I have not disclosed much publicly but the last 2 months since North Koreans tried hacking me has not been fun. I get daily hacking attempts across many different platforms.
Here are 15 security tips to help keep you safe in the age of AI hacking:
Some useful tips:
1) Use 2FA everywhere & on everything
2) Use different long pass phrases on every account ie: The2047OscarsLoveSquirrels//
3) Never use easy to guess emails. Have several ie: [email protected]
4) If you run important servers/ hosting get a dedicated 2nd phone # just for infra. But remember phone #s can still get sim swapped. So never rely on a phone # alone.
5) Use @ProtonMail encrypted email. Google Microsoft and others are reading everyone’s email with AI now.
6) Never click random email links. Always check the sender address. And even those can be spoofed. Check the DKIM and DMARC records for domain. Proton makes this easy.
7) Avoid @LinkedIn like the plague. Because it’s been over run with a plague of frauds, scammers and North Korean hackers.
8) Avoid telegram. It’s a cess pool & backdoored. I stopped using it in 2019 when it was provable someone was reading my private messages and attempted to exploit threats I privately discussed with another dev.
9) Don’t use Windows. Other than maybe for video games don’t use windows for anything sensitive or important. Ever.
10) Use a hardened Linux distro. Think Qubes OS or Tails. But even Linux Mint can be setup way more secure and user friendly than Windows ever could or will be.
11) Use @GrapheneOS for secure Android phone. It’s about your only option for a secure phone.
12) Never install or run code you haven’t read or audited on a computer you have with anything sensitive. Setup a sandboxed env for that.
13) Never store large amounts of crypto in any wallet, platform or exchange you access in a web browser. Anything in a web browser has the security of Swiss cheese now.
14) Never reveal personal info that could ever be used against you to ChatGPT Claude or any other API provided AI.
15) If you want to use AI privately download a model from hugging face and run it locally, offline. Assume everything you ever ask or discuss with a public AI is stored for life.
Bonus: Signal messenger is much better than raw text messages but is only secure as the phone you use it on. Assume anything you put into an iPhone or a normal android phone can be read/ backdoored by the OS.
I woke up to 10+ password reset emails from @X. Seems they are exploiting a timing window. 1st batch happened in 3 min. @elonmusk
This is AI hacking. Anyone w/ Hermes/ Opencode + Qwen 3.8 uncensored can run offline hacking stations.
Industrial AI hacking will only get worse.
Here I was thinking I get to take the next couple days off because I am out of AI tokens till Monday. lol
Thank you @AnthropicAI@claudeai Team I will take the reset & keep building. Who needs time off anyways. 🤣
We've just reset weekly limits for everyone on a Claude Max plan.
With Fable 5.1 out and a long weekend ahead for many of you, we wanted to keep you building. I'd love to see what you build!
My first impressions of GPT Astra:
It communicates much more effectively now in easier to understand language. It reminds me of the original Fable. Seems great at planning. So far a big step up from 5.6 SOL.
Only had it for an hour or so. So far it looks very promising!
We are progressing through the rollout of Astra. Pro and Business subscriptions get it first, some of you should start seeing it across ChatGPT Work and Codex.
And then we will proceed with rollout to all of Plus as fast as we can.
💲 Your stablecoin (USDT, USDC, USD1, or USDe) isn't really yours if someone else can freeze it. When a stablecoin is controlled by a centralized issuer, your funds can potentially be frozen at their discretion.
🧊 Over $5.5 billion worth of stablecoins has been frozen.
Introducing DigiDollar: a fully decentralized stablecoin built natively on the DigiByte blockchain. It is backed by overcollateralized digibyte:native, helping maintain a stable USD value without relying on a centralized issuer. Users retain control of their own keys and collateral while minting and using $DD. Fast, low-cost, and permissionless, DigiDollar brings decentralized stable value to the DigiByte ecosystem.
🔹 No centralized issuer
🔹 Permissionless and censorship-resistant
🔹 Backed by a minimum of 200% DGB collateral
🔹 Users retain control of their own keys and collateral
🔹 Built on DigiByte's fast, low-fee UTXO blockchain
Learn more about #DigiDollar: https://t.co/5TDP1vS75v
🚀 DigiDollar ($DD) will soon be available to trade without KYC on AnonKyc.
Stay tuned. 👀
@DigiByteCoin
This is why I stopped using Facebook for anything personal 10+ years ago. Look into where the first funding for FB came from. It’s been an intel op since day 1.
This just gets crazier by the second. @Meta and @finkd need to address this ASAP. This is the flock-fueled future everyone is afraid of and corporations keep telling everyone it's fine. Prove it.
@ kontheinside on IG
Why anyone uses this terrible hardware wallet is beyond me. I have never stored a single Satoshi on a Trezor.
Storing customers personal addresses & info for 7+ years is on par for Eastern European crime. There is way more to this story. Where there is smoke there is fire.
Two days ago, we received an update from our shipping provider, ShipMonk. We're deeply saddened to share the news that the recent data breach affects more customers than originally thought.
Another 67,000 customers from the US who ordered between November 2019 and August 2021 were affected, with their full details (name, email, phone number, shipping address, order number) exposed.
All affected customers have been emailed directly. If you didn’t receive an email, then you are not affected.
Throughout our entire relationship with ShipMonk, we repeatedly requested and received written assurance confirming the deletion of the data, in line with our contract, data policy, and past communications. We are very disappointed that, despite receiving this confirmation, the data was not deleted in their systems.
Trezor systems were not compromised, and your device is secure. But please be alert for fake emails, phone calls, fraudulent letters, and potential risks to physical security.
NEVER share your wallet backup with anyone or type it into a website.
We’re terribly sorry to everyone affected. We take this matter very seriously and are working to ship anonymous delivery ASAP, so you can protect your personal information when placing an order.
For more information, visit our blog: https://t.co/3KnO4LyBKb
This is why digibyte:native #DigiDollar stands alone & is different than every stablecoin out there. It is one of a kind.
The market continues to ignore true decentralization & real blockchain innovation.
That's ok, digibyte:native & DigiDollar will outlive all the centralized crypto ponzi scams.
DigiDollar had no token sale, no pre-mine and no allocation to anyone.
There was nothing to sell. Every DigiDollar in existence was created by a person locking their own digibyte:native after activation, which means supply started at zero and grew one position at a time.
DigiDollar had no token sale, no pre-mine and no allocation to anyone.
There was nothing to sell. Every DigiDollar in existence was created by a person locking their own digibyte:native after activation, which means supply started at zero and grew one position at a time.
I have been spending almost 14-16 hours a day working with AI or experimenting with AI for the last 2.5 years.
It’s now reached a point I can’t keep up with daily new innovation. No human can.
Welcome to the Singularity & Cambrian explosion 2.0.
GPT-6 Astra by @OpenAI achieves SOTA on ARC-AGI:
- Astra scores 63% on ARC-AGI-3, 99% via a new provider adapter harness
- It surpasses human performance on 96% of ARC-AGI-3 levels
- It builds the most precise symbolic model of novel environments we've seen
Our analysis:
How can all 3 major US AI providers go down at the same time?
Is this a nation state cyber attack or do they all share the same infrastructure pipelines to data centers? Super AI centralization?
Something is really not right here. This is a major national security issue.