ceeriil🥷

14.6K posts

ceeriil🥷 banner
ceeriil🥷

ceeriil🥷

@ceeriil

Web3 Developer | Chess | Real Madrid Fan | @NinjaProtocol 🥷 @SandwormLabs

Mars Beigetreten Şubat 2020
1.7K Folgt1.1K Follower
Angehefteter Tweet
ceeriil🥷
ceeriil🥷@ceeriil·
I made this car using CSS. I also used javascript to make the color of the car customised. #100DaysOfCode #CSS #webdev
English
6
12
55
0
Alex Colovic
Alex Colovic@GMAlexColovic·
One does not simply outplay Bluebaum in the Queen's Gambit Declined.
English
3
7
157
9K
klöss
klöss@kloss_xyz·
do you understand what just happened to one of the most used npm packages on the internet? → axios gets downloaded over 100 million times a week and today it got compromised → an attacker hijacked the npm credentials of a lead axios maintainer… changed the account email to an anonymous ProtonMail address… and manually published two poisoned versions → axios@1.14.1 and axios@0.30.4… neither version contains a single line of malicious code inside axios itself. instead they inject a fake dependency called plain-crypto-js that drops a remote access trojan on your machine → the fake dependency was staged 18 hours in advance… three separate payloads were pre-built for macOS, Windows, and Linux… both release branches were hit within 39 minutes. every trace was designed to self-destruct after execution too → there’s no tag in the axios GitHub repo for 1.14.1. it was published outside the normal release process entirely... bypassed CI/CD completely → StepSecurity called it one of the most operationally sophisticated supply chain attacks ever against a top 10 npm package → a routine npm install silently opens a backdoor… no warning… no suspicious code visible in axios itself this is the wake up call all vibe coding bros need to hear right now: → if you installed either version… assume your system is compromised → pin to axios@1.14.0 or axios@0.30.3 → rotate all secrets, API keys, SSH keys, and credentials on affected machines → check network logs for C2 connections → add –ignore-scripts to CI npm installs going forward 100 million weekly downloads and one compromised maintainer account… that’s all it took to wreak absolute havoc and I imagine we see a whole lot more of these… crazy times ahead for cybersecurity and vibe coding be safe out there y’all
Feross@feross

🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.

English
107
488
3.5K
871.7K
ceeriil🥷 retweetet
ceeriil🥷
ceeriil🥷@ceeriil·
Until death all defeat is psychological
English
0
0
1
19
ceeriil🥷 retweetet
Cristiano Ronaldo
Cristiano Ronaldo@Cristiano·
Eid Mubarak to all! 🌙 I hope you have a very special day with your family and loved ones. Wishing you all peace and happiness.
Cristiano Ronaldo tweet media
English
31.4K
114.8K
1.3M
79.9M
ceeriil🥷
ceeriil🥷@ceeriil·
Time flies faster as we age
English
0
0
0
20
ceeriil🥷
ceeriil🥷@ceeriil·
Wish I took physics way more serious earlier
English
0
0
0
18
ceeriil🥷
ceeriil🥷@ceeriil·
I’m starting to really like physics
English
1
0
0
25
ceeriil🥷 retweetet
Elon Musk
Elon Musk@elonmusk·
@iam_smx *trillioniare
English
7.6K
7.3K
128K
10.7M
TheFolasade (Mama è)
TheFolasade (Mama è)@FolasadeOlukoju·
Let it be known that this man killed me and my king in chess 👍 men are horrible people.
English
5
0
5
496
Perpetual Ogbiyoyo
Perpetual Ogbiyoyo@guitargirrl·
Fun fact, Chess came into my life at 19… all thanks to an ASUU strike 😆 Two years later, I was a chess master, who would have thought? Proof it’s never too late to start something new. What’s the most unexpected thing that changed your life?
Perpetual Ogbiyoyo@guitargirrl

True talk, two nights ago I queued on Chess.com and got paired with a random stranger, from his flag 🇦🇴, I could tell he was from Angola He was winning. I turned the game around and won.
He messaged me and said I was lucky.
I laughed and said the better player is always lucky 😄 We kept playing. Back and forth.
He asked my Fide rating.
I said 1 million 😂
He said Nairas?
I said no Kwachas 🤣 Just like that we were laughing like old friends.
No borders. No introductions. Just chess… So yes, if you can play chess, you can make friends anywhere in the world 🌍

English
11
12
119
6K
ceeriil🥷 retweetet
Who decided that?
Who decided that?@destinyspoke·
1.5million onchain queries exposed insight that we never knew existed @dev_dahniel is feeling modest, so I'll do the write up Over the last couple of months we've been building @sandwormlabs , what started out as a simple AI powered analytics platform turned into very deep insight into onchain data, from finding out what most people searched the most, to how people behave onchain and more Looking at data daily will force an understanding into you, an understanding that most queries and info people seek onchain(even the top data analysts) are the same 90% of the time. So we asked the question, why dont we reduce redundancies by building the info like lego bricks, if what we are doing works, we would be essentially proposing a new standard model for Onchain analysis Follow @dev_dahniel Follow our github github.com/sand-worm-labs… cc @Sir_Damilare @jessepollak @codingcas @dicethedev sandwormlabs.substack.com/p/on-chain-ana…
Sandworm@sandwormlabs

On-Chain Analytics as LEGO Bricks open.substack.com/pub/sandwormla…

English
1
7
14
1.7K