Mircea Nistor
@mirceanis.bsky.social
📤 137
📥 184
📝 91
Trying to exist in the present while building the future.
https://mirceanis.xyz
reposted by
Mircea Nistor
Carmen Huidobro
24 days ago
I'm available for consulting from June. Dev work, DevRel, Dev Education, Content Creation, and helping teams make sensible decisions about automation without betraying their users. 17 years exp, Vienna-based, remote across Europe and beyond. Boosts massively appreciated 💜
0
65
55
reposted by
Mircea Nistor
voboda
about 2 months ago
Quick mitigation:
docs.hpc.ut.ee/public/cve-2...
add a skeleton here at some point
0
1
1
reposted by
Mircea Nistor
Adrian Bowyer
2 months ago
This. The whole point of engineering is to make everyone's life better, not 0.001% of lives better. We need universal basic income funded by taxation.
add a skeleton here at some point
0
7
3
reposted by
Mircea Nistor
Nick Gerakines
12 months ago
Been experimenting with did-method-webvh in the atproto-identity crate, and it's got me thinking: we urgently need to extend did-method-plc to support multiple registries. This is critical infrastructure and is long overdue. 🧵
2
60
15
We really really really need a better auth model here. Most apps request this kind of access. Even with the best of intentions, it is scary. How about
@ucan.xyz
instead (or as well) ?
2 months ago
2
8
3
reposted by
Mircea Nistor
Martin Kleppmann
2 months ago
An IEEE conference has published a plagiarised version of a paper I wrote with
@seph.bsky.social
. I already reported it to the conference chairs and the IEEE Ethics Reporting Line 3 months ago, and nothing happened. Original:
arxiv.org/abs/2409.14252
Plagiarised:
ieeexplore.ieee.org/document/113...
loading . . .
Collaborative Text Editing with Eg-walker: Better, Faster, Smaller
Collaborative text editing algorithms allow several users to concurrently modify a text file, and automatically merge concurrent edits into a consistent state. Existing algorithms fall in two categori...
https://arxiv.org/abs/2409.14252
6
79
26
reposted by
Mircea Nistor
maxwell s. fritz
2 months ago
re: atproto oauth we should be able to review active permission grants and revoke them. i feel like that's a pretty sane feature and obviously the UI is there but...
add a skeleton here at some point
2
36
7
reposted by
Mircea Nistor
voboda
2 months ago
Working on zkal, I realised I was tackling a general problem: returning to the benefits of open data for communities, but with modern privacy protection for the individual. Came up with a pattern that might be useful (or flawed!)
blog.voboda.com/proof-projec...
loading . . .
Proof Projectors
Everyone's focused on what ZK proofs hide. We're missing what they can usefully reveal. Reputation, attendance, commitment, these used to require surveill...
https://blog.voboda.com/proof-projectors/
0
1
1
reposted by
Mircea Nistor
Drew Webb 🏳️🌈
3 months ago
This
65
9304
2488
reposted by
Mircea Nistor
tierney cyren
3 months ago
the weird thing about companies and open source is that it's incredibly easy to make a fucking huge impact and almost no companies do so many companies could just bankroll the IBB as a write off, and yet... we've lost it. there's so many easy wins and instead you're worried about AI SEO instead 🙄
loading . . .
Node.js — Security Bug Bounty Program Paused Due to Loss of Funding
Node.js® is a free, open-source, cross-platform JavaScript runtime environment that lets developers create servers, web apps, command line tools and scripts.
https://nodejs.org/en/blog/announcements/discontinuing-security-bug-bounties
0
14
4
reposted by
Mircea Nistor
Chad Fowler
3 months ago
In 2026, manually ssh’ing to a production server and changing its configuration is a clear anti-pattern. Let’s do the same for software changes. Humans don’t change software. Only their agents do. Sounds irresponsible until you examine the ramifications of that constraint.
loading . . .
The Conversation Is the Commit
https://aicoding.leaflet.pub/3mhxvpam4z22z
2
6
2
reposted by
Mircea Nistor
Edmund Edgar
3 months ago
Links and notes for my talk at
#AtmosphereConf
about did:plc, how it could break, how we might be able to recover if it did and so forth
edochan.com/talks/did/
5pm today (Sunday), room 2301 Will also mention did:cow if I have time
cow.watch
loading . . .
DID:PLC War Games
https://edochan.com/talks/did/
0
24
6
The story isn't over yet.
add a skeleton here at some point
3 months ago
0
0
0
reposted by
Mircea Nistor
voboda
3 months ago
blog.voboda.com/the-third-fl...
A kinda hacker love story for Berlin.
loading . . .
The Third Floor at ethBerlin
ethBerlin is full of rooms you have to find yourself. At the back of the third floor there's a big, quiet room with good light and big windows. You can ge...
https://blog.voboda.com/the-third-floor-at-ethberlin/
1
2
2
reposted by
Mircea Nistor
Helen Damnation
3 months ago
there are still good things in the world
add a skeleton here at some point
0
3
3
Is it bad form to quote a post you also replied to? 😅
3 months ago
0
0
0
Statisticians, assemble! Does this refer to the mean, median, or mode?
add a skeleton here at some point
3 months ago
1
1
0
reposted by
Mircea Nistor
Twonks
3 months ago
The Jetsons lied to us
83
17887
5238
reposted by
Mircea Nistor
Simon Willison
3 months ago
Given today's LiteLLM supply chain attack, what are people's preferred development environment sandboxes on MacOS these days? I think it's time I started running my development environments somewhere where rogue code can't steal all my ~/... credential files
33
107
11
I did: a thing! I'm learning more about ATproto, so I prompted a sort of explainer tool into existence:
mirceanis.xyz/atproto-trus...
It's supposed to walk you through the process of verifying the origin of a post.
loading . . .
ATProto Trust Explorer
https://mirceanis.xyz/atproto-trust-explorer/
3 months ago
0
2
1
Anyone have examples of bsky profiles using `did:web`?
3 months ago
1
0
0
reposted by
Mircea Nistor
Edmund Edgar
3 months ago
did:cow: Another idea to billionaire-proof ATProto IDs, also "art of using a blockchain without using a blockchain". Blockchain-managed wrapper ID, no tx to create, points to a did:plc/did:web but you can move it if something goes wrong. Got carried away and made a resolver and front-end
cow.watch
add a skeleton here at some point
5
63
10
reposted by
Mircea Nistor
Iroh
3 months ago
iroh 🤝 MoQ (media over QUIC) It's really cool when APIs click together like Lego bricks.
add a skeleton here at some point
0
32
3
reposted by
Mircea Nistor
Vlad-Stefan Harbuz
3 months ago
“In Open Source, what looks like fairness often is not. Free for everyone sounds equitable, but the cost does not disappear. It is absorbed by those who can least afford it, while the organizations that benefit most often pay the least.”
loading . . .
Open Source infrastructure deserves a business model
Open Source infrastructure is essential, invisible, and chronically underfunded. A more sustainable approach may be to connect the cost of running that infrastructure to the organizations that rely on...
https://dri.es/open-source-infrastructure-deserves-a-business-model
0
17
2
reposted by
Mircea Nistor
castpixel ⚧️⚢
4 months ago
I made a tool that turns PCB designs into 3D-printable molds. you sandwich copper tape between the parts, sand the ridges, and you have a real working PCB. no etching, no chemicals. I am losing my mind
castpixel.itch.io/pcb-forge
105
2066
716
reposted by
Mircea Nistor
Daniel Norman
4 months ago
Open source is fun The HackMD Sync
@obsidian.md
plugin was buggy, so I reached out to the author who gave me push access, and I just cut a release with bug fixes and new features. I now use it daily to publish Obsidian notes for collaboration and feedback.
obsidian.md/plugins?id=h...
loading . . .
Plugins - Obsidian
With thousands of plugins and our open API, it's easy to tailor Obsidian to fit your personal workflow.
https://obsidian.md/plugins?id=hackmd-sync
0
9
1
More of this, please!
add a skeleton here at some point
4 months ago
0
4
0
reposted by
Mircea Nistor
Ink & Switch
5 months ago
We’ve got a save the date announcement today for this year’s Local-First Conf
@localfirstconf.com
- July 11th to 14th in Berlin. We’re supporting the conference & leaning into some “Day 3” content with some malleable software and other topics. Add your email to be notified!
loading . . .
Local-First Conf 2026
Join us for the third edition of Local-First Conf. Connect with a rapidly-growing community in an intimate setting. Berlin 12-14th July 2026.
https://www.localfirstconf.com/
4
29
11
reposted by
Mircea Nistor
Veramo
5 months ago
I'm getting ready to graduate to v7.0.0 Let me know if I should change something else that's been bugging you before I do.
github.com/decentralize...
loading . . .
[draft] v7.0.0 release by mirceanis · Pull Request #1490 · decentralized-identity/veramo
[draft] v7.0.0 release Added: did-provider-ethr now supports signOnly operations (feat: add signOnly flag and logic for add/remove key/service #1389) thanks to @radleylewis [breaking] CredentialPl...
https://github.com/decentralized-identity/veramo/pull/1490
0
3
1
This is the way!
add a skeleton here at some point
6 months ago
0
2
0
reposted by
Mircea Nistor
Signal
6 months ago
If you’ve felt safer sending a message because you sent it on Signal, please support our work. As a nonprofit, Signal exists because of your donations. In the app: Settings > Donate On the web:
Signal.org/donate
loading . . .
Donate to Signal Private Messenger
Your donation helps pay for the development, servers, and bandwidth of an app used by millions around the world for private and instantaneous communication. Please make a donation today.
https://Signal.org/donate
5
256
98
reposted by
Mircea Nistor
Vivaldi Browser
6 months ago
PSA: Our roadmap for 2026:
loading . . .
102
3807
1389
reposted by
Mircea Nistor
Debbie O’Brien
6 months ago
Time to say goodbye 😢. Unfortunately I have been the latest victim of layoffs. I have taken some time to process and It has been really hard. This wasn’t just a job. This was my dream. Thanks Microsoft,
@playwright.dev
, and everyone I have worked with 💔
debbie.codes/blog/laid-of...
loading . . .
Laid off from my dream job, what now?
It’s time to say goodbye. Unfortunately I have been the latest victim of layoffs due to reorgs in Microsoft Spain. I have taken some time to process but I won’t lie, It has been really hard to deal wi...
https://debbie.codes/blog/laid-off-what-now
27
147
15
reposted by
Mircea Nistor
Liran Tal
7 months ago
postmortem on Shai-Hulud mandates you go read this and internalize as many of the best practices as you can:
loading . . .
NPM Security Best Practices: How to Protect Your Packages After the 2025 Shai Hulud Attack | Snyk
Harden your npm environment against supply chain attacks like Shai-Hulud. Learn 12 essential best practices for developers and maintainers, covering post-install scripts, 2FA, provenance, and deterministic installs.
https://snyk.io/articles/npm-security-best-practices-shai-hulud-attack/
0
5
2
reposted by
Mircea Nistor
Pooya Parsa
7 months ago
Was debugging a nasty ESM issue and ended up optimizing unjs/🖼️IPX from 99 dependencies down to 6 (26 MB → 2 MB). Available in the v4 nightly builds with the same features as before!
5
113
8
reposted by
Mircea Nistor
Uncle Joe
7 months ago
Solution… COMPANIES NEED TO STOP TAKING ADVANTAGE OF THE SITUATION AND START SUPPORT OPEN SOURCE SOFTWARE WITH RESOURCES OR RISK GETTING SHAI HULUDED UP THEIR ***
1
3
1
reposted by
Mircea Nistor
Brooke Newman
7 months ago
👇
4
456
128
What do we leave unexplored when we box-in cryptographic primitives to their initial use case?
voboda.bearblog.dev/playing-with...
loading . . .
Playing with cryptography
Maybe is a good way to start this blog. It's a paper that changed the way I see things. Two pages in, I could see why RSA were the godfathers of publi...
https://voboda.bearblog.dev/playing-with-cryptography/
7 months ago
0
2
0
reposted by
Mircea Nistor
chrisb
7 months ago
Stay vigilant Europe
www.patrick-breyer.de/en/chat-cont...
loading . . .
CHAT CONTROL 2.0 THROUGH THE BACK DOOR – Breyer warns: "The EU is playing us for fools – now they’re scanning our texts and banning teens!"
Just before a decisive meeting in Brussels, digital rights expert and former Member of the European Parliament Dr. Patrick Breyer is sounding the alarm. Using a "deceptive sleight of hand," a mandator...
https://www.patrick-breyer.de/en/chat-control-2-0-through-the-back-door-breyer-warns-the-eu-is-playing-us-for-fools-now-theyre-scanning-our-texts-and-banning-teens/
0
3
2
reposted by
Mircea Nistor
ligi
7 months ago
So sad to see what happens to Android recently - let's try to push back!
keepandroidopen.org
loading . . .
Keep Android Open
Advocating for Android as a free, open platform for everyone to build apps on.
https://keepandroidopen.org
0
10
1
reposted by
Mircea Nistor
Reto Fiolka
8 months ago
I did not expect that: Large Language Models are invertible:
arxiv.org/abs/2510.15511
loading . . .
Language Models are Injective and Hence Invertible
Transformer components such as non-linear activations and normalization are inherently non-injective, suggesting that different inputs could map to the same output and prevent exact recovery of the in...
https://arxiv.org/abs/2510.15511
4
74
29
github.blog/open-source/...
loading . . .
Inside the breach that broke the internet: The untold story of Log4Shell
Log4Shell proved that open source security isn't guaranteed and isn’t just a code problem.
https://github.blog/open-source/inside-the-breach-that-broke-the-internet-the-untold-story-of-log4shell/
8 months ago
0
5
0
reposted by
Mircea Nistor
Steven Vandevelde
8 months ago
📣 Looking for some part-time work if anyone needs help with anything web, distributed tech, cryptography, etc. Currently doing some protocol work for
totemgrid.io
, but while we wait for funding, I could really use some money. AT Work profile:
atwork.place/u/tokono.ma
Website:
tokono.ma
1
8
7
reposted by
Mircea Nistor
Adrian Bowyer
8 months ago
Thymol tastes and smells like thyme (hence the name). Most people, even if not very interested in gastronomy, can distinguish quite a few herbs and spices by their smell and taste. This could lead to a chewing gum that would diagnose any ENT infection.
add a skeleton here at some point
1
12
5
reposted by
Mircea Nistor
nixCraft
9 months ago
FDroid raises the case against the Google developer forced registration once again. For those who don't know: Google will begin to restrict the sideloading of apps from unverified developers on Android devices starting in 2026
f-droid.org/2025/09/29/g...
loading . . .
F-Droid and Google's Developer Registration Decree | F-Droid - Free and Open Source Android App Repository
For the past 15 years1, F-Droid has provided a safe and securehaven for Android users around the world to find and install free and opensource apps. When con...
https://f-droid.org/2025/09/29/google-developer-registration-decree.html
1
86
37
reposted by
Mircea Nistor
Markatlarge
9 months ago
medium.com/@russoatlarg...
loading . . .
Google’s AI Surveillance erased 130k of my files — a stark reminder the cloud isn’t yours, it’s…
Introduction
https://medium.com/@russoatlarge_93541/googles-ai-surveillance-erased-130k-of-my-files-a-stark-reminder-the-cloud-isn-t-yours-it-s-50d7b7ceedab
1
18
7
reposted by
Mircea Nistor
Tjerand Silde
9 months ago
The EU Parliament has published a new proposal for Chat Control to mass-surveil all digital communication in Europe. The proposal is ineffective, weakens secure communication, and violates basic human privacy. This must be stopped immediately.
#ChatControl
csa-scientist-open-letter.org/Sep2025
loading . . .
https://csa-scientist-open-letter.org/Sep2025
1
23
16
reposted by
Mircea Nistor
GetNews.me
9 months ago
Over 500 cryptographers warn the EU draft “Chat Control” could weaken end‑to‑end encryption. The EU council votes on the Danish text on Sep 12, 2025.
https://getnews.me/eu-chat-control-criticized-by-500-cryptographers-over-privacy-risks/
#euchatcontrol
#privacy
#cryptography
0
3
3
reposted by
Mircea Nistor
CCscott
10 months ago
👍🏻👍🏻👍🏻👍🏻
12
214
64
reposted by
Mircea Nistor
Adrian Bowyer
10 months ago
This. Money is, and has always been, trickle up. That means that the only thing that makes sense is to put it in at the bottom. We need a universal basic income. Everywhere it's been tried it worked.
add a skeleton here at some point
1
12
4
Load more
feeds!
log in