Workflow
程序员的那些事
icon
Search documents
阿里云核心域名竟遭劫持,博客园等众多网站瘫痪,幕后黑手究竟是谁?
程序员的那些事· 2025-06-08 02:47
2025 年 6 月 6 日凌晨,阿里云核心域名 aliyuncs.com 遭遇域名劫持事件。 导致其对象存储服务(OSS)、内容分发网络(CDN)、容器镜像服务(ACR)以及云解析 DNS 等多项 核心云服务出现大范围故障。 故障原因 目前官方尚未公布具体原因,但业界有以下几种推测 : 一种观点认为,可能是 aliyuncs.com 域名下的子域名被用于恶意网络行为,Shadowserver 为阻止进 一步恶意活动,直接将其解析转移至自己的服务器,但这种做法被认为过于激进。 另一种分析提到,事件可能与域名注册商 VeriSign 有关, aliyuncs.com 是 .com 域名 ,由美国 VeriSign 管理。有用户推测阿里云的域名被"takedown"(下架),修复过程涉及与 VeriSign 协商撤回操作 并锁定权限。 还有人认为,可能是阿里云的 OSS 被人上传了违规内容,有人举报到美国 Verisign 公司,根据 ICANN 规 则,Verisign 将 aliyuncs.com 的解析权转移给了 Shadowserver。 故障波及众多依赖阿里云服务的网站和应用,如知名技术论坛博客园无法正 ...
字节上百名员工食物中毒,云海肴被告!CEO:公司有意认罪,不打算请律师
程序员的那些事· 2025-06-06 14:37
转自:21世纪经济报道 (ID:jjbd21) 实际上,新加坡是云海肴开启出海进程的海外首站。在2019年,云海肴在新加坡樟宜机场的首店,曾 在开业时,创下门店食客排队到50米开外的纪录。截至目前,云海肴已在新加坡开设5家门店。 6月4日,餐饮连锁店云海肴因2024年字节跳动集体食物中毒案被告上法庭,具体为被控一项抵触食品 销售法令,以及一项抵触环境公共卫生(食品卫生)条例的控状。 2024年7月30日,字节跳动新加坡办公处发生集体食物中毒事件,多名员工在食堂吃了中式自助午餐 后感到身体异样,至少130人出现肠胃不适症状,有员工在办公场所呕吐,"甚至吐到瘫倒在地起不 来。"新加坡民防部队出动集体消毒车,并用17辆救护车将病患送院。 读特新闻视频截图 随后,7月31日晚间,新加坡食品局和卫生部发文告表示,多人在字节跳动新加坡办公处位于莱佛士码 头一号(One Raffles Quay)26楼的食堂吃了云海肴和莆田供应的食物后出现肠胃炎症状。 而此次控状显示,云海肴被指在2024年7月30日,供应给字节跳动的爆炒鸡丁被检测出含有金黄色葡 萄球菌,食品质量不符合买家要求。 代表云海肴的是新加坡公司首席执行官吕志韬, ...
不到 2 个月,OpenAI 火速用 Rust 重写 AI 编程工具。尤雨溪也觉得 Rust 香!
程序员的那些事· 2025-06-06 00:32
Group 1 - OpenAI has rewritten its AI command-line programming tool Codex CLI in Rust to enhance performance and security while eliminating dependency on Node.js, which may frustrate some users [1][2] - Codex CLI is an experimental programming agent that can run in the ChatGPT web browser environment and locally, featuring a chat-based user interface that operates in both interactive and silent modes [1] - The source code of Codex CLI was originally in TypeScript and required Node.js, but the team has now completed the rewrite in Rust [1][5] Group 2 - The decision to rewrite in Rust is driven by four key reasons: zero dependency installation, sandboxing requirements, performance optimization, and the ability to reuse existing Rust-based Model Context Protocol (MCP) implementations [2][4] - The current tool requires Node.js version 22 or higher, which may pose a barrier for some users [4] - Rust's lack of a runtime garbage collection mechanism leads to lower memory requirements, contributing to performance improvements [5] Group 3 - The Codex project currently has a composition of 46.7% Rust, making it the leading language, followed by TypeScript at 44.7% [5] - Codex CLI will still support code extensions in other languages such as JavaScript and Python, although specific details are yet to be disclosed [5] - Vue creator Evan You has also praised Rust for its efficiency, noting that the new version of Vite, using Rust-based Rolldown, has reduced production build times by 3 to 16 times and memory usage by up to 100 times [6]
骚操作!HR 假扮猎头引诱员工辞职?一公司“钓鱼式裁员”,法院判了
程序员的那些事· 2025-06-05 03:24
公司为了让老 员工主动辞职 竟以"业绩不达标" "违反考勤规定"为借口 还故意假扮猎头"钓鱼" 这是怎么回事? 法院审理: 转自:央视网综合江苏新闻、劳动报、工人日报 公司派人冒充猎头 "钓鱼式裁员" 陈女士在一家药企做了6年销售,一直负责常州和宜兴地区的药物推广。2023年12月7日,公司突然通知她:"你业绩不达标,从大客户经理调为零售经理, 12月15日去南京报到。"并且, 陈女士的工资将从上万元降到3000多。 由于家在常州且公司 拿不出业绩不达标的证据 ,陈女士不同意,并继续在常州上班。 同年12月26日,公司以陈女士违反考勤为由, 通知她解除劳动合同 其实,早在当年11月, 公司竟派人事冒充猎头,打电话称提供新的职业机会,引诱其主动向原公司提出辞职。 在"钓鱼"引诱辞职和异地调岗均无果后,2024年1月16日,公司向陈女士发出了第二份解除劳动合同通知书。陈女士觉得很委屈,便一纸诉状将公司告上了 法院。 公司存在诸多违法违规情况 一起来看 ↓ 。 当地法院审理认为,在本案中,被告先是通知原告进行跨市调岗,随后又先后两次向原告发送解除劳动合同通知书,在整个过程中存在诸多违法违规之处。 任意调岗不合理 根 ...
“令人作呕!” 马斯克刚离职没几天就开喷了
程序员的那些事· 2025-06-05 02:27
以下文章来源于算法爱好者 ,作者小蒜 算法爱好者 . 算法是程序员的内功!「算法爱好者」专注分享算法相关文章、工具资源和算法题,帮程序员修炼内 功。 就在上周,马斯克正式离开了美国政府效率部(DOGE) ,而从 DOGE 离职后,他将成为特朗普的顾问,继 续为其提供建议。 不过这刚过几天…… 按照他的说法,这个"又大又离谱还塞满私货"的国会支出法案简直罪大恶极 —— 不仅会让原本就高得吓人的 预算赤字飙升到 2.5 万亿美元,还会让美国老百姓背上"压垮骆驼" 的债务。 有意思的是,马斯克去年还是共和党的"大金主",这会却放话 "明年 11 月炒掉所有背叛人民的政客"。 这里面藏着几个关键矛盾:法案里没给特斯拉用户的电动车税收优惠,联邦航空局也没按他的意思用星链系 统,连盟友的 NASA 局长提名都被撤回,最后自己想续留政府特殊雇员岗位还被拒绝。 合着一圈下来,马斯克成了"白宫流水席"上的工具人,这能不气吗? - EOF - 推荐阅读 点击标题可跳转 1、 马斯克再次开启 7x24 工作模式,又要打地铺了!网友:比 996 还疯狂 6 月 4 日,马斯克在推特上火力全开,把 特朗普搞的《The One, Big ...
AI 编程工具 Windsurf 突遭 Claude 全面断供,CEO 发帖控诉,网友大量退订…
程序员的那些事· 2025-06-05 02:27
Core Viewpoint - The abrupt termination of API access by Anthropic to Windsurf highlights the competitive tensions in the AI industry, signaling a shift from collaboration to a more territorial approach among major players [3][10][11]. Group 1: API Termination Incident - Anthropic cut off Windsurf's direct access to Claude 3.5/3.7 models with less than five days' notice, indicating a severe competitive response [3][5]. - Windsurf's recent acquisition by OpenAI for $3 billion exacerbated the situation, as Anthropic viewed Windsurf as a competitor rather than a partner [3][5]. - The timing of the API termination coincided with Windsurf's launch of its own SWE-1 model, which is positioned as a lower-cost alternative to Claude 3.5, further straining relations [6]. Group 2: Industry Dynamics - The incident reflects a broader "territorial battle" in the AI sector, where companies are increasingly protective of their models and ecosystems [9][10]. - Developers faced a "trust crisis" as many found their access to Claude models abruptly restricted, leading to a mass migration to alternative tools like Cursor [8][9]. - The competitive landscape is shifting towards a "feudal system," where companies must either align with larger players or develop their own models to survive [10][11]. Group 3: Implications for Developers and Startups - The termination of API access serves as a warning for developers and startups about the volatility of partnerships in the AI space [11]. - As models become critical assets, the ability to access and utilize these models will determine the survival of smaller companies in the industry [9][10]. - The AI ecosystem is moving away from open collaboration towards a more fragmented and competitive environment, necessitating strategic planning for developers [11].
突发!全球最大成人网站 Pornhub 硬刚并退出法国,部长强硬回应“那就再见”
程序员的那些事· 2025-06-04 15:00
Core Viewpoint - The article discusses the recent decision by Pornhub to suspend its services in France as a response to the new SREN law, which mandates strict age verification for adult websites, highlighting the tension between privacy rights and regulatory measures [5][6][12]. Group 1: Regulatory Context - The SREN law, passed in France in 2023, requires adult websites to verify users' ages to ensure they are over 18, with a compliance deadline set for June 7, 2025 [5][6]. - The French government, particularly the Minister for Gender Equality, supports the law as a means to protect minors from harmful content [6][8]. - The French digital technology minister has taken a strong stance, indicating that if Pornhub does not comply with the law, it can exit the market [8]. Group 2: Market Impact - France is Pornhub's second-largest market, contributing an estimated 8%-12% of its traffic from 2020 to 2024, translating to approximately 2.6 to 4.2 billion visits annually [11]. - The daily traffic from French users is estimated to be between 7.12 to 11.51 million visits, with an average of around 9 million page views per day over the last five years [11]. - The suspension of services is expected to disrupt French users significantly, potentially leading to increased use of VPNs to bypass restrictions [13]. Group 3: Global Trends - The situation in France is indicative of a broader trend of increasing regulatory scrutiny on adult content platforms globally, with the EU Commission also investigating Pornhub for potential violations of digital safety laws [14]. - The article suggests that other countries may follow France's lead in imposing stricter regulations on adult content platforms, raising concerns for the future operational landscape of such companies [14].
程序员:在 8 家公司当工具人后,终于明白“有用”和“被重视”差了 10 条街
程序员的那些事· 2025-06-04 02:13
Core Viewpoint - Understanding the distinction between being "useful" and being "valued" in the workplace is crucial for career development and personal growth [3][4]. Group 1: Definitions and Implications - "Useful" refers to being proficient in specific tasks, allowing superiors to delegate work confidently, but often leads to being seen as merely filling gaps rather than being integral to strategic discussions [6]. - "Valued" means being included in core conversations and decision-making processes, which provides opportunities for meaningful growth and contribution to the company [6]. Group 2: Personal Experiences - During a company crisis, an individual was recognized as essential not just for past performance but for future contributions, receiving a retention bonus equivalent to 50% of total compensation [10]. - In a later role, despite achieving targets and receiving bonuses, the individual felt stagnant as they were not invited to strategic discussions, highlighting the difference between being "useful" and "valued" [12]. Group 3: Recommendations - Individuals are encouraged to reflect on their roles and assess whether they are merely "useful" or genuinely "valued" within their organizations [13].
趣图:“你修好这个问题了嘛?” “没呢,懒得管了”
程序员的那些事· 2025-06-04 02:13
"你修好这个问题了嘛?" " 没呢,懒得管了 " ↓↓↓ 往期趣图 (点击下方图片可跳转阅读) ...
疯了!我那些怀疑 AI 的程序员朋友,都疯了!网友:越聪明越觉得 LLM 不行
程序员的那些事· 2025-06-03 10:12
Core Viewpoint - The article discusses the impact of AI programming assistants and large language models (LLMs) on software development, emphasizing that LLMs are not a passing trend but a significant advancement in the field [3][24]. Group 1: Understanding LLMs - LLMs have evolved significantly, and current users employ agents that can autonomously search codebases, create files, run tools, compile code, and adjust based on results [5][9]. - The effectiveness of LLMs in programming is not solely due to their advanced models but also depends on the design of the programming environment and frameworks [6][10]. Group 2: Advantages of AI in Programming - LLMs can handle tedious coding tasks, reducing the need for extensive online research and allowing developers to focus on more critical aspects of their projects [10][19]. - The use of LLMs can lead to increased productivity, enabling developers to complete tasks more efficiently and effectively [24][36]. Group 3: Challenges and Misconceptions - Concerns about LLMs generating poor-quality code often stem from improper usage or lack of guidance in prompting the models [13][19]. - The "hallucination" issue, where LLMs produce incorrect outputs, is being addressed through better integration and error-checking mechanisms [12][14]. Group 4: Industry Perspectives - The software development industry is undergoing a transformation due to the integration of LLMs, which may lead to job displacement but also the creation of new roles [21][26]. - The debate around LLMs often reflects broader concerns about automation and its impact on traditional programming roles [22][25]. Group 5: Future Outlook - The rapid development of LLMs suggests that their role in programming will continue to grow, potentially reshaping the industry landscape [24][26]. - As LLMs become more integrated into workflows, their effectiveness will likely improve, leading to a more collaborative relationship between human developers and AI [36][37].