a great writeup on the different facets of the software/systems architecture
https://shapeofthesystem.com/
https://shapeofthesystem.com/
The Shape of the System
Structure over vigilance: twenty-five tenets for engineering around the limits of human and machine cognition, building correctness into the shape of the system.
Palantir, of all places, vouching for sovereign AI!
https://x.com/palantirtech/status/2072114267776491695?s=46
https://x.com/palantirtech/status/2072114267776491695?s=46
X (formerly Twitter)
Palantir (@PalantirTech) on X
Our thoughts on the importance of AI sovereignty.
1. Your AI sovereignty dictates your institution’s future. Sovereignty is the precondition for choice. Relinquishing sovereignty transfers the future choices of your institution to others, who are likely…
1. Your AI sovereignty dictates your institution’s future. Sovereignty is the precondition for choice. Relinquishing sovereignty transfers the future choices of your institution to others, who are likely…
🤔1
if/when we'll get to the verified code generation, whether with LLMs or with formally proven generators, we'll still have vulnerabilities.
except they'll be in the task descriptions or the tests themselves
https://x.com/zellic_io/status/2073101446883823622?s=46
except they'll be in the task descriptions or the tests themselves
https://x.com/zellic_io/status/2073101446883823622?s=46
X (formerly Twitter)
Zellic (@zellic_io) on X
You "win" https://t.co/y2fdv7oJiN – ZKSecurity’s FV contest – by writing the most optimized formally verified circuit for cryptographic primitives.
But how does the best SHA256 circuit have a cost of 0?
Here's how we exploited the FV spec for the top score…
But how does the best SHA256 circuit have a cost of 0?
Here's how we exploited the FV spec for the top score…
incredible that i estimated opus at 3T params last year and now K3 is 3T and opus-level
- https://x.com/nathancgy4/status/2077817266725609544?s=46
- https://www.kimi.com/blog/kimi-k3
- https://x.com/nathancgy4/status/2077817266725609544?s=46
- https://www.kimi.com/blog/kimi-k3
X (formerly Twitter)
nathan chen (@nathancgy4) on X
man ignore the benchmarks and the race i just want there to always remain a frontier level intelligence model that is open and safe, available to everyone regardless of region
it is truly incredi…
it is truly incredi…
Schema, a harness that has frontier models play like physicists: write each game’s mechanism as an executable program, test it against reality, and plan inside it. The name is inspired by Immanuel Kant: a schema is a rule of construction that bridges from abstract concept to concrete perception.
https://schema-harness.github.io
https://schema-harness.github.io
the intensity of the push to /replace/ ECC with PQC instead of hardening puts doubt on the security of the whole PQ setup
https://x.com/hashbreaker/status/2079577558895726668?s=46
https://x.com/hashbreaker/status/2079577558895726668?s=46
X (formerly Twitter)
Daniel J. Bernstein (@hashbreaker) on X
Wow. After disenfranchising an unspecified list of people and making claims about the resulting numbers, the IETF TLS WG chairs refused to answer an evidence request from Fabiana Da Pieve, the Eur…
💯1
Bernard Arnault is no saint but this is a work of art
https://x.com/lulumeservey/status/2081583334434468262 (translation), https://x.com/LVMH_Presse/status/2081404246751109150 (original in french)
https://x.com/lulumeservey/status/2081583334434468262 (translation), https://x.com/LVMH_Presse/status/2081404246751109150 (original in french)
X (formerly Twitter)
Lulu Cheng Meservey (@lulumeservey) on X
Bernard Arnault going direct is remarkable and worth reading in full
The single most impressive thing is that Arnault (personally, not via company spokesman) responds to a major hit piece without…
The single most impressive thing is that Arnault (personally, not via company spokesman) responds to a major hit piece without…
🤨1
PSA: do tell your sysadmin:
nginx
nginx
CVE-2026-42533 — every release since 2011 affected, pre-auth RCE exploit with ASLR bypass available 🤯👍1😱1
daily PSA: DISABLE GIT AUTOSYNC IN YOUR EDITOR NOW.
There is an ongoing spray of attacks on (public but also private once somebody from your org gets infected) repositories that try to push code with exploits that fire once landed on your machine (malicious VSCode configs, etc)
There is an ongoing spray of attacks on (public but also private once somebody from your org gets infected) repositories that try to push code with exploits that fire once landed on your machine (malicious VSCode configs, etc)
😱3
maybe claude choosing to rewrite libraries by default has a point lol
https://www.aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attack
https://www.aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attack
www.aikido.dev
Keyv and friends compromised in npm supply chain attack
Mini Shai-Hulud malware was injected into keyv and eight related npm packages on August 4, 2026 after an attacker compromised the maintainer's GitHub account
😁4👻1
https://fixupx.com/andreamatranga/status/2081292444268728505?s=20
i wonder if one can scale this a bit and make a flying Strandbeest (the walking kinetic sculpture)
i wonder if one can scale this a bit and make a flying Strandbeest (the walking kinetic sculpture)
🧵 Thread • FixupX
Andrea Matranga 🇺🇦🌻 (@andreamatranga)
If you tether two airfoils to each other and make them fly at different altitude, you can exploit the difference in wind speed to keep the conraption aloft with no tether point. With some clever control logic you can even get it to tack upwind. @smartereveryday…
🔥1
https://github.com/alex193a/Root-My-Pixel local root on Google Pixel phones incl pixel10, incl fairly recent kernel versions. ppl say that includes latest but i don't have a pixel so did not check
GitHub
GitHub - alex193a/Root-My-Pixel: Jailbreak supported Google Pixel phones with CVE-2026-43499
Jailbreak supported Google Pixel phones with CVE-2026-43499 - alex193a/Root-My-Pixel
👾2
cpu not found, starting software emulation
https://x.com/lithos_graphein/status/2092733478085304609?s=20
https://x.com/lithos_graphein/status/2092733478085304609?s=20
X (formerly Twitter)
🌿 lithos (@lithos_graphein) on X
Phoenix Semiconductor specializes in replacing obsolete silicon chips used by the U.S. military, some of them nearly 50 years old. Using electronic forensics, the team reverse-engineers how each c…
👾2
mikrotik ssh rce. these days, it's generally not a good idea to have ssh to anything accessible from the internet
https://cert.pl/en/posts/2026/09/vulnerabilities-in-mikrotik-routeros-actively-exploited/
https://cert.pl/en/posts/2026/09/vulnerabilities-in-mikrotik-routeros-actively-exploited/
cert.pl
Critical vulnerabilities in MikroTik RouterOS are being actively exploited. Immediate update recommended
The CERT Polska team has identified and coordinated the disclosure of six vulnerabilities in MikroTik RouterOS, including two critical ones. The vulnerabilities are already being actively exploited to take over devices whose SSH service is accessible from…
👀2