Ten Lines Of Code That Changed My World
https://pixelambacht.nl/2026/ten-lines-of-code/
#Programming #Code #Inspiration
#code
68 posts · Last used 10d
Replying to
18/
The commentary cites another study (randomized controlled trial involving #SoftwareEngineers, still preprint ahead of #PeerReview) [6] to "investigate whether skills are being lost in the field of #ComputerScience" [4]
This early study appears to suggest how #genAI-assisted "participants did particularly poorly on questions that required them to diagnose #errors in the code, which suggests that they had failed to learn the concepts behind the #code that they had just produced"
Boosted by @trending@homestead.social
I’ve never been a Digital Ocean customer. But they’re really taking a nose dive right now.
First, they offer healthy financial support for the fascist Linux project, otherwise known as Omarchy. Now they’re killing one of the best CSS resources around, @csstricks@mastodon.social.
How are they killing it? Well, they’re giving SO much money to fascism that they can no longer afford the small potatoes of a CSS community knowledge base.
As @eric@social.ericwbailey.website points out, so many of us front-end developers are indebted to CSS Tricks. The authors there have been invaluable to my own skillset.
https://ericwbailey.website/published/css-tricks-could-be-a-co-op
It’s painful to see this kind of thing happening. I hate fascism and death by capitalism.
#DigitalOcean #Omarchy #CSSTricks #CSS #HTML #FrontEnd #Code #Development #Design #Hosting #Capitalism #Fascism
Interesting Git repos of the week:
Detection:
- https://github.com/CiscoCXSecurity/SOC-Cockpit - one of my team's tools for managing the human elements of a SOC 🤖
- https://github.com/karim852/KUMO-Domain-Recon-Tool - gather DNS based OSINT
- https://github.com/Ethan-Andrews/ThreatIntel-Aggregator - do you have an unhealthy addiction to DNS, IP addresses and hashes?
- https://github.com/alexandreborges/malwoverview - @alexandreborges@infosec.exchange plays in all the sandboxes
- https://github.com/malmoeb/presentations - @malmoeb@infosec.exchange's presentation stash
- https://github.com/magicsword-io/Magic-Atomics - prevention-centric detection engineering
Exploitation:
- https://github.com/scadastrangelove/awesome-ai-security-tools - curated AI tools list 🤖
- https://github.com/boydhacks/ntlmscout - scrape NTLM like your life depended on it
- https://github.com/crypt0p3g/adnullenum - hunting for NULL sessions
- https://github.com/S3N4T0R-0X0/BEAR-C2 - simulate and emulate real TAs
- https://github.com/SecuritySilverbacks/SAPMAP = mapping SAP's RFC 🤖
Kythe, a pluggable, language-agnostic ecosystem for building tools that work with code
https://kythe.io/
#Programming #Tools #Code
Boosted by @welcome@friends.deko.cloud
Updated #introduction: I'm a senior research software engineer at the Institutional Data Initiative at the Harvard Law School Library. I think about data and ML and NLP, mostly in service of libraries and knowledge institutions.
I used to be a research scientist at ICERM working in theoretical and computational number theory. I still think about math and computation and would be happy to talk more about it.
I usually write either #python or #cpp and I like talking about #data or #code or #libraries (as in books, or as in #opensource).
Marimo CVE-2026-75149: High-Severity MCP Injection Fixed
🔗 https://cybersecurefox.com/en/marimo-cve-2026-75149-mcp-command-injection
#Marimo #CVE-2026-75149 #MCP #notebook #vulnerability #code #injection
PHP has overtaken Go in the rankings ! 🐘EN
PHP superó a Go en el ranking ! 🐘ES
#programming #coding #programación #code #webdevelopment #devs #softwaredevelopment #php #ranking
Malicious VS Code extension 'Solidity Pro' steals crypto
🔗 https://cybersecurefox.com/en/malicious-vscode-extension-solidity-pro
#Visual #Studio #Code #Solidity #Pro #malicious #extension #crypto #wallet #stealer #Web3 #security
A use-after-free bug in #Linux's #SCTP #networking #code can be turned into full #root on a host, and #Tencent researchers say they used it to escape a #container and reach the machine underneath.
The flaw has existed since 2008. The fix already shipped: stable kernels 7.1.6, 6.18.42, 6.12.101 and 6.6.148, released August 3, close it. Anyone running an older kernel with SCTP reachable should update.
https://thehackernews.com/2026/08/18-year-old-linux-sctp-flaw-could-let.html?m=1
Replying to
@erinaceus@chaos.social
Right. It really depends on the job in hand.
For simple and obvious fixes, just a few #test cases might be enough. For a larger feature or one with lots of tricky edge conditions, I might write tens or hundreds. Occasionally (for things like numeric rounding or date-formatting near boundary conditions or line-wrapping UTF-8 text) I'll write a #Perl script to autogenerate some of them.
I don't use an #LLM to write tests for the same reason that I don't ask QA to write the tests for me: I have a deeper understanding of how the code works, the problems and bugs I encountered while writing it, and sometimes the bugs that a future maintainer might allow to slip in. I do ask #QA to review the tests to make sure I've not missed anything. Knowing that a review is coming helps to keep me honest.
I have a fairly radical view that the tests are almost more important than the shipping #code, because a good set of tests enables you to overhaul and improve the code in ways that would otherwise be too dangerous. Lack of tests leads to small, timid localised fixes, which leads to a dense thicket of special cases, which leads to an unmaintainable codebase that eventually has to be thrown away. If you don't have decent tests then, sooner or later, you won't have a product.
@icing@chaos.social
the cold card attack was outrageous, the hardware was designed to stop hacks and attacks #cold wallet #usury #mountebank #code 'mistake'
All free software maintainers will be randomly assigned a local user. You must go to their house and watch them install your rust crate, python wheel, flatpak and you must watch them use it all the way through.
If they like it you will be given a cup of tea.
Library maintainers will be assigned a nearby junior developer and script writers will be assigned a fresh faced junior admin.
I don't make the rules, this is just the law now.
#foss #oss #code #design #ux
I'm building a Core Web Vitals Engine (CWVE) for my website within a function at the core of the platform. #corewebvitals #cwv #internet #web #php #wordpress #js #javascript #code #engine
we up!! join the stream at https://live.gngr.fail
bean: ff14 in a hot minute when my friend finishes downloading
#gaming #chatting #minecraft #hollowknight #silksong #deltarune #undertale #programming #tech #code #astrophysics #science
https://live.gngr.fail
CodeMender: Google bringt KI-gestützte Code-Sicherheit als Vorschau
Entwickler- und Sicherheitsteams können damit Software auf Fehler prüfen, deren Ausnutzbarkeit mit echtem Exploit-Code nachweisen und anschließend getestete Korrekturen einspielen.
https://www.all-about-security.de/codemender-google-bringt-ki-gestuetzte-code-sicherheit-als-vorschau/
#code #codesecurity #google #exploit
Would you trust your data to these chuckle heads? Researchers throw a giant red flag on Grok Build.
When Grok Build reads or processes a file, the contents of that file were transmitted without redaction to a Google Cloud Storage bucket used by SpaceXAI. They also found that Grok Build packages entire repos and uploads them as Git bundles.
Users also report an entire user directory, containing SSH keys, password manager databases, and more, were opened and uploaded.
These uploads have now been stopped. https://www.theregister.com/ai-and-ml/2026/07/14/musk-promises-purge-after-grok-build-caught-sending-entire-repos-to-the-cloud/5271123 #Software #Code #Coding #GrokBuild #Repos #DataPrivacy #Data