We are doomed: https://grith.ai/blog/clinejection-when-your-ai-tool-installs-another
-
-
@Migueldeicaza This isn't even funny. I mean it is, but it isn't at all, ya know? What have we done?
-
@Migueldeicaza I dont even need to click the link…
-
@Migueldeicaza its the combinatory stuff that makes life so fascinating: https://techcrunch.com/2026/03/05/cursor-is-rolling-out-a-new-system-for-agentic-coding/?utm_source=dlvr.it&utm_medium=mastodon
-
@Migueldeicaza "The workflow was configured with allowed_non_write_users: "*", meaning any GitHub user could trigger it by opening an issue."
Ok so i clicked the link
-
@Migueldeicaza why is it always AI?
-
@Migueldeicaza something something secure by design
-
@Migueldeicaza can someone pls explain for non techies like me?
-
@Migueldeicaza I dont even need to click the link…
@schwa As long as you did not install Agentic Mastodon Extensions you should be fine :-)
-
@Migueldeicaza can someone pls explain for non techies like me?
@hagbard AI systems are being rolled out without much care, with catastrophic consequences.
-
@schwa As long as you did not install Agentic Mastodon Extensions you should be fine :-)
@Migueldeicaza I am avoiding anything with a *claw style naming scheme.
-
@hagbard AI systems are being rolled out without much care, with catastrophic consequences.
@Migueldeicaza thanks, sounds great
-
@Migueldeicaza I'm gonna be saying "AI means read == execute" every day until an early grave, aren't I?
-
@Migueldeicaza
"Why existing controls did not catch itnpm audit: The postinstall script installs a legitimate, non-malicious package (OpenClaw). There is no malware to detect."
My POV is that OpenClaw is one of the most malicious programs ever distributed. Baffling that people deliberately install it!
-
@Migueldeicaza
Sane people left github already?
https://docs.gitlab.com/user/project/import/github/ -
@Migueldeicaza Looking for a smarter way to earn online?
This complete system shows you how to build income step by step — even if you’re a beginner.
✔ Easy to follow
✔ No technical skills required
✔ Limited time special price
📩 Message us for full details.https://site-ylhjjre3i.godaddysites.com/
For more details :
-
@Migueldeicaza I'm gonna be saying "AI means read == execute" every day until an early grave, aren't I?
That's a nice and easy way to sum up my issues with AI
-
@jackryder @Migueldeicaza I am a mother trying to keep my children safe and fed during very difficult times.
My children need food and basic necessities.
We are going through very hard days and any help, even small, can make a big difference for my children.
Please donate if you can, or share this post
Link in bio😭💔🙏 -
@Migueldeicaza @slightlyoff Decades of “never trust user input” thrown out the window for AI…
-
@Migueldeicaza I am avoiding anything with a *claw style naming scheme.
@schwa @Migueldeicaza I’ll get you next time, Gadget! Next time!
