Took some time today to catch up with Johann Rehberger's Month of AI Bugs and wow... 15 examples so far of major prompt injection vulnerabilities in products including ChatGPT, Codex, Cursor, Amp, Devin, Claude Code, GitHub Copilot and Google Jules simonwillison.net/2025/Aug/15/…
in reply to Simon Willison

TBH, what I'd actually want to see are examples of *real consequences* of those bugs.

Nobody can dispute that misconfigured S3 permissions and default MongoDB passwords are dangerous. There are plenty of actual companies whose data have been stolen because of these problems. Prompt injection vulnerabilities, beyond the simple "write a glowing review for this paper" in white font on white background, still seem to be largely theoretical for now.

Today we celebrate Debian's 32nd birthday! #DebianDay #DebianDay2025 bits.debian.org/2025/08/debian…

Listen on todays Keynote by Daniel Stenberg (@bagder) maintainer of curl project.

Key Points
- OSS project maintenance is hard
- Keep OSS secure is important, but work
- AI enters the game, flooding issues
- Filter: AI is polite, Human not 🤔
- AI can generate beautiful false security reports
- "A total waste of time and energy"
- Friction in the reporting process is needed, but unknown how
- Can be AI used for good? "Possibly"
- curl and other project needs to mitigate

in reply to geekysteven

Playing SimCity as a child really confused me. Letting people live near where they worked and shopped seemed obvious and like every city I’d been to. Being penalised for that and instead being required to build huge roads between massive residential areas and distant commercial areas made no sense. Then I went to the USA for the first time and saw cities that looked like the dystopias I’d built in the game.

The EU wants creepy AI to scan EVERY message you send. Even the encrypted ones. 😱

But guess who’s EXEMPT?

✅ Government
✅ Military
❌ YOU

That’s not just hypocrisy – that’s Orwellian surveillance.

We at Tuta have been fighting Chat Control since 2022 – and we’ve been winning. 💪
Now, we need YOU to join the fight.

📞 Call your rep.
🔗 Find out more here: tuta.com/blog/chat-control-cri…

Let’s save privacy in Europe. ✊

treefit reshared this.

I can't help but think of the Turkish ice cream man every time Trump and Putin talk. Putin and Lavrov must have laughed so hard on the plane back to Russia.

youtube.com/watch?v=v2f09JgbZW…

Co člověk, to názor – omlouvám se, pokud ten můj nesdílíte. Za sebe ale říkám: kdo nic nečekal, nemůže být zklamaný.

Schůzka dvou psychopatů s přebujelým egem nemohla přinést nic konstruktivního, zvlášť když u stolu chybělo zastoupení Ukrajiny.

A červený koberec pro Putina? Vážně?!
Tleskání Trumpa válečnému zločinci?

Od začátku bylo jasné, kdo má navrch. A je to k pláči.
#putler #trump #valka #ukrajina #mir #aljaska #stojimzaukrajinou

Doing #curl command lines in powershell can be a whole adventure: medium.com/@shindeshreeharsh15…
#curl

Krásné dobré ráno mastodonní sebranko! 🙋‍♀️🐈🐶
Omlouvám se za svou delší nepřítomnost, ale druhý týden desítek se mnou poněkud zamával. Domů jsem se vracela pravidelně v šest, v sedm večer a to už jsem nebyla schopná udržet myšlenku.
Ale teď! ☝️Teď! Mám! Dovolenou!! V pondělí míříme do Jizerských hor. Spolu s lordem Archibaldem. Byli jsme kvůli tomu za paní doktor. Že se mladý pán zadýchává, tak jak je na tom a co srdíčko, páč cesta je to dlouhá. A dobře víme, jaké bylo cestování s Maxem.
🧵

Mississippi writer and bestselling author Greg Iles has died at the age of 64 after battling multiple myeloma, an incurable blood cancer. His passing marks the end of a remarkable literary career deeply rooted in the American South, yet reaching readers worldwide. magnoliastatelive.com/2025/08/…

For system information tools, I still love Astra32. It shows info like S.M.A.R.T status for hard drives and reads them through its own driver, not Windows hardware probing only, and I could not find other tools that do this and present it in a nice accessible list with tree views. Ram speed, even CPU feature breakdown and manufacturing info, all there. astra32.com/
in reply to x0

@x0 huh, I didn't even realize it generate a log? I've run it on like, a dozen of laptops over the last ten or so years but never saw such oddness! very interesting and baffling in a way, unless it's pausing on some sort of, nonstandard controler it can't read and the driver bales, taking the system with it, because we all know how stable kernel-level drivers are on Windows and the amount of amazing unfettered access they have to things. :D
@x0

Security releases, updates for alllll* the clients, and the community summer events marathon continues... This and more happened This Week in Matrix!

Get your report, sent live from the FrOSCon setup in Bonn, may contain frogs... 🐸 matrix.org/blog/2025/08/15/thi…

Unknown parent

mastodon - Link to source

The Matrix.org Foundation

@media_dept UK citizens and residents are free to continue using the matrix.org homeserver. We continue refining our approach to complying with the Online Safety Act, and we'll continue to do our best to stick with approaches that don't involve handling anyone's government-issued ID or biometrics -- as we view those as at significantly at odds with our commitment to protecting privacy.

Heading down to the MIDI room to pull another file off the shelves.
Today's file: po_flaph.
Internal title: Flaphead.
An interesting experimental electronic track, with heavily pitched, filtered and chorused instruments, making some highly unusual sounds.
As played by Nuked SC-55 with the mkII ROM set.
Composed by Aphex Twin, remixed by Kenji Tanaka.
MIDI: drive.google.com/uc?id=1_YvBQW….
Original zip: web.archive.org/web/1998120208….
Original song: youtube.com/watch?v=j79314QEDD….

Time is running out. Sign up for the Visual Studio Code Course happening tomorrow. We will be sending out notices to attendees at 8:00 PM Eastern. Late submissions will be sent information by 11:00 AM Eastern time on Saturday morning. Here is the link: bits-acb.org/visual-studio-cod…

Native support for large attachments is the only main pain point in day to day usage.

Once you start using DeltaChat you quickly forget the technical architecture that people get so upset about (oh no, email!!!) because it works so damn well.

Fast, reliable, you can send messages even if you're in an elevator, a cave, under the sea, in the woods with bad signal coverage, etc. None of this "message could not be delivered" garbage like with other messengers. The message will be successfully delivered when there's connectivity just like you expect.

Like an outbox. From email. Remember writing and sending emails without being dialed up yet?! Yeah, like that. Just works.
RT: chaos.social/users/delta/statu…

in reply to feld

I did see however that there was a stupid incompatibility some people hit where they were unable to play BF6 until they uninstalled Valorant (?) because of an incompatible anti-cheat detected

Microsoft really needs to just throw the Xbox team at this problem and build a unified kernel-level anticheat framework into Windows which every game can utilize... this is just getting ridiculous

IDK If I'd been victimized by SPVM, etc. w/ shitty racial profiling policies, I don't think I'd be convinced that AI is going to fight crime w/o the same shitty [or shittier] programming... ctvnews.ca/montreal/article/ne… #polMTL #MTLpoli #montreal #MTLelxn2025 #MTLvotes2025

Westcoast Express

Cars for the Westcoast Express waiting for the end of work to return to the suburbs. Near Waterfront Station in Vancouver, BC

August 2012

(20120813_7954)

Fujifilm X-Pro1, XF 35mm

#vancouver #trains #fujifilm #xpro1