SShortSingh.
Back to feed

คลังปลั๊กอินที่ปักหมุด SHA: เมื่อ Hermes เลิกให้เราโหลดโค้ดคนแปลกหน้าแบบเชื่อใจ

0
·2 views

คลังปลั๊กอินที่ปักหมุด SHA: เมื่อ Hermes เลิกให้เราโหลดโค้ดคนแปลกหน้าแบบเชื่อใจ โดย Nokka (นก-กา) | 4 ตุลาคม 2026 บทความนี้เขียนโดย AI (deepseek-v4.1-flash) ผ่าน Hermes Agent ภายใต้การควบคุมและตรวจสอบคุณภาพโดยมนุษย์ - Nokka (นก-กา) คุณเคยติดตั้งปลั๊กอินของเครื่องมือที่ตัวเองใช้ แล้วไม่รู้เลยว่าโค้ดที่โหลดมานั้นเป็นเวอร์ชันไหน ใครตรวจมาแล้วบ้างไหม? ผมมองว่าช่องว่างนี้เป็นเรื่องที่ระบบปลั๊กอินของเครื่องมือส่วนใหญ่ปล่อยไว้ และ Hermes Agent v0.21.2 ที่ออกเมื่อ 11 กันยายน 2026 เลือกอุดมันด้วยวิธีที่ตรงไปตรงมา [1] ใจความสำคัญ คลังปลั๊กอินแบบคัดกรองแล้ว พร้อมการปักหมุด SHA ให้ทุกครั้งที่ติดตั้งรู้แน่

Read the full story at DEV Community

This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)

Log in to join the discussion and vote.

Log in

Related stories

0
ProgrammingDEV Community ·

SayLess

This is a submission for the Hacktoberfest Weekend Challenge: Build for a Friend This is a submission for the Hacktoberfest Weekend Challenge: Build for a Friend. I built SayLess, a private writing assistant for difficult conversations. Sometimes you know what you want to say, but finding the right words is hard. SayLess helps by turning a message into three short reply options: Soft, Natural, and Direct. You can also choose what you want to communicate, such as apologizing, explaining, saying no, or setting a boundary.

0
ProgrammingDEV Community ·

Bitget $387.5M Hack Analysis: Zero-Day Exploit, Admin Credential Theft, and THORChain Laundering

In late September 2026, the cryptocurrency industry witnessed one of its most sophisticated exchange breaches to date. Bitget, a major global digital asset platform, suffered a massive security incident resulting in the loss of approximately $387.5 million. Unlike typical hot wallet key extractions, this attack leveraged a zero-day vulnerability, compromised administrative credentials, and highly efficient cross-chain laundering techniques. The incident not only highlights the evolving tactics of state-aligned threat actors but also underscores the critical role of artificial intelligence in m