“Espías”
Porque una era entrevista con Google, espías de Corea del Norte intentan infiltrarse en empresas tech de Estados Unidos.
¿Cómo los detectan? Les piden que digan que Kim Jong-un es un dictador y no son capaces.
Hello 23.254.167[.]216 / DPRK/Lazarus,
You good?
Btw this server has some patterns as the Axios supply chain attack, confirming even more the attribution.
https://t.co/0A751uJIPZ
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages.
The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise.
This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now.
Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that:
• Deobfuscates embedded payloads and operational strings at runtime
• Dynamically loads fs, os, and execSync to evade static analysis
• Executes decoded shell commands
• Stages and copies payload files into OS temp and Windows ProgramData directories
• Deletes and renames artifacts post-execution to destroy forensic evidence
If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
🚨 SlowMist TI Alert 🚨
The @Truebitprotocol has suffered a security incident. Its smart contract 0x764C64b2A09b09Acb100B80d8c505Aa6a0302EF2 was maliciously exploited, resulting in the theft of 8,535 $ETH (~$26.44M).
⚠️ Do NOT interact with this contract. Stay alert and follow official updates.
https://t.co/xSbXYBpZFL
@wolfireal@gabriele_manzo Ho visto la pubblicità di Cino, una carta che divide le spese in base alle % che metti, così hanno già tutto diviso e saldato 😂