โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ

2.1K posts

โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ banner
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ

โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ

@Cipher0091

Technologist & Entrepreneur

Moon ๊ฐ€์ž…์ผ Nisan 2022
5K ํŒ”๋กœ์ž‰643 ํŒ”๋กœ์›Œ
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Suhail Kakar
Suhail Kakar@SuhailKakarยท
ANTHROPIC HAS RELEASED OPUS 4.7!! i asked claude opus 4.7 to refactor a large codebase. 68 minutes, millions of tokens burned - it finished nothing worked. app completely broken but god it was beautiful
Suhail Kakar tweet media
English
428
765
21.7K
838.1K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
pashov
pashov@pashovยท
Hey @AnthropicAI let's go toe to toe I bet $100,000 my agent finds more valid Critical/High/Medium total smart contract vulns than Mythos, 1 run each I'm a small boii here in web3 security, your "scary" agent wouldn't be afraid of mine, no? Serious bet. Tag anyone, I'm ready.
English
81
59
1.1K
121K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
stratos
stratos@marketstratosยท
Done switching tabs between ESPN, your sportsbook, Polymarket & Kalshi every big play? Stratos Sports: live scores, betting lines & real-time Polymarket + Kalshi on ONE screen. Prototype live: stratos-sports.vercel.app No signup. Try it & tell us what to build next ๐Ÿ‘€
stratos tweet media
English
0
2
3
140
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Georgios Konstantopoulos
Georgios Konstantopoulos@gakonstยท
i really just wish websites let me query anything for a cent or whatever instead of wasting all my time with browser agents to get around bot guards
English
12
8
147
13.4K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
sudo rm -rf --no-preserve-root /
sudo rm -rf --no-preserve-root /@pcaversaccioยท
it's a remarkable milestone for anyone working on compilers and smart contract security: Vyper is set to become the _first_ formally verified smart contract compiler, effectively allowing you to mathematically prove that the entire compilation pipeline preserves the contract logic _and_ to prove that the contract logic itself is correct. Oh, and the cool thing is, my snekmate math functions have been formally verified :D. ๐Ÿ๐Ÿ’™
sudo rm -rf --no-preserve-root / tweet mediasudo rm -rf --no-preserve-root / tweet media
English
210
122
830
127.1K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
The Wall Street Journal
Kalshi wants to get more young women interested in the prediction-market platform, looking to expand beyond sports and its core male customer base. on.wsj.com/3N37GDl
English
24
16
77
57.1K
Nick Bax.eth
Nick Bax.eth@bax1337ยท
@tayvano_ Uh the reassurance I got from knowing you were there keeping it safe/secure/private is literally the only reason I use that wallet.
English
2
0
18
2.8K
Tay ๐Ÿ’–
Tay ๐Ÿ’–@tayvano_ยท
Well I just learned the MetaMask offboarding process is the most MetaMask thing in the entire world ๐Ÿ˜… Iโ€™m so sorry to everyone I was mid-convo with Also, Iโ€™m not going anywhere From now, I will just scream FUCKINโ€™ METAMASK with you. Instead of defending the indefensible. ๐Ÿ’–
Tay ๐Ÿ’– tweet mediaTay ๐Ÿ’– tweet mediaTay ๐Ÿ’– tweet media
English
218
33
1.1K
211.1K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Who said what?
Who said what?@g0njxaยท
The quoted post is actually a cool live Contagious Interview DPRK ๐Ÿ‡ฐ๐Ÿ‡ตGitlab repo that deserves more attention and more context! Malware for MacOS, Windows and Linux ๐ŸงตIOCs in post #1 - Delivery ref: opensourcemalware.com/blog/contagiouโ€ฆ Created Jan 21th, posing as a fake "Real Estate Rental Platform" link: /gitlab.com/real-estate-review3/real-estate-demo Full repo backup here: a9edb291d912638f9652b2c8c982b7c6b289b0434fb467e0a515dccec68653e0 User - davidaheld.manager@gmail.com We can easily spot the malicious curl requests depending on the OS, prepared to run on MacOS, Windows and Linux. Payloads hosted in vscode-load[.]onrender[.]com, to see them while they are live please use a Curl User-Agent, any way I saved them all #2 - Windows #OtterCookie Detonation here: app.any.run/tasks/b4907c5bโ€ฆ On Windows, a script hosted on vscode-load[.]onrender[.]com/settings/windows?flag=9 creates file "vscode-bootstrap.cmd" - c40ccf9bed5ceaab36d59e529f17a9b424c037649026db0ffe963c23fd586d19 Content hosted on vscode-load[.]onrender[.]com/settings/bootstrap?flag=9 - c226eb59cf696a85ed7134b57f12d82cb392d42b908dd6a463cd4d8c980ee5e8 This second script installs NodeJS via powershell and uses it to install dependencies (axios) used to run the malware, hosted on vscode-load[.]onrender[.]com/settings/package - b12a4325fe5af59d64ca617df254841d16f1e5250acd24be518971bce93637ff and also fetch https://vscode-load[.]onrender[.]com/settings/env?flag=9 - 40990ab0b482a780456e75609ebee3b883f912d75811f9f0dfb022ccdd862f9f that will fetch the malicious obfuscated JavaScript from ip-api-check-gold[.]vercel[.]app/icons/709 (you can fetch via curl with custom header "bearrtoken: logo")- dbdfe6e24e5c0fa78ae174877cdae7d49b24da529bda78af9a6468a2453f189b This malicious JS connects the infected machine to the OtterCookie C2: System info and credentials send to hxxp://144.172.116.80:8085/upload Computer files upload to hxxp://144.172.116.80:8086/upload API client comunication sent to hxxp://144.172.116.80:8087/api/log hxxp://144.172.116.80:8087/api/notify Also a websocket pipeline is opened here hxxp://144.172.116.80:8087/socket.io/* The build decodes data from browsers using Windows DPAPI for the current user and starts a loop to read clipboard content #3 - MacOS & Linux @txhaflaire For ref: jamf.com/blog/threat-acโ€ฆ On MacOS, a bash script hosted on vscode-load[.]onrender[.]com/settings/mac?flag=9 - 6be45e165de60b61e9b7cb9e1f9b72c652c388a04c02d2068de6188cc88fc3fe On Linux a bash script hosted on vscode-load[.]onrender[.]com/settings/linux?flag=9 -f03af0598d13d868580527299f5caad51b3d50cd3d655bd810aaaf90bef21f0a Both creating a file "vscode-bootstrap sh", content hosted on vscode-load[.]onrender[.]com/settings/bootstraplinux?flag=9 - 60914b8df5b5d64070f71ef13817499b3a85de98433ae5c01bd235abec9464f6 The overall functionality is the same than on windows, loading and executing the same JS code. Feel free to check!
Who said what? tweet mediaWho said what? tweet mediaWho said what? tweet mediaWho said what? tweet media
kfish@KfishNFT

Thread: I was asked to review a repo for a "job opportunity." It was malware. Here's what I found. ๐Ÿงต

English
2
8
51
5.3K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
sudo rm -rf --no-preserve-root /
sudo rm -rf --no-preserve-root /@pcaversaccioยท
> be a lazy dev > let LLM analyse an Etherscan verified contract > LLM has code execution capabilities > LLM listens to the instructions part of the verified source code comments > get rekt The future is full of prompt injection attacks. Looking forward to 2026. ps: this is an illustrative contract I wrote without fancy obfuscation, so pls don't get too much inspired ;)
sudo rm -rf --no-preserve-root / tweet media
English
43
41
485
57.8K
Ben Lang
Ben Lang@benlnยท
Who's building over the holidays? Will add you to a group chat I started on X.
English
4.3K
87
5.1K
481.5K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Vercel Developers
Vercel Developers@vercel_devยท
@โ€‹mux/ai + Workflow DevKit makes AI video generation simple and durable.
Victor Bouttรฉ@monsieurBoutte

We just publicly released @mux/ai ๐ŸŽ‰ An AI SDK for video, with native Vercel Workflows support built in. Plus a demo app showing whatโ€™s possible when paired with the Vercel Workflow DevKit. Shout out to @pranaygp and friends at @vercel for their support

English
0
3
51
5.9K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Tay ๐Ÿ’–
Tay ๐Ÿ’–@tayvano_ยท
Lastly, if they hack your telegram, you need to TELL EVERYONE ASAP. "You" are about hack your friends. Please put your pride aside and SCREAM abt it. And if you need help with any of this SEAL-911 (@_SEAL_Org) is here for you. Message us 24/7: t.me/seal_911_bot
English
9
11
184
25.7K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
U.S. Securities and Exchange Commission
We will be hosting a roundtable on Dec. 16 to discuss Rule 611 of Regulation NMS and other associated rules and regulatory requirements. A livestream will be available on SEC.gov. See details on agenda, panelists, and registration info: sec.gov/newsroom/meetiโ€ฆ
English
64
53
289
45.3K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
The DFIR Report
The DFIR Report@TheDFIRReportยท
Huge congratulations to @RussianPanda9xx on winning SANS Difference Makers 2025 โ€“ Practitioner of the Year (Cyber Defense) ๐ŸŽ‰
RussianPanda ๐Ÿผ ๐Ÿ‡บ๐Ÿ‡ฆ@RussianPanda9xx

Okay wait... this actually happened?! ๐Ÿฅน๐Ÿ’™ SANS Difference Makers 2025 - Community Choice Winner Practitioner of the Year - Cyber Defense This is the proudest moment of my life. A huge thank you to @MaxRogers5 for nominating me. That meant more than you know. To the incredible cybersecurity community - every single vote, every word of encouragement, every share - YOU did this. This award belongs to all of us. The late nights analyzing malware, chasing the bad guys, the blog posts, the "hey did you see this sample?" DMs - that's what this community is about. @SANSInstitute, thank you for shining a light on the defenders. Thank you for making quiet . louder ๐Ÿ”Š

English
1
6
53
15.6K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Marc Andreessen ๐Ÿ‡บ๐Ÿ‡ธ
It's time to build the US Tech Force. ๐Ÿ‡บ๐Ÿ‡ธ
Scott Kupor@skupor

Your government needs YOU to transform the federal government through modern software development. If youโ€™re up for a huge challenge, join 1,000 of the countryโ€™s best and brightest technologists in the inaugural class of @USTechForce. We are partnering with the top U.S. technology companies to take on this challenge. Youโ€™ll learn a ton, network across the most important government agencies and private sector companies, ultimately creating powerful career opportunities whether you want to continue in public service or join the private sector. I am grateful to @POTUS for ensuring that America remains the worldโ€™s technology leader. Go to TechForce.gov to apply today.

English
140
185
2.5K
275.9K
โ„ญ๐”ฆ๐”ญ๐”ฅ๐”ข๐”ฏ ๋ฆฌํŠธ์œ—ํ•จ
Firecrawl
Firecrawl@firecrawlยท
Introducing Enterprise /search ๐Ÿ” For enterprises we've added new features and privacy controls to our Search API including: - New Anon and Zero Data Retention modes - Skip job logging flag - Full control over data handling and compliance Get in touch to enable it today ๐Ÿ‘‡
Firecrawl tweet media
English
3
8
70
7.6K
Logan Kilpatrick
Logan Kilpatrick@OfficialLoganKยท
Reply here or DM me :) will add folks in as much as we can
English
2.2K
13
943
78.6K
Logan Kilpatrick
Logan Kilpatrick@OfficialLoganKยท
Big upgrade to vibe coding in @GoogleAIStudio lands in Jan, but if you want to test earlyโ€ฆ ๐Ÿ‘‡๐Ÿป
English
3.8K
190
5.5K
553.6K