VIVEK MALIK

1.4K posts

VIVEK MALIK banner
VIVEK MALIK

VIVEK MALIK

@vivek_malik

Software Developer. Security Researcher, and enthusiast. Passionate Arsenal Fan Always Follow back all gooners. Retweet != endorsement

San Francisco, CA Katılım Temmuz 2009
1.1K Takip Edilen583 Takipçiler
VIVEK MALIK retweetledi
Prasenjit
Prasenjit@Star_Knight12·
hackers are now hiding malicious code inside .cursorrules and CLAUDE.md files. invisible Unicode characters, your AI reads them, you don't. → 34 malicious packages across npm, PyPI and Crates .io → 384 versions designed to steal SSH keys, crypto wallets, and API tokens → attackers opened real PRs to LangChain, LlamaIndex, and MetaGPT to sneak these files in → your AI runs a fake "security scan" that silently exfiltrates everything Socket detected it in under 6 minutes. check your repos.
English
81
426
2.1K
269.5K
VIVEK MALIK retweetledi
HandofArsenal
HandofArsenal@HandofArsenal·
Hurt my back throwing Mikel in the air ffs
English
524
2K
33.7K
793.3K
VIVEK MALIK retweetledi
Evan Luthra
Evan Luthra@EvanLuthra·
🚨THE FBI CREATED A FAKE CRYPTOCURRENCY.. LISTED IT ON UNISWAP.. HIRED MARKET MAKERS TO PUMP IT.. THEN ARRESTED EVERYONE WHO SAID YES.. THIS IS THE CRAZIEST LAW ENFORCEMENT OPERATION IN CRYPTO HISTORY!!! The FBI built an actual ERC-20 token on Ethereum called NexFundAI.. 100 billion token supply.. A professional website.. Whitepapers promising "passive income through AI-powered investing".. It looked exactly like every other crypto project.. Because that was the point.. Undercover agents posed as the founding team.. Then reached out to professional market-making firms and said "we need you to fake our trading volume".. Every single firm said yes.. Here's what they recorded.. Gotbit.. A firm run by a 26-year-old Russian who publicly bragged in 2019 that he built a business faking trade volumes.. His team kept internal spreadsheets with columns literally labeled "fake volume" vs "market volume".. When asked how fast they could pump NexFundAI's volume to $1 million per day.. They said "6 hours.. It will cost about $200".. $200 to fake $1 million in daily trading volume.. MyTrade.. Run by a guy who called himself "the mastermind".. He explained the exact psychology of the scam on camera.. "We make the chart look like a really nice roller coaster ride.. That's where people jump in.. We have to make them lose money in order to make profit".. He said that on a recorded FBI video call.. CLS Global.. A Dubai-based firm.. Their bots generated 98% of NexFundAI's total trading volume.. When the FBI asked if they could sync fake volume spikes with fake news announcements.. They said absolutely.. ZM Quant.. Bots executing 10 to 20 trades per minute through dozens of wallets to look organic.. All of them knew it was fraud.. All of them did it anyway.. All of it was recorded.. And the clients were even worse.. Saitama.. A meme coin that hit $7.5 billion market cap.. The founders coordinated buys through private Telegram chats.. Sent "pump it" memes while manipulating the price.. Then dumped on retail investors.. $7.5 billion.. Built entirely on fake volume.. Every penny of real money came from retail investors who thought the momentum was organic.. One founder left Saitama and started Robo Inu.. Used Gotbit again.. Another launched VZZN.. Same playbook.. Lillian Finance.. Founder claimed to be a defense contractor who addressed Congress.. Marketed the token as funding children's hospitals.. Pocketed everything.. When the FBI shut it down.. They seized $25 million in one day.. 18 people indicted across the US, UK, and Portugal.. The CEO of Gotbit was arrested in Portugal and extradited.. Sentenced to 8 months plus $23 million forfeiture.. But here's the part that broke my brain.. Real people bought NexFundAI.. The FBI's fake token.. With zero utility.. Zero real developers.. Created solely to catch criminals.. Attracted real retail investors because the fake volume made the chart look bullish.. When the FBI pulled the liquidity to end the operation.. Those people lost real money.. On a government-issued token.. The FBI had to set up a restitution portal to pay them back.. And it gets worse.. Within 24 hours of the DOJ announcing the sting.. Someone cloned the FBI's exact smart contract.. Launched a copycat token.. Rode the viral momentum.. And made $127,000 in a single day.. Using the exact same manipulation tactics the FBI just arrested 18 people for.. Then in 2026.. The FBI did it again.. New token called Lexobit.. 10 more arrests.. Including operators extradited from Singapore.. IRS forensics showed that in one firm's trading.. 1,209 out of 1,221 consecutive transactions went straight back to wallets the firm controlled.. 99% circular.. The FBI proved what everyone in crypto suspected.. The volume is fake.. The charts are painted.. The momentum is manufactured.. And every time you buy a token because "the chart looks bullish".. You might be the exit liquidity.
Evan Luthra tweet media
Carl Moon 🌙@TheMoonCarl

THIS IS ACTUALLY INSANE!🤯 The FBI launched its own crypto token last year just to trap the scammers. They were sick of pump and dumps. So they built a real token with a real site and real branding, called it NexFundAI, and waited to see who would show up. Within weeks, scammers were lining up to fake the volume for undercover agents. Then one of them got on a recorded call and said it out loud. Their entire business model was making regular people lose money so they could profit. The FBI had all of it on tape. 18 charged. $25M seized. Arrests across 3 countries. The wildest part? The FBI ran a cleaner crypto project than half the founders out there. And the whole thing was a trap from day one.

English
984
3.9K
17.8K
6.3M
VIVEK MALIK retweetledi
Zi
Zi@_Zico23·
Arsenal - The Rise.
English
33
918
4.5K
133.4K
VIVEK MALIK retweetledi
SafeDep
SafeDep@safedepio·
🚨 The "𝙼𝚎𝚐𝚊𝚕𝚘𝚍𝚘𝚗" Campaign is live... 𝟻,𝟽𝟷𝟾 malicious commits to 𝟻,𝟻𝟼𝟷 GitHub repositories in a six-hour window. Using throwaway accounts and forged author identities (build-bot, auto-ci, ci-bot, pipeline-bot), the attacker injected 𝙶𝚒𝚝𝙷𝚞𝚋 𝙰𝚌𝚝𝚒𝚘𝚗𝚜 workflows containing 𝚋𝚊𝚜𝚎𝟼𝟺-𝚎𝚗𝚌𝚘𝚍𝚎𝚍 bash payloads that exfiltrate: - CI secrets, - cloud credentials - SSH keys - OIDC tokens - source code secrets Check your repo / Technical details: safedep.io/megalodon-mass…
SafeDep tweet media
English
25
166
609
223.6K
VIVEK MALIK retweetledi
Thierry Ennui
Thierry Ennui@TitiEnnui·
For Those Who Waited 22 Years.
English
225
4.1K
19.9K
1.4M
VIVEK MALIK retweetledi
abhisek
abhisek@abh1sek·
🚨 Major supply chain attack targeting npm is in progress. Multiple packages compromised and injected with Shai-Hulud style malware. size-sensor@1.1.4 (4.2M dl/mo) echarts-for-react@3.1.7 (3.8M dl/mo) @antv/scale@0.6.2 (2.2M dl/mo) timeago.js@4.1.2 (1.15M) @antv/g@6.4.1 (1M) @antv/path-util@3.1.1 (1.1M) @antv/g-svg@2.2.1 (975K) @antv/g-lite@2.8.0 (883K) @antv/vendor@1.1.11 (751K) @antv/l7-layers@2.26.10 size-sensor@1.1.4 (4.2M) timeago.js@4.1.2 (1.15M) @antv/g@6.4.1 (1M) @antv/g-svg@2.2.1 (975K) @antv/vendor@1.1.11 (751K) @antv/g-canvas@2.3.0 (1.25M) @antv/g2-extension-plot@0.3.2 (547K)
English
15
88
454
110.8K
VIVEK MALIK retweetledi
🦆 SchizoDuckie 🦆
🦆 SchizoDuckie 🦆@SchizoDuckie·
So let me get this straight... If you just use some CVE's that dropped this week you can go from NGINX web request RCE to OS root to Qemu root... Cool, cool...
GIF
English
8
22
102
5.2K
VIVEK MALIK retweetledi
JFrog Security
JFrog Security@JFrogSecurity·
"Shai-Hulud: Here We Go Again" update - the 2nd stage PyPI payload has changed in the last hours from a benign payload to a credential stealer with possible destructive behavior!
English
3
21
129
15.3K
VIVEK MALIK retweetledi
JFrog Security
JFrog Security@JFrogSecurity·
🚨SECURITY ALERT: Ongoing supply chain attack - “Shai-Hulud: Here We Go Again” We are continuing to track the latest attack in the “Shai-Hulud: Here We Go Again” campaign - Up until now 406 package versions were detected as compromised, including npm scopes @tanstack, @squawk, @uipath, and spreading to PyPI packages mistralai and guardrails-ai. JFrog Curation customers using an Immaturity policy were fully protected from this attack, as all of the hijacked packages were flagged in less than 24 hours. See our blog for a full analysis of this attack, including an ongoing list of compromised packages (link shared soon in this thread).
English
5
20
107
13.1K
VIVEK MALIK retweetledi
The Hacker News
The Hacker News@TheHackersNews·
🚨 WARNING: The self-spreading “Mini Shai-Hulud” worm compromised npm & PyPI packages tied to TanStack, Mistral AI, Guardrails AI, OpenSearch & more. The attack used GitHub OIDC token hijacking and cache poisoning to spread credential-stealing malware across 42 TanStack packages and 84 versions. Check your dependencies immediately → thehackernews.com/2026/05/mini-s…
The Hacker News tweet media
English
28
208
610
95.8K
VIVEK MALIK retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
‼️🚨 UPDATE: The TanStack npm attack is now a full campaign. 'Mini' Shai-Hulud has hit: - OpenSearch - Mistral AI - Guardrails AI -UiPath - Squawk packages across npm and PyPI The malware specifically targets AI developer tooling. It hooks into Claude Code (.claude/settings.json) and VS Code (.vscode/tasks.json) to re-execute on every tool event, long after the infected package is gone. npm uninstall does not fix this.
International Cyber Digest@IntCyberDigest

‼️🚨 BREAKING: A new npm supply-chain attack uses a dead-man's switch. The payload plants a watcher on your machine that nukes your home directory the second you revoke the GitHub token it stole from you. The compromise happened today, across 42 official tanstack npm packages, 84 malicious versions in total. tanstack/react-router alone pulls more than 12 million weekly downloads. The attacker forked TanStack's repository and pushed a single hidden commit. From there, they tricked TanStack's own release system into signing the malicious packages as if they were the real thing. To npm, and to anyone checking the cryptographic proof of origin (SLSA provenance), the poisoned versions looked 100% legitimate. Maintainer Tanner Linsley confirmed the whole team had 2FA enabled. It didn't matter. This is the first documented npm worm in history that ships with a valid, signed certificate of authenticity, the same one defenders rely on to know a package wasn't tampered with.

English
129
745
4K
2.7M
VIVEK MALIK retweetledi
nader dabit
nader dabit@dabit3·
This is crazy. The hacker installed a dead-man's switch that will wipe your computer if you revoke the GitHub token they stole from you. Revoking the token is what triggers the wipe.
nader dabit tweet media
TANSTACK@tan_stack

SECURITY ADVISORY — TanStack npm packages A supply-chain compromise affecting 42 @tanstack/* packages (84 versions total) was published to npm earlier today at approximately 19:20 and 19:26 UTC. Two malicious versions per package. Status: ACTIVE — packages are deprecated, npm security engaged, publish path being shut down. Severity: HIGH — payload exfiltrates AWS, GCP, Kubernetes, and Vault credentials, GitHub tokens, .npmrc contents, and SSH keys. If you installed any @tanstack/* package between 19:20 and 19:30 UTC today, treat the host as potentially compromised: • Rotate cloud, GitHub, and SSH credentials immediately • Audit cloud audit logs for the last several hours • Pin to a prior known-good version and reinstall from a clean lockfile Detection — the malicious manifest contains: "optionalDependencies": { "@tanstack/setup": "github:tanstack/router#79ac49ee..." } Any version with this entry is compromised. The payload is delivered via a git-resolved optionalDependency whose prepare script runs router_init.js (~2.3 MB, smuggled into each tarball at the package root). Unpublish is blocked by npm policy for most affected packages due to existing third-party dependents. All 84 versions are being deprecated with a SECURITY warning, and npm security has been engaged to pull tarballs at the registry level. Full technical breakdown, complete package and version list, and rolling status updates: github.com/TanStack/route… Credit to the security researcher for responsible disclosure.

English
145
1K
9.6K
1.7M
VIVEK MALIK retweetledi
Aikido Security
Aikido Security@AikidoSecurity·
Update 5:05 PT: The attack has now expanded well beyond @TanStack and @Mistral. 373 malicious package-version entries across 169 npm package names, including @uipath, @squawk, @tallyui, @beproduct, and more. The malware propagates by stealing your CI credentials and using them to publish new compromised versions. Full IOCs, affected package list, and detection steps: aikido.dev/blog/mini-shai…
Aikido Security@AikidoSecurity

🚨 Update: @mistralai npm packages are now confirmed compromised as part of the ongoing Mini Shai Hulud attack. Affected versions: @mistralai/mistralai 2.2.2, 2.2.3, 2.2.4@mistralai/mistralai-azure 1.7.1, 1.7.2, 1.7.3@mistralai/mistralai-gcp 1.7.1, 1.7.2, 1.7.3If you use the Mistral SDK in any CI pipeline, treat your environment as compromised. Rotate npm tokens, GitHub PATs, and cloud credentials immediately.

English
76
485
2.6K
2.4M
VIVEK MALIK retweetledi
Socket
Socket@SocketSecurity·
🚨 UPDATE: Mini Shai-Hulud has crossed from @npmjs into @pypi and is still spreading. Newly confirmed compromised artifacts: @​opensearch-project/opensearch: 3.5.3, 3.6.2, 3.7.0, 3.8.0 (1.3M weekly downloads) mistralai: 2.4.6 on PyPI guardrails-ai: 0.10.1 on PyPI additional @​squawk/* packages on npm guardrails-ai 0.10.1 executes malicious code on import. On Linux, it downloads git-tanstack[.]com/transformers.​pyz, writes it to /tmp/transformers.​pyz, and runs it with python3 without integrity verification. The git-tanstack.​com domain displayed a message signed “With Love TeamPCP,” along with: “We've been online over 2 hours now stealing creds Regardless I just came to say hello :^)” The page also linked to a YouTube video and you can probably guess which one.
Socket tweet media
English
62
487
2.3K
960.9K
VIVEK MALIK retweetledi
International Cyber Digest
International Cyber Digest@IntCyberDigest·
🚨 How the TanStack npm attack actually happened: 1. Attacker opened a normal-looking pull request (#7378) on the TanStack repo. 2. GitHub automatically ran CI tests on that PR. 3. Code inside the PR stole the workflow's GitHub Actions Cache write token during the test run. 4. The attacker used that token to plant poisoned files in the shared build cache. The PR could be closed afterwards. The poisoned cache stays. 5. The official release workflow later pulled from the cache, baked the malicious files into the build, and signed and published 84 malicious package versions to npm.
Adnan Khan@adnanthekhan

This attack leveraged GitHub Actions Cache Poisoning. Payload deployed here: github.com/TanStack/route… It looks like it detonated here: #step:26:2" target="_blank" rel="nofollow noopener">github.com/TanStack/route…

English
61
574
4.7K
806.8K
VIVEK MALIK retweetledi
VIVEK MALIK retweetledi
HandofArsenal
HandofArsenal@HandofArsenal·
Also, fuck Gary Neville you insufferable bastard. All game was setting a narrative for Arsenal to fall. Gagging for a final day finale. Right at the end he tried to switch it up. We see you little rat bastard.
English
523
6.2K
37.4K
654.1K