A malicious GitHub Actions workflow in a shared repo exfiltrated an npm token and was used to publish backdoored versions of 20 packages, including @ctrl/tinycolor. The attack exploited admin rights to bypass PR review. GitHub and npm teams acted quickly to unpublish the compromised packages.
https://sigh.dev/posts/ctrl-tinycolor-post-mortem/
#SupplyChainSecurity #JavaScriptSecurity #OpenSource #InfosecNews
Sau khi chi phí LLM tăng vọt, tôi đã xây dựng một router thông minh tự động chọn mô hình tốt nhất về chi phí/chất lượng cho từng prompt, cache phản hồi và chuyển đổi nhà cung cấp. Giảm ~60% chi phí! Dự án mã nguồn mở cho cộng đồng.
#AI #TríTuệNhânTạo #CostOptimization #TốiƯuChiPhí #OpenSource #MãNguồnMở #LLM #SideProject
Ich find an der ganzen #KI Jobvernichterei ja am schlimmsten, dass ein guter Teil des Trainingsmaterials #open-source gewesen sein wird. Zusätzlich zu #stackoverflow antworten und allen möglichen anderen Quellen, bei denen Menschen unbezahlt hilfreich sind.
Ich wünsche allen Nutznießern, die sich im Big Tech damit gerade die Taschen voll machen ein Knalltrauma vom Platzen der #KIblase
#foss #opensource #bigtech #openai #Gemini #grok #copilot
Today I learned, that old Maven versions can cause the site goal to fail :P
https://issues.apache.org/jira/browse/MSITE-967
#Maven #Java #OpenSource #WorksOnMyKubernetes
DMEXCO 2025 Day 1: What a start ✨
Full talks, exciting discussions and lots of curious visitors at our stand – the first day at DMEXCO showed just how much interest there is in smart digital solutions. A big thank you to everyone who stopped by our sessions. Your feedback and the discussions show how important the topic of digital transformation is. 💡
👉 Tomorrow, the @typo3 Experience Hub will continue with new talks: At 11 a.m., Jens Krumm, CEO of +Pluswerk, will speak on the topic of ‘Finally found! AI in the search function on your website’. At 3 p.m., the topic will be ‘Personalised content and smart user guidance’. Come by and let's talk about your digital challenges!
#DMEXCO #TYPO3 #DigitalMarketing #OpenSource
For real!!! #linux #opensource #software

#GNOME 49 “Brescia” Brings Modern Apps, HDR Support, and Developer Tools to the #Linux #OpenSource Desktop https://medium.com/@Re-News/gnome-49-brescia-brings-modern-apps-hdr-support-and-developer-tools-to-the-linux-desktop-90cc869eb3c2?sk=06a695c7ee041efad84d3ce74f2e3fbf
TOMORROW 🚨 Join our live demo of Grant 0.3.0, the #opensource license scanner. We will be talking: Deeper GoLang Module Analysis, advanced license rules & enforcements and performance tune ups. Register now
https://go.anchore.com/whats-new-in-grant.html
LXQt, MATE und andere Fenstermanager
Dateierweiterung .xyz mit gewähltem Symbol verbinden
https://forum.ubuntuusers.de/topic/dateierweiterung-xyz-mit-gewaehltem-symbol-ver/
17.09.2025 um 19:09 Uhr
#ubuntuusers #forumuu #linux #opensource
Pluggable flow tuples bring more flexibility to connection tracking. New in Zeek 8.
Find out how it works: https://docs.zeek.org/en/master/devel/plugins/connkey-plugin.html
#Zeek #NetworkMonitoring #CyberSecurity #OpenSource
Muss ich ihm mal Recht geben.
„Fahrradfahren lernt man nicht vom Zuschauen“
https://www.ln-online.de/der-norden/gerichte-in-sh-schicken-brandbrief-an-staatskanzlei-chef-schroedter-PAFOPZS63BFVLMDZI3ZZ53KWMI.html
https://archive.is/Rs4Lz
#opensource #linux #schleswigholstein
Using Mautic for gamification isn’t just fun - it drives real results! 🚀
Maximalium saw 3,232 leads in 3 weeks, 80% email open rate & 456% ROI with a scratch-card campaign.
Ready to level up? 📖
🎯Start your free 14-day Mautic trial today: https://mautic.org/start-using-mautic/try-mautic/
#Mautic #MarketingAutomation #OpenSource #CaseStudy
