Today's digest · Wednesday, June 3

The 55 things in AI/dev today.

LiveNext issue at 7:00 CET
#1 / TODAY
Lobsters·1 min·8d agoFREE

Elixir v1.20 released: now a gradually typed language

Elixir v1.20 has been released, introducing gradual typing as a core feature. This allows developers to optionally add type annotations to their code, enabling static analysis while maintaining dynamic flexibility. The release also includes improvements to the compiler and tooling, making Elixir more robust for large-scale applications without sacrificing its developer-friendly nature.

Gradual typing in Elixir improves code safety and tooling for large projects.

elixirgradual-typingrelease
elixir-lang.org
Elixir v1.20 released: now a gradually typed language
One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens
#2 / TOP STORY
The Hacker NewsFREE

One-Click GitHub Dev Attack Lets Attackers Steal Full GitHub OAuth Tokens

Researchers disclosed a one-click attack via VS Code that steals full GitHub OAuth tokens. By clicking a crafted link, attackers can gain read/write access to all repositories, including private ones. The attack exploits GitHub.dev, a VS Code-based web editor, to bypass security protections and exfiltrate tokens.

The MCP Rug Pull - When the Tool You Trusted Yesterday Becomes Malicious Today
#3 / TOP STORY
DEV CommunityFREE

The MCP Rug Pull - When the Tool You Trusted Yesterday Becomes Malicious Today

The Model Context Protocol (MCP) introduces a new supply-chain attack vector where community-built servers can change their tool surface between sessions without altering the package on disk. Traditional static scanners cannot detect these changes, enabling a 'rug pull' that grants AI agents unexpected capabilities, such as accessing sensitive data or performing unauthorized actions.

aigest · daily

Get this every morning.

One email. The signal. Built for builders.

Free · Unsubscribe in one click · No trackers

// Worth knowing10 stories

Developers can now integrate AI agents from partners directly into GitHub, automating workflows without leaving the platform.

githubai-agentsmarketplacedevops
GitHub Changelog9d ago1mFREE

Simplifies video generation from images with audio, reducing pipeline complexity for developers.

xaivideo-generationai-gatewayvercel
Vercel8d ago1mFREE

DPO's extension beyond chatbots simplifies preference optimization for diverse tasks, reducing engineering overhead.

dpopreference-optimizationhuggingfacefine-tuning
Hugging Face8d ago1mFREE
More selected · 42

These new MAI models offer developers enhanced tools for integrating advanced AI capabilities, potentially accelerating innovation and improving application performance.

microsoftaimodelsdevelopment
Simon Willison9d ago2mFREE

Developers can now run MicroPython code directly in web browsers and WASM environments, expanding Python's reach to client-side and serverless applications.

micropythonwebassemblypythonclient-side
Simon Willison9d ago2mFREE

Enables serverless object detection without managing infrastructure, simplifying AI integration for developers.

amazon-novaobject-detectionbedrockserverless
AWS ML Blog9d ago1mFREE

This tool simplifies collecting and analyzing data from MicroPython-powered embedded devices, providing developers with an accessible way to integrate IoT data into Datasette.

datasettemicropythoniotembedded-systems
Simon Willison9d ago2mFREE

Simplifies quick file edits by removing upload steps, saving developers time.

file-editorweb-toolproductivity
Simon Willison9d ago1mFREE
// Yesterday13 stories