Alex Greenland
@ajrgd
Followers
1K
Following
38K
Media
2K
Statuses
19K
founder @epiapp • creator @epiarc • defeating phishing, quishing, scams, fraud • trust, web, ui/ux, ai, net intel, sandboxing • check a link → https://t.co/issNAWFdiY
lon
Joined July 2009
Shai-Hulud strikes again with Wave 2. Check your exposure to today's NPM cyberattack with an automated scan. We updated our detection script to scan repos and environments for today's compromise of 500+ NPM packages, including libraries from Zapier, Posthog and Postman. This is
gist.github.com
[Updated 27 Nov 2025 00:21 UTC] Deep scan for bad NPM packages nested across projects - DFIR for Shai-Hulud cyberattack, Sep-Nov 2025 - bad-deps.txt
Dan and I at Epi made a script to scan our repos for exposure to this week's compromise of 400+ NPM packages (Shai-Hulud). Sharing the script here so you can see if you're affected. Run this on dev machines, CI and deployed environments. It deeply checks nested dependencies
10
10
79
0
0
4
twitter push notifications are delayed and in-app notifications are not appearing
0
0
5
Trump looks like he's picking the balls for the lottery The winning numbers tonight: 45-46-47-48-67-69
🇺🇸 TRUMP: "SOCCER IS THE REAL FOOTBALL, WE NEED ANOTHER NAME FOR THE NFL THINGY" "They've thought soccer, or football, would be so big, so fast. And I remember, I shouldn't say this because it was a long time ago, but I remember watching Pelé play on a team called the Cosmos.
0
0
5
losing money is so ridiculously easy
making money is so ridiculously easy 1:25 on bad bunny NOT being the most streamed artist in Spotify in 2025 - taylor swift won the last 2 years - her catalogue is larger and crazier fans - she is #3 in monthly listeners - bad bunny is #13 in monthly listeners #kalshi
155
682
67K
NETFLIX PURCHASED. $82.7bn cash and stock
Netflix agrees to buy WBD's studios and streaming business in an $82.7B cash and stock deal; the transaction is expected to close after Q3 2026 (@danielthomasldn / Financial Times) https://t.co/9hrYULxRuY
https://t.co/puY1PGero2 📫 Subscribe:
0
0
2
Eurosport > Eurosport Player > GCN > GCN+ > Warner Bros Discovery > Discovery+ > TNT Sports > Netflix Sports? all in less than 5 years HBO > HBO Max > Max > HBO Max > Netflix Max? https://t.co/XDCDV8kIdD
bbc.co.uk
The major Hollywood deal means Netflix will takeover ownership of franchises including Harry Potter and Game of Thrones.
1
0
5
I intended to capture the discord between the plasma donation centre and Frankfurt Christmas market, and I ended up seeing this.
0
0
5
The bittersweet Dickensian juxtaposition of Christmas summed up in two photos. It teared me up.
2
0
12
Our eyes are great at pattern recognition. But pattern recognition is not something you can do with the emoji keyboard. I can't spot the emoji I want at a glance through a small window and endless scroll. And I barely remember where the one I'm looking for is located; the
0
0
3
I'm saying it. The iOS emoji keyboard is not good. WhatsApp on right:
2
0
5
Just like hydration, Server Components require a huge amount of care and attention to avoid RCE and XSS. Blurring the client-server boundary is fraught with issues. The SPA model is always the safest for applications.
There is critical vulnerability in React Server Components disclosed as CVE-2025-55182 that impacts React 19 and frameworks that use it. A fix has been published in React versions 19.0.1, 19.1.2, and 19.2.1. We recommend upgrading immediately. https://t.co/kue7kd0XEX
0
0
7