NEPTA

7.6K posts

NEPTA banner
NEPTA

NEPTA

@Neptanow

The National Emergency Planning and Training Association. Helping families, businesses,and all levels of Government; prepare,respond and recover from disasters.

Worldwide Katılım Şubat 2012
8.2K Takip Edilen7.3K Takipçiler
NEPTA
NEPTA@Neptanow·
Flash Flooding in Puerto Rico 🇵🇷 Please be careful if traveling across the Island.
English
0
0
0
15
NEPTA
NEPTA@Neptanow·
@elonmusk @xai Congratulations!!! We couldn’t get a hold of him for 6 months, and now we see why. Congrats 🍾🎉🎊
English
0
2
2
43
NEPTA retweetledi
Kanika
Kanika@KanikaBK·
🚨BREAKING - Software Horror: LiteLLM HAS BEEN COMPROMISED. IF YOU INSTALLED IT TODAY YOUR SSH KEYS, AWS CREDENTIALS, AND API KEYS ARE ALREADY GONE. One pip install. Everything stolen. Here is what happened and why every developer needs to stop what they are doing right now. At 10:52 UTC on March 24 2026, litellm version 1.82.8 was published to PyPI containing a malicious file called litellm_init.pth. It executes automatically on every single Python process startup the moment litellm is installed. No interaction required. No warning. No visible sign anything went wrong. The attack was discovered by Callum McMahon at FutureSearch only because the malware contained a bug. It triggered an exponential fork bomb that crashed his machine while an MCP plugin inside Cursor pulled in litellm as a transitive dependency. If the attacker had written cleaner code this would have run silently for days or weeks across millions of machines. Version 1.82.7 has since been confirmed compromised as well. ↳ 97 million downloads per month making this one of the most installed Python packages in AI development ↳ Credentials stolen include SSH keys, AWS, GCP and Azure credentials, Kubernetes configs, API keys, database passwords, shell history, crypto wallets, SSL private keys, and CI/CD secrets ↳ Data encrypted with a 4096 bit RSA key and exfiltrated to a fake litellm domain ↳ If Kubernetes is present the malware reads all cluster secrets and creates a privileged backdoor pod on every node ↳ Persistence installed at the system level via a hidden sysmon service ↳ Any project depending on litellm is also compromised including dspy and dozens of other major AI libraries Here is the part that should change how you think about every pip install you ever run again. This was not a litellm vulnerability. This was a supply chain attack. The malware never touched the litellm GitHub repo. It was uploaded directly to PyPI bypassing the normal release process entirely That means every security review, every code audit, every pull request approval in the litellm project meant nothing. The attack lived one level below where anyone was looking. And because litellm sits inside the dependency tree of dozens of major AI projects, millions of developers who never typed pip install litellm in their lives were exposed anyway. You did not have to do anything wrong. You just had to use a tool that used a tool that was compromised. Discovered and reported by Callum McMahon at FutureSearch on March 24 2026. Reported to PyPI security and litellm maintainers. Community tracking at litellm issue 24512. Full technical breakdown: futuresearch.ai/blog/litellm-p… If you installed or upgraded litellm today do this right now: ↳ Run pip show litellm and check for version 1.82.8 or 1.82.7 ↳ Search for litellm_init.pth in your uv cache and virtual environments ↳ Check for a hidden sysmon.py file at ~/.config/sysmon/ ↳ Rotate every credential on that machine. Assume all of them are already gone. ↳ If you run Kubernetes audit kube-system for pods named node-setup Here is the question every developer and engineering lead needs to answer today. If a single compromised package sitting three levels deep in your dependency tree can silently exfiltrate every credential on every machine in your organization, how many of your current dependencies have you actually read? Share this now. Someone on your team installed litellm today and does not know yet.
Daniel Hnyk@hnykda

LiteLLM HAS BEEN COMPROMISED, DO NOT UPDATE. We just discovered that LiteLLM pypi release 1.82.8. It has been compromised, it contains litellm_init.pth with base64 encoded instructions to send all the credentials it can find to remote server + self-replicate. link below

English
30
194
610
194.6K
NEPTA retweetledi
South Carolina Forestry Commission
SC Forestry Commission issuing statewide Red Flag Fire Alert, effective immediately COLUMBIA—The South Carolina Forestry Commission is issuing a statewide Red Flag Fire Alert, effective immediately until further notice. The alert is being issued to strongly discourage people from burning outdoors when weather conditions present an elevated risk of wildfire. In addition to drought intensifying from a lack of significant rainfall, forecasts are calling for higher winds, low humidities and no precipitation in the foreseeable future. A Red Flag Fire Alert does not prohibit outdoor burning, provided that all other state and local regulations are followed, but the Forestry Commission uses the alert to strongly encourage citizens to voluntarily postpone any such burning until the alert is lifted. Because current weather conditions are very conducive to fires escaping easily and spreading rapidly, anyone considering outdoor burning should take extra precautions if they still choose to burn under a Red Flag. “The combination of dangerous conditions and dry fuels we’re going to see statewide for the next several days all add up to an elevated wildfire risk, and any fire that ignites is likely to burn intensely and spread rapidly,” said SCFC Fire Chief Darryl Jones. “With this alert, we’re asking people to respect the weather and hold off from burning outdoors until the weather improves. If you have burned recently, we encourage you to monitor the burn area to make sure the dry conditions don’t cause it to rekindle.” Adding to the danger, particularly in the western part of the state, are the heavy fuel loads that remain in our forests from Hurricane Helene. Not only can these downed, drying trees and other fuels act as kindling, increasing the risk of wildfire ignition and spread, but they also are likely to impede firefighters’ access, adversely impacting response capability. Although a Red Flag Fire Alert does not ban outdoor burning, it does trigger certain county or local ordinances that restrict outdoor fires, so residents should contact their local fire departments to check whether such restrictions apply in their areas. The alert will remain in effect until lifted by the Commission, whose fire managers will continuously monitor the situation. Shareable link: scfc.gov/wp-content/upl…
South Carolina Forestry Commission tweet media
English
3
40
41
6.6K
NEPTA retweetledi
AccuWeather
AccuWeather@accuweather·
Hawaiian Humane Society teams are on the ground in Waialua, Oahu, rescuing pets, delivering supplies and navigating flooded neighborhoods after severe storms left widespread damage behind.
English
15
206
714
12.4K
NEPTA retweetledi
Texas Division of Emergency Management
🚨Reminder: Texas will conduct a statewide drill of local public warning systems on April 2. Local partners across the state will test their alerting capabilities to build readiness and confirm reliability of these emergency notifications. More Details: tdem.texas.gov/press-release/…
English
44
402
702
63.1K
NEPTA retweetledi
Right Angle News Network
Right Angle News Network@Rightanglenews·
BREAKING - Delta Air Lines CEO Ed Bastian is receiving nationwide applause after stripping members of Congress of their special priority privileges in response to the Democrat led shutdown, calling it an “inexcusable” use of TSA agents as political chips.
English
1.7K
15.1K
97.4K
2.8M
NEPTA
NEPTA@Neptanow·
Feel bad for travelers, for pilots/air traffic controllers, and DHS employees. Ultimately this will eventually affect everyone in the U.S. either directly or indirectly - monetarily . #Congress #DHS #GovernmentUpdate
English
0
2
2
85
NEPTA retweetledi
Matt Van Swol
Matt Van Swol@mattvanswol·
🚨OH MY GOSH!!! The Atlanta TSA line is so long, that it is not just wrapped around baggage claim... ...BUT IS WRAPPING AROUND THE OUTSIDE OF THE FREAKING BUILDING!!!! I am hearing that people waited in line for SIX HOURS last night and still missed their flights. INSANE!!!!!
English
1.2K
3.1K
14.4K
3.4M
NEPTA
NEPTA@Neptanow·
This is a devastating tragedy. Early reports suggest multiple layers of accountability may be involved. If this leads to emergency funding or policy action, it should not take a disaster of this magnitude to drive change. Proactive safety investment must be the priority. #governmentshutdown #AviationSafety #congress
NEPTA tweet media
FOX & Friends@foxandfriends

SKY-HIGH STAKES: A pilot reveals the harrowing reality of navigating understaffed air traffic control zones as the DHS shutdown stretches on. "You pretty much have to have your eyes outside the airplane the whole entire time and try to anticipate if you're seeing anything... that's not usual, like an aircraft approaching," the pilot warns.

English
0
1
0
132
U.S. Coast Guard
Relentless vigilance. Unifying leadership. Coordinated response. In response to catastrophic flooding in Oahu, @USCG and @USNavy aircrews rescued seven people and one dog in separate incidents yesterday in Waialua and Yokohama Bay. Alongside our federal, state, and local partners, the Coast Guard is bringing every capability to bear - cutters, boats, aircraft, and crisis leaders - as this response evolves. As America’s maritime first responder, the Coast Guard stands with the people of Oahu. Read more here: news.uscg.mil/Press-Releases… #USCG #SemperParatus #SoOthersMayLive @DHSgov @USCGPACAREA @USCGOceania
English
20
115
414
11.9K
NEPTA retweetledi
Volcaholic 🌋
Volcaholic 🌋@volcaholic1·
Hawaii sees its worst flooding in 20 years with over a foot of rain in 24 hours. More than $1 billion in damage expected and nearly 200 rescued so far. More rain to come! 📹 Sandybeach
English
34
518
1.4K
36.1K
NEPTA
NEPTA@Neptanow·
@EricJorgenson @naval How does Naval retain all this knowledge and transfer it into easily digestible thoughts and tidbits of information that is extremely useful to the populace? To be in the same room with such a person and have his attention, has to be incredibly transformative - perhaps.
English
0
0
0
40
Eric Jorgenson 📚 ☀️
Eric Jorgenson 📚 ☀️@EricJorgenson·
My 3.5-hour conversation with @naval. Fresh takes on every idea from The Almanack of Naval: happiness, judgment, knowledge, leverage. Now in one episode, available on Spotify, Youtube, etc.
English
70
495
3.8K
329.3K