Bogdan Deac
  • Home
  • Newsletter
  • Poetry
  • About
Sign in Subscribe
poetry

Vis

  • Bogdan Deac

Bogdan Deac

31 Jan 2022
Share

Se aude din crenguțe
Ciripit de vrăbiuțe,
Florile aștern culoare
Mângâiate blând de soare.

Susur vesel de izvoare,
Dealuri verzi, murmur de mare,
Munți înalți cu văi abrupte
Și păduri din basme rupte.

Nu mai tot visa în van,
Ține ochii în ecran,
Mâna ferm pe tastatură,
Scrie cod și taci din gură!

If you enjoy my work please consider supporting it by buying me a coffee

PEAKS No 46: AI Voice Attacks, macOS Security, Copilot Prompt Injection & Google's War on the Web

Hi there! 🛡️ Security & Privacy * Inaudible sounds hidden in podcasts and videos can silently hijack AI voice chatbots, injecting malicious commands below the threshold of human hearing — a new class of adversarial prompt injection that works in the real world without the victim noticing anything. More * Microsoft Copilot Cowork is
02 Jun 2026 3 min read

PEAKS No 46: AI Agents, npm Supply Chain Attacks, GitHub Breach, Gemini 3.5

Hi there! 🛡️ Security & Privacy * Mini Shai-Hulud strikes again: A compromised npm maintainer account published 637 malicious versions across 317 packages — including echarts-for-react (3.8M dl/mo) and size-sensor (4.2M dl/mo) — in a 22-minute automated burst. The payload harvests AWS keys, GitHub tokens, Vault secrets, SSH keys, and
26 May 2026 4 min read

PEAKS No 45: Kernel on Fire — Supply Chains Compromised, AI Goes Local, and Pixels Fall

Hi there! 🛡️ Security & Privacy * TanStack supply chain taken down by chained GitHub Actions exploit: An attacker combined a pull_request_target Pwn Request, GitHub Actions cache poisoning across fork/base trust boundaries, and in-memory OIDC token extraction to silently publish 84 malicious versions across 42 @tanstack/* npm packages — stealing
19 May 2026 4 min read
Bogdan Deac © 2026
Powered by Ghost