Cat Russell presents Trap Geo🌎
Each mint randomly pulls unique cards masterfully hand cut.
10 pieces: 15 editions & 10 masters paired with resin encased physical.
Drop: 4 pm EST today!
🔗https://t.co/XdCEHUxOyz
#attitudeofgratitude
My first one is dedicated to someone who does a lot for the Crypto Space behind the scene, making our space safer in many ways.
And more importantly, spreading love and kindness in the most universal way.
For those who know, and have a chance to be part of many of @TagachiStudio ‘s projects and life - changing the world, a block at a time!
Happy and grateful to call him my old friend! ❤️ 🙏
(Here is his actual picture 😍)
Even though we were not impacted by the Ledger hack, we realize that a lot of people will still be cautious about interacting on chain over the next day, so we will move the final mint of SZN5 from Friday to Monday
🤝
UPDATE: The genuine Ledger Connect Kit 1.1.8 is now fully propagated. Ledger and WalletConnect can confirm that the malicious code was deactivated. You are now safe to use your Ledger Connect Kit. Reminder that that we always encourage clear signing.
UPDATE: The genuine Ledger Connect Kit 1.1.8 is now fully propagated. Ledger and WalletConnect can confirm that the malicious code was deactivated. You are now safe to use your Ledger Connect Kit. Reminder that that we always encourage clear signing.
⬆️UPDATE 4:40pm CET: Ledger Connect Kit genuine version 1.1.8 is being propagated now automatically.
We recommend waiting 24 hours until using the Ledger Connect Kit again.
The investigation continues, here is the timeline of what we know about the exploit at this moment:
- This morning CET, a former Ledger Employee fell victim to a phishing attack that gained access to their NPMJS account.
- The attacker published a malicious version of the Ledger Connect Kit (affecting versions 1.1.5, 1.1.6, and 1.1.7). The malicious code used a rogue WalletConnect project to reroute funds to a hacker wallet.
- Ledger’s technology and security teams were alerted and a fix was deployed within 40 minutes of Ledger becoming aware. The malicious file was live for around 5 hours, however we believe the window where funds were drained was limited to a period of less than two hours.
- Ledger coordinated with @WalletConnect who quickly disabled the the rogue project.
- The genuine and verified Ledger Connect Kit version 1.1.8 is now propagating and is safe to use.
- For builders who are developing and interacting with the Ledger Connect Kit code: connect-kit development team on the NPM project are now read-only and can’t directly push the NPM package for safety reasons.
- We have internally rotated the secrets to publish on Ledger’s GitHub.
- Developers, please check again that you’re using the latest version, 1.1.8.
- Ledger, along with @Walletconnect and our partners, have reported the bad actor’s wallet address. The address is now visible on @chainalysis. @tether has frozen the bad actor’s USDT.
- We remind you to always Clear Sign with your Ledger. What you see on the Ledger screen is what you actually sign. If you still need to blind sign, use an additional Ledger mint wallet or parse your transaction manually.
- We are actively talking with customers whose funds might have been affected, and working proactively to help those individuals at this time.
- We are filing a complaint and working with law enforcement on the investigation to find the attacker.
- We’re studying the exploit in order to avoid further attacks. We believe the attacker’s address where the funds were drained is here: 0x658729879fca881d9526480b82ae00efc54b5c2d
Thank you to @WalletConnect, @Tether_io, @Chainalysis, @zachxbt, and the whole community that helped us and continue to help us identify and solve this attack. Security will always prevail with the help of the whole ecosystem.
gm friends 🤞
finally managed to get on twitter. not the best of days to return, right?
i was terribly sick for a few months. much better now. still don't have the energy to work full-time.
for web3, clear your browser cache and delete all login sessions.
🚨We have identified and removed a malicious version of the Ledger Connect Kit. 🚨
A genuine version is being pushed to replace the malicious file now. Do not interact with any dApps for the moment. We will keep you informed as the situation evolves.
Your Ledger device and Ledger Live were not compromised.
🚨 ledger library confirmed compromised and replaced with a drainer. wait out interacting with any dapps till things become clearer.
https://t.co/xapunW8zC3
Who should I celebrate this year for our 12 Mignon Days Of Christmas this year?
Suggest name of cool soul in CryptoArt space who did so much good in 2023
https://t.co/wZKzbF4wZs
BlueOM public sale is live!
if you haven't played around with the interactive p5js piece, here are all the interactions that you'll see. 💙
6 editions left
https://t.co/Mx7l1jpqKE
Artist profile thread:
I am an Appalachian collage artist focused heavily in the web3 space and with a high interest in coupling emerging tech with analog practices
If your remaining life expectancy is 31.7+ years, then you are a billionaire in seconds.
This is better IMHO than being at the end of your life and being a billionaire in dollars.
So, make it count.