1_DevOps'ish

1_DevOps'ish

56460 bookmarks
Custom sorting
SQLite Critical CVEs or LLM Slop? - JFrog Security Research
SQLite Critical CVEs or LLM Slop? - JFrog Security Research
The JFrog security research team recently identified a supply chain attack targeting the `xinference` package on PyPI. Versions 2.6.0, 2.6.1, and 2.6.2 were compromised and yanked by maintainers after users reported suspicious behavior. If you installed or imported these versions, you must assume your environment is compromised.
·research.jfrog.com·
SQLite Critical CVEs or LLM Slop? - JFrog Security Research
How Agentic Coding Is Reshaping the Software Development Lifecycle - Battery Ventures
How Agentic Coding Is Reshaping the Software Development Lifecycle - Battery Ventures
Software development has emerged as the killer use case for generative AI today, with half of all tokens consumed on OpenRouter being used for code generation. Cursor, for example, has ramped from $100M to $4B of ARR in the last 12 months. We’re in the first innings of the biggest shift in the history of… Continue reading How Agentic Coding Is Reshaping the Software Development Lifecycle
·battery.com·
How Agentic Coding Is Reshaping the Software Development Lifecycle - Battery Ventures
The Build vs Buy Head Fake
The Build vs Buy Head Fake
In January 2026, Anthropic released the massive ecosystem launch of Claude Cowork.
·open.substack.com·
The Build vs Buy Head Fake
White House finalizes AI framework behind closed doors
White House finalizes AI framework behind closed doors
The White House said it met its deadline to establish a voluntary framework for evaluating advanced AI models — but it won't say what the framework contains.
·axios.com·
White House finalizes AI framework behind closed doors
GitHub has alternatives, but no replacement
GitHub has alternatives, but no replacement
Why forges like Codeberg, GitLab, and Forgejo can replace GitHub's code hosting—but not its shared social layer.
·lalitm.com·
GitHub has alternatives, but no replacement
Ruby on Rails Patches Critical Vulnerability
Ruby on Rails Patches Critical Vulnerability
The flaw can be exploited by unauthenticated attackers to read arbitrary files and potentially achieve remote code execution (RCE).
·securityweek.com·
Ruby on Rails Patches Critical Vulnerability
What an SSH Tunnel Actually Does and When You Should Use One
What an SSH Tunnel Actually Does and When You Should Use One
Learn how SSH tunnels securely forward network traffic, when local, remote, and dynamic forwarding help, and why they are best for controlled, temporary access.
·hackread.com·
What an SSH Tunnel Actually Does and When You Should Use One