The Architect
3.3K posts

The Architect
@GOATGameDev
CTO QXMP Labs | QELT | https://t.co/pZ7ncyDQpP | 3D City | Pollgy
Romania Beigetreten Mayıs 2023
632 Folgt1.8K Follower
The Architect retweetet

You give an employee a company AI API key.
How do you know if they’re using it for company work, or quietly burning credits on side projects?
Now you can.
AI Stupid Level Smart Router now gives companies prompt visibility, per-employee keys, spend tracking, budget limits, smart routing, and automatic fallback.
AI API usage should not be a black box.

English
The Architect retweetet
The Architect retweetet
The Architect retweetet

New Just Talk Crypto episode is live 🎙️
Crypto today is not the same market we had in 2021. Different players. Different flows. Different psychology.
Video is in Hungarian, but English subtitles are available.
youtu.be/8ylv6me75TY

YouTube
English
The Architect retweetet
The Architect retweetet

Introducing Stable Asset Insider.
A new weekly publication from QXMP Labs covering the world of regulated digital reserves, real-world asset infrastructure, verification, and the systems behind credible on-chain markets.
Read the first issue:
open.substack.com/pub/qxmp/p/int…

English
The Architect retweetet

The Architect retweetet

Continuing to watch the QELT team grow and deliver following my investment a few years back.
Most blockchains weren't designed for real-world assets. @qeltblockchain was built directly for this.
The infrastructure:
- A native Proof-of-Reserves Oracle that reads certified geotechnical data (NI 43-101), meaning in-ground assets like minerals and commodities can be verified and registered on-chain
- A PoA EVM chain: Low gas costs, consistent throughput, designed for institutional use
- 30% of all tokenisation proceeds are programmatically routed through the QELT blockchain at settlement, meaning every new asset onboarded generates on-chain activity and fee demand.
QELT is the gas, governance, and settlement token across the entire ecosystem.

English
The Architect retweetet
The Architect retweetet

Been researching QELT lately and the architecture is far more interesting than most people realize.
This isn’t just another Layer-1 chasing narratives. @qeltblockchain is being built as infrastructure for real-world assets, on-chain settlement, and long-term liquidity coordination.
- 90% supply unlocked at TGE
- Community governance from day one
- AI-ready infrastructure
- Embedded liquidity model
- $1.1T asset pipeline connected to the ecosystem
- $2.5M already raised
Mining assets are beginning to move on-chain.
@QXMP_Labs is tokenizing a $10B gold mine through regulated, yield-bearing security tokens, a major example of how real-world assets are entering blockchain infrastructure.
Definitely one to watch.

English
The Architect retweetet
The Architect retweetet
The Architect retweetet
The Architect retweetet
The Architect retweetet

CVE-2026-44578
⚠️ Next.js – WebSocket Upgrade SSRF (CVSS 8.6)
A server-side request forgery vulnerability in Next.js allows unauthenticated attackers to force self-hosted instances to make internal HTTP requests via the WebSocket upgrade handler.
By sending a crafted absolute-form HTTP request with Upgrade: websocket headers, attackers can access internal services, cloud metadata endpoints, admin panels, and internal APIs reachable from the Next.js server on port 80. Successful exploitation may expose cloud credentials, API keys, secrets, and configuration data.
Affected: Next.js 13.4.13+, 14.x, 15.x <15.5.16, 16.0.0–16.2.4
Mitigation: Upgrade immediately to 15.5.16 or 16.2.5.
Modat Magnify Query:
technology="Next.js"
The platform:
magnify.modat.io
#threatintel #vulnerability #CVE202644578 #Nextjs #SSRF #WebSocket #CloudSecurity #infosec #Critical #ModatMagnify

English
The Architect retweetet

🟡New Just Talk Crypto episode is live 🎙️
youtube.com/watch?v=71YYqb…
A more personal one this time.
Who am I, and why do I talk about crypto in the first place?
Video is in Hungarian, but English subtitles are available.

YouTube
English
The Architect retweetet
The Architect retweetet

Update 5:05 PT: The attack has now expanded well beyond @TanStack and @Mistral.
373 malicious package-version entries across 169 npm package names, including @uipath, @squawk, @tallyui, @beproduct, and more.
The malware propagates by stealing your CI credentials and using them to publish new compromised versions.
Full IOCs, affected package list, and detection steps: aikido.dev/blog/mini-shai…
Aikido Security@AikidoSecurity
🚨 Update: @mistralai npm packages are now confirmed compromised as part of the ongoing Mini Shai Hulud attack. Affected versions: @mistralai/mistralai 2.2.2, 2.2.3, 2.2.4@mistralai/mistralai-azure 1.7.1, 1.7.2, 1.7.3@mistralai/mistralai-gcp 1.7.1, 1.7.2, 1.7.3If you use the Mistral SDK in any CI pipeline, treat your environment as compromised. Rotate npm tokens, GitHub PATs, and cloud credentials immediately.
English











