Sign in

Vincent Sgherzi

@vincents.dev
81 followers 136 following 198 posts

vincents.dev Everyone appreciates simplicity until you have to build a rocket ship out of toothpicks and glue

PostsRepliesMedia
Reposted by Vincent Sgherzi
Matthew Sanabria @matthewsanabria.com · 25/09/2026
AI is gonna wipe out most jobs, but not mine because... ...I'm building software factories ...I'm using AI to accelerate ...I started a community using AI ...I use these 7 steps follow me to learn ...I ship 500 PRs a second Shut up and go build meaningful relationships.
2283
Vincent Sgherzi @vincents.dev · 27/08/2026
Everyone’s been on edge with supply chain attacks. A first party check for uploading crates is EXACTLY what I was hoping for. Good on the foundation and I can’t wait to see this rolled out. I’d love to see more strict auditing for especially popular crates #rust #rustlang
000
Reposted by Vincent Sgherzi
The Rust Foundation @rustfoundation.org · 27/08/2026
Welcoming Jess Izen as our new Engineer in Residence! For the next year she'll work with our team (while staying at AWS) on crates.io security and support for #rustlang community libraries, starting with malicious crate detection for new publishes! 🦀 Learn more: rustfoundation.org/media/welcom...
0112
Reposted by Vincent Sgherzi
Thomas Ptacek @sockpuppet.org · 20/08/2026
I wrote a thingy. sockpuppet.org/blog/2026/08...
sockpuppet.org
Stop Making TUIs
10589
Reposted by Vincent Sgherzi
Evan Greer @evangreer.bsky.social · 16/08/2026
there is no such thing as "age verification." All "age verification" is actually "identity verification." You can coat it in glitter and "privacy-preserving" wrapping paper. But in the end, mandating age verification means mandating surveillance be built into software and hardware. Period.
106138785600
Vincent Sgherzi @vincents.dev · 13/08/2026
it's 2020 and there's an overflow in zoom. It's 2026 and there's an overflow in zoom.... a.security/blog/asecuri...
000
Reposted by Vincent Sgherzi
Koochiha @koochiha.xyz · 31/07/2026
The elites don’t want you to know this, but dependencies on crates.io are free, you can take them home. I have 1458 dependencies.
0192
Reposted by Vincent Sgherzi
Alexis King @lexi-lambda.bsky.social · 27/07/2026
The recording of my talk from Software Should Work is now up. :) www.youtube.com/watch?v=0BXu...
youtube.com
The Unreasonable Effectiveness of Constructive Data Modeling - Alexis King | SSW 2026
YouTube video by Software Should Work
912435
Reposted by Vincent Sgherzi
Josh Bressers @josh.bressers.name · 06/07/2026
I had a chat with Lori Lorusso and Niko Matsakis about the Rust Foundation Maintainers Fund Funding open source is a huge topic right now, the Rust Foundation has some great ideas. It will be exciting to watch this one grow and evolve #OpenSourceSecurity #rust #RustFoundation
opensourcesecurity.io
Rust Foundation Maintainers Fund with Lori and Niko
Josh chats with Lori Lorusso and Niko Matsakis about the Rust Foundation Maintainers Fund. This is a new project the Rust Foundation has create to help fund Rust maintainers. It’s a great discussion w...
173
Reposted by Vincent Sgherzi
Jonathan Anderson @trombonehero.bsky.social · 29/05/2026
Beautiful: engineers “must be arrogant enough to see the world as it isn’t, but humble enough to accept the world as it is” @oxide.computer rfd.shared.oxide.computer/rfd/0003
rfd.shared.oxide.computer
3 - Oxide Hiring Process | RFD | Oxide
021
Reposted by Vincent Sgherzi
Justin Garrison @justingarrison.com · 12/05/2026
TIL sleepingrobots.com/dreams/stop-...
sleepingrobots.com
Friends Don't Let Friends Use Ollama | Sleeping Robots
Ollama gained traction by being the first easy llama.cpp wrapper, then spent years dodging attribution, misleading users, and pivoting to cloud, all while riding VC money earned on someone else's engi...
1255
Reposted by Vincent Sgherzi
asa @asap.systems · 05/05/2026
> rust is overkill for a simple tui, I'll use typescript
> my tui is too slow, I need to buy the js runtime
> vibe rewrite js runtime in rust
> vibe rewrite js runtime in rust
517315
Reposted by Vincent Sgherzi
Joseph Cox @josephcox.bsky.social · 01/05/2026
Turns out Rights Con was cancelled because of pressure from China. Angered over speakers from Taiwan www.404media.co/china-pressu...
404media.co
China Pressure Canceled World’s Largest Digital Human Rights Conference
RightCon's organizers said Beijing was upset over over the inclusion of speakers from Taiwain.
27232
Reposted by Vincent Sgherzi
ijanc' @ijanc.org · 26/04/2026
OpenBSD on Firecracker. 1.4 MB kernel, ~30 ms cold boot, no BIOS, no PCI, virtio-mmio only. Experimental port. Wrote up how to build the kernel, prep an FFS2 disk with vnd(4), and boot the thing from Linux. ijanc.org/posts/openbs... Commit: git.sr.ht/~ijanc/openb...
ijanc.org
OpenBSD on Firecracker: from source to first boot, step by step
Hands-on tutorial to fetch the OpenBSD source (or my mirror with the patch already applied), build the FIRECRACKER kernel, generate the disk image with vnd(8), install Firecracker on the Linux host an...
0133
Vincent Sgherzi @vincents.dev · 26/04/2026
vincents.dev/blog/go-is-n... #rust #rustlang #go #golang #software
vincents.dev
Go Is Not For Me
130
Vincent Sgherzi @vincents.dev · 19/04/2026
I've noticed on Macos 26 any third party menu bar program I install will cause the console application to fill with logs with "WindowServer _CGXPackagesSetWindowConstraints: Invalid window" seems to be thrown from somewhere deep inside MacOS' windowserver. #macos #apple #mac
030
Reposted by Vincent Sgherzi
Bryan Cantrill @bcantrill.bsky.social · 12/04/2026
The peril of laziness lost bcantrill.dtrace.org/2026/04/12/t...
bcantrill.dtrace.org
The peril of laziness lost | The Observation Deck
427887
Reposted by Vincent Sgherzi
Joyee Cheung @joyeecheung.bsky.social · 25/03/2026
Wrote a blog post about how this works: joyeecheung.github.io/blog/2026/03...
joyeecheung.github.io
Teaching gdb to Unwind V8 JIT Frames on x64
Recently I landed a custom Python-gdb unwinder in V8 that allows gdb to unwind through V8’s JIT-compiled frames on x64. During the process, I ended up digging into gdb’s internals to figure out how to
0183
Vincent Sgherzi @vincents.dev · 22/03/2026
“As a developer, I want to kill myself when working with Wayland code.” www.p4m.dev/posts/29/ind... This is why we’re stuck with electron everywhere. The desktop failed to provide unified ergonomic apis #c #linux #wayland #x11 #electron #javascript
p4m.dev
I Hate: Programming Wayland Applications
000
Reposted by Vincent Sgherzi
Jeremy Soller @soller.dev · 01/03/2026
There has never been a time in my life when I have been less enthused to be a programmer than now.
1193
Vincent Sgherzi @vincents.dev · 27/02/2026
leginfo.legislature.ca.gov/faces/billTe... this shit is ridiculous. Why does my fucking micro controller need age verification #law #california #software
leginfo.legislature.ca.gov
000
Reposted by Vincent Sgherzi
vx-underground (automated mirror) @vxundergroundre.bsky.social · 21/02/2026
United States Colorado Sen\. Matt Ball and Rep\. Amy Paschal have authored bill SB26\-051\. ︀︀ ︀︀SB26\-051 would require Operating System, such as Windows or Linux, to perform age verification on users which then third party apps can leverage via API to ensure someone's age\.
x.com
vx-underground on X: "United States Colorado Sen. Matt Ball and Rep. Amy Paschal have authored bill SB26-051. SB26-051 would require Operating System, such as Windows or Linux, to perform age verification on users which then third party apps can leverage via API to ensure someone's age." / X
United States Colorado Sen. Matt Ball and Rep. Amy Paschal have authored bill SB26-051. SB26-051 would require Operating System, such as Windows or Linux, to perform age verification on users which then third party apps can leverage via API to ensure someone's age.
12110
Reposted by Vincent Sgherzi
Adriaan @adriaan.games · 16/02/2026
Godot's GitHub has increasingly many pull requests generated by LLMs and it's a MASSIVE time waster for reviewers – especially if people don't disclose it. Changes often make no sense, descriptions are extremely verbose, users don't understand their own changes… It's a total shitshow. #godotengine
301395310
Vincent Sgherzi @vincents.dev · 13/02/2026
Rust still dosent have first class support for bit fields :’) #rustlang #rust
000
Reposted by Vincent Sgherzi
Eugene Vinitsky 🍒 @eugenevinitsky.bsky.social · 21/01/2026
"We haven't got the money, so we'll have to think" is among the quotes pinned to my wall
2383
Reposted by Vincent Sgherzi
Tobias Bieniek @tobias.bieniek.cloud · 21/01/2026
🦀 curious what the crates.io team has been up to? blog.rust-lang.org/2026/01/21/c... provides a high-level summary of our work over the past 6 months It includes a new Security tab, GitLab support for Trusted Publishing, SLoC counting, and many other things #rustlang
blog.rust-lang.org
crates.io: development update | Rust Blog
Empowering everyone to build reliable and efficient software.
2457
Vincent Sgherzi @vincents.dev · 28/12/2025
Handling rust errors without dependencies vincents.dev/blog/rust-er... #rust #rustlang
vincents.dev
Rust Errors Without Dependencies
100
Reposted by Vincent Sgherzi
Steve Klabnik @steveklabnik.com · 16/12/2025
Just to make it abundantly clear: don’t post people’s home addresses to the internet what is wrong with you
418815
Vincent Sgherzi @vincents.dev · 11/12/2025
"uk banning VPNs for those under 16" at this point they might as well just fork the GFW. Dumb ass laws by those who can't attach a pdf to an email.
000
Vincent Sgherzi @vincents.dev · 09/12/2025
Does anyone use the newer [track _caller] macro in their custom errors? How are folks usually figuring out where the error occurred? On another note if I don’t want to use a crate is map_err the only real way to provide context for an error? #rust #rustlang #software
000
Reposted by Vincent Sgherzi
Bryan Cantrill @bcantrill.bsky.social · 06/12/2025
Your intellectual fly is open bcantrill.dtrace.org/2025/12/05/y...
bcantrill.dtrace.org
Your intellectual fly is open | The Observation Deck
815833
Vincent Sgherzi @vincents.dev · 03/12/2025
What is the idiomatic way to write a map closure with a result type? Do I just collect it as a result and use a ? On it? Doesn’t that make the iteration occur twice? #rust #rustlang
200
Reposted by Vincent Sgherzi
srrrse @without.boats · 24/11/2025
In more than decade of writing Rust, I have never once in my life needed back pointers for anything.
5403
Reposted by Vincent Sgherzi
oliver @eikopf.com · 19/11/2025
*cowering in the fetal position* rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fixes this rust fi
1161
Reposted by Vincent Sgherzi
Mara Bos @mara.bsky.social · 19/11/2025
#rustlang hot take: We should rename .unwrap() to .or_panic(). (And .expect() to .or_panic_with().) "Unwrap" is a terrible name for the panicking function, especially since we also have things like .unwrap_or() and .unwrap_or_default() which never panic.
3647667
Vincent Sgherzi @vincents.dev · 19/11/2025
blog.cloudflare.com/18-november-... Why does the cloudflare codebase allow for .unwrap() Ideally it should be banned via clippy lints. The entire point of errors as values is that this sort of thing can be handled. They could've just used a match on the result. #rust #rustlang #cloudflare
010
Reposted by Vincent Sgherzi
srrrse @without.boats · 15/11/2025
Britain continuing their long history of leadership in ruining the world
271
Reposted by Vincent Sgherzi
Steve Klabnik @steveklabnik.com · 13/11/2025
“We adopted #rustlang for its security and are seeing a 1000x reduction in memory safety vulnerability density ... with Rust changes having a 4x lower rollback rate and spending 25% less time in code review, the safer path is now also the faster one.” security.googleblog.com/2025/11/rust...
security.googleblog.com
Rust in Android: move fast and fix things
Posted by Jeff Vander Stoep, Android Last year, we wrote about why a memory safety strategy that focuses on vulnerability prevention in ...
332290
Vincent Sgherzi @vincents.dev · 12/11/2025
me: "Software owes it to its users to be secure" HN: "there is no such obligation" We owe it to the craft to product correct and performant software. We are meant to understand and mitigate risk so others don't have to. This is the social contract of being a software engineer. #rustlang
010
Reposted by Vincent Sgherzi
Bryan Cantrill @bcantrill.bsky.social · 06/11/2025
Forgive me, for I have broken my vow to not tweet.
A screenshot of a quote tweet from Sequoia partner Shaun Maguire quoting Silicon Valley legends (including Don Valentine, Pierre Lamond, and Mike Moritz) explaining that he has "Sequoia-sized shoes to fill". The quote tweet is an image of Lloyd Bentsen in the 1988 VP debate, immediately before telling Dan Quayle that he is "no Jack Kennedy."
3401
Reposted by Vincent Sgherzi
Adam Leventhal @ahl.bsky.social · 01/11/2025
Does async rust cause autism? I’m just asking questions.
4272
Reposted by Vincent Sgherzi
nrc @ncameron.org · 30/10/2025
I've done a 180 on supply chain security - I used to think it was mostly a theoretical problem: between communities of mostly good actors, many eyes to review, good policies for announcing vulns and removing crates, and basic due diligence, issues would be found and addressed before doing damage
3114
Reposted by Vincent Sgherzi
Dirkjan Ochtman @djc.ochtman.nl · 22/10/2025
edera.dev/stories/tarm...
edera.dev
TARmageddon (CVE-2025-62518): RCE Vulnerability Highlights the Challenges of Open Source Abandonware | Edera Blog
Edera uncovers TARmageddon (CVE-2025-62518), a Rust async-tar RCE flaw exposing the real dangers of open-source abandonware and supply chain security.
042
Vincent Sgherzi @vincents.dev · 20/10/2025
Impressed that crates io didn’t go down with the whole aws outage. The optimist in my wants to think that it’s redundant across multiple regions #rustlang
030
Reposted by Vincent Sgherzi
AapoAlas @aapoalas.trynova.dev · 12/10/2025
Went and did a quick data collection on the relative frequency of GitHub issues mentioning "crash" or "sefault"/"segmentation fault" in #Rustlang, #Ziglang, #C++, and #C. Selected 10 most starred repositories that use GH issues. Not the most scientific data selection, but it was fun!
docs.google.com
Relative crash and segmentation fault reporting frequency in OpenSource projects across four systems programming languages
1101
Reposted by Vincent Sgherzi
Yuri Astrakhan @nyurik.bsky.social · 10/10/2025
#Ubuntu 25.10 released, switching all basic commands like `ls`, `sudo`, `cd`, `cat`, ... to pure #Rustlang implementations. canonical.com/blog/canonic...
canonical.com
Canonical releases Ubuntu 25.10 Questing Quokka | Canonical
The latest interim release of Ubuntu comes with compatibility enhancements at the silicon level, accessibility upgrades and a robust security posture that sets the stage for the next LTS. October 9, 2...
0103
Reposted by Vincent Sgherzi
Halide + Kino @halideapp.bsky.social · 02/10/2025
New: @sandofsky.com reviews the iPhone Air camera in “Requiem for a Rangefinder". All shots taken on iPhone with Halide Mark III or shot on film. www.lux.camera/requiem-ipho...
lux.camera
Requiem for the Rangefinder: An iPhone Air Review
Last week I set out to write a few thousand words on the iPhone Air, but it turns out I only need three: the lesser iPhone. Compared to the Pro and baseline models, it has fewer cameras and a smaller ...
1306
Vincent Sgherzi @vincents.dev · 29/09/2025
Does anyone know if there’s a way to detect if your current core is a p core or e core on Mac systems in rust? I’m assuming there’s a sys call for this but I can’t really find anything… #macos #rust #apple #mac #rustlang
010