The day after the CEO lays off a ton of staff and says:
“Non-technical teams are now pushing code to production with AI”
@coinbase has a major outage on their trading engine, and even their status page doesn’t work.
😂
We're back from Svalbard, and Glamsterdam is coming!
The Lighthouse team just returned from Soldogn Interop in Svalbard after a week of @ethereum protocol work under the midnight sun.
Lighthouse v8.1.1 (Scary Terry) is out!
This is a mandatory upgrade for all users on prior versions due to a security fix. Please upgrade ASAP. Further details to follow.
Also fixes VC head monitor timeouts, DataColumnsByRange duplicate bug, and a slow memory leak.
https://t.co/oXesKeyjwI
We’re hiring a Cryptographer / Security Engineer to audit cryptographic protocols in Web3 systems.
The ideal fit has advanced knowledge of elliptic curves, pairing-based cryptography, and zero-knowledge systems, with strong systems programming skills in Rust, Go and Solidity.
I'm Boris and I created Claude Code. Lots of people have asked how I use Claude Code, so I wanted to show off my setup a bit.
My setup might be surprisingly vanilla! Claude Code works great out of the box, so I personally don't customize it much. There is no one correct way to use Claude Code: we intentionally build it in a way that you can use it, customize it, and hack it however you like. Each person on the Claude Code team uses it very differently.
So, here goes.
It was a big few days at DSS for the Sigma Prime team. Proud to once again support this event as a sponsor and see our team contributing on stage. Shoutout to @ethzed, @kirkthebaird, @TheKnapsy, and @ToonVH_
Great sessions. If you missed them or want to rewatch, recordings below 🍿
Balancer’s recent $100M exploit wasn’t about negligence or bad code.
It’s a reminder of the limits every protocol faces with today’s fragmented security stack.
Even mature teams using audits, bounties, and monitoring can still face blind spots because the tools don’t talk to each other.
Full write-up at Immunefi - https://t.co/8w6LU0X9nZ
Now in #mimikatz 🥝, #mstsc credentials (passwords / PIN codes) for RDP / Remote Desktop Client
- ts::mstsc - on client credentials
- ts::logonpasswords - on server credentials
Does not rely on previously injected hook/library, useful on jumping servers
> https://t.co/Wzb5GAfWfd
So #mimikatz wanted passwords, and Terminal Server has some for us🥝
Cleartext passwords *decrypted* on a fully, up to date Windows 2019 Server
No library, no previous code injection, and doesn't use junk part of memory😉
Ping @jonasLyk, still in testing ... 🤪
I was told you like SCCM passwords & #mimikatz 🥝
Did you know SCCM *endpoints* can keep credentials of all your Network Access Accounts?
Time to try the new dpapi::sccm command and to check privileges associated to them 😉
> https://t.co/Wzb5GAfWfd