logoalt Hacker News

neomyesterday at 2:56 PM6 repliesview on HN

https://x.com/theo/status/2045871215705747965 - "Everything I know about this hack suggests it could happen to any host"

He also suggests in another post that Linear and GitHub could also be pwned?

Either way, hugops to all the SRE/DevOps out there, seems like it's going to be a busy Sunday for many.


Replies

phillipcarteryesterday at 3:35 PM

I don't know if I'd trust some random programmer-streamer-influencer on anything other than the topic of streamer-influencing.

show 2 replies
embedding-shapeyesterday at 3:08 PM

Based on what, "feels like it"? Claiming that Cloudflare is affected by the same hack has to come from somewhere, but where is that coming from?

show 1 reply
recursivegirthyesterday at 3:50 PM

Ah, Theo with his vast insights and connections into everything. That man gets around, and his content is worth it's cost.

Theo's content boils down to the same boring formula. 1. Whatever buzzword headline is trending at the time 2. Immediate sponsored ad that is supposed to make you sympathize with Theo cause he "vets" his sponsors. 3. The man makes you listen to a "that totally happened" story that he somehow always involved himself personally. 4. Man serves you up an ad for his t3.chat and how it's the greatest thing in the world and how he should be paid more for his infinite wisdom. 5. A rag on Claude or OpenAI (whichever is leading at the time) 6. 5-10 minutes of paraphrasing an article without critical thought or analysis on the video topic.

I used to enjoy his content when he was still in his Ping era, but it's clear hes drunken the YT marketer kool-aid. I've moved on, his content gets recommend now and again, but I can't entertain his non-sense anymore.

show 2 replies
techpressionyesterday at 3:38 PM

”Any host” of what? That’s such a non-descriptive statement and clearly not true at face value.

rvzyesterday at 3:07 PM

I do remember that OpenAI did use Vercel a year ago. They might have likely moved off of it to something better.

show 1 reply
nozzlegearyesterday at 4:19 PM

> @theo: "I have reason to believe this is credible. If you are using Vercel, it’s a good idea to roll your secrets and env vars."

> @ErdalToprak: "And use your own vps or k3s cluster there’s no reason in 2026 to delegate your infra to a middle man except if you’re at AWS level needs"

> @theo: "This is still a stupid take"

lol, okay. Thanks for the insight, Theo, whoever you are.

show 2 replies