This too shall pass. Used to tweet about programming and infosec. Likes people, science, and music. Swedish & English. jonelf @ Keybase • jonelf.89 @ Signal

Joined December 2008
8,462 Photos and videos
Pinned Tweet
10 Sep 2015
Replying to @jonelf
e=->k,t{j=q=w=0;s=*0..l=256;l.times{|i|j =s[i] k[i];s[i],s[j]=s[j%=l],s[i]};t.map{|c|w =s[q =1];s[q],s[w]=s[w%=l],s[q];c^s[(s[q] s[w])%l]}}

6
33
79
Jonas retweeted
”Bara för att vi förlorar mot Mjällby i cupfinalen så betyder inte det att vi är världens sämsta lag. Och bara för att vi vinner mot MFF så betyder inte det att vi är världens bästa lag. Jag brukar säga till de unga i truppen, behåll fötterna på jorden & jobba hårt” - Besara ❤️
5
2
308
32,952
Jonas retweeted
🚨 Another major supply chain incident 🚨 axios — one of the most widely used npm packages — has been compromised. Malicious versions axios@1.14.1 and axios@0.30.4 were published and are actively dropping malware. The attack pulls in a newly created dependency plain-crypto-js@4.2.1, confirmed as a malicious loader: it executes obfuscated payloads, runs shell commands, and attempts to evade detection while wiping traces. With 100M weekly downloads, this is a live, large-scale supply chain attack. More details: stepsecurity.io/blog/axios-c…
Mar 31
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
14
72
312
132,269
Jonas retweeted
New supply chain attack this time for npm axios, the most popular HTTP client library with 300M weekly downloads. Scanning my system I found a use imported from googleworkspace/cli from a few days ago when I was experimenting with gmail/gcal cli. The installed version (luckily) resolved to an unaffected 1.13.5, but the project dependency is not pinned, meaning that if I did this earlier today the code would have resolved to latest and I'd be pwned. It's possible to personally defend against these to some extent with local settings e.g. release-age constraints, or containers or etc, but I think ultimately the defaults of package management projects (pip, npm etc) have to change so that a single infection (usually luckily fairly temporary in nature due to security scanning) does not spread through users at random and at scale via unpinned dependencies. More comprehensive article: stepsecurity.io/blog/axios-c…
Mar 31
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
567
1,111
10,514
1,583,057
3 Dec 2025
Nu jinxar jag det men Sunderland står verkligen upp bra mot Liverpool
1
1
189
3 Dec 2025
Klart godkänt att få oavgjort på Anfield
51
29 Aug 2025
Såld
141
Jonas retweeted
Är nästan aldrig här men om algoritmerna gör så du ser detta så letar nya uppdrag! Kan göra tv, radio, poddar, skriva allt möjligt och koka kaffe. Så om du vill jobba med mig eller bara säga hej: hör av dig. Intresserad av allt! RT=kärlek!
1
16
28
21,614
6 Aug 2025
Still a KeyPass user
11 Dec 2011
Installing KeePass 2 and will probably let Nullsoft SafeSex down after all these years. keepass.info 1014.org/code/nullsoft/safes…
174
14 Jul 2025
Känns tyvärr som att de här fyra poängen kan bli svåra att komma ikapp och förbi. #Bajen
250
5 Jul 2025
Vad fan sa VAR-rummet till Olofsson när det inte ens blev gult?!
124
5 Jul 2025
Inte okej att vi blir sämre när Värnamo får en utvisad #hammarby
1
333
26 May 2025
BESARA!!! 💚🤍
99
26 May 2025
Det här med att vi fullständigt dominerar matcherna men inte gör mål börjar bli riktigt frustrerande!
1
98
14 May 2025
BESARA!
88
4 May 2025
Mycket god stämning på Dickens nu. #hammarby #besara
251
1 May 2025
Jaaaa! 💚🤍
82
Jonas retweeted
Vad sägs om en vals? #Bajen
9
93
1,081
125,433
Jonas retweeted
INSANE SUPPORTER TURNOUT FOR HAMMARBY MARCH TO MATCH IN SWEDEN. Fans showed up for the Stockholm side's season-opener after Bajen came in 2nd last season 🙌

6
29
517
73,083
26 Mar 2025
Nu hörde en kompis till dottern av sig och frågade om den finns kvar. Skulle ni råka ha en ståplats över (vi har D) så hör jättegärna av dig!
26 Mar 2025
Replying to @jonelf
Den är såld.
112
24 Mar 2025
Har en ståplats D över till Kents konsert på torsdag. Finns att få för inköpspriset 999.
1
118
26 Mar 2025
Den är såld.
143