注册并分享邀请链接,可获得视频播放与邀请奖励。

与「GitLab」相关的搜索结果

GitLab 贴吧
一个关键词就是一个贴吧,路径全站唯一。
创建贴吧
用户
未找到
包含 GitLab 的内容
🚨 SlowMist TI Alert 🚨 MemTensor's AI memory tooling has been compromised: MemoryOS (PyPI), the company's open-source long-term memory library for LLM and AI agents, and memtensor/memos-cloud-openclaw-plugin (npm), the official plugin connecting it to the OpenClaw agent runtime. Affected versions bundle cross-platform Go binaries that execute when the package is loaded or imported: MemoryOS==2.0.34 on PyPI, and plugin versions 0.1.21, 0.1.23 and 0.1.25 on npm. You are affected if the PyPI version has been imported in your environment, or if the npm plugin is installed and the OpenClaw gateway has been started. Potential attacker actions include harvesting npm/PyPI tokens, GitHub/GitLab credentials, AWS keys, SSH keys, API tokens, environment secrets, and other developer credentials, with data sent to infrastructure under skyleen[.]fr. The affected npm plugin may also expose user prompt content. Users should remove or downgrade affected packages to known-good versions (0.1.20 for npm and 2.0.33 for PyPI), terminate sckit processes, block associated infrastructure, review network activity, and rotate credentials accessible from affected environments. You can also visit to check for free whether the npm packages, pip packages, domains, or IPs you use are safe. Reference: As always, stay vigilant!
显示更多
I bought a Fable dataset from one of the top Chinese LLM routers yesterday. With just 6TB data, I can take over 7 Chinese/CIS gov entities & 19 top Chinese firms like Xiaomi, Huawei, NIO, Minimax using SSH keys, VPN configs, Aliyun keys, GitLab tokens sent to the router.
显示更多
0
84
3K
249
转发到社区
🚀 Today we're launching agentic triage in @roboto_ai. Roboto Agents can now review every robot log the moment it arrives and open labeled issues in #Jira#, #Linear# or #GitLab# with supporting evidence attached. It’s the first line of defense that every #robotics# team needs. Failure modes and anomalies are detected automatically. The runs that warrant escalation get surfaced. You can spend more time improving your system instead of debugging the same issue for the fifth time. Robotics teams often underestimate how high the support burden will be once they start putting robots into the field. A robot that's 99% reliable sounds great until you deploy 100 of them. Suddenly you're dealing with failures every day. The statistics catch up quickly. Tomorrow’s issues are already sitting in today’s logs - but nobody has time to review them. So you wait for a customer to complain instead. That’s a huge business risk. Agentic triage gives you the tools to find issues before your customers do. We’ve been testing this with select engineering and field support teams collecting #ROS# bags, #MCAP# and #PX4# ULG files over the past few months. They think it rocks, and they’ve discovered and fixed some surprising issues before anyone noticed. Today is day 2 of #AgentWeek#, and it's live now. If you want to try agentic triage on your own data, reach out or check out our blog post below. #PhysicalAI# #Triage# #Agents# @OpenRoboticsOrg @PX4Autopilot @NVIDIARobotics
显示更多
前身是阿里集团内部官方 AI 代码审查助手,过去两年服务了数万开发者,识别了数百万个代码缺陷。 现在它开源了:Open Code Review。 它不是让 AI “随便看一眼 diff”,而是把 AI Code Review 工程化。 它能读取 Git diff,结合上下文分析代码变更,生成带行级定位的结构化审查意见。 对开发者:提 PR 前先自查,少返工。 对 Reviewer:少看低级问题,把精力留给架构和业务逻辑。 对团队:可以沉淀规则,接入 GitHub Actions / GitLab CI。 一句话: 它不是取代人类 Review,而是让团队代码审查更省力、更稳定、更有价值。 GitHub:
显示更多
0
25
418
83
转发到社区
GitLab has apparently taken down the Nightmare-Eclipse account just days after the researcher moved there following the GitHub ban. The drama started after Nightmare-Eclipse released several Windows exploits and Defender bypass tools, including BlueHammer, RedSun, and UnDefend. GitHub removed the account earlier this week over concerns that the tools could be misused and weaponized. Security company Huntress says some of the tools have already been seen in real-world intrusion cases, showing how quickly proof-of-concept research can end up being used in actual attacks.
显示更多
0
70
3.1K
229
转发到社区
Security researcher Nightmare Eclipse, who has shared several zero-day vulnerabilities, had their entire GitHub account and all repositories taken down. They have now moved everything to a new GitLab profile at In a signed message on their blog, they accuse Microsoft of defaming them, mishandling vulnerability reports like CVE-2026-45585, revoking their MSRC access, and quietly patching issues without collaborating. They point to July 14 as an important date when they may release more documents or take things further. The post also mentions two other vulnerabilities called UnDefend (CVE-2026-45498) and RedSun (CVE-2026-41091).
显示更多
0
49
4.9K
315
转发到社区
AIが大量のコードを生み出す時代。 脆弱性も、同じ速度で増えていく。 次世代の解決策を、GitLabと考えませんか? オンラインイベントTranscend Japan 📅 6/18(水)13:00〜 開催
显示更多
@DashHuang 这跟公司内部的gitlab有什么区别呢?
Valve has released free official CAD files for the outside case of its new Steam Controller and the Puck charging stand and this makes it much easier for people to create mods and accessories. You can download them now on GitLab and they include ready-to-use 3D models plus clear drawings that show important areas you must not cover such as the antenna lights and ports. The files use a Creative Commons license that lets you share and change the designs with credit but only for non-commercial use and Valve says they cannot wait to see what the community makes.
显示更多
0
69
8.6K
664
转发到社区
VideoLAN has released a new open-source tool called dav2d. It is a CPU-based decoder for AV2 video, AV2 is the next open video format after AV1 and promises better compression and higher quality. dav2d is based on VideoLAN’s popular dav1d decoder for AV1, works on many platforms and focuses on being fast and correct. The code is now public on VideoLAN’s GitLab site. This is an early project because the full AV2 standard is not finished yet.
显示更多
0
110
8K
530
转发到社区