Chikodili

17.3K posts

Chikodili banner
Chikodili

Chikodili

@Chenne___

God’s Masterpiece 💎 | Co-founder @hacktales_ 🇳🇬🇨🇦

Ontario, Canada เข้าร่วม Mayıs 2020
415 กำลังติดตาม5.1K ผู้ติดตาม
ทวีตที่ปักหมุด
Chikodili
Chikodili@Chenne___·
Always wanted to get into cybersecurity? Go watch this video. It has everything you need. 😁 youtu.be/OxQVB9EUadM
YouTube video
YouTube
English
27
333
714
0
Chikodili รีทวีตแล้ว
Hacktales
Hacktales@Hacktales_·
CyberLadder March 2026 leaderboard is live 🎉 Our top 3 winners will each receive a share of the $100 prize pool for this month’s CyberLadder challenge. Big congratulations to Patrick Edom, Stanley Ezeora, and Migos for making the leaderboard 👏🏽🔥 Think you’ve got what it takes? Compete this month and claim your spot on April 2026 leaderboard. #CyberLadder #Hacktales #Cybersecurity
Hacktales tweet media
English
0
1
0
36
Chikodili รีทวีตแล้ว
Temitayo
Temitayo@_theymi·
You see this particular post?? You must not understand, just reshare pls so it will get to the people who need it. You will be unconsciously saving a woman.
Temitayo tweet media
English
27
18K
11K
295.6K
Chikodili
Chikodili@Chenne___·
Sleep so out of control, cortisol levels are high AF, sheesh
English
0
0
1
59
Chikodili รีทวีตแล้ว
Hacktales
Hacktales@Hacktales_·
What are your thoughts on this?
English
0
1
0
45
Chikodili รีทวีตแล้ว
Mabintou
Mabintou@mabintou·
One of my least favourite things about growing older is all the experiences that harden your heart. I miss some of the naivety of youth.
English
52
8.9K
28.5K
510.9K
Chikodili รีทวีตแล้ว
Goddess Graveyard Punany✨
Raising Black Children in Canada is debating if you want to traumatize them with anti black racism & being disconnected from their people and culture, or traumatize them access to no child friendly spaces of support in an Urban area. It sucks truly.
only 1 uzama@KaiUzama

I’m sorry for my kids but they’re just gonna have to be from Kitchener-Waterloo. The thought of raising a kid in Toronto even scares the shit out of me 😭😭

English
7
78
456
41.9K
Chikodili
Chikodili@Chenne___·
@tolad_ I’ve experienced something similar that tied my stomach in knots. Post lockdown, I was leading a team in West Africa and my engineers called me at midnight, all 400+ servers stuck in a continuous reboot loop. The horror!!! 😅
English
0
0
0
60
Tolulope
Tolulope@tolad_·
As a CISO, one of the weirdest ways to find out that the company you work for has been hacked is by seeing it on the news like every member of the public. 💀💀💀
English
6
2
13
2.2K
Chikodili รีทวีตแล้ว
Astra 💫
Astra 💫@GideonToba·
People are really losing their jobs in Canada and it’s not incompetence based. If you have the job of your dreams, time to appreciate it and keep being hardworking 👌🏽
English
5
9
109
14.6K
Chikodili รีทวีตแล้ว
Nigeria Stories
Nigeria Stories@NigeriaStories·
The Central Bank of Nigeria has directed banks to complete a mandatory cybersecurity self-assessment within three weeks, as part of efforts to strengthen resilience across the financial system.
Nigeria Stories tweet media
English
28
81
298
38.2K
Chikodili
Chikodili@Chenne___·
Sheesh things must be so rough at Remita right now.
English
0
0
0
76
Chikodili
Chikodili@Chenne___·
Orisirisi fr 😅
Indonesia
0
0
0
12
Chikodili รีทวีตแล้ว
yimika|
yimika|@yimikaaaa·
In 2 years you really can be somewhere you never imagined, that’s why it’s so important to keep going.
English
228
21.3K
92.4K
1.1M
Chikodili รีทวีตแล้ว
Anish Moonka
Anish Moonka@anishmoonka·
A tiny piece of code called axios runs inside almost every app on your phone and every website you visit. Developers download it 100 million times a week. A few hours ago, someone poisoned it with malware that hands an attacker full control of your computer. If you’ve never heard of axios, that’s normal. It does one boring but important job: it lets apps talk to the internet. When a website pulls up your feed or an online checkout processes your card, axios is probably doing the work underneath. Over 173,000 other code packages plug into it. It’s everywhere. The attacker stole a lead developer’s login for npm (think of it as an app store, but for code that programmers use to build software). Once inside, they swapped the developer’s email to an anonymous ProtonMail account and uploaded the poisoned version by hand. That jumped past every security check the project normally runs before new code goes live. And this was not some rushed job. The attacker staged the malware at least 18 hours before pulling the trigger. They built separate versions for Windows, Mac, and Linux. They poisoned both the current version and an older one within 39 minutes of each other, casting the widest net possible. Once the malware ran on a machine, it deleted itself to cover its tracks. The trick was smart. They never touched a single line of code inside axios itself. Instead, they tucked in a fake add-on called plain-crypto-js, built to pass as a well-known, trusted library. It copied the real library’s description and author info, so nothing looked off at a glance. When a developer installed axios, this fake package quietly ran the malware on its own. When a smaller package called ua-parser-js got hijacked back in 2021 with about 8 million weekly downloads, the security world treated it like a four-alarm fire. Axios has 100 million. Over 12x the exposure, with 173,000+ packages depending on it. Socket, the security firm that flagged this, caught it in about 6 minutes. That’s fast. But 6 minutes is still plenty of time for automated systems at companies everywhere to pull and install the bad version before anyone can react. If you or your team runs axios: lock your version to 1.14.0 (or 0.30.3 for the older branch). Change every password, API key, and access token on any machine that installed the compromised update. And check your network logs for connections to sfrclak dot com or the IP address 142.11.206.73.
Feross@feross

🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages. The latest axios@1.14.1 now pulls in plain-crypto-js@4.2.1, a package that did not exist before today. This is a live compromise. This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now. Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that: • Deobfuscates embedded payloads and operational strings at runtime • Dynamically loads fs, os, and execSync to evade static analysis • Executes decoded shell commands • Stages and copies payload files into OS temp and Windows ProgramData directories • Deletes and renames artifacts post-execution to destroy forensic evidence If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.

English
50
608
3.6K
658.5K