José René
1.8K posts

José René
@JoseReneB
The only way to deal with an unfree world is to become so absolutely free that your very existence is an act of rebellion.
Guatemala Katılım Kasım 2009
100 Takip Edilen147 Takipçiler

🚨 CYBER INTELLIGENCE ALERT: WEB EXPLOIT INJECTION AND NEOLINK DECONFIGURATION — GUATEMALA 🇬🇹
[STATUS: UNDER SUPERVISION]
The threat actor, fully identified under the alias NemorisHacking, has perpetrated a web exploit injection attack. The actor indicates that they compromised and visually defaced transactional instances of the NeoLink/NeoNet payment gateway infrastructure in Guatemala (.gt). The incident directly affects active transactional links, exposing critical weaknesses in the sanitization of website entry points. According to the evidence collected, the attack replaced the legitimate card payment form with a custom panel titled "The Mirror of Your Shadow," with explicit text attributing the compromise to the attacker.
🏢 Affected Entity: Infrastructure associated with NeoLink/NeoNet Guatemala (Payment Gateway)
👤 Threat Actor: NemorisHacking
⚔️ Attack Vector: Web Exploit Injection / Active Link Defacement
⚠️ CRITICAL RISK ANALYSIS AND EXPOSED FIELDS
The presence of code injections on payment processing platforms represents an imminent risk of large-scale financial fraud:
💳 Phishing and Formjacking Risk: The attacker demonstrates the ability to inject HTML elements into high-trust domains (pay.neolink.com.gt). This facilitates the cloning of critical fields such as "Card Number", "MM/YY", and "CVV" for the silent exfiltration of banking data (Magecart style) before redirecting the user.
🛑 Payment Chain Disruption: By altering the legitimate transaction interface, secure fund collection for affiliated merchants that rely on that link ID is completely disabled.
🛡️ MITIGATION AND PREVENTIVE TECHNICAL RECOMMENDATIONS
🚫 Link Isolation and Deactivation: NeoLink platform administrators are urged to immediately revoke and disable the token/ID of the compromised link to stop the deployment of malicious code.
💻 Code Injection Audit (Web App Audit): Thoroughly review server-side variable validation mechanisms in payment link generation routes to block the injection of HTML/JS payloads.
📊 MONITORING AND EVALUATION
Intelligence System: analyzer.vecert.io
Quickly assess your website's security with: monitor.vecert.io
#CyberSecurity #Guatemala #NeoNet #NeoLink #WebExploit #Defacement #NemorisHacking #FinancialThreats #ThreatIntelligence #CyberAlert #VECERT #Infosec

English
José René retweetledi

Yesterday a quasi-judicial body in Italy fined @Cloudflare $17 million for failing to go along with their scheme to censor the Internet. The scheme, which even the EU has called concerning, required us within a mere 30 minutes of notification to fully censor from the Internet any sites a shadowy cabal of European media elites deemed against their interests. No judicial oversight. No due process. No appeal. No transparency. It required us to not just remove customers, but also censor our 1.1.1.1 DNS resolver meaning it risked blacking out any site on the Internet. And it required us not just to censor the content in Italy but globally. In other words, Italy insists a shadowy, European media cabal should be able to dictate what is and is not allowed online.
That, of course, is DISGUSTING and even before yesterday’s fine we had multiple legal challenges pending against the underlying scheme. We, of course, will now fight the unjust fine. Not just because it’s wrong for us but because it is wrong for democratic values.
In addition, we are considering the following actions: 1) discontinuing the millions of dollars in pro bono cyber security services we are providing the upcoming Milano-Cortina Olympics; 2) discontinuing Cloudflare’s Free cyber security services for any Italy-based users; 3) removing all servers from Italian cities; and 4) terminating all plans to build an Italian Cloudflare office or make any investments in the country.
Play stupid games, win stupid prizes. While there are things I would handle differently than the current U.S. administration, I appreciate @JDVance taking a leadership role in recognizing this type of regulation is a fundamental unfair trade issue that also threatens democratic values. And in this case @ElonMusk is right: #FreeSpeech is critical and under attack from an out-of-touch cabal of very disturbed European policy makers.
I will be in DC first thing next week to discuss this with U.S. administration officials and I’ll be meeting with the IOC in Lausanne shortly after to outline the risk to the Olympic Games if @Cloudflare withdraws our cyber security protection.
In the meantime, we remain happy to discuss this with Italian government officials who, so far, have been unwilling to engage beyond issuing fines. We believe Italy, like all countries, has a right to regulate the content on networks inside its borders. But they must do so following the Rule of Law and principles of Due Process. And Italy certainly has no right to regulate what is and is not allowed on the Internet in the United States, the United Kingdom, Canada, China, Brazil, India or anywhere outside its borders.
THIS IS AN IMPORTANT FIGHT AND WE WILL WIN!!!

English
José René retweetledi

@Dan_Jeffries1 I agree with everything you say... however, this will definitely bring us closer to AGI, as a bow and arrow brings you closer to a nuclear bomb. The question is: should we actually get AGI, isn't every fear of it ending all jobs not well founded? And also... how far off are we?
English

How many more model releases do we need for folks to realize we are not getting to magical superintelligence with what we got?
How many times do you have to see a model benchmaxxing to realize Humanity's Last Exam is a freaking idiotic name and that answering questions on it doesn't tell us shit about the true intelligence of the model?
How many models do we have to see demonstrating superficial intelligence but utterly failing at long running, contextual understanding for people to wake up and realize that AI is just another tool?
A good tool, a useful tool, a wonderful tool but not magic and not the end of all jobs and not the end of humanity or any other absurd fantasy of fools and dreamers.
Fool me once, shame on you.
Fool me twice, shame on me.
English

It's the "I need to sell this somehow" scale. Read more.
Air Katakana@airkatakana
worst graph crime ive ever seen, what the fuck is this
English
José René retweetledi

Just got off work and tried Grok-4 on an undergrad topology problem. It took 9 minutes to think and then confidently gave a clean, plausible, but totally wrong answer 😅
Don’t think this one qualifies as “skillfully adversarial.” AI models are crushing benchmarks — but still a long way ahead for real math AGI.


Elon Musk@elonmusk
Grok 4 is at the point where it essentially never gets math/physics exam questions wrong, unless they are skillfully adversarial. It can identify errors or ambiguities in questions, then fix the error in the question or answer each variant of an ambiguous question.
English

Dear @neiltyson I am very sad to inform you that I have found no legal way to watch Cosmos with my daughter from Central America.
Also no it’s not due to legal custody rights 😬
#freeCosmos
English

Don’t be foolish we’re merely borrowing from our unborn grandchildren.
Makes wonder who the people who don’t have kids are borrowing from 🤔
Elon Musk@elonmusk
Earth sure owes Earth a lot of money 😂
English

@BArevalodeLeon por qué no trae de vuelta a @jimmymoralesgt para que lo ayude a arreglar la autopista?
Español

@manoloalvarez Y cuando lo usas bien no tiene nada significativamente mejor que DIVI
Español

@manoloalvarez No, elementos es un pagebuilder, como DIVI y Oxygen. Entonces es uno u otro. Si queres mucho control, flexibilidad del diseño, y velocidad y performance del sitio Oxygen. Si queres facilidad y velocidad de uso DIVI. Elementor tiende a ser un caldo de problemas cuando lo usas mal
Español

@manoloalvarez Aahhh… yo te puedo dar soporte en Oxygen o en Divi. Oxygen es mucho más versátil y flexible con una curva de aprendizaje más larga. Divi es muy fácil de usar y la versión 5 que viene hicieron complete rewrite y va a ser backwards compatible lo cual habla muy bien de ellos. 🫡
Español

@JoseReneB Preference and familiarity. Open to hear other options. Do you know anyone? I want to update new personal blog and podcast sites
English

@pau_maldonadoo No puedes quemar lo que ya está quemado hahaha.
Protip solo pones una disputa del cargo en tu banco y al comprobar que el comercio no entrega te devuelven el dinero.
Por cierto creo que a ti te llegó mi base hahaha a mi solo el colchón hahaha 😂
Español

@PumaRV @gunsnrosesgirl3 Los gringos siempre llevando todo al extremo están sembrando el árbol de naranja en su jardín de 3 hectáreas para luego cortarlo con un cuchillo que ellos mismos forjaron para ponerlo en un vaso de madera que ellos mismos tallaron 🤦♂️
O en McDonalds con vasito de micro plásticos
Español

@PumaRV @gunsnrosesgirl3 Eso hace Europa muy bien y creo que es un excelente camino para un mejor futuro: la automatización y tecnología al servicio de una vida más natural y tranquila. La máquina para hacer jugo de naranja fresco me dejó 😦 y no entiendo por qué no hay en todo el mundo.
Español

Would you use this machine if it was in a supermarket?
twitter.com/visualfeastwan…
English









