This media is not supported in your browser
VIEW IN TELEGRAM
鈴@Rin.System:
いろかぐ
とある写真を見て、この構図が描きたくなった
#超かぐや姫
https://twitter.com/RinSystem/status/2020321685485023357
いろかぐ
とある写真を見て、この構図が描きたくなった
#超かぐや姫
https://twitter.com/RinSystem/status/2020321685485023357
🐳5🥰1
Forwarded from Hacker News
10% of Firefox crashes are caused by bitflips (Score: 150+ in 1 day)
Link: https://readhacker.news/s/6P5V5
Comments: https://readhacker.news/c/6P5V5
Link: https://readhacker.news/s/6P5V5
Comments: https://readhacker.news/c/6P5V5
mas.to
Gabriele Svelto (@gabrielesvelto@mas.to)
A few years ago I designed a way to detect bit-flips in Firefox crash reports and last year we deployed an actual memory tester that runs on user machines after the browser crashes. Today I was looking at the data that comes out of these tests and now I'm…
🤯10
Forwarded from 层叠 - The Cascading
🔴 Cline 2.3.0 用户可能被安装了 OpenClaw;不需要的话可以卸载。
- 2/17 晚至 2/18 凌晨安装了 Cline 的用户可能受到影响 [1]。
- 研究者利用了 GitHub Actions cache 可以跨分支共享、可以被投毒,以及 cache 的解压并未对路径进行检查的漏洞 [2]。
- 虽然未经用户允许安装,但 OpenClaw 本身并非恶意软件。
1. GHSA-9ppg-jx86-fqw7
2. adnanthekhan.com/~
Fixed-in: 2.4.0
#Cline #OpenClaw #GitHub
- 2/17 晚至 2/18 凌晨安装了 Cline 的用户可能受到影响 [1]。
- 研究者利用了 GitHub Actions cache 可以跨分支共享、可以被投毒,以及 cache 的解压并未对路径进行检查的漏洞 [2]。
- 虽然未经用户允许安装,但 OpenClaw 本身并非恶意软件。
1. GHSA-9ppg-jx86-fqw7
2. adnanthekhan.com/~
Fixed-in: 2.4.0
#Cline #OpenClaw #GitHub
GitHub
Unauthorized npm publish of Cline CLI cline@2.3.0 with modified postinstall script to install openclaw
### Description
On February 17, 2026 at 3:26 AM PT, an unauthorized party used a compromised npm publish token to publish an update to Cline CLI on the NPM registry: cline@2.3.0. The published pac...
On February 17, 2026 at 3:26 AM PT, an unauthorized party used a compromised npm publish token to publish an update to Cline CLI on the NPM registry: cline@2.3.0. The published pac...
😁17🤔2
&'a ::rynco::UntitledChannel
拿哥发新专辑了!!!! 22首歌!!!!
声明:本人从未在互联网上诋毁过拿不拿,本人实际上是拿不拿十年老粉,经过长时间的思考,我发现夜鹿才是 jpop 的希望。至于可惜夜,祝他们的新专一切顺利。本人从未诋毁过拿不拿,也从未批评过夜鹿不摇滚,望周知!
❤8
Solidot 纯净版
小行星 2024 YR4 撞击月球概率上升至 1/25 #月球 小行星 2024 YR4 基本不可能撞击地球,但 2032 年 12 月撞击月球的概率提高到了 1/25。若撞击真的发生,预估将在月球表面形成一个约 1 公里直径的新撞击坑。虽然月球本身无需防御,撞击也不会对月球轨道运行有任何影响。但撞击所造成的抛射物有可能进入地球同步轨道范围,对部分卫星系统造成干扰风险。这也提醒我们,太空防御的范畴不应限于地球,整个地月系统的安全亦不可忽视。 www.esa.int/Space_Safety/Planet…
FixupX
European Space Agency (@esa)
JUST IN: Asteroid 2024 YR4 will not impact the Moon in 2032!
New observations from the NASA/ESA/CSA James Webb Space Telescope have confirmed that the object will pass safely at a distance of more than 20 000 km.
This result was made possible by a close…
New observations from the NASA/ESA/CSA James Webb Space Telescope have confirmed that the object will pass safely at a distance of more than 20 000 km.
This result was made possible by a close…
😭8👏3🥰2
Forwarded from Lobste.rs
grith.ai
A GitHub Issue Title Compromised 4,000 Developer Machines
A prompt injection in a GitHub issue triggered a chain reaction that ended with 4,000 developers getting OpenClaw installed without consent. The attack composes well-understood vulnerabilities into something new: one AI tool bootstrapping another.