 (PowerPC 64-bit) architecture (utcc.utoronto.ca)
www.nia.nih.gov image
Viral illnesses may increase chances of developing neurodegenerative diseases (www.nia.nih.gov)
cdn.xeiaso.net image
You don't have to engage with people on the Internet (xeiaso.net)
GPT-3: Techniques to improve reliability (github.com)
Large Transformer Model Inference Optimization (lilianweng.github.io)
scriptkit.com image
Script Kit: cross-platform, scriptable, automatic shortcuts to everything (www.scriptkit.com)
www.timesunion.com image
New York got it wrong on cybersecurity and the right to repair (www.timesunion.com)
i.insider.com image
Microsoft held an invite-only concert for execs, 1 day before announcing layoffs (www.businessinsider.com)
static.arxiv.org image
ChatGPT is not all you need. A SOTA Review of large Generative AI models (arxiv.org)
Citizen scientists report global rapid reductions in the visibility of stars (www.science.org)
media-cldnry.s-nbcnews.com image
Elizabeth Holmes bought one-way ticket to Mexico after convicted of fraud (www.nbcnews.com)
cdn.arstechnica.net image
Gonorrhea is becoming unstoppable; highly resistant cases found in US (arstechnica.com)
noemamag.imgix.net image
The exploited labor behind artificial intelligence (2022) (www.noemamag.com)
www.energy.gov image
NRC Certifies First U.S. Small Modular Reactor Design (www.energy.gov)
Runlike: Given an existing Docker container, prints the command line to run it (github.com)
media-cldnry.s-nbcnews.com image
Lights have been on at this school for a year because no one can turn them off (www.nbcnews.com)
The Myth of the Myth of the 10x Programmer (2020) (payne.org)
ZeroSSL: XSS to session hijacking, stealing a private key (and password hash) (groups.google.com)
storage.googleapis.com image
Google Announces 12K Layoffs: A difficult decision to set us up for the future (blog.google)
The Art of Money Getting or Golden Rules for Making Money by P. T. Barnum (1880) (www.gutenberg.org)
I've procrastinated working on my thesis for more than a year (thoughtsbyaashiq.bearblog.dev)
aip.scitation.org image
Nuclear explosion impact on humans indoors (2022) (aip.scitation.org)
static.arxiv.org image
Simulation Intelligence: Towards a New Generation of Scientific Methods (2022) (arxiv.org)
pbs.twimg.com image
T-Mobile says investigating data breach involving 37M accounts (www.reuters.com)
Formalising a new proof that the square root of two is irrational (lawrencecpaulson.github.io)
The Grapes of Wrath was banned in the USSR because showed poor people had cars (sites.psu.edu)
zura.wiki image
Gptcommit: Never write a commit message again (with the help of GPT-3) (zura.wiki)
staging.cohostcdn.org image
How to destroy a certificate authority in one month (cohost.org)
Launch HN: Odigos (YC W23) – Instant distributed tracing for Kubernetes clusters (news.ycombinator.com)
techcrunch.com image
Amazon ends charity donation program AmazonSmile (techcrunch.com)
img.assets-d.propublica.org image
Online pharmacies selling abortion pills send fingerprints to Google Analytics (www.propublica.org)
It is impossible to disable Google 2FA using backup codes (news.ycombinator.com)
musicbrainz.files.wordpress.com image
AcousticBrainz: Making a hard decision to end the project (2022) (blog.metabrainz.org)
udamonic.com image
Scamp – A self-contained Forth computer (udamonic.com)
What not to write on your security clearance form (1988) (milk.com)
Loneliness is a measure of self-understanding (stan.bar)
image.sciencenorway.no image
New Norwegian land could emerge from the Atlantic Ocean (sciencenorway.no)
Argdown: A simple syntax for complex argumentation (github.com)
An aggressive, stealthy web spider operating from Microsoft IP space (utcc.utoronto.ca)
HC-tree is an experimental high-concurrency database back end for SQLite (sqlite.org)
substackcdn.com image
Someone stole my car and now I own hundreds of vinyl records (mkaic.substack.com)
substackcdn.com image
My 8 Best Techniques for Evaluating Character (tedgioia.substack.com)
QuestPDF: Modern .NET library for PDF document generation (github.com)
timdettmers.com image
GPUs for Deep Learning in 2023 – An In-depth Analysis (timdettmers.com)
Times New Roman is being phased out at the State Department, replaced by Calibri (twitter.com)
A candle produces roughly the same amount of energy as a resting human (twitter.com)
www.cell.com image
Loss of epigenetic information as a cause of mammalian aging (www.cell.com)
media.npr.org image
U.S. military-run slot machines earn $100M a year from service members (www.npr.org)
www.redditstatic.com image
Bank of America just lost all Zelle transfers, for many customers (old.reddit.com)
Tar.pl – A tar creator and extractor in approx. 100 lines of Prolog (github.com)
Typst: A Programmable Markup Language for Typesetting [pdf] (www.user.tu-berlin.de)
image.cnbcfm.com image
Amazon set to begin new round of layoffs affecting over 18,000 people (www.cnbc.com)
api.time.com image
OpenAI used Kenyan workers on less than $2 per hour to make ChatGPT less toxic (time.com)
Glitching a microcontroller to unlock the bootloader (grazfather.github.io)
Source code for Dutch DigiD app released under Dutch Open Government Act (github.com)
dev-to-uploads.s3.amazonaws.com image
Create optimal conditions for lucky things to happen to you (2020) (www.swyx.io)
Thonny – Python IDE for new to programming (thonny.org)
www.economist.com image
A flurry of new studies identifies causes of the Industrial Revolution (www.economist.com)
summate.it image
Summate.it – Quickly summarize web articles with OpenAI (summate.it)
cdn.builder.io image
Meet “Claude”: Anthropic’s rival to ChatGPT (scale.com)
Japanese manhole mass production process [video] (www.youtube.com)
In the past, I've had students call my problem sets “emotionally trying” (twitter.com)
LangChain: Build AI apps with LLMs through composability (github.com)
tailscale.com image
Tailscale bug allowed a person to share nodes from other tailnets without auth (tailscale.com)
blog.mozilla.org image
What’s going on in the world of extensions (blog.mozilla.org)
Let's build GPT: from scratch, in code, spelled out by Andrej Karpathy [video] (www.youtube.com)
media.springernature.com image
EV batteries alone could satisfy short-term grid storage demand as early as 2030 (www.nature.com)
www.qmul.ac.uk image
A new scan to detect and cure the commonest cause of high blood pressure (www.qmul.ac.uk)
media.wusa9.com image
Republicans to pass bill in House to end telework for federal employees (www.wusa9.com)
mullvad.net image
Diskless infrastructure in beta (System Transparency: stboot) (2022) (mullvad.net)
pbs.twimg.com image
Microsoft to lay off 11,000 employees (www.reuters.com)
github.blog image
Git Security Vulnerabilities Announced (github.blog)
pbs.twimg.com image
Tesla video promoting self-driving was staged, engineer testifies (www.reuters.com)
GNU make 4.4 adds --shuffle to help find parallel build issues (trofi.github.io)
s3-us-east-2.amazonaws.com image
Twitter kicking off a developer API campaign on January 16, 2023 (carhenge.club)
Memory Safety Approaches Speed Up and Slow Down Development Velocity (verdagon.dev)
We Need to Know LR and Recursive Descent Parsing Techniques (tratt.net)
Books that teach programming by building a series of small projects? (news.ycombinator.com)
www.apple.com image
Apple Unveils MacBook Pro Featuring M2 Pro and M2 Max (www.apple.com)
scx2.b-cdn.net image
Hubble finds black hole twisting captured star into donut shape (phys.org)
How my brother's iCloud account was stolen (7c0h.com)
vento.so image
Vento, a screen recorder that lets you rewind and record over mistakes (vento.so)
cdn.wccftech.com image
Intel Core i9-13900T CPU benchmarks show faster than 12900K 125W performance (wccftech.com)
imageio.forbes.com image
Netflix has created a self-fulfilling cancelation loop with its new shows (www.forbes.com)
Apple won’t let you use an Apple TV unless you have another Apple device (twitter.com)
Heat pumps of the 1800s are becoming the technology of the future (knowablemagazine.org)
d24ovhgu8s7341.cloudfront.net image
GPT-3 Is the Best Journal I’ve Ever Used (every.to)
Wikipedia editors serving long sentences in Saudi Arabia since 2020 (en.wikipedia.org)
www.economist.com image
America’s trustbusters plan to curtail the use of non-compete clauses. Good (www.economist.com)
godotengine.org image
Godot for AA/AAA game development – What's missing? (godotengine.org)
Sketch – AI code-writing assistant that understands data content (github.com)
Apple Silicon Mac’s have 2-3 times longer battery than PC laptops (www.youtube.com)
Autotone – A vocal pitch correction web application, like Autotune (github.com)
shkspr.mobi image
The IAB loves tracking users. But it hates users tracking them (shkspr.mobi)
image.thum.io image
The Art and Science of Spending Money (collabfund.com)
Reverse engineering a neural network's clever solution to binary addition (cprimozic.net)
Interactive Music Theory Cheat Sheet (muted.io)
construct-static.com image
How to beat lag when developing a multiplayer RTS game (www.construct.net)
tapbots.social image
All API keys for TweetBot are disabled by Twitter, per developer (tapbots.social)
Windows 10 might have tricked you into using a online account (news.ycombinator.com)
www.gamedeveloper.com image
1500 Archers on a 28.8: Network Programming in Age of Empires and Beyond (www.gamedeveloper.com)
www.fortinet.com image
Supply Chain Attack Using PyPI Packages “Colorslib”, “Httpslib”, and “Libhttps” (www.fortinet.com)
content.instructables.com image
DIY Raspberry / Orange Pi NAS That Looks Like a NAS – 2023 Edition (www.instructables.com)
substackcdn.com image
We invested 10% to pay back tech debt; Here's what happened (blog.alexewerlof.com)