BlueT - Matthew Lien @BlueT
Head of Resilient Architecture, NICS & PDIS. Travel and read 用靈魂和肉體,紀錄世界。 Geek, (Co)founder, CTO, Advisor, Entrepreneur, whatever. #Linux #Security #OpenSource BlueT.org Taiwan Joined July 2007-
Tweets6K
-
Followers2K
-
Following3K
-
Likes21K
@sciwork I can't attend but would love to support. Do you accept small donations to support this project? (maybe by adding one more ticket type without requiring to select food types, etc)
North Korean intelligence agents built an entire fake company to compromise one JavaScript developer. And it worked. UNC1069 didn't hack Axios. They befriended its maintainer. They cloned a real company founder's identity, built a branded Slack workspace with fake employee profiles and LinkedIn post channels, then scheduled a Microsoft Teams call with what appeared to be a full team. During the call, a fake error message said his system needed an update. He installed it. That update was the RAT. From one developer's laptop, they had everything: npm credentials, publishing access, the keys to a package installed in 80% of cloud environments. Axios gets 100 million downloads per week. The attackers published two poisoned versions at 12:21 AM UTC on a Sunday night, tagging both the latest and legacy branches within 39 minutes. The malicious dependency had been pre-staged 18 hours earlier with a clean decoy version to build registry history. Three separate RAT payloads were pre-built for macOS, Windows, and Linux. The malware self-deleted after execution to erase forensic evidence. The poisoned versions were live for about three hours before npm pulled them. Huntress observed 135 endpoints across all operating systems calling the attacker's command-and-control server during that window. Wiz found the malicious versions in roughly 3% of environments scanned. Every affected machine needs full credential rotation: npm tokens, AWS keys, SSH keys, CI/CD secrets, everything in .env files. The part that keeps getting worse: this isn't isolated. The same threat cluster compromised Trivy (a security scanner), KICS, LiteLLM, and multiple GitHub Actions in the two weeks before Axios. Google estimates hundreds of thousands of stolen secrets are now circulating from these combined attacks. The maintainer had 2FA enabled. He said himself: "I have 2FA/MFA on practically everything." The exact method of token compromise is still undetermined. One person. One fake Teams call. 100 million weekly downloads weaponized in under three hours. The npm ecosystem runs on mass trust in individual maintainers who volunteer their time, and North Korean intelligence now has a repeatable playbook for turning that trust into a delivery mechanism.
這幾天建議大家先別安裝、更新 js 模組 😂 Axios 中招,這波影響應該誇張大... 作者帳號被盜,模組被更新成塞了惡意程式碼的版本...
@SocketSecurity UPDATE in case you missed it earlier: This is bigger than initially reported. Both [email protected] AND [email protected] were compromised – the attacker poisoned the 1.x and 0.x branches within 39 minutes of each other, maximizing blast radius across projects using caret ranges.
@pofeng 身分證字號算 PII ,如 @Kirin_Lin 所說,通常用加密或雜湊、代碼的方式取代敏感資料
剛剛忘了附上鏈結 : huggingface.co/spaces/hugging…
@mrmoneyc 補個 Google Play link for Android : play.google.com/store/apps/det…
Check out our new #logo for this year's #UbuCon Asia 2026 @coscup! #FormosanBlackBear #UbuConAsia
这位外国小哥教你如何判断来电者是否是AI诈骗‼️ 只需问问他有没有纸杯蛋糕的食谱就行了!哈哈……
Excited to announce Claude for Open Source ❤️ We're giving 6 months of free Claude Max 20x to open source maintainers and core contributors. If you maintain a popular project or contribute across open source, please apply! claude.com/contact-sales/…
@pofeng Interface is cheap, show me your PRD. PRD is cheap, show me your prompt. Prompt is cheap, show me your intent. x.com/i/status/19462…
"Code is just a lossy projection of intent"
@charl_dot_dev @paramaggarwal @CloudflareDev still waiting in the waitlist 🥲
@alexocheema @exolabs @awnihannun Just got some Mac Studios and gonna try it, can't wait to see the benchmark results!
Jim Huang @jserv
12K Followers 8K Following "A hacker, a lecturer, a father" // Adjunct faculty at @NCKU_official
白閃閃 @whitglint
2K Followers 3K Following 軟體開發這樣的「工作」已死 🐱 歡迎回推,不必多禮 🐱 CppTW Group https://t.co/0JJGfGI1cU
脾氣不好的中年... @al6wul4wul4
16K Followers 614 Following software engineer at FAANG /脾氣很差的工程師/ 沒付錢就別指教,除非你很可愛,不然本人沒有想跟你對話討論的意願/沒開團購沒搞粉絲團謝絕社交 這個人脾氣很差會回罵也會公審/一言不合就會封鎖/已婚,仇婚女者自重/我會告人,錢跟時間還有法律資源絕對比低端柯粉多,柯粉做什麼骯髒事前請三思
Gea-Suan Lin (DK) (@g... @gslin
4K Followers 631 Following 幹壞事是進步最大的原動力。這邊會有大量的 Kalafina 與角落生物 retweet。 日本語を勉強しています。こちらにはすみっコぐらしのツイートがたくさんあります。
🌈Jedi🦻👓 @JediLin
1K Followers 438 Following A Jedi. A master. A lord. An audiologist who cares about accessibility.
朱立 Ju1ian @walkingice
942 Followers 267 Following Taiwanese. FOSS developer lives in Japan. Ex-Mozillian. Love Pixel Art and FF3. 日本語を勉強しています https://t.co/adKg72Whn5
Tenz 施典志 @tenz
7K Followers 931 Following 曾任科技紙本與網路媒體總編輯、跨國社群服務、科技新聞網站。寫科技評論、全球科技業者本地化專業服務,也製作過知識型 YouTube 影片頻道。歡迎洽詢合作。
Irvin Chen @irvinfly
1K Followers 468 Following Front-end dev learner. Mozillians, MozTW (Mozilla Taiwan Community) contributer.
Yan-ren Tsai @elleryq
2K Followers 4K Following 現在寫 Ansible/Python 比較多的軟體工程師,閒暇看電影、看書、跑跑步,還有玩Pokemon GO/Clash Royale。
Frank Zheng @fkz_tw
4K Followers 2K Following A Coder / Programmer / Pythonista / SRE / Web Back-end Engineer and Taiwanese. Retweets ≠ Endorsements. Tweets are my own.
高 見龍 🐉 🐈 ... @eddiekao
4K Followers 1K Following 1 倍速工程師,Python/Django/Ruby/Rails/JavaScript/Rust Developer and Instructor.
Sam Tsai @mhtx
2K Followers 3K Following CTO of I³D Technology Inc. Blog: https://t.co/8XZXCSelkF WorkFlowy: https://t.co/GdLWkf2c75 , https://t.co/Cf79D3AACD Newsletter: https://t.co/JJN544mG0P 🚭
madi 🐾 @madieeelqvnh
5 Followers 375 Following 18 📚 got new onlyfanz... and im looking for someone to make content with ⬇️
René Cannaò @rene_cannao
3K Followers 4K Following ProxySQL author | Database systems & production realities | AI tools, workflows & leverage for tech builders | Solopreneur systems in infra
Noodles&OtherDrugs @NoodlesXDrugs
27K Followers 570 Following Noodles 🍜 | Tech | Investing | R.U.N. 👟 | Movies 🍿 | Health & Fitness 🥜 | Occasional Nonsense 🤯
Jhin Lee @leehack
333 Followers 457 Following @GoogleDevExpert Flutter | @gdgmontreal & @FlutterMontreal Organizer | Fullstack Dev | Scrum Master
Thoughts Do - Think. ... @Thoughts_do
3 Followers 40 Following Your random thoughts deserve more than a notes app. 91% of your work time goes to stuff that doesn't matter. We fix that.
RAO SAHAB @RAOSAHA83247034
30 Followers 865 Following
空格 @aspacexyz
27 Followers 567 Following 世界或许复杂,但你可以选择简单:热爱、努力、真诚、向前。 👨💻 软件工程师 | 🤖 AI深度应用 | 分享深度思考 / AI / Prompt
Ellie Bean @EllieBean577041
0 Followers 10 Following
bparlan 🦇🔊 @bparlan
2K Followers 4K Following Tech consultant & anarchist technologist exploring network society theory, blockchain infrastructure, and AI systems. @BariaDAO founder
Isirvsui @Isirvsui9397
1 Followers 39 Following
Richard Lee @dlackty
4K Followers 770 Following CTO @TNLMediagene · NASDAQ: TNMG Digital media & AdTech · Taipei ↔ Tokyo · Opinions mine
armondy @armondy_
18 Followers 624 Following cloud engineer Linux user go lang lover opensource contributor https://t.co/GUAlVKQMkW
Natarajan @natarajancorner
84 Followers 2K Following Sports, Music, politics, books and twitter. Carpedium❤
Lakshya Tiwari @tiwarilakshya12
151 Followers 370 Following Building https://t.co/SiliUjF1Yu | Ex-Product @theniyo | Ex- intern @INSEAD | Co-Founder 180DC NITW | Excited about building a new product? Let's connect.
Bhagirathi Bhaskar @Bhagirathi2252
0 Followers 843 Following
Máy Đầm Bàn @maydamban
3 Followers 52 Following Cung cấp máy đầm bàn chất lượng, giúp thi công nhanh chóng, bề mặt bê tông chắc chắn và bền vững.
Hircut @hircut90445
6 Followers 139 Following
lemotw @lemotw1024
13 Followers 325 Following
Ken Chen @kenwschen
215 Followers 241 Following 楊德昌、幾原邦彥、架構設計,近期掛念的話:「我可嘆地仍如五月那樣傾向古典而缺少現代性地相信必然性的存在。」
Uquiruhu @Uquiruhu2775
39 Followers 3K Following
Lia Sia @520NnNn
0 Followers 6 Following
Chungi Lee @lee_chungi5046
5 Followers 132 Following
Cliff Chao-kuan Lu @clifflu
350 Followers 250 Following `204 or 404, that is the question` AWS Community Hero, All-5, TW user group organizer. Cloud SA and Developer.
Weecaw @Weecaw170507
52 Followers 2K Following
Sky_25251325 @25251325yayuhan
9 Followers 187 Following
LindaColeridge @F67Vg6xNkIJnZRK
116 Followers 3K Following
蔡坤宏 @kevin543999
1 Followers 10 Following
邵蓬生 @sheng_shao84640
0 Followers 13 Following
James Tsang @JamesTsang19
256 Followers 2K Following Building and studying AI agents, infra, and tools for the next generation of work.
mashucomn @mashucomn67870
4 Followers 484 Following
Walhalj @Walhalj1882455
1 Followers 336 Following ❤️I’m Evelyn. 🇹🇼 https://t.co/23J4Nls6PY Online Casino Manager. 🎰 Friends who like slot machines/baccarat. Contact me 🎮 and play with me. 👉Telegram: https://t.co/cCXRNcNFm0✈️
Eehouifu @Eehouifu2622
4 Followers 379 Following ❤️I’m Evelyn. 🇹🇼 https://t.co/sf7RRSu8sf Online Casino Manager. 🎰 Friends who like slot machines/baccarat. Contact me 🎮 and play with me. 👉Telegram: https://t.co/DVrcHhILpb✈️
Abdelrahman Salah @AbdelrahmanS211
20 Followers 1K Following
Yanling Guo @yanling_guo
12 Followers 47 Following I enjoy the cyber security stuff, but I'm still new in this field.
jameslee2007tw @jameslee2007tw
14 Followers 348 Following
Emily Brooks @EmilyBrooksnft
733 Followers 1K Following 🌸 NFT & Ikebana Artist | Bridging Tradition & Tech 🌿 Creator of Digital Flora | Educator | Eco-Art Advocate | Exhibiting at MoMA PS1, Saatchi | Collaborations
mingzhong liao @mingzhong_liao
1 Followers 64 Following
GaryHuang @GaryHuang1126
7 Followers 1K Following
李山祐 @lisomeoil
1 Followers 50 Following
Jim Huang @jserv
12K Followers 8K Following "A hacker, a lecturer, a father" // Adjunct faculty at @NCKU_official
Kalan ◂Ⓘ▸ @kalanyei
4K Followers 816 Following 嗨我是愷開! 🇯🇵 台湾出身。在福岡工作邁入第五年 🧑💻喜歡寫程式和部落格 🔖 分享日本生活與雜感偶爾聊聊技術 歡迎一起交流與理性討論,希望可以認識更多來自不同領域的人~
白閃閃 @whitglint
2K Followers 3K Following 軟體開發這樣的「工作」已死 🐱 歡迎回推,不必多禮 🐱 CppTW Group https://t.co/0JJGfGI1cU
脾氣不好的中年... @al6wul4wul4
16K Followers 614 Following software engineer at FAANG /脾氣很差的工程師/ 沒付錢就別指教,除非你很可愛,不然本人沒有想跟你對話討論的意願/沒開團購沒搞粉絲團謝絕社交 這個人脾氣很差會回罵也會公審/一言不合就會封鎖/已婚,仇婚女者自重/我會告人,錢跟時間還有法律資源絕對比低端柯粉多,柯粉做什麼骯髒事前請三思
Gea-Suan Lin (DK) (@g... @gslin
4K Followers 631 Following 幹壞事是進步最大的原動力。這邊會有大量的 Kalafina 與角落生物 retweet。 日本語を勉強しています。こちらにはすみっコぐらしのツイートがたくさんあります。
Wu Yuwei @Yu_Wei_Wu
1K Followers 420 Following #自宅警備攻城屍 #Taiwanese (⁎⁍̴̛ᴗ⁍̴̛⁎) Opinions are my own. Tweets are English/Mandarin/Japanese mixed.
🌈Jedi🦻👓 @JediLin
1K Followers 438 Following A Jedi. A master. A lord. An audiologist who cares about accessibility.
nixCraft 🐧 @nixcraft
397K Followers 0 Following Love Linux/Unix, open source, and programming? Into Sysadmin & DevOps? Follow us! Boost your IT career with daily new tools, apps, and humor ⤵️
新‧二七部隊 �... @new27brigade
111K Followers 413 Following 本站主旨:戰史研究、戰略安全、軍事科技、政治作戰 組織本土軍隊意識,建立在地軍事認知 拒絕黃埔軍閥壟斷,豎立高砂國魂認同
「會長,這個世... @poooo_chu
56K Followers 2K Following
Lex Fridman @lexfridman
4.9M Followers 685 Following Host of Lex Fridman Podcast. Interested in robots and humans.
GreenTeaNeko绿茶猫 @greenteaneko333
4K Followers 16 Following I'm comic artist, two of my old account got banned in search. So I created a 3rd new account 我是名漫画家,之前2个帐号被封了新人找不到。所以做了第3个新的帐号 https://t.co/8qBwZ0q4SF
Thariq @trq212
270K Followers 2K Following Claude Code @anthropicai. prev YC W20, @southpkcommons, @medialab
Jane Manchun Wong @wongmjane
180K Followers 3K Following “The woman scooping Silicon Valley” — BBC・hacker turned builder, writer & consultant・prev: Threads, Instagram, startups
Impeccable @impeccable_ai
2K Followers 1 Following The design vocabulary your AI didn't know it needed. Agent skill, cli and chrome extension. By @pbakaus
vogel @ryanvogel
13K Followers 940 Following rebase @opencode | built https://t.co/J5qoZvwxvv | prev @databricks | https://t.co/VRtQxZo22w
AI Builder Club @aibuilderclub_
4K Followers 29 Following Learn AI coding, AI Agents, LLM apps beyond basics. Build & Connect with Top 1% AI Builders
Detail @detaildotdesign
1K Followers 22 Following A collection of small details that shape better interfaces ⋅ By @renedotwang
kmdr @kmdrfx
7K Followers 660 Following opentui/opencode @anomalyco Staff Software Chef, Father, husband
George Pu @TheGeorgePu
47K Followers 5K Following AI is eating everything you were told to build. It ate mine first. Now I build things it can't.
Matt Wang @mattwang44
251 Followers 2K Following Software engineer | Translating Python doc (zh_TW) | 🐱 Cat slave
Google DeepMind @GoogleDeepMind
1.4M Followers 279 Following The engine room of @Google. Building AI safely and responsibly to solve the world’s most complex problems. Join us: https://t.co/jUHQA27iBL
Thoughts Do - Think. ... @Thoughts_do
3 Followers 40 Following Your random thoughts deserve more than a notes app. 91% of your work time goes to stuff that doesn't matter. We fix that.
Peter Steinberger �... @steipete
534K Followers 2K Following Polyagentmorous ClawFather. Came back from retirement to mess with AI and help a lobster take over the world. @OpenClaw🦞 + @OpenAI
Jhin Lee @leehack
333 Followers 457 Following @GoogleDevExpert Flutter | @gdgmontreal & @FlutterMontreal Organizer | Fullstack Dev | Scrum Master
OpenRouter @OpenRouter
101K Followers 377 Following Discover and use the latest LLMs. 500+ models (incl. 50+ free), explorable data, private chat, & a unified API. https://t.co/qJG5mKrigL
Fly.io @flydotio
32K Followers 89 Following The platform for devs who just want to ship. Powered by sandboxes that let you deploy any code with confidence.
GreenTeaNeko绿茶猫... @greenteaneko222
13K Followers 31 Following Comic artist bringing stories to life! Check out my Patreon & Fanbox! https://t.co/MsHIVjH11f My fb: https://t.co/4hx5xFZIuL
EXO Labs @exolabs
51K Followers 2 Following Frontier AI on local hardware. EXO 1.0 is now open-source (Apache 2.0): https://t.co/SGGGK784Qp
Shawn Ryan @ShawnRyan762
1.3M Followers 1K Following FMR Navy SEAL/CIA Contractor Host of the @shawnryanshow Co-Founder @theglacierapp
Sisyphus Labs @justsisyphus
8K Followers 324 Following Just typing ultrawork to make oh-my-opencode / Managed by Q's friend
Daniel Dhawan @daniel_dhawan
13K Followers 2K Following Co-founder @rork | engineer, designer, prev physics
Rork @rork
58K Followers 13 Following Build your mobile app, publish to App Store in 2 clicks, and start monetizing at https://t.co/OyihjiOtUz
sysls @systematicls
62K Followers 62 Following All in @openforage. I thrived in all of the largest hedge funds managing systematic investment processes.
Ben Tossell @bentossell
195K Followers 533 Following can't code, won't code. builder, investor (dev tools/infra). 3 under 3 👶.
Jonathan Ross @JonathanRoss321
68K Followers 236 Following Double the World's AI Compute Chief Software Architect @ Nvidia, Founder of Groq, Creator of the LPU & Google's TPU
Peter Girnus 🦅 @gothburz
191K Followers 590 Following The Cyber Populist | Hacker. Writer. Heretic. | Reverse engineering narratives, systems, and power. Holding the pen.
Google Antigravity @antigravity
167K Followers 14 Following An agentic development platform evolving the IDE into the agent-first era @GoogleDeepMind
ShipAloneCEO @ShipAloneCEO
743 Followers 122 Following Building @Arrivlai - the analytics platform for AI traffic. Your website has visitors you've never met. Most of them aren't human.
FOSS for All @FOSS_for_All
43 Followers 8 Following 지속 가능한 자유/오픈소스 소프트웨어 생태계 구축을 위한 이니셔티브 An initiative to build sustainable FOSS ecosystem in Korea and beyond
Afore Capital @AforeVC
21K Followers 254 Following $500M venture fund focused on Pre-Seed, founded by @gjain & @anamitra. Just launched, a new way to reach us: $10M Afore x Gamma Fund @ https://t.co/daS1e0Bu5U
karin. @omokage_AIsOK
68K Followers 99 Following AIが生み出すいつかの日本。どこかでだれかと。いろんなことをできるだけ。 Someday in Japan. Somewhere, with someone. Do as many things as possible.All works are generated by AI.
lemotw @lemotw1024
13 Followers 325 Following
Katie Xu @katiexsocials
7K Followers 182 Following founder @glosshouseco prev. Head of Marketing @cluely | 100k+ on TikTok | NYC
OnionScan @OnionScan
4K Followers 0 Following Providing an accurate and up-to-date analysis of how anonymity networks are being used in the real world. Project run by @SarahJamieLewis @MascherariPress
Ken Chen @kenwschen
215 Followers 241 Following 楊德昌、幾原邦彥、架構設計,近期掛念的話:「我可嘆地仍如五月那樣傾向古典而缺少現代性地相信必然性的存在。」











































