Tae Hwan Jung@graykoder
Aug 4Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
wow
Tae Hwan Jung@graykoder
Jul 17Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
What happened to robinhood?
Or is there a bank run happening?
Tae Hwan Jung@graykoder
Jun 25Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
이 시국에 Strategy을 옹호하는 사람이 있다면 항상 근거를 의심해보도록... ㅋㅋ
While you continue to sell your shares of Strategy $MSTR and poke fun at Saylor's "ponzi scheme" institutional investors have bought shares at the fastest pace ever in the last few months
Tae Hwan Jung@graykoder
Apr 28Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
after the axios incident, I started building packvet, an ai agent that vets dependencies before install and flags real risks. if you’re into dev tooling / security, let’s talk!
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages.
The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise.
This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now.
Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that:
• Deobfuscates embedded payloads and operational strings at runtime
• Dynamically loads fs, os, and execSync to evade static analysis
• Executes decoded shell commands
• Stages and copies payload files into OS temp and Windows ProgramData directories
• Deletes and renames artifacts post-execution to destroy forensic evidence
If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
Tae Hwan Jung@graykoder
Apr 25Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
바이브 코딩 첫 +1K!
Tae Hwan Jung@graykoder
Apr 23Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
built a dashboard to track trending github repos in real time to stay on top of tech trends!
graykode.github.io/starquake…
Tae Hwan Jung@graykoder
Apr 13Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
paperclip-style multi-agent workflow for quant trading
Tae Hwan Jung@graykoder
Apr 1Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
Honestly I don’t even know anymore. feels like everyone’s gone crazy over ai agents lately
I’ve been around the llm/open source space since the BERT days as an engineer, and I’ve never seen something like this happen before 😂
from what I understand, “clean room” design means you don’t know the original implementation — you recreate it purely from reverse engineering results
this isn’t that. this is just taking a leaked codebase and having ai regenerate it
not trying to start fights with anyone, but this really feels like a difference in ethics.
Tae Hwan Jung@graykoder
Mar 29Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
Inspired by htop/btop — but for AI coding agents. I was running multiple Claude Code sessions (+Codex) and couldn't tell which one was eating my context or hitting rate limits. So I built abtop, a terminal UI to monitor all your agent sessions in one place.
Still rough around the edges. Issues and PRs welcome.
Tae Hwan Jung@graykoder
13 Nov 2024Korea
KoreaConnected via Korea App StoreAccount-level information, not a live location or per-post device.
Replying to @0xMalcov
i guess 'don’t fade the Fed' is an old meme. Now it's more like 'don’t fade Elon and Trump.'