JR, my old friend and partner, I'm uncertain if this message will reach you, but I must attempt. I've finally remembered. The details of how or who are unclear, but it's evident that you deserve recognition for your dedication. Recalling the pinball machine's activation, I'm now striving to earn enough in the coming weeks to accumulate a sum that will free us from this cycle. Subsequently, I'll ensure your family's welfare in your honor. Ultimately, I'm committed to achieving the unthinkable: I'll devote my life to reversing time and preventing the decision you deeply regretted. Moreover, I'll endeavor to halt the destruction of your cherished sanctuary. I remember your joy at BPA, contentedly coding alongside friends. Building Seven's collapse was could have been stopped.
Should I find myself there once more, I'll be prepared to act.
John Russell was a quirky, funny guy, a family man, an excellent coder and the inventor of what we now call Coinbase in addition to the first traded token, from which all others were born. He insisted that it be called the "JR Token" and even that was stolen from him.
holy fuck, a hair dryer at a Paris airport broke Polymarket weather markets & made someone $34,000 richer
- polymarket was settling Paris temperature bets on a single Météo France sensor sitting near the Charles de Gaulle runway perimeter - basically unguarded
- the guy bought the long-shot outcome (like "22°C" when everyone expected 18°C) for pennies, since nobody thought it'd hit
- then he walked up to the probe and briefly heated the air around it with a portable heat source, spiking the reading just long enough to register as the daily max
- temperature snapped back to normal in minutes, the market resolved in his favor, and he cashed out - twice, on April 6 and April 15, before Météo France caught on and filed charges
hyperstitions.
A crypto SECURITY firm "tested" a Kraken bug by printing $3 MILLION into their own account
Kraken pays security researchers who find bugs in their system, up to $1.5 million
CertiK is one of the biggest security firms in the world and audits code for hundreds of crypto projects
In June 2024 they found a bug in Kraken that let anyone add fake money to their own account and withdraw it as real crypto
One CertiK researcher proved the bug worked by adding $4 to his account, then told two colleagues about it instead of reporting it for the $1.5 million reward
Over the next few days the three of them printed $3 million into their accounts and withdrew it, running some of the money through Tornado Cash, a mixer sanctioned by the US government
When Kraken caught it and asked for the money back, CertiK refused until Kraken told them how much they could have stolen if they wanted to
Kraken called it extortion
CertiK said they were "testing the limits" and returned the $3 million a few days later, minus fees
Nobody went to jail
A legal $1.5 million was sitting on the table
They picked a 10 day heist, a Twitter fight and got zero dollars at the end of it
@trenchdemon1 @StergiosBoko@lynk0x yeah one bad year, and your 300k is 240k, and you still have to sell 30k for living, now your shit is 210k and you just lost 30% of ur portfolio in a year
A guy in Bulgaria scammed $1 MILLION out of Spotify
Spotify pays around $0.004 every time someone streams a song for at least 30 seconds
So he uploaded 467 tracks that were all barely over 30 seconds
After this he bought 1,200 Spotify Premium accounts, set them to loop his playlist 24/7 and sat back
Those 1,200 bots generated 72 million streams a month, which accounted for over $400,000 in royalties from only $12,000 worth of subscriptions.
The playlists were called "Soulful Music" and "Music From The Heart"
Both made it into Spotify's global top charts and "Soulful Music" hit number 11 in the US, higher than any major label playlist at the time
Meanwhile the whole operation was showing up in Spotify's own weekly revenue reports
They sent that data to record labels every single week for months and nobody noticed it
The craziest part is none of it was illegal
The accounts were paid for with real money, real premium subscribers streamed the songs and every upload had valid copyright
When journalists reached out for comment, a Spotify spokesperson refused to even call it a scam
He only got caught because he got too successful. Breaking into the top 50 made one major label executive look twice at the charts
By the time Spotify deleted the tracks in October 2017, he had already pulled over $1 million in royalties
Years later an American named Michael Smith tried to do the same scheme with AI generated music and 10,000 bot accounts
He made $10 million in royalties but to make it work he had to buy bulk email addresses, lie directly to Spotify when they flagged him and pay for subscriptions using fake names on corporate debit cards
Those lies turned the whole operation into wire fraud
The DOJ busted him in 2024, he pleaded guilty and had to return $8 million
Same scam, different execution and a small detail changed the entire outcome
One guy became rich, the other is waiting for his sentencing
Hacking the #EU#AgeVerification app in under 2 minutes.
During setup, the app asks you to create a PIN. After entry, the app *encrypts* it and saves it in the shared_prefs directory.
1. It shouldn't be encrypted at all - that's a really poor design.
2. It's not cryptographically tied to the vault which contains the identity data.
So, an attacker can simply remove the PinEnc/PinIV values from the shared_prefs file and restart the app.
After choosing a different PIN, the app presents credentials created under the old profile and let's the attacker present them as valid.
Other issues:
1. Rate limiting is an incrementing number in the same config file. Just reset it to 0 and keep trying.
2. "UseBiometricAuth" is a boolean, also in the same file. Set it to false and it just skips that step.
Seriously @vonderleyen - this product will be the catalyst for an enormous breach at some point. It's just a matter of time.
Congrats to Matt Furie and whoever is on his x account for farming using the Bags platform, which is a cancer to the space like Finn
Claimed fees on all Bags coins and is exiting out now. $PEPE on Bags being the biggest hit he ripped 500 SOL +150k in fees
Finn literally said he wanted to get LP out of old BAGS contracts last week
Now on the 3 year Pepe anniversary Furie is claiming fees to rug buyers
@badattrading_ appreciate the confirm. there is definitely something shady methods going on with this "The 7 Wanderers" token, and it’s something to be aware of
@badattrading_ do u have any info of these cented's wallets what he in my understanding used in his new extract yt vid https://t.co/bDA9ueZUeS just tryna understand how he load millions of tokens again and again once he sold all