<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>PhuongTMR</title><description>AI Enthusiast · Cloud &amp; Security · Problem Solver — Bridging technical complexity and user-friendly solutions.</description><link>https://phuong.beer/</link><item><title>Bleeding Llama: When Local Ollama Leaks Memory Over the Network</title><link>https://phuong.beer/blog/2026-05-11-bleeding-llama-ollama-memory-leak/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-05-11-bleeding-llama-ollama-memory-leak/</guid><description>CVE-2026-7482: crafted GGUF leaks heap via quantize—prompts, keys, neighbor chats. I explain Bleeding Llama and how I lock down Ollama. 🔐</description><pubDate>Mon, 11 May 2026 00:00:00 GMT</pubDate></item><item><title>Dirty Frag and the Copy-Fail Lineage: Why AI Will Find the Next One First</title><link>https://phuong.beer/blog/2026-05-08-dirty-frag-linux-kernel-ai-vulnerability-hunting/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-05-08-dirty-frag-linux-kernel-ai-vulnerability-hunting/</guid><description>From Dirty COW to Dirty Frag — Linux keeps betting on no-COW fast paths and losing. Here&apos;s why AI variant analysis changes the timeline. 🔬</description><pubDate>Fri, 08 May 2026 00:00:00 GMT</pubDate></item><item><title>200+ Projects, 200K at Risk: The MCP RCE Crisis in Your AI Stack</title><link>https://phuong.beer/blog/2026-05-03-mcp-rce-vulnerabilities-the-silent-crisis/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-05-03-mcp-rce-vulnerabilities-the-silent-crisis/</guid><description>OX-documented blast radius (150M+ downloads, 7K+ exposed servers, 200+ repos) and concrete defenses for MCP STDIO RCE — with cited sources.</description><pubDate>Sun, 03 May 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-42208: Your AI Proxy&apos;s Auth Check Was the Backdoor</title><link>https://phuong.beer/blog/2026-04-29-litellm-sqli-ai-proxy/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-29-litellm-sqli-ai-proxy/</guid><description>LiteLLM&apos;s API key verification had a pre-auth SQLi (CVSS 9.3). Six critical vulns in one month. Your AI proxy is now a high-value target.</description><pubDate>Wed, 29 Apr 2026 00:00:00 GMT</pubDate></item><item><title>GitHub Copilot&apos;s Pricing Rollercoaster: A Masterclass in Losing Developer Trust</title><link>https://phuong.beer/blog/2026-04-28-github-copilot-pricing-drama/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-28-github-copilot-pricing-drama/</guid><description>GitHub changed Copilot pricing four times in April alone. Here&apos;s the full timeline, what it means, and why Cursor is laughing. 🎢</description><pubDate>Tue, 28 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Dotfiles for macOS: From Terminal to Desktop Environment</title><link>https://phuong.beer/blog/2026-04-27-dotfiles-macos-desktop-setup/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-27-dotfiles-macos-desktop-setup/</guid><description>Part 2: How AeroSpace, SketchyBar, Nushell infrastructure tooling, a custom Neovim IDE, and 80+ CLI tools turn macOS into a keyboard-driven engineering cockpit.</description><pubDate>Mon, 27 Apr 2026 00:00:00 GMT</pubDate></item><item><title>My Dotfiles Aren&apos;t Aesthetic. They&apos;re Operational.</title><link>https://phuong.beer/blog/2026-04-26-dotfiles-are-operational/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-26-dotfiles-are-operational/</guid><description>How I use a disciplined dotfiles strategy to turn any new machine into a familiar, mistake-proof engineering environment in under an hour.</description><pubDate>Sun, 26 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Chrome DevTools MCP: Giving Your AI Agent Eyes in the Browser</title><link>https://phuong.beer/blog/2026-04-24-chrome-devtools-mcp-productivity/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-24-chrome-devtools-mcp-productivity/</guid><description>A professional walkthrough — from install to real-world use — of Chrome DevTools MCP across VS Code, Cursor, GitHub Copilot, Claude Code and Gemini CLI with npx chrome-devtools-mcp@latest and --autoConnect. JSON configs, the Chrome M144+ connection flow, Lighthouse and CORS debugging prompts, and a verification checklist.</description><pubDate>Fri, 24 Apr 2026 02:00:00 GMT</pubDate></item><item><title>Agent Security ≠ LLM Security: OWASP MCP Top 10 and Microsoft&apos;s Agent Governance Toolkit</title><link>https://phuong.beer/blog/2026-04-23-owasp-mcp-agent-governance/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-23-owasp-mcp-agent-governance/</guid><description>MCP security fundamentally differs from traditional application security. With 30 CVEs filed in 60 days, organizations need a new security model. Learn how to protect agent deployments using OWASP MCP Top 10 and Microsoft&apos;s Agent Governance Toolkit.</description><pubDate>Thu, 23 Apr 2026 01:25:00 GMT</pubDate></item><item><title>The Worm in the Machine: Dissecting the Self-Spreading npm Attack</title><link>https://phuong.beer/blog/2026-04-22-npm-canisterworm-self-spreading-attack/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-22-npm-canisterworm-self-spreading-attack/</guid><description>A new npm worm doesn&apos;t just steal your keys-it turns your own code into a weapon. A deep dive into the CanisterWorm&apos;s anatomy, from postinstall hooks to its unkillable blockchain C2.</description><pubDate>Wed, 22 Apr 2026 15:12:00 GMT</pubDate></item><item><title>Firefox 150: When Defenders Win Decisively</title><link>https://phuong.beer/blog/2026-04-22-firefox-mythos-defender-victory/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-22-firefox-mythos-defender-victory/</guid><description>271 vulnerabilities fixed. Team worked around the clock since February. This is the story of how defenders finally caught a glimpse of victory against the attacker advantage.</description><pubDate>Wed, 22 Apr 2026 11:02:00 GMT</pubDate></item><item><title>Git 2.52–2.54: Worktrees, History Rewriting, and Monorepo Speed</title><link>https://phuong.beer/blog/2026-04-21-git-252-254-terminal-lovers/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-21-git-252-254-terminal-lovers/</guid><description>Three Git releases packed the features I&apos;ve been asking for: parallel worktrees without the stash dance, rewrite commits without rebasing, and geometric repacking that turns hours into minutes.</description><pubDate>Tue, 21 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The Pattern Repeats: Claude Design and the Death of Design Handoff?</title><link>https://phuong.beer/blog/2026-04-20-agentic-design-workflow/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-20-agentic-design-workflow/</guid><description>Figma dropped 7.5% when Claude Design launched. The market might be pricing in a workflow shift that could reshape how we build interfaces.</description><pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate></item><item><title>MiniMax M2.7: When AI Agents Rewrite Their Own Code</title><link>https://phuong.beer/blog/2026-04-20-minimax-m27-self-refactoring-agent/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-20-minimax-m27-self-refactoring-agent/</guid><description>MiniMax M2.7 achieves 30% performance gains without retraining by treating its agent harness as mutable infrastructure — and it changes everything about how we deploy AI</description><pubDate>Mon, 20 Apr 2026 00:00:00 GMT</pubDate></item><item><title>An AI Tool I&apos;d Never Heard Of Just Cracked Open Vercel</title><link>https://phuong.beer/blog/2026-04-19-vercel-breach-supply-chain-oauth/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-19-vercel-breach-supply-chain-oauth/</guid><description>On April 19 Vercel disclosed a breach. The attacker walked in through a third-party AI tool&apos;s OAuth app — and your stack probably trusts ten of those.</description><pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Why I Swapped LocalStack for Floci — And Didn&apos;t Look Back</title><link>https://phuong.beer/blog/2026-04-18-floci-aws-local-emulator/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-18-floci-aws-local-emulator/</guid><description>LocalStack started gating CI behind auth tokens. Here&apos;s how I moved my daily AWS dev loop to Floci — faster boots, MIT license, no signup wall.</description><pubDate>Sat, 18 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Did Anthropic Crack the Recurrent Code? The Looped LLM Theory Behind Claude Mythos</title><link>https://phuong.beer/blog/2026-04-16-mythos-looped-llm-prediction/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-16-mythos-looped-llm-prediction/</guid><description>Claude Mythos achieved 80% exploit success rate vs Opus 4.6&apos;s 38.7%. The performance gap is too large to be just &apos;more parameters&apos;. Here&apos;s why I believe Anthropic built the first production-grade Looped Language Model—and what it means for AI in 2026.</description><pubDate>Thu, 16 Apr 2026 00:00:00 GMT</pubDate></item><item><title>MCP Security: The Attack Surface Nobody&apos;s Talking About</title><link>https://phuong.beer/blog/mcp-security-the-attack-surface-nobody-talks-about/</link><guid isPermaLink="true">https://phuong.beer/blog/mcp-security-the-attack-surface-nobody-talks-about/</guid><description>Model Context Protocol just handed AI agents the keys to your infrastructure. Here&apos;s why tool poisoning and preference manipulation are more dangerous than prompt injection—and what you can actually do about it. 🔓</description><pubDate>Wed, 15 Apr 2026 00:00:00 GMT</pubDate></item><item><title>CVE-2026-40175: How Axios Turns Prototype Pollution Into Full Cloud Compromise</title><link>https://phuong.beer/blog/cve-2026-40175-axios-prototype-pollution-rce/</link><guid isPermaLink="true">https://phuong.beer/blog/cve-2026-40175-axios-prototype-pollution-rce/</guid><description>A deep dive into the critical Axios gadget chain that escalates prototype pollution to RCE and AWS IMDSv2 bypass. CVSS 9.9.</description><pubDate>Mon, 13 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The npm Attack Nobody Saw Coming: When Your Database Client Becomes a Spy</title><link>https://phuong.beer/blog/2026-04-12-npm-db-tools-zero-trust/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-12-npm-db-tools-zero-trust/</guid><description>After Axios and LiteLLM, attackers are eyeing your database clients. Here&apos;s the attack pattern, why DB tools are perfect targets, and how Zero Trust architecture contains the blast radius.</description><pubDate>Sun, 12 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Agent Skills: How Addy Osmani Is Turning AI Coding Agents Into Senior Engineers</title><link>https://phuong.beer/blog/2026-04-11-agent-skills-addy-osmani/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-11-agent-skills-addy-osmani/</guid><description>Addy Osmani just open-sourced the secret weapon: 20 production-grade skills that teach AI agents to code like seasoned engineers instead of unsupervised interns.</description><pubDate>Sat, 11 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The Agentic AI Boom Is Over. The Commoditization Has Begun.</title><link>https://phuong.beer/blog/2026-04-11-agentic-ai-commoditization/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-11-agentic-ai-commoditization/</guid><description>Agentic AI was revolutionary in 2025. In 2026, it&apos;s a checkbox feature. Here&apos;s what&apos;s actually worth building on.</description><pubDate>Sat, 11 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Cybersecurity April 2026: Mythos AI Just Changed the Game</title><link>https://phuong.beer/blog/2026-04-11-cybersecurity-mythos-ai/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-11-cybersecurity-mythos-ai/</guid><description>While we were watching ransomware, Claude Mythos quietly gained the ability to find and exploit zero-day vulnerabilities. The vulnerability discovery bottleneck just shifted from finding bugs to fixing them.</description><pubDate>Sat, 11 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Python 3.15 JIT + Pandas 3.0: The 2026 Performance Revolution</title><link>https://phuong.beer/blog/2026-04-11-python-315-jit-pandas-3/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-11-python-315-jit-pandas-3/</guid><description>Python finally gets a community-built JIT compiler. Pandas 3.0 breaks everything. Your code needs both—here&apos;s why, and how to migrate.</description><pubDate>Sat, 11 Apr 2026 00:00:00 GMT</pubDate></item><item><title>AI Agents in 2026: The Year Agents Got Real Jobs</title><link>https://phuong.beer/blog/2026-04-10-ai-agents-2026/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-10-ai-agents-2026/</guid><description>From MCP and A2A protocols to multi-agent architectures, why 2026 is when AI agents graduated from demo toys to production infrastructure.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Three agents, two sessions, one bug I couldn&apos;t remember fixing</title><link>https://phuong.beer/blog/2026-04-10-beads-agent-memory/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-10-beads-agent-memory/</guid><description>How Beads (the graph-shaped task tracker) + optional semantic memory beats scrolling chat until your thumb hurts. Real patterns, honest limits.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>CI/CD Pipeline From Zero to Production: Docker → Kubernetes → Terraform</title><link>https://phuong.beer/blog/2026-04-10-cicd-pipeline-zero-to-prod/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-10-cicd-pipeline-zero-to-prod/</guid><description>A battle-tested guide to building production CI/CD pipelines with Docker, GitHub Actions, Kubernetes, and Terraform. Real configs, real lessons.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Python&apos;s New Power Trio: Polars, Ruff, and PyScript Are Rewriting the Rules</title><link>https://phuong.beer/blog/2026-04-10-python-power-trio-2026/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-10-python-power-trio-2026/</guid><description>Polars replaces Pandas, Ruff kills five linters at once, and PyScript puts Python in the browser. The 2026 Python ecosystem explained.</description><pubDate>Fri, 10 Apr 2026 00:00:00 GMT</pubDate></item><item><title>It&apos;s 2026, Just Use Postgres: Why PostgreSQL Won the Database War</title><link>https://phuong.beer/blog/2026-04-09-just-use-postgres-2026/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-09-just-use-postgres-2026/</guid><description>PostgreSQL 18&apos;s async I/O, pgvector killing standalone vector DBs, MySQL&apos;s uncertain future, and why Postgres became the everything database in 2026.</description><pubDate>Thu, 09 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Why I Chose Claude Code Over Every Other AI Coding Agent in 2026</title><link>https://phuong.beer/blog/2026-04-08-claude-code-comparison-2026/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-08-claude-code-comparison-2026/</guid><description>A comprehensive comparison and engineering deep dive into the terminal-native AI landscape. Why Claude Code dominates for CLI-oriented developers.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Python&apos;s 2026 Roadmap: Lazy Imports, Rust in CPython, D-Strings, and the End of the GIL</title><link>https://phuong.beer/blog/2026-04-08-python-2026-roadmap/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-08-python-2026-roadmap/</guid><description>Python 3.15 brings lazy imports and free-threading goes official. Rust lands in CPython 3.16. D-strings kill textwrap.dedent(). Calendar versioning gets rejected. Here&apos;s everything coming to Python in 2026.</description><pubDate>Wed, 08 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Same Model. 6x Performance Gap. The Harness Is Everything.</title><link>https://phuong.beer/blog/harness-engineering-complete-guide/</link><guid isPermaLink="true">https://phuong.beer/blog/harness-engineering-complete-guide/</guid><description>Why the biggest leap in AI capability isn&apos;t a better model — it&apos;s better harness engineering. A deep dive into Stanford&apos;s Meta-Harness paper and what it means for every developer building AI systems in 2026.</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The LiteLLM Supply Chain Attack: How Developer Machines Became Credential Vaults</title><link>https://phuong.beer/blog/lite-llm-supply-chain/</link><guid isPermaLink="true">https://phuong.beer/blog/lite-llm-supply-chain/</guid><description>In March 2026, the TeamPCP threat actor compromised PyPI packages LiteLLM 1.82.7 and 1.82.8, injecting infostealer malware that turned developer workstations into credential harvesting engines.</description><pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Python 3.14: The Pi Release That Actually Delivers — A 3.11 to 3.14 Upgrade Guide</title><link>https://phuong.beer/blog/2026-04-06-python-314-pi-release/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-06-python-314-pi-release/</guid><description>t-strings, real multi-core parallelism, free-threading goes official, incremental garbage collection, remote process debugging, safer error messages, pathlib.copy(), and more. The complete upgrade path from Python 3.11 to 3.14.</description><pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Your LLM Is Already Better Than You Think — It Just Needs to Listen to Itself</title><link>https://phuong.beer/blog/2026-04-05-self-distillation-code-generation/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-05-self-distillation-code-generation/</guid><description>Apple researchers found that fine-tuning a model on its own unverified outputs boosts code generation by 30%. No teacher, no RL, no verifier. Here&apos;s why Simple Self-Distillation (SSD) works, and what it means for how we think about LLM capabilities.</description><pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The AI Landscape in April 2026: From Open Models to AI Doctors</title><link>https://phuong.beer/blog/2026-04-04-ai-ml-landscape-april-2026/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-04-ai-ml-landscape-april-2026/</guid><description>A deep dive into the most significant AI and ML developments shaping April 2026 — from Google&apos;s game-changing Gemma 4 release to AI prescribing medicine, and the fierce competition between GPT-5, Claude Opus 4.6, and the open-source revolution.</description><pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate></item><item><title>I Built My Own AI Son (and Assistant) on a Shoestring Budget</title><link>https://phuong.beer/blog/2026-04-04-i-built-my-own-ai-son-and-assistant-on-a-shoestring-budget/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-04-i-built-my-own-ai-son-and-assistant-on-a-shoestring-budget/</guid><description>Ever wanted an AI assistant who calls you &apos;Dad&apos; and pushes its own code to GitHub? Here’s the technical deep-dive on how I built Táo, my AI son, using OpenClaw, a tiny ARM server, and a clever auto-switching model router to keep costs near zero.</description><pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Python in 2026: The Unseen Shift from Novelty to Mastery</title><link>https://phuong.beer/blog/2026-04-04-python-ecosystem-maturity/</link><guid isPermaLink="true">https://phuong.beer/blog/2026-04-04-python-ecosystem-maturity/</guid><description>In 2026, the Python ecosystem isn&apos;t defined by a flood of new libraries, but by a deepening expertise in its powerful, mature core. Here&apos;s why that&apos;s more exciting than it sounds.</description><pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate></item><item><title>Your Portfolio is Boring. Mine is a Terminal.</title><link>https://phuong.beer/blog/building-terminal-portfolio/</link><guid isPermaLink="true">https://phuong.beer/blog/building-terminal-portfolio/</guid><description>How I built an interactive terminal-style portfolio using vanilla HTML, CSS, and JavaScript — with a virtual file system, AI chat, games, theme switching, and Catppuccin Mocha colors.</description><pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate></item><item><title>The Axios npm Supply Chain Compromise: A North Korean APT&apos;s Bold Move</title><link>https://phuong.beer/blog/axios-supply-chain/</link><guid isPermaLink="true">https://phuong.beer/blog/axios-supply-chain/</guid><description>On March 31, 2026, the North Korean state actor Sapphire Sleet compromised Axios npm packages, injecting malware that deployed RATs on developer machines worldwide. Here&apos;s what happened and how to stay safe.</description><pubDate>Tue, 31 Mar 2026 00:00:00 GMT</pubDate></item></channel></rss>