Sign in

Tobias Bieniek

@tobias.bieniek.cloud
299 followers 117 following 189 posts

✈️ glider pilot 🦀 crates.io team & Rust Foundation engineer 🐹 Ember CLI team emeritus

PostsRepliesMedia
Tobias Bieniek @tobias.bieniek.cloud · 30/09/2026
static.klipy.com
Woody and Buzz Lightyear: Pings Everywhere
ALT: Woody and Buzz Lightyear: Pings Everywhere
120
Tobias Bieniek @tobias.bieniek.cloud · 30/09/2026
looks familiar... 🙈
011
Reposted by Tobias Bieniek
Mainmatter @mainmatter.com · 28/09/2026
We're hiring a Rust Engineering Consultant. We're looking for strong expertise in C-to-Rust migrations or Rust web backends, ideally both, plus experience leading projects and using AI to accelerate development. Learn more and apply 👇 #rustlang
mainmatter.notion.site
Rust Engineering Consultant 2026 | Notion
Please email jobs+rust@mainmatter.com with your résumé and availability.
012
Reposted by Tobias Bieniek
Jonas Kruckenberg @jonaskruckenberg.de · 28/09/2026
come work with me! work with dome of the biggest companies on some of the hardest problems! mainmatter.notion.site/Rust-Enginee...
mainmatter.notion.site
Rust Engineering Consultant 2026 | Notion
Please email jobs+rust@mainmatter.com with your résumé and availability.
2115
Reposted by Tobias Bieniek
Raph Levien @raphlinus.bsky.social · 23/09/2026
A huge milestone: Fearless SIMD 1.0 is published: linebender.org/blog/fearles.... This was a real collaboration, thanks especially to Sergey Davidoff for pushing this over the line, Laurenz Stampfl, Andrew Jakubowicz, valadaptive, Benjamin Saunders, and Daniel McNab.
linebender.org
Fearless SIMD v1.0 is here
Fearless SIMD v1.0 is here
27715
Reposted by Tobias Bieniek
Dion Dokter @diondokter.nl · 19/09/2026
"We don't want to use Rust because we don't want hundreds of dependencies" Ok, then just don't add dependencies? You're in control of your own destiny here! sudo-rs has only 2 which they deemed better than 0
4441
Reposted by Tobias Bieniek
Rust Language @rust-lang.org · 17/09/2026
⚠️ We believe that there is an ongoing campaign targeting owners of popular crates and rust-lang team members that is attempting to compromise devices and accounts in order to use them to publish malware. See our blog post for details: blog.rust-lang.org/2026/09/17/t...
blog.rust-lang.org
Be alert: targeted attacks on prominent Rustaceans | Rust Blog
Empowering everyone to build reliable and efficient software.
122090
Tobias Bieniek @tobias.bieniek.cloud · 17/09/2026
🦀 or you can go to github.com/sponsors/rus... and sponsor the #rustlang project directly through the @rustfoundation.org maintainers fund 😉 more info at rust-lang.org/funding/ including links to all the people you can sponsor individually 😊
github.com
Sponsor @rustfoundation on GitHub Sponsors
The Rust Foundation is an independent non-profit organization dedicated to a more secure, performant, and versatile future through the use of the Rust programming language. Our work supports Rust's...
010
Reposted by Tobias Bieniek
Michael Gattozzi @mgattozzi.dev · 04/09/2026
Unfortunately a job offer I had fell through due to head count elimination so I am currently on the market for a new job! If you need someone with 11+ years of Rust, backend, and distributed systems experience I am your guy. Contact Email: michael@ductile.systems. Boosting appreciated!
26733
Reposted by Tobias Bieniek
Dirkjan Ochtman @djc.ochtman.nl · 03/09/2026
PSA: if you depend on Hickory DNS, upgrade now: github.com/hickory-dns/... DNS implementations (not just Hickory) have been hit pretty hard by LLM-assisted vulnerability research.
github.com
Release v0.26.2 · hickory-dns/hickory-dns
This release fixes a large number of security vulnerabilities. Most of the issues were related to DNSSEC validation, denial of service and resource consumption attacks, and reachable panics in pars...
33411
Tobias Bieniek @tobias.bieniek.cloud · 03/09/2026
that list leads to the public crates.io/users/sunsho... page these days, so that won't go anywhere :)
crates.io
crates.io: Rust Package Registry
crates.io serves as a central registry for sharing crates, which are packages or libraries written in Rust that you can use to enhance your projects
010
Tobias Bieniek @tobias.bieniek.cloud · 03/09/2026
I keep seeing people looking at this number and I'm always surprised by it. Before I remove anything that people like, how much do you use the rest of this dashboard page? 😅
100
Reposted by Tobias Bieniek
Marco Otte-Witte @marcoow.bsky.social · 01/09/2026
.@mainmatter.com has an all-star Rust team available immediately. After some budget hiccups at one of our clients, we happen to have a well-established team of Rust experts around that's ready to go immediately. 1/🧵
173
Reposted by Tobias Bieniek
Andrew Lilley Brinker @alilleybrinker.com · 31/08/2026
Hey @1password.bsky.social, time to change course.
alilleybrinker.com
1Password Supports the Ethnic Cleansing of Europe — Andrew Lilley Brinker
1Password has committed $300,000 to Omarchy. This is unacceptable and must be rescinded.
541518622
Reposted by Tobias Bieniek
Josh Bressers @josh.bressers.name · 31/08/2026
I had a chat with Erik Möller from @sovereign.tech about what they're doing in the universe of funding open source Eric breaks down what they're doing, how it works, and how you can apply for funding. We even learn about some similar projects happening in the EU
opensourcesecurity.io
Sovereign Tech Agency with Erik Möller
Episode Links Erik’s LinkedIn Sovereign Tech Agency Meet the First Sovereign Tech Standards Cohort Incident Report: unsanctioned agent behaviour during cyber testing STA on Mastodon This episode is al...
022
Reposted by Tobias Bieniek
Andrew Lilley Brinker @alilleybrinker.com · 31/08/2026
Hey @1password.bsky.social, longtime customer here: stop giving your money to fascists.
19457131
Reposted by Tobias Bieniek
Artem Zakharchenko @kettanaito.com · 25/08/2026
Please help me make MSW sustainable. It helps hundreds of thousands of engineers, countless companies from startups to enterprise to government institutions build better software. Consider becoming a GitHub sponsor: github.com/sponsors/mswjs
github.com
Sponsor @mswjs on GitHub Sponsors
Mock Service Worker is an API mocking library for browser and Node.js.
1134
Tobias Bieniek @tobias.bieniek.cloud · 22/08/2026
unfortunately it's a bit late for the latter 😅 renames are a bit tricky and a lot of people were even upset about us supporting deletions at all to remedy such situations, so I'm not too hopeful about seeing support for that any time soon 😐
110
Reposted by Tobias Bieniek
Rust Language @rust-lang.org · 20/08/2026
⚠️ A few hours ago, a malicious crate was discovered on crates.​io which spread as a dependency of `arrayref` and some other crates, likely due to compromised credentials. The affected versions have been deleted. For details and how to see if you are impacted, see: blog.rust-lang.org/2026/08/20/s...
blog.rust-lang.org
Supply chain attack on arrayref | Rust Blog
Empowering everyone to build reliable and efficient software.
119481
Reposted by Tobias Bieniek
Dirkjan Ochtman @djc.ochtman.nl · 13/08/2026
Happy to announce a new project: OxiSH, a modern, memory-safe SSH server. dirkjan.ochtman.nl/writing/2026... Prossimo has three criteria for suggesting memory-safe rewrites: (1) widely used, (2) on a security boundary and (3) performing a critical function. This is clearly true for SSH servers.
dirkjan.ochtman.nl
OxiSH: a modern, memory-safe SSH server – Dirkjan Ochtman
26614
Reposted by Tobias Bieniek
jberanek.bsky.social @jberanek.bsky.social · 03/08/2026
Blogged about what I have been up to lately in upstream Rust.
kobzol.github.io
Sovereign Tech Fellowship for Rust maintenance (June-July 2026 report)
For the past few years, I was sponsored by Futurewei to work on upstream Rust. It was great to have the freedom to work on anything I wanted in Rust, be it new features, performance optimizations, bot...
0102
Tobias Bieniek @tobias.bieniek.cloud · 16/07/2026
crates.io/crates/typos... docs.rs/crate/typos-... docs.rs/typos-dict/0... 😅
141
Tobias Bieniek @tobias.bieniek.cloud · 13/07/2026
I would love to just have a no_std marker on crates.io itself. haven't had time to dig into the details yet though.
crates.io
crates.io: Rust Package Registry
crates.io serves as a central registry for sharing crates, which are packages or libraries written in Rust that you can use to enhance your projects
140
Tobias Bieniek @tobias.bieniek.cloud · 13/07/2026
🦀 in case you're wondering what the crates.io team has been up to for the past 6 months: blog.rust-lang.org/2026/07/13/c... - Source Code Viewer - Untangling crates.io Accounts from GitHub - Advisories and Suggestions - Cuter Error Pages - Svelte Frontend Migration Completed #rustlang
blog.rust-lang.org
crates.io: development update | Rust Blog
Empowering everyone to build reliable and efficient software.
1309
Reposted by Tobias Bieniek
pnpm @pnpm.io · 10/07/2026
If you are on the latest pnpm v11.10.0 (or v10.34.5), you can try out the pnpm v12 alpha via: pnpm self-update 12.0.0-alpha.5 It is fully in Rust! 🦀
3688
Reposted by Tobias Bieniek
Josh Bressers @josh.bressers.name · 06/07/2026
I had a chat with Lori Lorusso and Niko Matsakis about the Rust Foundation Maintainers Fund Funding open source is a huge topic right now, the Rust Foundation has some great ideas. It will be exciting to watch this one grow and evolve #OpenSourceSecurity #rust #RustFoundation
opensourcesecurity.io
Rust Foundation Maintainers Fund with Lori and Niko
Josh chats with Lori Lorusso and Niko Matsakis about the Rust Foundation Maintainers Fund. This is a new project the Rust Foundation has create to help fund Rust maintainers. It’s a great discussion w...
173
Reposted by Tobias Bieniek
EuroRust @eurorust.eu · 02/07/2026
🦀 Are you feeling lucky? Amos (@fasterthanli.me) and Tris (from No Boilerplate) are hosting a Rust game show at #EuroRust26! Two teams of expert panelists navigate bug-filled code in a spooky game show of pedantic corrections 🎲👻 Learn more 👉 eurorust.eu/talks/game-s... #RustLangNo
0212
Tobias Bieniek @tobias.bieniek.cloud · 02/07/2026
I wish... 😅
030
Reposted by Tobias Bieniek
Mainmatter @mainmatter.com · 01/07/2026
Chapter 1 of our "C to Rust Migration Book", written by @jonaskruckenberg.de, is out now. We distilled our experience modernizing critical software into this self-paced course: FFI fundamentals, safe mixed codebases, best practices. Read it for free now 👉 mainmatter.com/c-to-rust-mi... #RustLang
mainmatter.com
The C to Rust Migration Book - Mainmatter
Learn how to migrate production C codebases to safe, idiomatic Rust one module at a time.
0103
Tobias Bieniek @tobias.bieniek.cloud · 28/06/2026
honestly, no clue. I'm relying on diffs.com for the rendering 😅
diffs.com
Diffs, from Pierre
@pierre/diffs is an open source diff and code rendering library. It's built on Shiki for syntax highlighting and theming, is super customizable, and comes packed with features.
020
Tobias Bieniek @tobias.bieniek.cloud · 27/06/2026
yeah, it's on my todo list already to improve that 😄
030
Tobias Bieniek @tobias.bieniek.cloud · 27/06/2026
🦀 first basic prototype for the diff viewer on crates.io seems to work as planned 😍 and the regular code viewer is now publicly released :) #rustlang
41088
Tobias Bieniek @tobias.bieniek.cloud · 25/06/2026
🦀 It's open for "public" beta testing now! Example: crates.io/crates/base6... The code viewer is not linked anywhere yet while we test it. Just append `/code` to the crate URLs 😉 #rustlang
0252
Tobias Bieniek @tobias.bieniek.cloud · 21/06/2026
see github.com/rust-lang/cr... :)
github.com
Add a source code viewer for crate versions by Turbo87 · Pull Request #14020 · rust-lang/crates.io
This adds a "Code" route on crate version pages that browses a published version's source directly from the CDN, with no new backend. Individual files are range-fetched out of the see...
020
Tobias Bieniek @tobias.bieniek.cloud · 20/06/2026
yeah
020
Tobias Bieniek @tobias.bieniek.cloud · 20/06/2026
admittedly not using *your* syntax highlighting lib though 😄
170
Tobias Bieniek @tobias.bieniek.cloud · 20/06/2026
🦀 I did another thing... what do you think? 😄 Code viewer right inside of crates.io that shows the uploaded files ✨ It's still a prototype, but once I've cleaned it up I'll open a PR. Diff viewer next? 🙀 #rustlang
8822
Reposted by Tobias Bieniek
dan @danabra.mov · 19/06/2026
"but where are all the bluesky instances?" i've heard this so many times that i wrote an explainer
overreacted.io
There Are No Instances in atproto — overreacted
Like RSS and Google Reader.
42677202
Reposted by Tobias Bieniek
Kevin Cunningham @dolearning.dev · 19/06/2026
TIL you can ignore files in git globally. Never again will a .DS_Store slip into a repo because I forgot to add it to the .gitignore! nelson.cloud/.gitignore-i...
nelson.cloud
.gitignore Isn’t the Only Way To Ignore Files in Git
You can ignore files in .gitignore, .git/info/exclude, and ~/.config/git/ignore
0375
Tobias Bieniek @tobias.bieniek.cloud · 16/06/2026
github.com/rust-lang/st... 😅
github.com
Pull requests · rust-lang/std-replacement-data
Curated dataset of standard-library replacements for crates, surfaced on crates.io - Pull requests · rust-lang/std-replacement-data
210
Tobias Bieniek @tobias.bieniek.cloud · 15/06/2026
yeah, I have a couple more in mind too. should be easier to contribute now with less chance for merge conflicts 😄
110
Tobias Bieniek @tobias.bieniek.cloud · 15/06/2026
🦀 I've now extracted the dataset to github.com/rust-lang/st... This should make it easier to other tools to make use of the data. The combined dataset is available as rust-lang.github.io/std-replacem... :) Contributions welcome! ✨ #rustlang
github.com
GitHub - rust-lang/std-replacement-data: Curated dataset of standard-library replacements for crates, surfaced on crates.io
Curated dataset of standard-library replacements for crates, surfaced on crates.io - rust-lang/std-replacement-data
1152
Tobias Bieniek @tobias.bieniek.cloud · 13/06/2026
unintentional, but might indeed be positive in the end 😅 I did play around with SSR for markdown summaries for crates but so far it's only an idea in my head
110
Reposted by Tobias Bieniek
daniel:// stenberg:// @bagder.mastodon.social.ap.brid.gy · 10/06/2026
A human in control. In #curl development. daniel.haxx.se/blog/2026/06/10/a-hu…
daniel.haxx.se
A human in control
There seems to be a fair amount of people in either extremes in the current AI landscape. At one side we see the “vibe coders” who use agents and allow them to merge code without any person even looking at the source, while on the other side of the field there are people who are against everything and anything even remotely associated with AI. My personal stance is somewhere in between, as I suppose shouldn’t be too surprising to readers of this blog. ## A work of love and pride The core team behind curl, and that is more people than just me, consists of individuals to whom code quality and source code excellence is important. We do software development because it is a craft we love and we are proud of what we have accomplished this far. We do not hand over our responsibilities to any machines. _We stand for ever bit of code we merge – as humans._ ## AIs do mistakes Blindly accepting code written by AI means that you merge a certain amount of errors, but this is certainly true for human written code as well, so this is not in itself special. Some data suggests that AI generated code might even contain more mistakes than the human versions. We invented test cases and code review a long time ago as a means to help us combat and reduce mistakes to get merged. The particular way code was written does not take away the benefits from code review and getting additional checks and eyes on pending changes. A good code review helps spotting mistakes, omissions or slip-ups. It also helps reinforce the architecture and established design choices. This is true however the code was created. This far, code reviews done by automatic AI bots and the likes have not yet managed to replace the humans. They are simply not good enough. Human reviews are much better. They catch other things and they help make sure proposed changes stay on track. Not to mention how I want to know how curl works, even if I don’t keep 100% intimate knowledge of every single angle and corner, I know most of it. I think it helps me make better decisions, debug better, help users better and keep the architecture sound. Getting the initial code written is not the big deal. For curl, maintaining and polishing the landed code _through decades_ is the real task. _Everything we merge in curl is determined fine and fitting by humans._ ## Humans do mistakes In all living software projects we get bugs reported and we fix them. We do new releases and continue to iterate. We have done this since software was invented and we still do, as humans are quite fallible and easily make mistakes. We try to reduce the error density and frequency by adding tests and by adding more human eyes on the code before we green-light it. It helps, but is not perfect. To help us do better code we invent, introduce and enforce a wide variety of different tools. With tools that look at code and identify problems in the early stages, they help avoid landing bad code in the first place. They make us do better code. They reduce the bug frequency. Some of the best tools for detecting coding mistakes today use AI. These tools might work on existing source code in a git repository or they might look at proposed changes in pull-requests. Above I mentioned that human code reviews are better; but the opposite is also true. In a somewhat complicated change request, it is now common that after the humans can’t spot any more problems, the AI PR review bots can still find an issue or two to remark on. Sure, sometimes they are wrong and then the comment is easily dismissed, but more often than not the findings they point out are actually something worth addressing before merge. _curl is developed and driven by humans, assisted by tools._ ## Communication is for humans Open Source is about sharing code and is a development model where we do things in the open. The _communication_ part of this model is key. Share your ideas, your visions, your problems or maybe just your ideas for what to do this afternoon. Express what you want or what the problem is, and the team can respond and we can work together on fixing and improving whatever needs to be done. Effective communication, a condition for good Open Source, implies _human-to-human_ interaction. Inserting a large AI generated tone-deaf large wall-of-text into such a flow _can_ still work, but only in the same way humans can learn to work with difficult individuals as well. It is not ideal and it is not a smooth way of working. It introduces sand in the machine. Don’t do that. It is rude. _Effective Open Source work means we communicate as humans, even if parts of the work and the code is made with the help of AI._ ## The combination Humans and machines excel at different things. We can complement each other in software development. Everyone is free to act to their own will, but in the curl project we don’t hand over responsibility to machines. We stand for our product. We make it as good as we possibly can; using all the tools that are available to us. I claim that in order to do this, humans need to remain in control.
21712
Tobias Bieniek @tobias.bieniek.cloud · 09/06/2026
github.com/rust-lang/cr...
github.com
Add `Ferris` component with cursor eye tracking by Turbo87 · Pull Request #13894 · rust-lang/crates.io
This replaces the static cuddlyferris.svg asset with a Ferris component that renders the same artwork. The eye highlights lean toward the cursor on devices with a hovering pointer, and stay put on ...
040
Tobias Bieniek @tobias.bieniek.cloud · 09/06/2026
🦀 🙄 😆 #rustlang
1231
Tobias Bieniek @tobias.bieniek.cloud · 09/06/2026
I'd say that's almost working as intended. it's a clear sign that you can just close the PR without even looking at the diff :D
100
Tobias Bieniek @tobias.bieniek.cloud · 04/06/2026
exactly 😄
170
Tobias Bieniek @tobias.bieniek.cloud · 04/06/2026
interesting, I like the idea
040
Tobias Bieniek @tobias.bieniek.cloud · 04/06/2026
see the "Related" section in the PR 😄
110