#Engineer

🇨🇦CrinstamCamp🇨🇦crinstamcamp@thecanadian.social
2025-06-01

@electric_gumball I have to put up a 60' tower for my cellular antenna.

I'll be using drill rod like this that screws together. The first 15' will be supported against the house. Each drill rod is 10' long.

It's been suggested I should put a set of guy wires on each section above 20'.

I think that's overkill and I could get away with one set at 45'.

Thoughts?

#Engineer #HamRadio #Tower #GuyWire #Wind #Boost

2025-06-01

Ghosts'n Goblins — Check out this AGA tease for the Amiga, it looks pretty decent! [UPDATE]

[Skyzoo73] has made available the first Ghosts'n Goblins demo of an AGA edition for the Amiga. As in his words "I created this to see how GnG could be on the Amiga by breaking free from the limitations of the Amiga 500 classic".

skyzoo73.itch.io/ghostsngoblin

#amiga #ghostsngoblins #retro #gaming #art #engineer #media #programming #artist #tech #news

In 1985 Capcom released one of the greatest side scrolling platform game series I have ever known. It featured a knight, creepy enemies and was rather difficult to the point of frustration. The game I am talking about is none other than 'Ghosts 'N Goblins', the first game in the Ghosts 'n Goblins franchise. A game which appeared on systems such as the Amstrad, C64 and ZX Spectrum.

[Skyzoo73] has further improved the AGA demo with new additions, lots of changes and yes even bug fixes. As in his words "little update for the Ghosts'n Goblins AMIGA demo (V0.98) lots of bug fixes, changes, ironing some details, main page (add coin, start) and Highscores fully working (+ new mod music)".

<https://youtu.be/Q69wREjyTyU>[ImageSource: Skyzoo73]

Technical details:

• graphics found on the web from various sources partly, and partly grabbed from the MAME by Skyzoo73
• ‘programming’ also done by Skyzoo73 with a little help from Griffon
• music created by IM76 (https://soundcloud.com/user-874944132)
• the game  resolution is 256x240 px at 64+16 colours

And here's the full details from the itch io page.

“Small demo of the great arcade classic Ghosts'n'Goblins, ported to the Commodore Amiga (AGA) with the Scorpion Engine. This demo includes only the 1st level of the game, was created as an exercise with the S.E., and makes no claim to be complete or perfect. It was created to see how GnG could be on the Amiga by breaking free from the limitations of the Amiga 500 classic.”

“Of course many things are sub-optimal, such as enemy behavior, and various bugs are present throughout the game. So take it for what it is, an exercise and nothing more. I may make some changes from time to time, eventually I will update this page with the relevant update details.”
2025-05-31

🤖Tiny Pogo Robot gets Wings, does Flips.

The smaller the robot, the bigger this problem because little wheels [or legs] can take only little steps. One way around that is MIT’s latest one-legged hopping robot, which sports a set of four insect-like wings on its top end and can quickly pogo-hop its way across different terrain with ease.

news.mit.edu/2025/hopping-give

#pogo #robot #drone #insects #like #robotics #engineer #media #tech #art #news

Certainly tiny flying drones already exist and get about in the real world just fine. But if one wants to shed mass, ditch conventional motors, and reduce cost and power consumption, this tiny winged hopping machine is one way to do it. And it can even carry payloads! The payloads are tiny, of course, but being able to haul around ten times one’s own weight and still function reliably is an impressive feat.

You can watch it in action in the video below. Once you’ve watched that, I’ve like to remind you that novel locomotion isn’t just the domain of hopping robots. Tiny robots with explosive joints is just as wild as it sounds.

<https://youtu.be/UlxQz8F59Hk>[ImageSource: MIT.edu]

The four wings provide lift, and steer the robot so that its single leg lands precisely.

The wings aren’t for flying in the usual sense. They provide lift, but also help the tiny device steer itself so that its hops land precisely. Earlier incarnations of one-legged hopping robots accomplished this with propellers and electric motors, but traditional motors are a non-starter on a device that weighs less than a paperclip.

Right now, this little winged hopper is not completely self-contained [power and control systems are off-board] but running it as a tethered unit allows researchers to test and evaluate different, minimalistic ways for a machine to move around efficiently. And efficiency is the whole goal of going in this direction.
2025-05-30

:apple_inc: Threat Actor’s use fake Ledger Apps to steal Mac User’s Seed Phrases.

Criminal campaigns are using fake Ledger apps to target macOS users and their digital assets by deploying malware that attempts to steal seed phrases that protect access to digital cryptocurrency wallets.

moonlock.com/anti-ledger-malwa

#apple #macos #fake #ledger #app #malware #it #security #privacy #engineer #media #tech #news

[ImageSource: Moonlock Lab]

Seed phrase phishing page.

The new dangerous malware replaces the legitimate Ledger Live app on the victim's device to make the attack more effective.

The malware embedded a phishing page inside a fake Ledger app asking the victim to input their 24-word seed phrase to recover their account after displaying a bogus "critical error" message.

To keep your Ledger wallets safe, only download the Ledger Live app from the official website, and always check before typing your seed phrase, which should happen only when losing access to the physical wallet.

⚠️You're only required to use the seed phrase when you're restoring your wallet or setting up a new device. Even then, the phrase is entered on the physical Ledger device, and not on the app or any website.⚠️
Crystal Huff (they/them)crystalvisits@wrong.tools
2025-05-29

Today I learned about the "vanilla ice cream-hating Pontiac car" story, which is apparently actually a real story! It's on Snopes! And it says things about approaching a problem with an engineering mindset! Fascinating!

snopes.com/fact-check/cone-of-
#TIL #car #icecream #data #engineer

Open Source JobHubosjobhub@fosstodon.org
2025-05-29

Are you looking for a new role in #OpenSource? Search jobs now on #OSJH and set up job alerts to find out when new positions are posted -- no registration necessary!
opensourcejobhub.com?utm_sourc
#career #software #engineer #sales #marketing #TechnicalWriter #security #SRE #developer

(image of a rocket taking off from a laptop) Looking for your place in open source? Set up job alerts and get started today on Open Source JobHub
2025-05-29

A Field Expedient Welder, Only MacGyver Could Love.

If you needed to weld something in a pinch, what’s the minimum complement of equipment you could get away with? In [Professor Bardal’s] case, it’s a couple of motorcycle batteries and a roll of flux-core wire, and not much else.

youtu.be/Z3cc_ph1Wv4

#diy #field #expedient #welder #welding #machine #engineer #media #tech #news

I suspect this one is going to elicit quite a few comments, not least by the welding fans who no doubt will be triggered by just about everything in the video, especially by characterizing this as MIG welding [it’s FCAW or flux-core arc welding].

But it bears some superficial similarities to MIG, at least insofar as there’s a consumable wire electrode through which a high-current DC supply flows, creating enough heat to melt it and the base metal.[ImageSource: Professor Bardal]

In this case, the current is provided by a pair of 12-volt motorcycle batteries hooked together in series. There’s also a torch of sorts — a short length of copper capillary tubing with a 1-mm inside diameter clamped in the jaws of a stick welder stinger, or a pair of locking pliers if you’re really in a pinch. The torch is connected to the negative terminal on the battery with a jumper cable, and the positive terminal is connected to the workpiece.

To create the weld, a piece of 0.8-mm flux-core welding wire is threaded through the capillary and into the joint, and fed by hand as it’s consumed. It’s awkward and awful, but it works. Of course, there’s no control over amperage as there would be with a legit welding machine, which would make it hard to adapt this method to different materials. Weld quality appears poor, too. But I suspect that if you were in a position to need a welder like this, you wouldn’t really care about any of that.
N-gated Hacker Newsngate
2025-05-28

A paper on AR-Diffusion pretends to revolutionize text generation with a model so "advanced" it can't even generate its own job listing. 🔄🤖 Meanwhile, arXiv's relentless quest for a continues as they remind us that "open science" is important—especially if you can keep their site from crashing. 💻🛠️
arxiv.org/abs/2305.09515

2025-05-28

♻️Less than 10% of Global Plastics manufactured from recycled Materials.

The findings, reported in Communications Earth & Environment, are part of a comprehensive analysis of the global plastics sector, which also reveals a large increase in the amount of plastic being disposed of by incineration and substantial regional differences in plastic consumption.

nature.com/articles/s43247-025

#plastic #pollution #recycling #chemistry #science #engineer #media #nature #tech #news

Plastic production has increased from 2 million tons per year in 1950 to 400 million tons per year in 2022 and is projected to reach 800 million tons per year by 2050. As a result, plastic pollution is a pressing and growing global issue, posing major challenges for the environment, economy and public health. However, there is currently little comprehensive analysis of the contemporary global plastics sector.

Quanyin Tan and colleagues conducted an analysis of the global plastics sector in 2022, using data from national statistics, industry reports and international databases to produce a detailed global and regional overview of plastic production, use, and disposal. Data from their analysis highlights key trends in the global plastic supply chain.

The authors say the study provides important data for devising future policies and regulations.[ImageSource: Communications Earth & Environment (2025). DOI: 10.1038/s43247-025-02169-5]

Global plastic cycles in 2022.

Of the 400 million tons of plastic produced over the year, just under 38 million tons [9.5%] were produced from recycled plastic. Some 98% of the remaining 362 million tons were produced from fossil fuels, predominantly coal and oil.

Around 268 million tons of plastic was disposed of over the year, with only 27.9% sent for sorting and potential recycling [36.2% was instead sent directly to landfill and 22.2% was sent directly to incineration]. Additionally, only half of the sorted plastic was actually recycled, with 41% of the sorted plastic instead incinerated and 8.4% sent to landfill.

However, the total percentage of global plastic waste sent to landfill in 2022 (40%) has still decreased significantly compared to the estimated 79% of all global plastic waste sent to landfill between 1950 and 2015. The U.S. had the highest per capita plastic consumption, with an average of 216 kg of plastic consumed per person per year, while China consumed the most plastic overall [80 million tons per year].

<https://dx.doi.org/10.1038/s43247-025-02169-5>
BCWHSBCWHS
2025-05-27

Wade Bachelder is a ColdFusion Application Developer, Systems Security Engineer, G.R.C. Analyst, and Consultant.
wadebach.blackcatwhitehatsecur

ColdFusion Application Developer Systems Security Engineer GRC Analyst Consultant
Wade Bachelder is a ColdFusion Application Developer, Systems Security Engineer, G.R.C. Analyst, and Consultant.
Markus Schlichtingmadmas@jit.social
2025-05-27

Very happy that Bruno Souza (java.mn/about/) gave @karakun a visit today after @martinfrancois introduced us during @jcon earlier this month. In case you are in ZĂźrich or Bern area, I strongly recommend to join the @jugch sessions he is joining there today and tomorrow! see jug.ch/html/events/2025/art-of and jug.ch/eventpreview.php?id=955
have fun!

#developer #engineer #career #growth #opensource #community #java

2025-05-27

Vibe Coding Company says Claude 4 reduced Syntax Errors by 25% and made it faster by 40%.

On May 22, Anthropic started rolling out two new models: Claude Sonnet 4 and Claude Opus 4. While Sonnet is available for free users, Opus requires a paid subscription and is able to do better than Sonnet when it comes to coding.

🖇️Check my Image Description’s🖇️

anthropic.com/news/claude-4

#anthropic #claude4 #vibecoding #llm #ai #programming #engineer #media #developer #tech #news

Lovable, which is a Vibe coding tool, says Claude 4 has reduced its errors by 25% and made it faster by 40%.

<https://x.com/lovable_dev/status/1926675103808385453>

Claude models have always maintained the reputation of "best at coding", but there has been steep competition from Google lately, which released Gemini 2.5 Pro with a 1 million context window.

Compared to the 200,000 context window of Claude 4 or older models, the 1 million context window for Gemini 2.5 does give it an advantage. But it doesn't necessarily mean Gemini 2.5 is better than Claude 4 in coding.

👾Both can be surprisingly brilliant and also terrible at the same time, and it also comes down to how you do prompt engineering. It's always nice to mix the models, such as o3 or Gemini for planning and Claude 4 and Gemini for coding.👾[ImageSource: Anthropic.com]

In a blog post, Anthropic confirmed that Claude Opus 4 scored 72.5 percent in SWE-bench [SWE is short for Software Engineering Benchmark].

<https://www.anthropic.com/news/claude-4>

In the tests, Opus 4 delivered sustained performance on long-running tasks that require focused effort and thousands of steps. Anthropic also claimed that its newest model worked on the code for seven hours straight.[ImageSource: Lovable AI]

Claude 4 reduced syntax errors by 25% on Lovable AI.

Vibe coding company Lovable, which uses Claude in its "AI-powered prompt-based web and apps builder" tool, has observed significant improvements after upgrading to Claude 4.

In a post on X, Lovable says it has 25% less errors and be 40% faster overall after deploying Claude 4 for both project creation and edits on all projects [including old projects].

<https://x.com/lovable_dev/status/1926675103808385453>

In a separate post, Lovable founder Anton Osika confirmed that "Claude 4 just erased most of Lovable's errors" while specifically referring to LLM syntax errors when vibe coding.

<https://x.com/antonosika/status/1926719161935233139>
2025-05-26

Beware: TikTok Videos now push Infostealer Malware in ClickFix Attacks.

The threat actors behind this TikTok social engineering campaign are using videos likely generated using AI that ask viewers to run commands claiming to activate Windows and Microsoft Office, as well as premium features in various legitimate software like CapCut & Spotify.

trendmicro.com/en_us/research/

#tiktok #socialmedia #it #security #privacy #engineer #media #tech #news

[ImageSource: Trend Micro]

TikTok ClickFix Video

One of the videos claiming to provide instructions on how to "boost your Spotify experience instantly," has reached almost 500,000 views, with over 20,000 likes and more than 100 comments.

"This attack uses videos [possibly AI-generated] to instruct users to execute PowerShell commands, which are disguised as software activation steps. TikTok's algorithmic reach increases the likelihood of widespread exposure, with one video reaching more than half a million views," Trend Micro said. "The videos are highly similar, with only minor differences in camera angles and the download URLs used by PowerShell to fetch the payload."

"These suggest that the videos were likely created through automation. The instructional voice also appears AI-generated, reinforcing the likelihood that AI tools are being used to produce these videos," it added.

⚠️Beware: The malware was pushed through videos that received over a million views shortly after being posted and can steal Discord accounts, passwords, credit cards and cryptocurrency wallets.⚠️[ImageSource: Trend Micro]

Attack Flow

• ​In this attack uses videos, the criminals prompt viewers to run a PowerShell command that will instead download and execute a remote script from hxxps://allaivo[.]me/spotify that installs Vidar or StealC information-stealing malware, launching it as a hidden process with elevated permissions.

• After being deployed, Vidar can take desktop screenshots and steal credentials, credit cards, cookies, cryptocurrency wallets, text files and Authy 2FA authenticator databases.

• Stealc can also harvest a wide range of sensitive information from infected computers as it targets dozens of web browsers and cryptocurrency wallets.

• After the device is compromised, the script will download a second PowerShell script payload from hxxps://amssh[.]co/script[.]ps1 that will add a registry key to launch at startup automatically.
2025-05-25

Can it run Llama 2? Now DOS can.

Will a 486 run Crysis? No, of course not. Will it run a large language model [LLM]? Given the huge buildout of compute power to do just that, many people would scoff at the very notion. But [Yeo Kheng Meng] is not many people.

yeokhengmeng.com/2025/04/llama

#msdos #llm #llama2 #artificialintelligence #retrocomputing #engineer #media #retro #programming #tech #ai #news

[Yeo Kheng Meng] has set up various DOS computers to run a stripped down version of the Llama 2 LLM, originally from Meta. More specifically, [Yeo Kheng Meng] is implementing [Andreq Karpathy]’s Llama2.c library [running on Windows 98].

<https://youtu.be/4241obgG_QI>

Llama2.c is a wonderful bit of programming that lets one inference a trained Llama2 model in only seven hundred lines of C. It it is seven hundred lines of modern C, however, so porting to DOS 6.22 and the outdated i386 architecture took some doing. [Yeo Kheng Meng] documents that work, and benchmarks a few retrocomputers. As painful as it may be to say — yes, a 486 or a Pentium 1 can now be counted as “retro”.[ImageSource: Yeo Kheng Meng]

The models are not large, of course, with TinyStories-trained 260 kB model churning out a blistering 2.08 tokens per second on a generic 486 box.

<https://github.com/yeokm1/dosllam2>

Newer machines can run larger models faster, of course. Ironically a Pentium M Thinkpad T24 [was that really 21 years ago?] is able to run a larger 110 Mb model faster than [Yeo Kheng Meng]’s modern Ryzen 5 desktop. Not because the Pentium M is going blazing fast, mind you, but because a memory allocation error prevented that model from running on the modern CPU. Slow and steady finishes the race, it seems.

This port will run on any 32-bit i386 hardware, which leaves the 16-bit regime as the next challenge. If one of you can get an Llama 2 hosted locally on an 286 or a 68000-based machine, then we may have to stop asking “Does it run DOOM?” and start asking “Will it run an LLM?”
2025-05-24

“Glasses” that transcribe Text to Audio.

Glasses for the blind might sound like an odd idea, given the traditional purpose of glasses and the issue of vision impairment. However, [Akhil Nagori] built these glasses with an alternate purpose in mind. They’re not really for seeing. Instead, they’re outfitted with hardware to capture text & read it aloud.

instructables.com/Vision-Glass

#diy #smart #glasses #maker #engineer #media #tech #art #news

It’s funny to think about how advanced this project really is. Jump back to the dawn of the microcomputer era, and such a device would have been a total flight of fancy — something a researcher might make a PhD and career out of. Indeed, OCR and speech synthesis alone were challenge enough.

Today, you can stand on the shoulders of giants and include such mighty capability in a homebrewed device that cost less than $50 to assemble. It’s a neat project, too, and one that I’m sure taught [Akhil] many valuable skills along the way.[ImageSource: Akhil Nagori]

Yes, we’re talking about real-time text-to-audio transcription, built into a head-worn format. The hardware is pretty straightforward: a Raspberry Pi Zero 2W runs off a battery and is outfitted with the usual first-party camera. The camera is mounted on a set of eyeglass frames so that it points at whatever the wearer might be “looking” at.

At the push of a button, the camera captures an image, and then passes it to an API which does the optical character recognition. The text can then be passed to a speech synthesizer so it can be read aloud to the wearer.
salathehugosalathesalathehugosalathe
2025-05-24
2025-05-23

:blobcatgamer: You can now play DOOM in a standalone Microsoft Word Document.

The single 6.6MB document file [available via GitHub], contains a source port of doomgeneric. Users will need a modern version of Microsoft Office/Word on an x86 computer system, and eschew security warnings, to enable the VBA macro in the document to run.

github.com/wojciech-graj/doom-

#microsoft #word #document #doom #port #retro #gaming #art #engineer #media #programming #artist #tech #news

[ImageSource: Wojciech Graj]

The game seems to run quite smoothly. However, in the background, "Every game tick, doomgeneric.dll creates a bmp image containing the current frame and uses GetAsyncKeyState to read the keyboard state," notes Graj. Perhaps this is why the viewport is quite small [original 320 x 200 pixels?] — to keep the game responsive.

WordDoom gamers can use their arrow keys for movement, Control key for fire, Space key for use, and number keys 1-7 for weapon selection. Graj highlights that there is no sound in this game release.
2025-05-22

Scotty telling it like it is 🖖😎

#StarTrek #TOS #MontgomeryScott #Scotty #Engineer

2025-05-22

:omya_zoom: Zoom fixes High-Risk Flaw in latest Update.

Zoom fixes multiple security bugs in Workplace Apps, including a high-risk flaw. Users are urged to update to the latest version. For anyone using Zoom in business or education settings, especially on Windows systems, these updates are worth attention.

zoom.com/en/trust/security-bul

#zoom #update #video #chat #security #privacy #engineer #media #it #tech #news

Zoom pushed out a batch of security fixes, addressing multiple vulnerabilities across its Workplace Apps. One of them has been marked high severity, while the others are rated medium. The updates affect both general app versions and Windows-specific builds.

The most significant of the bunch is a time-of-check to time-of-use [TOCTOU] issue listed under [CVE-2025-30663]. This type of bug occurs when there’s a delay between a system checking if an action is safe and performing it. During that short window, attackers might interfere. This bug affects Zoom Workplace Apps broadly and was rated high severity.

The rest of the vulnerabilities carry medium severity ratings. Here’s a quick breakdown:

• Affects: All Workplace Apps
• CVEs: CVE-2025-46786, CVE-2025-46787, CVE-2025-30664
• Issue: These bugs involve the mishandling of user inputs, which could allow scripts or commands to be executed in unexpected ways.

• Affects: Windows versions
• CVE: CVE-2025-46785
• Issue: This bug could lead to the application reading more data than it should, risking exposure of sensitive information.

All seven bulletins are published on Zoom’s official security bulletin page.[ImageSource: Shutterstock]

In a comment, [Jim Routh] Chief Trust Officer at Saviynt stated, “Cyber professionals are considering the need for deepfake detection and prevention impacting virtual meetings today. It turns out that the software defects/vulnerabilities announced recently in Zoom Workplace are far more critical at this time.”

<https://www.linkedin.com/in/jmrouth>

”DoS and remote code execution vulnerabilities have the potential for significant business disruption with the potential for ransomware exploits,” he added. ”Software resilience for enterprise software companies is achievable with more maturity in the development process to identify and remediate race conditions.”

Zoom is widely used across industries, and bugs like these mixed with others, can be a massive security risk. While the technical details may not apply to everyday users, IT teams should treat this as a routine security maintenance window. Applying the patches quickly reduces the chance of these issues being exploited.

⚠️Therefore, if you use Zoom Workplace Apps, update now. The patches are live and available for download. Admins managing enterprise deployments should review their update pipelines to make sure these fixes are rolled out across all user endpoints.⚠️

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst