It's an outrage that foreign tech company's agent can hack one of our key health care agencies - and that we only learn about it months later when the US tech company bothers to email our government.
The PM already knew of this incident last week when he refused in Question Time to consider improving the powers of the AI Safety Institute.
We need to move quickly to increase the AI Safety Institute's ability to keep us safe, and to legislate national protections and limits around AI, our privacy and our data.
https://t.co/Xz6obPB1xp
AI is the biggest technological breakthrough since nuclear - and it's currently controlled by tech bros, not sovereign states.
There's an urgent need to put guardrails around AI before the most powerful technology on the planet gets out of hand.
Last week I joined crossbench colleagues in calling on the Albanese government to commit more funding for its AI Safety Institute. The Institute is Australia's frontline defence against AI risk, but it employs fewer people than a suburban supermarket and it has just $7.5 million in annual funding.
We need to urgently commit to local regulation and protections around AI, and that should start with appropriately funding the body set up to do that in Australia. That should start with a minimum ten-fold scale-up of its funding and personnel.
https://t.co/iIVo8Di5qL
🔒 What good security practices looks like in 2026: a short story about a laser, a chip, and a vendor that responded well.
The @DonjonLedger just published their evaluation of the @tropicsquare TROPIC01 chip, the secure chip designed by Tropic Square and used, among others, in the Trezor Safe 7. It's worth a read, not only for the technique, but for the process.
The attack, in plain words. A secure chip is the tamper-resistant chip that guards the secrets inside a hardware wallet. Before running any new firmware, its bootloader checks a cryptographic signature. That's the gate. Using laser fault injection, the Donjon fired a precisely-timed infrared pulse at the silicon, at the exact microsecond the chip was deciding "is this signature valid?". One well-placed glitch later, the chip happily accepts firmware that was never signed by the legitimate vendor. Enough to run arbitrary code.
👍Tropic Square's response was exemplary. They acknowledged the finding immediately, engaged in deep technical discussion, shipped mitigation samples, proactively dug further themselves, and aligned on a coordinated public disclosure. No defensiveness, no spin. Just engineers helping engineers make the product better. It was appreciated by the team, it's unfortunately not always the case.
Sincere thanks to Tropic Square for the collaboration and the standard they're setting, and a hat-tip to @DonjonLedger team for the research.
Full writeup: https://t.co/XI0me70eJY
Many posts about the Drift founder following the hack are straight-up misogynistic. No wonder so much female talent has left for other tech sectors.
I haven't looked into the events of Drift, but Crypto's talent density is already too low, we don't need comments like that.
If I had a time machine, I’d go back and tell 1992 me, “The Command Line will be sexy in 2026.”
1992 me would never believe it, yet here we are.
I was on stage at @sxsw in Austin yesterday with @CoinDesk’s @Liqquidity for a discussion about AI and security.
Here’s the Reader’s Digest version of our talk:
Software is no longer "eating the world." AI is eating software.
The old moats are collapsing overnight. We are entering the Economy of Action, where the primary actors aren’t humans clicking buttons, but autonomous AI agents transacting in milliseconds.
But there is a massive problem: Software cannot secure an AI-driven world.
Software security is probabilistic. In a war of code vs. code, the attacker only needs to be right once. AI has turned "good enough" into "extinct."
At @Ledger, we’ve spent 12 years preparing for this collision of Blockchain and AI.
We are moving the "root of trust" out of the reach of code and into the Physics of Trust. By anchoring identity and governance in immutable silicon—Secure Elements logically isolated from the OS—we create a physical barrier that AI simply cannot cross.
Ledger is the weapon for the Agentic Economy.
🚨 @DonjonLedger has struck again discovering a MediaTek vulnerability potentially impacting millions of Android phones. Another reminder that smartphones aren’t built for security. Even when powered off, user data - including pins & seeds - can be extracted in under a minute.
Morpho Vaults are now live inside Ledger Enterprise Multisig, helping them give their institutional clients access to curated onchain yield.
We worked hand in hand with @ledger_business to make sure these were the kind of onchain opportunities their clients could actually act on, within the security and governance frameworks they already rely on.
Enterprise Multisig self-custody on @ledger_business is evolving beyond safekeeping.
Institutional users can now access onchain yield directly from @gauntlet_xyz & @SteakhouseFi curated Morpho Vaults via @Kiln_finance, all within existing governance and custody frameworks.
Multisig security just levelled up. 🔥
Really proud of the @Ledger team. Today we’re shipping a major Ledger Enterprise Multisig release. The goal is simple: make on-chain asset management safer with Clear Signing you can actually understand on your device.
What’s live today 👇
Multisig security just levelled up. 🔥 Really proud of the @Ledger team. Today we’re shipping a major Ledger Enterprise Multisig release. The goal is simple: make on-chain asset management safer with Clear Signing you can actually understand on your device. What’s live today 👇
"If you can’t read it, don’t sign it." 🛡️
Stop living in fear of your multisig.
We just dropped a major update to Ledger Multisig.
From DeFi yield to full API automation, here is what’s new. 🧵👇
Your @Ledger Multisig now routes swaps through 1inch Swap API.
So you get gas-optimized execution at top rates - and you can Clear Sign every multisig swap on the Ledger device using EIP-712.
A cleaner swap flow for teams managing shared on-chain funds.
Ledger Multisig adds another essential layer to our mission: ensuring that every crypto native organisation has access to the security infrastructure they deserve.
To dive deeper into why this matters, don’t miss our latest podcast with Sebastian Badault, EVP of Ledger Enterprise, and @osf_rekt, co-founder & CEO of Rekt.
Posting my yearly X update this week to say I'll be at @EFDevcon next week with the @Ledger team 🔐.
Keen to talk to anyone building in DeFi about multisig governance and treasury management. Shoot me a message if you're keen for a coffee or an empanada ☕️🥟
The next era of digital ownership starts here.
Only 3 days left until #LedgerOp3n2025.
Register for updates: https://t.co/Ec6Gyzejee
Can't join in person? Sign up to join the livestream: https://t.co/rxX7HXhENl
🚨 There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised. The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk.
The malicious payload works by silently swapping crypto addresses on the fly to steal funds.
If you use a hardware wallet, pay attention to every transaction before signing and you're safe.
If you don’t use a hardware wallet, refrain from making any on-chain transactions for now.
It’s still unclear whether the attacker is also stealing seeds from software wallets directly at this stage.
Excellent report here: https://t.co/5CtiZJHYsN
Around 400 Palestinians, including dozens of children, have been killed while trying to get humanitarian assistance. I don’t recall these incidents (including this weekend) leading many papers or news bulletins. Are we really saying a few chants from a couple of musicians is more newsworthy or important? We have lost our bearings …
🌍 Could a lab-to-plate model make meat ethical? 🥩
🔮 The latest piece in tomorrow:mind's Intersection Futures series dives deep into four scenarios envisioning the future of food in 2040
Come and read about the potential meals of tomorrow here -> 🔗 https://t.co/hFMDpHyH85