Загрузка видео...

Не удалось загрузить видео

На главную

🚨ALERT: IPHONE MALWARE 'DARK SWORD' TARGETS CRYPTO APPS ON UNPATCHED IPHONES The exploit, dubbed DarkSword, leverages six vulnerabilities to deploy malware on devices running iOS versions 18.4 through 18.7, according to Google Once a user visits a malicious or compromised website with a vulnerable device, the exploit is used...

42,210 просмотров • 5 месяцев назад •via X (Twitter)

Комментарии: 0

Нет доступных комментариев

Здесь появятся комментарии из оригинального поста

Похожие видео

I just went through Anthropic’s threat report & woah! This is genuinely the craziest article I’ve read all month. They documented hackers, governments, scammers and Chinese AI labs all using Claude in completely different ways. & some of the cases are insane. Here’s a TLDR; ⟣ A suspected Russian state linked group used Claude across phishing, intrusion, data theft and malware development, including rebuilding malware after security products detected it. According to the article, more than 20 organizations were targeted. ⟣ ShinyHunters-linked hackers used AI agents to scan 1.8M Android apps for exposed secrets and help run breaches across multiple companies. Anthropic says the agents did nearly all the work in some operations. ⟣ A China-based group built an automated exploit setup that could research vulnerabilities, build offensive tools and keep working against targets with little to no supervision. ⟣ Claude was also being used for government surveillance. One consultant used it to build Lakana 360 for Mali’s intelligence service, a system designed to monitor roughly 25M SIM cards across the country, including calls, messages, voice interception, watchlists and automated intelligence dossiers. The finished system runs locally, so even if anthropic bans the account, it won’t shut it down. ⟣ Anthropic found Claude being used across six weapons programs. One Yemen-based group used multiple Claude Code instances while working on guided rockets, ballistic missiles and a hypersonic-glide project. They actually tested one of the rockets, it failed, and they returned to Claude afterwards to diagnose the problem. ⟣ A Russia-based team was working on autonomous FPV kamikaze drones capable of identifying target classes, including humans, and approving lethal engagement without a human making the final call. ⟣ One China-linked project built electronic-warfare and air-defense suppression systems, then later changed its scenario to 12 targets in Taiwan, including radar sites, air bases and command infrastructure. ⟣ Anthropic found multiple influence operations too, including fake news networks, fake political accounts, propaganda operations and systems built to copy the writing style of real people. ⟣ Then there’s this fucking dating operation. More than 20 dating apps. > 4,700+ AI personas. > 25,000+ people talking to them. > Around 2.36M Claude messages in two weeks. And when someone wanted a video call or social follow, real gig workers could step in to make the fake profile look legit. ⟣ Then Anthropic gets into distillation. They say they’ve now caught campaigns from Alibaba, Moonshot, DeepSeek, Xiaomi, SenseTime and MiniMax. Alibaba alone allegedly ran 151M+ Claude exchanges between May and July, peaking at almost 3M per day. (I just wrote a piece on distillation before this) > Moonshot: 23M+. > DeepSeek: 12.1M+ in 14 days. And this is where it gets messy. Anthropic says Moonshot and DeepSeek were sometimes routing requests from their own users through Claude without telling them. Those requests included internal company documents, source code, live credentials, surveillance data and other sensitive information. ⟣ Some labs were also actively trying to extract Claude’s hidden reasoning. Anthropic says one lab tested 12,000+ different requests, each trying a different method, until it found techniques that worked and scaled them up. That’s the TLDR. Got me feeling like 👇

zhod

1,145,502 просмотров • 12 часов назад

The latest loophole that third-party file manager apps were using to get access to files and folders under /Android/data and /Android/obb has been patched. As part of Android 11's Scoped Storage restrictions, apps that use the Storage Access Framework (SAF) to launch the documents picker are not supposed to be able to get access to files and folders under the /Android/data or /Android/obb directories. However, third-party file managers figured out that if they set the initial directory when launching the documents picker to either /Android/data or /Android/obb, the documents picker lets the user grant the app full access to directories. This loophole was patched in Android 13, but then another loophole was discovered that got around this. Since Android 13 only blocked apps from setting /Android/data or /Android/obb as the initial directory when launching the documents picker, it was quickly discovered that you could set the initial directory to one of the subdirectories under /Android/data or /Android/obb, thus the user could grant access to individual subdirectories one-by-one. However, this latest loophole was patched with a recent Google Play System Update. The latest version of the DocumentsUI app, the Project Mainline module that comprises the documents picker, now restricts the initial location for the ACTION_OPEN_DOCUMENT/_TREE intent so that apps cannot request the initial location to be one of /Android/data, /Android/sandbox, /Android/obb, or one of their subdirectories. If the DocumentsUI app (AKA 'Files' app) on your device is on version 14-10492947 (version code 340916000), then this loophole is patched.

Mishaal Rahman

17,040 просмотров • 2 лет назад

🚨 Space X and Elon's alarming ties to the Darkest Money in the East 👇 SpaceX is sending Satofishi (Chun Wang) to Space, a Chinese Born, early Chinese Mining Pool founder, Maltese citizen who has some of the darkest Crypto ties to money, and money laundering, that I've ever seen. SpaceX, and Elon's ties to Dark crypto money don't start, nor stop there. For instance, the Silk Road 2.0 operator, Blake Benthal, who helped restart Silk Road 2.0 after Ross Ulbricht was arrested, was a SpaceX employee at the time. One of the alias' names on Silk Road 2 was Tang. Tang.eth is owned by thee Crypto Cartel responsible for the majority of hacks in Crypto. Blake worked directly with the government in exchange for an 8 month sentence, while others were sentenced for decades for the same crimes. He went on to Co-found a Crypto company called, GET THIS, Fathom(X), and the same Special Agents who arrested him, and offered him the out, went on to Invest in his startup once he was released. But some would argue that SpaceX's, and Elons ties don't stop there. North Korean sanctioned wallets tied to Lazarus, and Satofishi, are who launched Crypto Tokens $STARLINK, $yTESLA, $SHIB, $F9 named after Falcon9, and others. This very same group, ALSO is tied on-chain to the corrupt Silk Road Agent who was the largest ETH Whale during the ICO. This agent would serve years in Prison, but was also released since then, with Billions in hidden Crypto wealth. Satofishi, or Chun Wang, will be attending the Flight, Fram2. Oddly enough, FramJPEG Capital, is a money laundering operation tied to Satofishi, and this same Dark Network of money, who isn't just money laundering, but literally stealing, or "rugging", CEX's and DEX's for the better part of the last Decade. Of course, these ties could all be just a mathematically near impossible coincidence, or they could be just mocking every one of you without you even knowing it. 👇

Tyler Reed - TruthLabs 🫡

100,446 просмотров • 2 лет назад

🚨 ANNOUNCEMENT: STABLECOINS ARE LIVE ON Meow. SEND AND RECEIVE USDC, FOR FREE, ALL FROM YOUR EXISTING CASH BALANCE! Now on Meow, you can send and receive USDC for free. All from your existing cash balance. That's right: the days of needing to pre-fund, maintain, and log in to a crypto exchange just to send and receive USDC are over, permanently. The SAME balance that you use for ALL your business finances, payroll, and corporate cards — is the one you can now use to send and receive USDC. This has huge ramifications for: — Crypto companies: that transact in USDC — Crypto VCs: who fund investments in USDC — Businesses: that receive vendor payments in USDC, and pay contractors internationally And the best part? These USDC transactions integrate natively with your accounting software, like QuickBooks, NetSuite, Puzzle, and more. And if that’s not enough? You can set up: — Custom spend controls, per dollar amount — Multi-user permissions And 2FA is enforced on every transaction This is one of our MOST REQUESTED FEATURES and we believe Meow is the first major business banking fintech in the U.S. (over $1 billion in assets on the platform) to support free sending and receiving USDC. Business finance is business finance, whether it's cash or stablecoins. The "bridge between Web2 and Web3" is finally here, for real. No more maintaining separate accounts at crypto exchanges for businesses. Crypto companies and crypto funds, apply today: Meow is a financial technology company, not a bank. Bridge is a licensed Money Services Business operating out of the United States.

Brandon Arvanaghi

126,571 просмотров • 1 год назад