🛠️ I joined the hackathon with @0xethanol, @0xGianfranco and @andlopvic to build Orloj 🌌
A registry that lets AI agents transact on-chain safely. Every verified contract becomes its own MCP server.
🔗 https://t.co/lJyVMQOl6z
1 year ago, I made a video about how blind signing would cause massive pain.
Since then, we've seen hack after hack (recently, Drift protocol for almost $300M), where clear signing could have helped mitigate.
Today, we finally have a systemic upgrade to wallet UX 👇
tomorrow at @ETHPrague 🎤🗣️
“Breaking Rollups: How Sequencer Design Shapes Your L2's Attack Surface”
if you're around Obecní dům (Municipal House) 🇨🇿, come say hi 👋
🇨🇿 Wrapped up an incredible weekend at @EthPrague!
Our team built Orloj , connecting AI agents to smart contracts while abstracting away gas and key management. 🤖⛓️
🏆 Stoked to have won prizes in the @SpaceComputerIO and @SourcifyEth tracks!
👉 https://t.co/QYaWgapUfJ 👈
👀 i know a good speedrun profile when i see one
👉 I'll bet you this guy 0xethanol.eth (@0xethanol) will have a job in crypto within a year if he doesn't already...
🚨🇪🇺 The European Commission is about to steal your search history in one of the largest forced data grabs in the history of the open internet, and almost nobody is talking about it.
The scope is staggering:
🔴 Every query you type
🔴 Every voice and photo search
🔴 Every autocomplete you accept
🔴 Your language, your device
🔴 Your country pinned to a ~3km² grid
🔴 Every result you saw, every link you hovered
🔴 Every click and scroll
🔴 The full chronological order of your search sessions
Meaning the European Union now knows your:
🔴 Health symptoms
🔴 Pregnancy
🔴 Sexual orientation
🔴 Political views
🔴 Religious beliefs
🔴 Financial distress
🔴 Legal trouble
🔴 Addictions
🔴 Affairs
Under the proposed measures for DMA Article 6(11), Google would be ordered to ship the daily search behaviour of hundreds of millions of Europeans to multiple third parties through a daily API feed. Any approved "online search engine," AI chatbots included, would get five years of access.
The things people only ever type when they think no one is watching. All of it now scheduled to flow daily into an open-ended list of third parties scattered across the European Union.
Brussels promises "anonymisation." The reality is a thin technical veneer that has been broken in academic literature again and again for over a decade. Search behaviour is a fingerprint. Stripping a name does not change that.
Mass data leaks become inevitable. Every new beneficiary is a new attack surface, and every annual audit is a year of silent exposure between checks. The 2025 Discord vendor breach already showed how fast 70,000 government IDs can leak through a single weak link. Now imagine that link holding Europe's search history.
Surveillance without consent becomes the default. Hundreds of millions of EU citizens never agreed to have their queries packaged and shipped to companies they have never heard of. The legal fiction of "anonymisation" cannot manufacture consent that was never given.
Behavioural search data is a goldmine for phishing, blackmail, social engineering, and corporate espionage.
Foreign intelligence services get a back door without effort. They do not need to breach Google. They only need to compromise the weakest name on the beneficiary list. One insolvent startup. One compromised contractor. One approved entity quietly acquired by a hostile state.
In the name of "competition," the EU is about to manufacture a permanent, distributed, daily-refreshed copy of Europe's collective search history. A surveillance dataset Brussels itself would never approve if any other government tried to build it.
The public consultation closes Friday, May 1, 2026 at 23:59 CEST. The final binding decision lands July 27, 2026.
After that, the door does not close again.
Tag your MEPs! File a response! Make noise!
C'est sans doute un des plus grands risques de violation de la vie privée des 20 dernières années et d’une menace directe pour la sécurité nationale européenne.
La Commission européenne veut obligee Google à livrer chaque jour, via une API, les données ultra-détaillées de nos recherches :
👉 requêtes complètes, horodatages, localisations approximatives, clics, vues et séquences entières de sessions… sur des centaines de millions d’Européens.
Santé, orientation sexuelle, opinions politiques, problèmes financiers, secrets les plus intimes : ces données sont parmi les plus sensibles qui existent.
Évidemment, elle promet "l'anonymisation" 🙃
Les conséquences pourraient être terribles :
⚠️ Fuites massives de données personnelles
⚠️ Surveillance généralisée sans aucun consentement
⚠️ Cyber-attaques facilitées
⚠️ Risque réel d’accès par des services de renseignement étrangers via des tiers peu sécurisés
Au nom de la "concurrence", on sacrifie nos libertés fondamentales et notre souveraineté numérique.
⏳ Il reste très peu de temps : la consultation publique ferme le 1er mai 2026.
Partagez massivement, taguez vos eurodéputés et dites NON à cette bombe à retardement.
Nos données, nos libertés.
Plus de données partagées, moins de sécurité.
🚨 BREAKING: The FBI has successfully extracted deleted Signal messages from a suspect's iPhone via notification storage, the place where all your notifications are stored for up to one month.
Notification storage stores data from all messaging apps, it's a big flaw in iOS. But there's a way to turn it off...
Imagine interacting with any rollup and with Ethereum itself as though it was all one chain.
What would become possible?
Thank you @Bankless for hosting this convo. 🎙️
Caso hipotético (o no): una empresa se constituye en marzo de 2019. Cero empleados, cero web, cero historial. A los seis meses se lleva un contrato público de 400K€ como único licitador. A los tres meses se disuelve.
Plot twist: su administrador es el mismo que el de otras dos sociedades que licitan al mismo organismo. Misma dirección fiscal las tres.
Hasta ahora no había forma automatizada de detectarlo cruzando fuentes públicas.
Me he descargado ∼64.000 pdf (2001-2026) del BORME para cruzar el Registro Mercantil con la contratación pública española.
El objetivo es construir un grafo real de relaciones societarias y detectar patrones que hoy pasan desapercibidos. Detectar empresas vinculadas dependía de heurísticas: fuzzy matching por nombre similar o NIFs consecutivos.
Pasamos de "estas dos empresas se llaman parecido" a "estas dos empresas comparten administrador y se constituyeron con tres días de diferencia".
Os subiré el scraper y el parser cuando los tenga afinados.
Absolute privacy nightmare.
Governments pushing AML/KYC on the app layer - they think its a good idea to have citizens submit biometrics and IDs to every third party who requests it.
Can they at least mandate zk solutions where the user can prove identity without submitting it to every corporation on the planet?
Bureaucrats "accidentally" legislating a surveillance state and broken security for their citizens.
We need a digital civil rights act now.
Ya que el Gobierno está a otra cosa, vamos a hacer ver lo que los ciudadanos pueden llegar a hacer organizados entorno a la iniciativa privada.
Hagamos que Mariano Barbacid tenga el dinero que necesita para seguir investigando la cura contra el cáncer de páncreas.
https://t.co/LhGn0wKLtq