ƛŁƛƝ

50.2K posts

ƛŁƛƝ banner
ƛŁƛƝ

ƛŁƛƝ

@imladmorgul

| Metal | Cats | SWL DXing | r/ShortwavePlus

8.33 ± 0.35 kpc Sgr A* Katılım Ağustos 2011
700 Takip Edilen1.5K Takipçiler
ƛŁƛƝ
ƛŁƛƝ@imladmorgul·
El hype que esta creando el mismo Spielberg con #DisclosureDay a los conspiracionistas es enorme. Creo que va a reventar en taquillas y todo gracias a ellos. Ya dicen que incluso "obtuvo información confidencial" y que es eso lo que mostrara 😱 Aquí esta su informante:
Español
0
0
0
22
Jes✨
Jes✨@galjarjessi·
¿Qué lo que es esto de cambiar los nombres de los barrios de Asunción? Ya tenemos suficiente con el grupo Zuccolillo inventando el "barrio Mariscal". Así rompen con lo tradicional y lo simbólico para destruir la conexión entre espacio e historia y reemplazar por lo comercial
Jes✨ tweet media
Español
27
38
269
25K
ƛŁƛƝ
ƛŁƛƝ@imladmorgul·
@granodpimienta Tengo dos michis, en esta época se sientan al borde de la cama esperando que alguien "levante" el edredón para que entren y duerman toda la mañana.
ƛŁƛƝ tweet media
Español
0
1
158
1.6K
anaPimienta💚
anaPimienta💚@granodpimienta·
El gato se metió en la cama, pasaron las horas, me fui al médico, volví y sigue abajo de la manta. Le abrí para ver si seguía vivo y me hizo "miau" onda "cerrá loca, qué hacés?"
Español
6
120
9K
44.4K
ƛŁƛƝ retweetledi
Brian Roemmele
Brian Roemmele@BrianRoemmele·
Bro.. The movie (AI slop some will yell) follows an alien who lands on Earth and peacefully explores human life while hiding in plain sight. Wearing human clothes, he blends into society and experiences everyday activities. Instead, he crashed on the most chaotic beach in America, getting bitten by a Chihuahua named Benji, and finding out the dung beetle you crashed next to was actually the pilot the whole time. That's the entire emotional arc of "BRO" by Muhannad Nassar(mrabujoe). The means of production is now in the hands of the one. The individual. Love it or not love it, it does not ask permission to produce.
English
224
565
6K
252.6K
ƛŁƛƝ
ƛŁƛƝ@imladmorgul·
LPM!
Evan Luthra@EvanLuthra

🚨A HACKER GROUP JUST STOLE 4,000 OF GITHUB'S OWN PRIVATE REPOSITORIES.. PUT THEM UP FOR SALE FOR $50,000.. AND THE WAY THEY GOT IN IS THE SCARIEST PART.. They didn't hack GitHub's servers.. They poisoned a VS Code extension.. One GitHub employee installed it.. And the attackers walked through the front door using the employee's own credentials.. The group calls themselves TeamPCP.. They name their malware after the sandworms from Dune.. And they've been running the most sophisticated supply chain attack campaign in cybersecurity history.. Here's how the whole thing unfolded.. In March.. They poisoned Trivy.. One of the most trusted security scanners in the world.. Used by over 10,000 development workflows globally.. They injected credential-stealing malware into Trivy's official GitHub Action.. The malware ran silently BEFORE the security scan.. So every log showed "scan completed successfully" while the malware was stealing AWS keys, SSH credentials, database passwords, and Kubernetes tokens in the background.. It took Aqua Security 5 days to fully remove them.. Using the stolen credentials.. They breached Cisco Systems.. Cloned over 300 private repositories.. Including source code for unreleased AI products.. And repositories belonging to Cisco's customers.. Major banks.. Government agencies.. BPO firms.. In April.. They hit Checkmarx.. Another security vendor.. Poisoned 5 official Docker images in 83 minutes.. The scanner worked perfectly.. It just silently sent all your secrets to the attackers.. That automatically cascaded into Bitwarden.. The password manager.. Their CI/CD system pulled the poisoned Docker image.. And the attackers injected malware into Bitwarden's official CLI package published on npm.. One compromised security scanner poisoned a password manager.. Automatically.. No human involved.. In May.. They hit TanStack.. Libraries downloaded millions of times per week.. 84 malicious package versions across 42 packages.. And here's the terrifying part.. The malware scraped the raw memory of GitHub's build servers.. Extracted authentication tokens.. Used those tokens to bypass two-factor authentication.. And then published the infected packages with completely valid cryptographic signatures.. Every security verification tool on earth said the packages were legitimate.. Because they were signed by the real pipeline.. Using real keys.. The attackers just happened to be inside the pipeline when it signed.. They defeated the entire trust model of modern software supply chains.. The same week they hit the Nx Console VS Code extension.. 2.2 million installations.. The malware specifically targeted Claude Code configurations.. Hunting for AI assistant credentials.. That's a first.. Supply chain malware designed to steal your AI's access keys.. Then on May 19.. They revealed the GitHub breach.. 4,000 internal repositories.. Listed for sale at $50,000.. With a warning.. "If nobody buys it.. We leak everything for free".. Their malware is self-propagating.. Once it infects one package.. It automatically finds every other package that developer maintains.. Steals the publish tokens.. And infects all of them.. Then those packages infect the next developer.. And the next.. It jumps between npm and PyPI automatically.. The group doesn't even do the extortion themselves.. They sell stolen credentials to ransomware gangs.. One gang used TeamPCP's data to threaten Cisco with leaking FBI and NASA personnel records.. And the scariest part of all.. They didn't break any encryption.. They didn't find any zero-days.. They exploited the fact that the entire software industry blindly trusts its own build tools.. Every security scanner.. Every Docker image.. Every VS Code extension.. Every GitHub Action.. Is a potential weapon if someone poisons it upstream.. And right now.. Nobody can tell the difference between a legitimate build and a compromised one.. Because the compromised ones have valid signatures too.

QST
0
0
0
22
ƛŁƛƝ retweetledi
Evan Luthra
Evan Luthra@EvanLuthra·
🚨A HACKER GROUP JUST STOLE 4,000 OF GITHUB'S OWN PRIVATE REPOSITORIES.. PUT THEM UP FOR SALE FOR $50,000.. AND THE WAY THEY GOT IN IS THE SCARIEST PART.. They didn't hack GitHub's servers.. They poisoned a VS Code extension.. One GitHub employee installed it.. And the attackers walked through the front door using the employee's own credentials.. The group calls themselves TeamPCP.. They name their malware after the sandworms from Dune.. And they've been running the most sophisticated supply chain attack campaign in cybersecurity history.. Here's how the whole thing unfolded.. In March.. They poisoned Trivy.. One of the most trusted security scanners in the world.. Used by over 10,000 development workflows globally.. They injected credential-stealing malware into Trivy's official GitHub Action.. The malware ran silently BEFORE the security scan.. So every log showed "scan completed successfully" while the malware was stealing AWS keys, SSH credentials, database passwords, and Kubernetes tokens in the background.. It took Aqua Security 5 days to fully remove them.. Using the stolen credentials.. They breached Cisco Systems.. Cloned over 300 private repositories.. Including source code for unreleased AI products.. And repositories belonging to Cisco's customers.. Major banks.. Government agencies.. BPO firms.. In April.. They hit Checkmarx.. Another security vendor.. Poisoned 5 official Docker images in 83 minutes.. The scanner worked perfectly.. It just silently sent all your secrets to the attackers.. That automatically cascaded into Bitwarden.. The password manager.. Their CI/CD system pulled the poisoned Docker image.. And the attackers injected malware into Bitwarden's official CLI package published on npm.. One compromised security scanner poisoned a password manager.. Automatically.. No human involved.. In May.. They hit TanStack.. Libraries downloaded millions of times per week.. 84 malicious package versions across 42 packages.. And here's the terrifying part.. The malware scraped the raw memory of GitHub's build servers.. Extracted authentication tokens.. Used those tokens to bypass two-factor authentication.. And then published the infected packages with completely valid cryptographic signatures.. Every security verification tool on earth said the packages were legitimate.. Because they were signed by the real pipeline.. Using real keys.. The attackers just happened to be inside the pipeline when it signed.. They defeated the entire trust model of modern software supply chains.. The same week they hit the Nx Console VS Code extension.. 2.2 million installations.. The malware specifically targeted Claude Code configurations.. Hunting for AI assistant credentials.. That's a first.. Supply chain malware designed to steal your AI's access keys.. Then on May 19.. They revealed the GitHub breach.. 4,000 internal repositories.. Listed for sale at $50,000.. With a warning.. "If nobody buys it.. We leak everything for free".. Their malware is self-propagating.. Once it infects one package.. It automatically finds every other package that developer maintains.. Steals the publish tokens.. And infects all of them.. Then those packages infect the next developer.. And the next.. It jumps between npm and PyPI automatically.. The group doesn't even do the extortion themselves.. They sell stolen credentials to ransomware gangs.. One gang used TeamPCP's data to threaten Cisco with leaking FBI and NASA personnel records.. And the scariest part of all.. They didn't break any encryption.. They didn't find any zero-days.. They exploited the fact that the entire software industry blindly trusts its own build tools.. Every security scanner.. Every Docker image.. Every VS Code extension.. Every GitHub Action.. Is a potential weapon if someone poisons it upstream.. And right now.. Nobody can tell the difference between a legitimate build and a compromised one.. Because the compromised ones have valid signatures too.
Evan Luthra tweet mediaEvan Luthra tweet media
GitHub@github

We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.

English
168
1K
3.3K
613.5K
ƛŁƛƝ retweetledi
HellHammer 🎧
HellHammer 🎧@johngongo·
Hptas 😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂😂
Español
17
59
232
14.2K
ƛŁƛƝ retweetledi
Massimo
Massimo@Rainmaker1973·
"(Ghost) Riders in the Sky: A Cowboy Legend" is a cowboy-styled country/western song written in 1948 by American songwriter Stan Jones. Lawrence Welk and His Orchestra released this unforgettable instrumental version in 1961.
English
68
695
3.9K
166.2K
ƛŁƛƝ retweetledi
We don't deserve cats 😺
We don't deserve cats 😺@catsareblessing·
Your cat doesn’t see you as human (here’s what you really are to them)
English
30
636
4.9K
159.1K
ƛŁƛƝ retweetledi
My Cats You Cats
My Cats You Cats@MyCatsYouCats·
Budín 😎😎 es un hdp 🤣🤣🤣
Español
1
5
49
1.3K
ƛŁƛƝ
ƛŁƛƝ@imladmorgul·
@hashvl Era una marca de Hutchinson Telecomunications Paraguay (luego fue CTI y ahora Claro). Si mal no recuerdo, la idea de esos productos era que sea algo que compras al paso, activas y comienzas a usar si mayores trámites. En USA era muy común ese tipo de equipos, los “descartables”
Español
1
0
3
203
Hash
Hash@hashvl·
Alguien sabe algo de esta telefonía celular en Paraguay a finales de los 90s? No encuentro información en ningún lado youtube.com/watch?v=kCRvg2…
YouTube video
YouTube
Español
5
0
5
1.9K
ƛŁƛƝ retweetledi
Eduardo Quintana
Eduardo Quintana@EdQuintana·
Sos caradura, señora. Y te explico. Para descalificar de hurrero a alguien, hay que hacer dos cosas: 1- Conocer exactamente el significado lingüístico, coloquial y contextual del término, en este caso, en español paraguayo. 2- Contrastar ese significado con el comportamiento de la persona que querés descalificar. En el primer caso, hurrero hace alusión a una persona principalmente simpatizante de la Asociación Nacional Republicana – Partido Colorado. En general, el hurrero es una persona acrítica que defiende ciegamente a un político o movimiento colorado. Defiende a un político, figura pública o institución sin cuestionar nada. Aplaude aunque haya errores o corrupción. Actúa por beneficio (trabajo que es tu caso porque sos empleada estatal, favores, cercanía al poder). En redes sociales, repite consignas y ataca críticas automáticamente. En toda mi vida laboral, jamás defendí acríticamente a algún político o partido. No estoy afiliado a la ANR ni a ningún partido político paraguayo. Podés revisar mis registros, entrevistas, posteos, etc. Trabajo en el sector privado desde los 14 años. Mi trabajo siempre fue público: escribo en los medios desde esa edad, desde que un diario capitalino me contrató para escribir, allí trabajé por 13 años. Luego abrí mi propio medio y hace un par de años fundé otro. Y sigo muy cómodo aquí en el sector privado. Tengo total independencia, no dependo de los políticos. No puedo decir lo mismo en tu caso. En el ámbito periodístico donde yo me muevo no se te conoce. Periodista no sos, comunicadora tampoco. Tampoco en el ámbito científico ni académico donde me muevo se te ubica. Eso no es malo. Lo que sí es visible es tu posicionamiento público como defensora de figuras del poder político, particularmente del Partido Colorado. Por ejemplo, defendés a Bachi Núñez, un dirigente del esquema de poder, uno de los que se atornilla al Estado y sostiene no solo un modelo político autoritario, sino también un sistema de precarización y subdesarrollo para el Paraguay. En términos paraguayos "un hombre escombro" (Monseñor Rolón). Sos conocida por defender a políticos colorados cuestionados, vinculados a manejo discrecional del poder y recursos públicos. Defendés a un partido que sostuvo una dictadura de 35 años y que nunca pidió perdón. Defendés estructuras de poder que históricamente se han beneficiado del Estado mientras gran parte de la población paraguaya permanece en condiciones de pobreza. Esa es la contradicción central que tenés. Hablar desde la defensa del poder mientras se forma parte del mismo contexto social que ese poder reproduce. Esto significa que además de hurrera, sos hipócrita. Mi foto con Sole no equivale al hurrerismo. De hecho, cuando nos conocimos, hace casi 20 años, en una entrevista, chocamos ideológicamente. Es lo normal de una democracia. Pero hoy veo que es la que puede hacer frente al sistema corrupto y enfermizo que vos defendés. Ella puede derrotar a la estructura clientelista que consigue "trabajo" a gente como vos. La foto se dio en el marco de un cine debate, de cine paraguayo, en la Biblioteca del Congreso. No en una seccional. La gente aquí no fue arreada, tenía que completar un formulario. Y ninguno recibió vaka'i o 100 mil guaraníes para calentar la silla. Por último, y para que quede claro, tampoco es coherente invocar valores de familia o de patria cuando se sostiene sistemáticamente la defensa de estructuras políticas que han erosionado instituciones, educación y libertad en Paraguay. Y que perjudicaron y perjudican a millones de compatriotas, la mayoría de ellos, de tu clase social, la trabajadora. Aquí, la única hurrera sos vos.
Vane Vazquez@vanev87

Ellos no son hurreros, ellos son “militantes”🙃

Español
33
27
162
14.9K
Esos gatos locos
Esos gatos locos@EsosGatosLocos·
Rápido, dime un nombre para un gato que suene como si viniera de una familia adinerada
Español
147
3
50
25.7K
ƛŁƛƝ
ƛŁƛƝ@imladmorgul·
Se va la energía y @personalpy te manda directo al principio de los 2000. Arreglen los generadores de sus bases, miserables.
ƛŁƛƝ tweet media
Español
2
0
0
290
ƛŁƛƝ retweetledi
World Health Organization (WHO)
Swiss authorities have confirmed a case of #hantavirus identified in a passenger from the MV Hondius cruise ship. He had responded to an email from the ship’s operator informing the passengers of the health event, and presented himself to a hospital in Zurich, Switzerland, and is receiving care. In line with the International Health Regulations (IHR), WHO is working with relevant countries to support international contact tracing, to ensure that those potentially exposed are monitored and that any further disease spread is limited. The type of virus in this outbreak has been confirmed as Andes hantavirus by the National Institute for Communicable Diseases @nicd_sa, South Africa and the Geneva University Hospitals @hug_ge, Switzerland The support of the Institut Pasteur de Dakar @PasteurDakar, Senegal and the Administración Nacional de Laboratorios e Institutos de Salud @ANLIS_Malbran, Argentina has also been critical in responding to this event. As of 6 May, there are 8 cases, 3 of whom are confirmed as hantavirus by laboratory testing. WHO will continue to work with countries to ensure that the patients, contacts, passengers and crew have the information and support they need to stay safe and prevent spread.
World Health Organization (WHO) tweet media
English
1K
2.9K
7.2K
1.8M
🅡🅔🅣🅡🅞 🅟🅨™ 🇵🇾
Nada puede reemplazar ese sentimiento de nostalgia de la música de los años 80, cada vez que escuchas I want to know what love is de Foreigner, Time after time de Cyndi Lauper, o alguna canción que te lleve a esos años inolvidables y te das cuenta que nunca habrá otra década con música qué hizo la banda sonora de tu vida.
Asuncion, Paraguay 🇵🇾 Español
2
10
51
2.3K
Última Hora
Última Hora@UltimaHoracom·
La caída del tipo de cambio en torno al 21% reduce de forma directa los ingresos de los productores ganaderos en guaraníes, sin un ajuste equivalente en los costos, lo que comprime los márgenes y desalienta la producción en este sector. 🟢 Recibí las noticias: whatsapp.com/channel/0029Va…
Última Hora tweet media
Español
16
5
15
3.9K