Joined July 2014
730 Photos and videos
Pinned Tweet
Finally, after lots of work and waiting, I can inform you that my book Mastering Vim Quickly: From WTF to OMG in no time is ready for sale! πŸŽ‰ Here's the link: jovicailic.org/mastering-vim… #vim
25
149
436
It’s very complicated to make things simple. And it’s very simple to make things complicated.
2
6
833
LiteLLM HAS BEEN COMPROMISED. If you haven't yet, look up the news.
Nobody wants to hear this. So naturally, I'm going to say it. A compliance certificate does not make you secure. It makes you look secure. There is a difference. And this week, that difference showed up in the worst possible way for LiteLLM: 97 million monthly downloads, supply chain compromised, credentials silently stolen, while their allegedly fabricated SOC 2 and ISO 27001 badges still sit untouched on their web page. The paperwork survived. The security didn't. Welcome to security theater. I wrote about it in my book, Cybersecurity Metastrategy (lnkd.in/dpPC9wta). Longer version: In the past few years, the InfoSec industry has been very popular among VC investment firms. This has resulted in a large number of new cyber startups, in which each offers a security product for specific problems. This brings us to today, in which we have a bunch of specialized products, but a lack of comprehensive solutions. A lot of these startups are focused on technical problems, but the other big category is the β€œGRC products”. GRC stands for Governance, Risk (management) and Compliance. And while the startups with technical products promise silver‐bullet solutions, the GRC startups promise compliance and security automation. These companies claim that by using their products and services you will become compliant with security standards β€œwithin weeks”. They claim you can automate all your security and compliance related work. This is BS. Unfortunately, many companies take this bait, generally because of someone’s incompetence. All of these cyber companies that claim they can get you compliant to the highest security standard within weeks, could never exist in regulated industries such as the pharmaceutical industry, because of the way they work and the (dis)service they provide to their clients. A good rule of thumb I learned from my experience in IT and InfoSec: if something seems more exciting, pleasing, or ideal than seems reasonable, then it likely isn’t genuine, legitimate, or true. The same applies to these platforms. One of such startups is Delve, a Y Combinator-backed compliance automation platform that promised to get companies SOC 2 and ISO 27001 certified within weeks. Last week, an anonymous whistleblower group called DeepDelver published an investigation exposing what was actually going on. The evidence was hard to argue with. A misconfigured Google Spreadsheet, left publicly accessible by Delve, exposed hundreds of client audit reports. Out of 494 of them, 493 were essentially the same document. One of Delve's customers was LiteLLM, a Python library with ~97 million monthly downloads, widely used by developers. LiteLLM was hit by a supply chain attack. Hackers had stolen the maintainer's publishing credentials and pushed two malicious versions of the package to PyPI. You can't make this stuff up!
3
3
1,792
Hello! I was away for a while, working on a new Vim related project. I used many different tools, but none of them really did what my hjkl fingers are used to. So I built it myself. More details coming soon.
5
895
In the world of Cursor, Windsurf and all other fancy tools - who's still using Vim? :) Like for I DO!
9
2
122
4,482
Break bad habits, master Vim motions - github.com/m4xshen/hardtime.… ... holding "wwwwwwww..." is a bad habit, because it's very likely there is an objectively better way of getting there. Not necessarily "142l" but "/<piece of word><ENTER>" or "f,;;".
1
3
14
1,247
Mastering Vim retweeted
This was unexpected. Sad to see it happening. #firefox
1
5
25
4,113
The first time I saw a Vim master in action, I thought: β€œWTF is this guy doing with his code?!” Once I realized how easy it was, my next thought was: β€œOMG I have to try this!” A few years later, I wrote Mastering Vim Quickly: From WTF to OMG in no time. jovicailic.org/mastering-vim…

2
12
1,365
Vim is probably the only text editor with the :smile command! :) :: masteringvim.com ::
3
8
46
3,625
Do you remember when you joined X? I do! #MyXAnniversary Time flies!
3
1,303
Reviews of Mastering Vim Quickly - The Premium Training package... jovica.gumroad.com/l/gcsRg
4
1,253