danimim.eth

55.1K posts

danimim.eth banner
danimim.eth

danimim.eth

@danimimm

governerd ✦ prev. @moonwelldefi / @mamo ✦ prev. @Balancer ✦ opinions are my alter ego 🦇🔊 https://t.co/5X0i1oL0VZ

Brazil 🇧🇷 Katılım Ocak 2016
3K Takip Edilen6.5K Takipçiler
Sabitlenmiş Tweet
danimim.eth
danimim.eth@danimimm·
💁🏻‍♀️💇🏻‍♀️ girls, nomads, women in tech: I built a thing... i'm done buying a hair dryer in every city, crying over voltages, and fighting sad hotel dryers if you'd use it, join the waitlist, please enough sign-ups and I'll ship an MVP of the app: 👉 lend.beauty
danimim.eth tweet media
English
2
0
6
792
danimim.eth retweetledi
Adrián
Adrián@VialeAdrian·
Yo hace 20 años: la Iglesia Católica es una reliquia de otra era Yo en 2026: la Iglesia Católica es la última esperanza
Español
50
1.6K
15.3K
133K
danimim.eth retweetledi
Sean
Sean@sean_from_earth·
Claude subscriptions are now called Indulgences
English
5
60
509
8.1K
danimim.eth retweetledi
Glenn
Glenn@Glenn6·
Please share widely. a third-party module was exploited, not Squid’s Router contract. The contract shares our name but is not our code. Squid remains safe and unaffected.
squid@squidrouter

This incident is unrelated to Squid’s core protocol and contracts. All Squid users and integrators are unaffected and no action is needed. A third-party Gnosis Safe module was exploited today across Base and Ethereum, resulting in approximately $3.2M in losses. The vulnerable contract is verified on Basescan under the name “SquidRouterModule” but this contract was not built, deployed, or operated by Squid. It is a third-party smart-wallet product that chose to integrate with Squid, among other protocols, but has not been in contact with us. The exploit worked because the third-party module accepted a caller-supplied constant string as proof that a message was secure. If you pass in this string (which is publicly available in the verified contract’s code), then you can execute an array of arbitrary calldata, stealing funds at will. The victims’ Safes had added this faulty contract as a trusted Safe Module, which gives the contract the ability to spend any tokens in the Safe without signatures. Squid’s own router (0xce16F69375520ab01377ce7B88f5BA8C48F8D666) is architecturally different and was not touched. Squid user funds, approvals, and integrations are fully secure. Early public reporting may reference “SquidRouter” due to the contract’s verified name on Basescan. The accurate framing is: a third-party SquidRouterModule was exploited, not Squid’s Router contract. The contract shares our name but is not our code. We are monitoring the situation and will share updates if anything changes materially.

English
8
7
47
2.5K
danimim.eth retweetledi
Pablo
Pablo@pabampa·
Yo leyéndome la encíclica del Papa:
Pablo tweet media
Español
9
1.3K
8.2K
75.8K
danimim.eth retweetledi
The Happy Smiler
The Happy Smiler@artchad·
Optimism and doom aside. I cannot believe I am alive to witness this. I cannot believe I am a young man in the year 2026.
Ole Lehmann@itsolelehmann

the pope and anthropic's co-founder just stood together at the vatican to release "magnifica humanitas," the first ever catholic teaching on AI yes, you read that right. the full ceremony was 2 hours. here's the most interesting things for you to know: 1. this is the biggest religious response to AI in history. popes only put out a handful of these huge official letters in their entire time as pope. the fact that one of them is about AI tells you how seriously the church is taking what's coming. 2. small detail with massive meaning: this pope picked the name "leo XIV" on purpose. the last pope named leo was leo XIII back in 1891, and his most famous act was writing the church's response to the industrial revolution. picking the same name is a deliberate signal. this pope sees AI as the new industrial revolution. 3. the catholic church does this every time a major technology reshapes humanity. they wrote "rerum novarum" in 1891 to respond to the industrial revolution. when nuclear weapons threatened the world in the 1960s, they wrote "pacem in terris." climate change and runaway tech got "laudato si" in 2015. now AI gets "magnifica humanitas." they don't issue these often. 4. the pope's main line: "AI needs to be disarmed." he literally compared AI to nuclear weapons. he said the church spent decades pushing for nuclear disarmament because the technology was too dangerous to leave in the hands of a few. he says AI is now in that same category. 5. anthropic co-founder christopher olah told the pope, on stage at the vatican, that anthropic's own research team keeps finding things inside their AI models that "mirror joy, satisfaction, fear, grief, and unease." 6. olah's reframe of what AI actually is: these things are grown. they're trained on a structure roughly modeled after the human brain and fed everything humans have ever written. in his own words: "they are made from us, from our words." he said even the people building them don't fully understand what's happening inside. 7. olah publicly admitted that every AI lab, including his own, faces pressure that can conflict with doing the right thing. commercial pressure to keep shipping, competitive pressure from other labs, plus the older pressures of pride and ambition. his solution: we desperately need outside critics with no skin in the game who will tell the labs when they're failing. 8. olah says there are 3 giant questions the AI labs cannot answer alone and the world needs religion and philosophy to step in on: > how do we make sure poor countries actually benefit from AI? > what does human flourishing even look like in this new world? > and what are these things we're actually building? 9. one of the sharpest lines in the whole encyclical: "the promise of automatic general prosperity often proves illusory." translation: the idea that AI will just make everyone rich on its own is a fantasy. someone has to actually design the system so the benefits get shared. 10. the pope also pulled out a 100-year-old quote: "contemporary man has not been trained to use power well." said by a theologian back in the 1920s. the whole encyclical is basically a long argument that we need to learn how to use this kind of power before it uses us. 11. the pope kept stressing that he doesn't have the technical answers. but he says the church has thousands of years of wisdom on what it means to be human, and that wisdom is exactly what's missing from how we're building AI right now. his closing line: this technology should serve "human flourishing and human dignity, not control consciences."

English
6
56
1.3K
144.8K
chrizy.eth
chrizy.eth@chrizy·
@danimimm Not related to Squid btw, just chose the same name
squid@squidrouter

This incident is unrelated to Squid’s core protocol and contracts. All Squid users and integrators are unaffected and no action is needed. A third-party Gnosis Safe module was exploited today across Base and Ethereum, resulting in approximately $3.2M in losses. The vulnerable contract is verified on Basescan under the name “SquidRouterModule” but this contract was not built, deployed, or operated by Squid. It is a third-party smart-wallet product that chose to integrate with Squid, among other protocols, but has not been in contact with us. The exploit worked because the third-party module accepted a caller-supplied constant string as proof that a message was secure. If you pass in this string (which is publicly available in the verified contract’s code), then you can execute an array of arbitrary calldata, stealing funds at will. The victims’ Safes had added this faulty contract as a trusted Safe Module, which gives the contract the ability to spend any tokens in the Safe without signatures. Squid’s own router (0xce16F69375520ab01377ce7B88f5BA8C48F8D666) is architecturally different and was not touched. Squid user funds, approvals, and integrations are fully secure. Early public reporting may reference “SquidRouter” due to the contract’s verified name on Basescan. The accurate framing is: a third-party SquidRouterModule was exploited, not Squid’s Router contract. The contract shares our name but is not our code. We are monitoring the situation and will share updates if anything changes materially.

English
1
0
1
90
danimim.eth
danimim.eth@danimimm·
I'm fascinated by security because it's the only field where the job is to think about what you don't know you don't know.
English
0
0
0
56
danimim.eth
danimim.eth@danimimm·
There's an old way of sorting risk into four boxes: things we know we know, things we know we don't know, things we don't realize we know, and things we don't know we don't know. 1) The first box has linters and checklists pointed at it. 2) The last box is the one you should worry about. You can't budget for, scope, or threat-model a failure mode that doesn't have a name yet. The real job of security research is dragging things out of that fourth box: someone gets clever, an unknown unknown becomes a known unknown, then a known known, then a lint rule. That migration is the whole game. Crypto and AI are the same story... The ecosystem now carries thousands of immutable legacy contracts, and we can't patch their issues quickly. AI's defining trait, here, is speed of search. So the combined risk isn't "AI writes buggy code." It's that AI compresses the time between a bug existing and someone exploiting it. Auditing harder helps the first two boxes and does nothing for the fourth. Use the asymmetry on purpose. Fund research with no immediate deliverable. The work that drains the fourth box looks unproductive right up until it isn't. We can't empty the fourth box, that's what makes it the fourth box. Being alarmed is the correct starting position; it means you noticed the box exists.
danimim.eth@danimimm

I don’t want to sound bearish on the ecosystem, I’m genuinely passionate about all of this, but think about it I’m unemployed right now banks are giving around 14% yearly returns, which is impossible to compete with when DeFi APYs barely go above 6%

English
1
0
0
184
danimim.eth retweetledi
squid
squid@squidrouter·
This incident is unrelated to Squid’s core protocol and contracts. All Squid users and integrators are unaffected and no action is needed. A third-party Gnosis Safe module was exploited today across Base and Ethereum, resulting in approximately $3.2M in losses. The vulnerable contract is verified on Basescan under the name “SquidRouterModule” but this contract was not built, deployed, or operated by Squid. It is a third-party smart-wallet product that chose to integrate with Squid, among other protocols, but has not been in contact with us. The exploit worked because the third-party module accepted a caller-supplied constant string as proof that a message was secure. If you pass in this string (which is publicly available in the verified contract’s code), then you can execute an array of arbitrary calldata, stealing funds at will. The victims’ Safes had added this faulty contract as a trusted Safe Module, which gives the contract the ability to spend any tokens in the Safe without signatures. Squid’s own router (0xce16F69375520ab01377ce7B88f5BA8C48F8D666) is architecturally different and was not touched. Squid user funds, approvals, and integrations are fully secure. Early public reporting may reference “SquidRouter” due to the contract’s verified name on Basescan. The accurate framing is: a third-party SquidRouterModule was exploited, not Squid’s Router contract. The contract shares our name but is not our code. We are monitoring the situation and will share updates if anything changes materially.
Blockaid@blockaid_

🚨 Blockaid detected an ongoing exploit targeting the SquidRouterModule on Ethereum and Base. 86 Gnosis Safes drained for ~$3M in ~2 hours. All stolen tokens swapped to DAI via attacker-controlled Uniswap V3 pools. More details in 🧵

English
74
108
418
109.5K
danimim.eth
danimim.eth@danimimm·
crypto’s purpose goes way beyond profit of course, there’s privacy, censorship resistance, and everything we already know, but right now I’m going to choose stability for myself. I can’t go full degen and sleep every night worried about a hack
English
0
0
1
82
danimim.eth
danimim.eth@danimimm·
I don’t want to sound bearish on the ecosystem, I’m genuinely passionate about all of this, but think about it I’m unemployed right now banks are giving around 14% yearly returns, which is impossible to compete with when DeFi APYs barely go above 6%
English
1
0
0
271
danimim.eth
danimim.eth@danimimm·
@britodeisabella i'm gonna fix some other stuff <3 but so so so glad you liked, you're welcome to have my hairdryer once you're here 💘
English
0
0
1
20
isabella
isabella@britodeisabella·
@danimimm omg THIS IS GREAT!!! much better than I was hoping for 🥹 now i have no choice but lending you my dyson airwrap whenever you need haha thank you!!
English
1
1
1
62
danimim.eth
danimim.eth@danimimm·
💁🏻‍♀️💇🏻‍♀️ girls, nomads, women in tech: I built a thing... i'm done buying a hair dryer in every city, crying over voltages, and fighting sad hotel dryers if you'd use it, join the waitlist, please enough sign-ups and I'll ship an MVP of the app: 👉 lend.beauty
danimim.eth tweet media
English
2
0
6
792