TGViewer
Linkstream Linkstream @linkstream · 169 subscribers
Post #961 210
PSA: npm axios package has been hacked, unlike LiteLLM if you do frontend you probably DO use it;
npm pins package version by default but at least def dont npm i axios rn.

bun has minimumReleaseAge; also i've arrived at radical golang-style dependency vendoring via npm pack if I don't foresee them updated often
https://x.com/feross/status/2038807290422370479?s=46
X (formerly Twitter) Feross (@feross) on X 🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. …
  • 👾 1
More from @linkstream
  1. Sep 30, 2026i started doing exactly this (models editing its own context) as a natural extension of sa…
  2. Sep 28, 2026cursed font factory https://bastardica.mitpit.com/
  3. Sep 25, 2026um, ahem, AlphaZero for text. Training language models without language. Loosely, natural…
  4. Sep 23, 2026umm ahem if you don't try to rein in new opus(5.5) you get one more qualitative step in ca…
  5. Sep 23, 2026nice https://fixupx.com/eyalsela/status/2102373749110587443?s=46
  6. Sep 21, 2026great writing, clear & thoughtful tldr: computers used to be math, and now they're about p…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →