Pre-orders for Grand Theft Auto VI begin at midnight local time on June 25.
Learn more about the Ultimate Edition and pre-order bonuses at https://t.co/XPwC8URCQ4.
Pre-orders for Grand Theft Auto VI begin at midnight local time on June 25.
Learn more about the Ultimate Edition and pre-order bonuses at https://t.co/XPwC8URCQ4.
Pre-orders for Grand Theft Auto VI will officially begin on June 25 on digital storefronts and at other select retailers.
Check out the official cover art, also available as downloadable artwork at https://t.co/XPwC8URCQ4
@GamingNaRoli Don’t underestimate MacBooks, it’s not the best experience but its playable. Im currently playing resident evil 9 on mine
https://t.co/SI2dPazQ8T
@Arfness@Google 🤦🏾 I thought they killed the ide entirely. I downloaded and saw the issue you are talking about. I enabled and disabled the telemetry just in case
Microsoft is investigating a new, emerging Mini Shai-Hulud npm supply chain attack targeting antv packages.
Attackers compromised an antv maintainer account and published malicious versions of multiple widely used packages (for example, antv/g2). As these packages are widely used as dependencies, the compromise propagated into downstream libraries like echarts-for-react, impacting a much broader set of applications and continuous integration (CI) environments.
All compromised packages contain a byte-identical, obfuscated credential-stealing payload delivered via a preinstall hook (Bun). The malware targets high-value secrets including:
- GitHub personal access tokens (PATs) and OpenID Connect (OIDC) tokens
- npm / Amazon Web Service (AWS) credentials and Security Token Service (STS) sessions
- Secure Shell (SSH) keys, kubeconfigs, and .env / .npmrc files
- Software-as-a-service (SaaS) tokens (Slack, Stripe, Vault)
Exfiltration occurs over HTTPS with Transport Layer Security (TLS) validation disabled. The payload also abuses stolen OIDC tokens to forge Supply-chain Levels for Software Artifacts (SLSA) provenance and propagate malicious releases, exhibiting worm-like behavior across repositories.
Malicious files distributed through npm packages are detected by Microsoft Defender as Trojan:AIGen/NPMStealer , "Suspicious Node.js process behavior", or “Credential access attempt”, preventing credential theft and malicious post-install execution.
Mitigation:
- Audit dependencies for affected antv and related packages; pin or downgrade to known-good versions (pre-2025-05-18).
- Revoke and rotate exposed credentials (GitHub, npm, cloud tokens, SSH keys).
- Validate integrity of CI pipelines and recent build artifacts.
- Network IOC: Stolen credentials are exfiltrated over HTTPS to t.m-kosche[.]com:443. Block at egress and review network logs for outbound connections.
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
ANC hit by data breach: 2 million private member records exposed
A hacker group is selling 2 million private records allegedly belonging to all members of the African National Congress.
https://t.co/LC0yxrrvdy
(WATCH) Presidential spokesman Vincent Magwenya says President Cyril Ramaphosa went to Zimbabwe at the invitation of President Emmerson Mnangagwa over the weekend. He says the President is concerned & was unaware that one of Zim delegates is a person of interest in SA. #sabcnews