BlockMerchant

16.2K posts

BlockMerchant banner
BlockMerchant

BlockMerchant

@Block_Merchant

Bergabung Ocak 2019
3.9K Mengikuti3.3K Pengikut
BlockMerchant me-retweet
Aakash Gupta
Aakash Gupta@aakashgupta·
Someone just poisoned the Python package that manages AI API keys for NASA, Netflix, Stripe, and NVIDIA.. 97 million downloads a month.. and a simple pip install was enough to steal everything on your machine. The attacker picked the one package whose entire job is holding every AI credential in the organization in one place. OpenAI keys, Anthropic keys, Google keys, Amazon keys… all routed through one proxy. All compromised at once. The poisoned version was published straight to PyPI.. no code on GitHub.. no release tag.. no review. Just a file that Python runs automatically on startup. You didn’t need to import it. You didn’t need to call it. The malware fired the second the package existed on your machine. The attacker vibe coded it… the malware was so sloppy it crashed computers.. used so much RAM a developer noticed their machine dying and investigated. They found LiteLLM had been pulled in through a Cursor MCP plugin they didn’t even know they had. That crash is the only reason thousands of companies aren’t fully exfiltrated right now. If the code had been cleaner nobody notices for weeks. Maybe months. The attack chain is the part that gets worse every sentence. TeamPCP compromised Trivy first. A security scanning tool. On March 19. LiteLLM used Trivy in its own CI pipeline… so the credentials stolen from the SECURITY product were used to hijack the AI product that holds all your other credentials. Then they hit GitHub Actions. Then Docker Hub. Then npm. Then Open VSX. Five package ecosystems in two weeks. Each breach giving them the credentials to unlock the next one. The payload was three stages.. harvest every SSH key, cloud token, Kubernetes secret, crypto wallet, and .env file on the machine.. deploy privileged containers across every node in the cluster.. install a persistent backdoor waiting for new instructions. TeamPCP posted on Telegram after: “Many of your favourite security tools and open-source projects will be targeted in the months to come.. stay tuned.” Every AI agent, copilot, and internal tool your company shipped this year runs on hundreds of packages exactly like this one… nobody chose to install LiteLLM on that developer’s machine. It came in as a dependency of a dependency of a plugin. One compromised maintainer account turned the entire trust chain into a credential harvesting operation across thousands of production environments in hours. The companies deploying AI the fastest right now have the least visibility into what’s underneath it.
Andrej Karpathy@karpathy

Software horror: litellm PyPI supply chain attack. Simple `pip install litellm` was enough to exfiltrate SSH keys, AWS/GCP/Azure creds, Kubernetes configs, git credentials, env vars (all your API keys), shell history, crypto wallets, SSL private keys, CI/CD secrets, database passwords. LiteLLM itself has 97 million downloads per month which is already terrible, but much worse, the contagion spreads to any project that depends on litellm. For example, if you did `pip install dspy` (which depended on litellm>=1.64.0), you'd also be pwnd. Same for any other large project that depended on litellm. Afaict the poisoned version was up for only less than ~1 hour. The attack had a bug which led to its discovery - Callum McMahon was using an MCP plugin inside Cursor that pulled in litellm as a transitive dependency. When litellm 1.82.8 installed, their machine ran out of RAM and crashed. So if the attacker didn't vibe code this attack it could have been undetected for many days or weeks. Supply chain attacks like this are basically the scariest thing imaginable in modern software. Every time you install any depedency you could be pulling in a poisoned package anywhere deep inside its entire depedency tree. This is especially risky with large projects that might have lots and lots of dependencies. The credentials that do get stolen in each attack can then be used to take over more accounts and compromise more packages. Classical software engineering would have you believe that dependencies are good (we're building pyramids from bricks), but imo this has to be re-evaluated, and it's why I've been so growingly averse to them, preferring to use LLMs to "yoink" functionality when it's simple enough and possible.

English
186
1.4K
6.9K
1.6M
BlockMerchant me-retweet
ADAM
ADAM@AdameMedia·
Here’s a 35-minute compilation of FAKE antisemitic hate crimes reported and verified by mainstream media. False flags are their go-to strategy…
English
165
4.7K
11.2K
150.6K
BlockMerchant me-retweet
Suzie rizzio
Suzie rizzio@Suzierizzo1·
These guys just found out where Jeffrey Epstein’s plane the Lolita Express is being housed and they snuck on to and you can see that there’s all kinds of paperwork that should have already been taken into evidence by the FBI,but obviously they couldn’t careless about it.
English
127
3.9K
20.2K
925.6K
BlockMerchant me-retweet
Invis🧜‍♀️
Invis🧜‍♀️@invis4yo·
I’ve never seen anything like the Epstein files in my life -Raped -Cannibalized -Trafficked -Filmed -Terrorized -Tortured -Murdered -13, 14, 15 year children ZERO arrests I don't understand how we're not having a global revolution right now.
English
746
10.4K
44K
327.9K
BlockMerchant me-retweet
Warfare Analysis
Warfare Analysis@warfareanalysis·
Meanwhile in Syria Children from the town of Ayn Issa dismantling SDF landmines north of Raqqa.
English
200
3.3K
14.4K
2.1M
BlockMerchant me-retweet
Marina Purkiss
Marina Purkiss@MarinaPurkiss·
When are we gonna admit that billionaire‑ism is an illness? They’re hoarders No control, insatiable greed & their hoarding just drains every one of us They cut wages, buy politicians & bleed the planet just to watch a number tick up that they’ll never spend Sick in the head.
English
764
3.8K
16K
138.4K
BlockMerchant me-retweet
Johan
Johan@Adityapandeydev·
Me re-entering my prime after a long downfall
English
47
3.6K
15.5K
305.6K
BlockMerchant me-retweet
Klkautsky
Klkautsky@Klkautsky1·
El Tercer Reich exterminó a, en este orden: - 45 millones de rusos. - 20 mills de chinos. - 90% de la población romaní de Europa. - 3.5 mills de polacos. - 1.5 mills de judios. (Demostrables). POR LO QUE SEA, solo hay películas, alrededor de 300, SOBRE LOS JUDÍOS EN LA WW2.
Español
251
1.4K
12.9K
410.3K
BlockMerchant me-retweet
FactPost
FactPost@factpostnews·
The president of the TSA workers' union has released a statement blasting Trump for deploying ICE agents at airports: "No way ICE can guarantee safety of the passengers. ... All ICE is doing is just getting in the way."
FactPost tweet mediaFactPost tweet media
English
340
5K
15.3K
155.8K
BlockMerchant me-retweet
ADAM
ADAM@AdameMedia·
JUST IN: 🇺🇸 “WE ARE TERRORISTS” Pete Hegseth just openly admitted that the US is a terrorist state. “We negotiate with bombs” He also threatens to “viciously” keep raining down death on Iranians.
English
1.4K
7.7K
18.8K
572.1K
BlockMerchant me-retweet
daz
daz@MetamateDaz·
The minimum wage in Pennsylvania is $7.25 an hour. A regular Auntie Anne’s soft pretzel at the mall is $7.29. Imagine telling someone an hour of their time is worth less than a pretzel.
English
1.7K
9.3K
93.2K
2.3M
BlockMerchant me-retweet
Lozzy B 🇦🇺𝕏
Lozzy B 🇦🇺𝕏@TruthFairy131·
🔥 William "Bill" Cooper 1992: “Israel was created as a tool to spark the Battle of Armageddon via nuclear war, forcing global surrender of sovereignty for a one-world government”. Bill also said: "Cops will come in the middle of the night & shoot me dead on my doorstep” He was shot dead by Police not long after in 2001 on his doorstep. Many of his predictions were spot on. 911, Iraq, Fall of the Berlin Wall/Iron Curtain, Waco Siege & much more.
English
77
2K
9.2K
397.3K
BlockMerchant me-retweet
Maria Elisa
Maria Elisa@mariaelisasmith·
Los boomers no saben que la segunda guerra mundial fue Hitler vs. Rothschild
Español
81
725
8.6K
125K
BlockMerchant me-retweet
Epstein File Search
Epstein File Search@epsteinsearchin·
The Rothschild raid just got bigger. French prosecutors say diplomat Fabrice Aidan transferred UN Security Council briefings to Epstein. Epstein had access to classified international intelligence. This is no longer about money. This is about state secrets.
English
381
14.1K
41.3K
430.7K
BlockMerchant me-retweet
Israel Exposed
Israel Exposed@xIsraelExposedx·
'Supporting Israel is heresy. The Talmud is blasphemy.' Orthodox Christian minister doesn't mince words.
English
208
4K
15.2K
183.7K