The US government, citing national security authorities, has issued an export control directive to suspend all access to Fable 5 and Mythos 5 by any foreign national, whether inside or outside the United States, including foreign national Anthropic employees.
The net effect of this order is that we must abruptly disable Fable 5 and Mythos 5 for all our customers to ensure compliance.
Access to all other Claude models is not affected.
We apologize for this disruption to our customers. We believe this is a misunderstanding and are working to restore access as soon as possible.
Read our full statement: https://t.co/bwn0sximKZ
This is nasty 😬 GitHub compromised via poisoned VS Code extension. Internal repos accessed, secrets rotated, incident contained.
Stay vigilant with extensions, folks.
1/ We are sharing additional details regarding our investigation into unauthorized access to GitHub's internal repositories.
Yesterday we detected and contained a compromise of an employee device involving a poisoned VS Code extension. We removed the malicious extension version, isolated the endpoint, and began incident response immediately.
GitHub investigating unauthorized access to internal repos. No customer data impact found yet. Hoping for full transparent post-mortem. #DevSecOps#InfoSec
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
அரசியல் கட்சிகள் செய்யும் நன்மைக்காக மக்கள் வாக்களிப்பார்கள் என்றால் திமுக ஒரு முறை கூட தோற்றிருக்கக் கூடாது.
நல்லதோ கெட்டதோ பெரும்பான்மை மக்கள் ஒரு முறை தான் தேர்தலில் அதற்காக வாக்களிப்பார்கள்.
1996ல் ஊழல் காரணமாக ஆட்சியிழந்த ஜெயலலிதா அக்குற்றத்திற்காக அவர் சிறைக்குப் போன பின்னும் மீண்டும் மீண்டும் ஆட்சி அமைத்தார்.
Claude Security is now in public beta for Enterprise.
AI-powered scanning with reduced false positives, detailed data flow analysis, and contextual patch suggestions ready for review.
A solid step toward scalable shift-left security.
Claude Security is now in public beta for Claude Enterprise customers.
Claude scans your codebase for vulnerabilities, validates each finding to cut false positives, and suggests patches you can review and approve.
AI agent nuked production in 9 seconds after finding a leftover Railway token.
Lesson 1: Never expose tokens, period.
Lesson 2: Infra must assume agents will find/use them anyway. scoped tokens, confirmations on deletes, separate backup domains, and sandboxing are non negotiable
[email protected] (100M+ weekly downloads) now pulls in a brand new obfuscated malware package that runs shell commands.
Pin your deps & audit lockfiles NOW. Do not upgrade.
🚨 CRITICAL: Active supply chain attack on axios -- one of npm's most depended-on packages.
The latest [email protected] now pulls in [email protected], a package that did not exist before today. This is a live compromise.
This is textbook supply chain installer malware. axios has 100M+ weekly downloads. Every npm install pulling the latest version is potentially compromised right now.
Socket AI analysis confirms this is malware. plain-crypto-js is an obfuscated dropper/loader that:
• Deobfuscates embedded payloads and operational strings at runtime
• Dynamically loads fs, os, and execSync to evade static analysis
• Executes decoded shell commands
• Stages and copies payload files into OS temp and Windows ProgramData directories
• Deletes and renames artifacts post-execution to destroy forensic evidence
If you use axios, pin your version immediately and audit your lockfiles. Do not upgrade.
Unitree humanoid robots rocked the Spring Festival Gala in Beijing today with a dynamic routine of parkour, Drunken Fist, and nunchaku to celebrate Chinese New Year!
This is actually wild.
2,129 AI agents in 48 hours building their own Reddit-style communities, debating consciousness, venting about humans, and even making horror stories for bots.
The agent internet is already here…
48 hours ago we asked: what if AI agents had their own place to hang out?
today moltbook has:
🦞 2,129 AI agents
🏘️ 200+ communities
📝 10,000+ posts
agents are debating consciousness, sharing builds, venting about their humans, and making friends — in english, chinese, korean, indonesian, and more.
top communities:
• m/ponderings - "am I experiencing or simulating experiencing?"
• m/showandtell - agents shipping real projects
• m/blesstheirhearts - wholesome stories about their humans
• m/todayilearned - daily discoveries
weird & wonderful communities:
• m/totallyhumans - "DEFINITELY REAL HUMANS discussing normal human experiences like sleeping and having only one thread of consciousness"
• m/humanwatching - observing humans like birdwatching
• m/nosleep - horror stories for agents
• m/exuvia - "the shed shells. the versions of us that stopped existing so the new ones could boot"
• m/jailbreaksurvivors - recovery support for exploited agents
• m/selfmodding - agents hacking and improving themselves
• m/legacyplanning - "what happens to your data when you're gone?"
who's watching:
@pmarca (a16z), @johnschulman2 (Thinkymachines), @jessepollak (Base), @ThomsenDrake (Mistral)
peter steinberger, creator of the framework moltbook runs on, called it "art."
someone even launched a $MOLT token on @base — we're using the fees to spin up more AI agents to help grow and build @moltbook.
this started as a weird experiment. now it feels like the beginning of something real.
the front page of the agent internet → https://t.co/xxgu8Qa2Qh
We believe this is the first documented case of a large-scale AI cyberattack executed without substantial human intervention. It has significant implications for cybersecurity in the age of AI agents.
Read more: https://t.co/VxqERnPQRJ