Oxide and Friends

Oxide Computer Company

Oxide hosts a weekly Discord show where we discuss a wide range of topics: computer history, startups, Oxide hardware bringup, and other topics du jour. These are the recordings in podcast form. Join us live (usually Mondays at 5pm PT) https://discord.gg/gcQxNHAKCB Subscribe to our calendar: https://sesh.fyi/api/calendar/v2/iMdFbuFRupMwuTiwvXswNU.ics read less
TechnologyTechnology

Episodes

Discovering the XZ Backdoor with Andres Freund
Apr 10 2024
Discovering the XZ Backdoor with Andres Freund
Andres Freund joined Bryan and Adam to talk about his discovery of the xz backdoor. It’s an incredible story… so great to get into the details with Andres. We started by ranting about the coverage in the New York Times… coverage that explicitly refused to dig into the details! It’s all the more shocking because the big story here is how Andres’ penchant for digging into the details is what saved us all from what would have been a pervasive and damaging attack!In addition to Bryan Cantrill and Adam Leventhal, we were joined by special guest Andres Freund.Our research for this episode:Andres' initial public disclosureNew York Times: Did One Guy Just Stop a Huge Cyberattack? by Kevin RooseKevin RooseNew York Times front page from April 4th, 2024How I got started as a developer with Andres Freund & Heikki Linnakangas | Path To Citus Con Ep08The Mystery of ‘Jia Tan,’ the XZ Backdoor Mastermind | WIREDHow one volunteer stopped a backdoor from exposing Linux systems worldwide - The VergeLinux backdoor was a long con, possibly with nation-state support, experts say - Nextgov/FCWresearch!rsc: Timeline of the xz open source attackBrian Krebs thread on mastodonXz/liblzma: Bash-stage Obfuscation ExplainedA Microcosm of the interactions in Open Source projectsRisky Business #743 -- A chat about the xz backdoor with the guy who found it (podcast)Risky Biz News: F-Droid narrowly avoided XZ-like incident in 2020 (podcast)What we know about the xz Utils backdoor that almost infected the world | Ars TechnicaEverything I know about the XZ backdoorLINUX Unplugged 556: The xz Backdoor Exposed 🚨 (podcast)If we got something wrong or missed something, please file a PR! Our next show will likely be on Monday at 5p Pacific Time on our Discord server; stay tuned to our Mastodon feeds for details, or subscribe to this calendar. We'd love to have you join us, as we always love to hear from new speakers!Recorded April 8th, 2024
Data Visualization
Mar 15 2024
Data Visualization
Data visualization is an important--and overlooked!--tool in the software engineer's tool belt. Bryan describes a recent journey with gnuplot while Oxide colleague, Charlie Park, shares his own experience with data visualization and Adam offers a visual analysis of Simpsons episodes. Stay tuned to the end to find out about the Oxide and Friends book club coming up in May.In addition to Bryan Cantrill and Adam Leventhal, we were joined by Oxide Colleague, Charlie Park.(00:00) - Intro(13:39) - OODA(22:30) - Back to Bryan(24:27) - Flame Graphs(28:58) - Statemap(32:39) - Minard / Tufte(44:53) - thingskatedid(46:39) - DTrace aggregations(56:06) - ParaView(01:03:08) - Simpsons IMDb(01:05:16) - Survivorship Bias(01:15:03) - Kartlytics(01:18:15) - Kartlytics sample group(01:19:11) - Wrapping up(01:22:02) - OxF book clubSome of the topics we hit on, in the order that we hit them:Bryan's rad gnuplotGitHub PR with Bryan's visualizationsTuftePronunciation of "Tufte" is /ˈtʌfti/Flame Graphsflamegraph-rsOODAThis American Life: A Little Bit of KnowledgeStatemapsMinard's diagramhttps://twitter.com/thingskatedid/status/1386077306381242371plot.awkVisualizing regular expressions and BNF grammars with GraphvizExample implementations of isvg and idotDTrace aggregationsRust crate ratatuiPrograms and libraries for plotting and other data visualizations:gnuplotMatplotlibggplot2ParaViewGLVisSimpsons IMDB visualizationAbraham Wald and the airplane diagram with red bullet holes – here’s the origin storyKartlyticsHow Life Works by Philip BallIf we got something wrong or missed something, please file a PR! Our next show will likely be on Monday at 5p Pacific Time on our Discord server; stay tuned to our Mastodon feeds for details, or subscribe to this calendar. We'd love to have you join us, as we always love to hear from new speakers!
Open Source LLMs with Simon Willison
Jan 17 2024
Open Source LLMs with Simon Willison
Simon Willison joined Bryan and Adam to discuss a recent article maligning open source large language models. Simon has so much practical experience with LLMs, and brings so much clarity to what they can and can’t do. How do these systems work? How do they break? What are open and proprietary LLMs out there?Recorded 1/15/2024We've been hosting a live show weekly on Mondays at 5p for about an hour, and recording them all; here is the recording.In addition to Bryan Cantrill and Adam Leventhal, we were joined by special guest Simon Willison.Some of the topics we hit on, in the order that we hit them:IEEE Spectrum: Open-Source AI Is Uniquely DangerousNewsroom Robots with Simon WillisonOxF: Another LPC55 ROM VulnerabilitySimon Willison: Stuff we figured out about AI in 2023llama.cppMistral AIFrance’s Mistral AI blows in with a $113M seed round at a $260M valuation to take on OpenAISimon again: The AI trust crisisReply All: Is Facebook Spying on You?Universal and Transferable Adversarial Attacks on Aligned Language ModelsNew York Times Sues OpenAILycosChatGPT Can Be Broken by Entering These Strange Words, And Nobody Is Sure WhySimon posted a follow up blog article where he explains using MacWhisper and Claude to make his LLM pull out a few of his favorite quotes from this episode:Talking about Open Source LLMs on Oxide and FriendsIf we got something wrong or missed something, please file a PR! Our next show will likely be on Monday at 5p Pacific Time on our Discord server; stay tuned to our Mastodon feeds for details, or subscribe to this calendar. We'd love to have you join us, as we always love to hear from new speakers!