meta gave their AI support agent the ability to modify your instagram account. no identity verification. people figured this out and accounts are being taken over right now
To check if your Google Workspace has been compromised by the same tool that compromised Vercel:
1. Go to https://t.co/TpuIOW5Fwg
- This is Google Admin Console > Security > Access and Data Control > API Controls > Manage app access > Accessed Apps
2. Filter by ID = https://t.co/uqJnCqp5Ah
- This is the ID of the compromised OAuth app
If you see an app after filtering, you have potentially been compromised
We’ve identified a security incident that involved unauthorized access to certain internal Vercel systems, impacting a limited subset of customers. Please see our security bulletin:
https://t.co/0S939n3qHC
Another day, another breach.
As many of you already know, due to difficult market conditions, we recently made the hard decision to sunset the Frenbot+ service.
Although Frenbot+ relies on Vercel services, the system was designed with exactly this kind of third-party or supply-chain attack scenario in mind. All unwithdrawn funds remain safe, and wallet data can only be decrypted by the logged-in user. Even admins do not have access.
We have found no evidence of malicious access. Out of an abundance of caution, we have also rotated all sensitive access keys.
Even though there is currently no sign of risk to user funds, we strongly encourage all users who have not yet withdrawn their funds to do so as soon as possible. We will keep the website accessible for as long as possible to support withdrawals.
VERCEL GOT HACKED
ShinyHunters - the group behind the Ticketmaster breach - is selling Vercel's internal database for $2M on BreachForums
here's why every developer should care:
- they have NPM tokens and GitHub tokens
- Vercel owns Next.js - 6 million weekly downloads
- one malicious push = global supply chain attack
- Vercel confirmed the breach today, April 19
- they literally DMed the hackers on Telegram asking them to stop
rotate your env variables RIGHT NOW
Introducing Claude Opus 4.7, our most capable Opus model yet.
It handles long-running tasks with more rigor, follows instructions more precisely, and verifies its own outputs before reporting back.
You can hand off your hardest work with less supervision.
Maki vs Zenin Clan Live Action.
Made with Seedance 2.0 (coming to LetzAI soon) and Nano Banana Pro.
Music by prod_ceezy (YT &IG) - Original by BigXthaPlug
This video was created entirely within Gemini CLI...
... in under 10 prompts 🪄
With a few detailed prompts you can create high quality motion videos thanks to the Remotion Agent Skill.
👇Give Agent Skills a try today in Gemini CLI!
Your coworker just Slacked you an API key. In plain text. In a channel with 50 people.
Sound familiar?
I built CloakBin - a pastebin where even I can't read your data.
✓ Encrypted in your browser
✓ Key never touches our servers
✓ Open source
https://t.co/v3gdCOTrie