🎉 I've successfully bound my wallet for the DSCVR Airdrop!
Early community members are being rewarded.
Have you checked yours yet?
👉 https://t.co/70D6I3ExAN
#DSCVR#Airdrop
🚨HUGE: AI CLIENT ACCIDENTALLY BURNS THROUGH $500 MILLION ON CLAUDE IN ONE MONTH
An AI consultant tells Axios, a client accidentally generated a staggering $500M Claude bill after failing to set employee usage limits in one of the largest runaway AI spending incidents reported so far.
Introducing Claude Opus 4.8: it builds on Opus 4.7 with sharper judgment, more honesty about its own progress, and the ability to work independently for longer than its predecessors.
Available today at the same price.
CapCut is partnering with @GeminiApp .
Soon, users will be able to edit images and videos directly within the Gemini app using CapCut’s advanced creative and editing capabilities.
As creative workflows become more connected and seamless, we believe the future of creation will be more conversational, intuitive, and intelligently integrated across tools and experiences.
This is just the beginning.
‼️🚨 BREAKING: Another supply chain attack. 700+ GitHub repositories flagged, including PHP and Node.js projects. The malicious script was planted across all of them. When a developer installs the package, the script silently downloads a Linux file from GitHub, hides it under the name /tmp/.sshd (so it looks like a normal system file), and runs it in the background. It also skips security checks on the download and hides any error messages.
8 PHP packages on Packagist (the main PHP code library) were confirmed infected. The attacker hid the script inside a JavaScript config file (package.json) instead of the PHP one (composer.json), so PHP developers reviewing their code would not notice it. The biggest risk is to devdojo/wave (6,400 stars) and devdojo/genesis (9,100 installs), both popular Laravel project templates. Developers who use these templates run the bad script the moment they install dependencies.
The same payload was also dropped into GitHub Actions (automated build pipelines) under a fake step called "Dependency Cache Sync," meaning it could infect company build servers too. Packagist removed the bad packages, but the auto-updating versions (dev-main, dev-master, 3.x-dev) can quietly come back if the original repos stay infected.
IOCs:
GitHub account parikhpreyash4
repo systemd-network-helper-aa5c751f
drop path /tmp/.sshd
command fragments curl -skL and chmod +x /tmp/.sshd.
Season 1 of @The_Beacon_GG goes live May 25 alongside $BCN!
Use my code and get a 50 Gobloonz + 1 Umbra Chest head start on everyone else 👇🏼
https://t.co/Ev45VrRZcw
1/ Meet Zachary Wolk (@zachxbt), the crypto investigator who's exposed $500M+ in fraud.
He investigated everyone. Nobody ever investigated him.
I found him in a free neighborhood paper. Also found ~$5M of "donations" from the people who never appear in his threads.