M. Maali 🔑

3K posts

M. Maali 🔑 banner
M. Maali 🔑

M. Maali 🔑

@cryptodronejr

🛫

New York, New York Katılım Ekim 2010
1.7K Takip Edilen557 Takipçiler
M. Maali 🔑 retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
❗️ Apple accidentally shipped Claude[.]md files in the Apple Support app update (v5.13). For context, Claude[.]md is the instruction file Anthropic's Claude Code uses to understand a project's structure, conventions, and developer guidance. They typically live in source repos and are not meant to ship inside production apps. Source: @aaronp613
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
54
186
1.8K
277.2K
M. Maali 🔑 retweetledi
Cyber Security News
Cyber Security News@The_Cyber_News·
⚠️ Linux Kernel 0-Day "Copy Fail" Roots Every Major Distribution Since 2017 Source: cybersecuritynews.com/linux-kernel-0… A critical zero-day vulnerability in the Linux kernel has been publicly disclosed, enabling any unprivileged local user to obtain root access on virtually every major Linux distribution shipped since 2017. Copy Fail is a straight-line logic bug not a race condition in the Linux kernel's authencesn cryptographic template, reachable via the AF_ALG socket interface combined with the splice() system call. A single 732-byte Python script using only standard library modules achieves deterministic root on every tested distribution and architecture. #cybersecuritynews #linux #CopyFail
Cyber Security News tweet media
English
10
147
495
33K
M. Maali 🔑 retweetledi
Zach Rynes | CLG
Zach Rynes | CLG@ChainLinkGod·
Genuinely WTF is going on with DeFi this month? Just an insane number of code exploits, oracle exploits, bridge hacks, and key compromises: LayerZero | $292M | April 18 | rsETH bridge exploit Drift Trade | $285M | April 1 | Compromised Admin + Fake Token Price Manipulation Rhea Lend | $18.4M | April 16 | Fake Collateral Exploit Grinex | $15M | April 16 | Hot wallet hack Sweat Foundation | $3.5M | April 29 | Refund_first & Refund_second Logic Exploit Volo Vault | $3.5M | April 21 Hyperbridge | $2.5M | April 12 | Fake State Proof BSC TMM/USDT | $1.67M | April 4 | Reserve Manipulation Attack Purrlend | $1.5M | April 25 | Fake Bridge Address Giddy | $1.3M | April 23 | Incomplete EIP-712 Signature Coverage Aftermath Perps | $1.14M | April 29 | Fee-Accounting Logic Flaw Aethir | $423K | April 9 | Acces Control Exploit Singularity Finance | $413K | April 27 | Oracle Misconfiguration Exploit Dango | $410K | April 13 | Donate Negative Amounts Hack Silo V2 | $392K | April 3 | Misconfigured Oracle Exploit Syndicate | $330K | April 29 | Commons Bridge Exploit ZetaChain | $300K | April 27 | GatewayEVM Contracts Exploit JUDAO | $228K | April 28 | Flashloan Exploit Scallop Lend | $150K | April 26 Quant | $138K | April 28 | Access Control Exploit Zerion Wallet | $100K | April 14 | Hot Wallet Compromise via Social Engineering Kipseli | $80K | April 22 | Flawed Quoting Logic MONA | $60K | April 13 | BurnAddress Accounting Exploit SubQuery Network | $60K | April 12 | Acces Control Exploit Juicebox V3 | $52K | April 20 | borrowFrom Spoof Attack Thetanuts Finance | $50K | April 20 | First Depositor Attack Litecoin | April 26 | Zero-Day Bug & DDoS Exploit
Zach Rynes | CLG tweet media
English
63
39
284
24.6K
M. Maali 🔑 retweetledi
The Smart Ape 🔥
The Smart Ape 🔥@the_smart_ape·
> be taeyang lee > read kernel crypto and notice a 2017 optimization in algif_aead > realize any user can overwrite /usr/bin/su in ram > any user can become root in 2 seconds on every linux box since 2017 > every cloud. every k8s cluster. every ai sandbox. > give the bug to an llm > ai produces a 732-byte exploit working on all of them
The Smart Ape 🔥@the_smart_ape

x.com/i/article/2049…

English
6
44
430
74K
M. Maali 🔑 retweetledi
Cointelegraph
Cointelegraph@Cointelegraph·
🚨 ALERT: Wasabi Protocol exploited for $5M+ across multiple chains, including Ethereum and Base, per PeckShield.
Cointelegraph tweet mediaCointelegraph tweet media
English
70
82
351
55.9K
M. Maali 🔑 retweetledi
Dark Web Informer
Dark Web Informer@DarkWebInformer·
‼️Copy Fail (CVE-2026-31431) is a Linux privilege escalation bug that lets any local user get root using a 732-byte Python script, and itworks on basically every major Linux distro shipped since 2017. Website: copy.fail Write-up: xint.io/blog/copy-fail… GitHub: github.com/theori-io/copy… It's a logic flaw in the kernel's crypto code (authencesn via AF_ALG and splice()) that allows a small write into the page cache, which can be used to tamper with a setuid binary like /usr/bin/su. Think how bad this is going to be for shared environments like Kubernetes, CI runners, and cloud sandboxes, where it enables container escape and tenant-to-host compromise. Found by Theori's Xint Code scanner, patched in the mainline kernel, and publicly disclosed on April 29, 2026; if you can't patch right away, the recommended workaround is to disable the algif_aead module.
English
57
829
3.3K
392.4K
M. Maali 🔑 retweetledi
PlayStation Nostalgia
PlayStation Nostalgia@PlayStalgiaX·
Rocket Power: Beach Bandits (2002)
English
14
161
1.4K
93.9K
M. Maali 🔑 retweetledi
Polymarket
Polymarket@Polymarket·
BREAKING: Vibe-coding platform Lovable reportedly suffered a breach that exposed users’ AI chat histories, source code, & database credentials.
English
576
919
8.4K
2.1M
M. Maali 🔑 retweetledi
Vishal
Vishal@vishaltweetup·
RIP Figma 😭 Claude just dropped Claude Design.
Vishal tweet media
English
74
619
4.9K
139.1K
M. Maali 🔑 retweetledi
0xMarioNawfal
0xMarioNawfal@RoundtableSpace·
WTF JUST HAPPENED
0xMarioNawfal tweet media
English
94
9
135
69.1K
M. Maali 🔑 retweetledi
Fren
Fren@0xFrenxbtdotxrp·
Hyperliquid front end be like I see you've arrived in the Netherlands in the past 30 seconds, carry on then.
English
51
62
1.6K
93.8K
M. Maali 🔑 retweetledi
Kalshi
Kalshi@Kalshi·
BREAKING: Iran officially reopens Strait of Hormuz
English
716
3.4K
22.3K
3.8M