[AI] Claude Agents Deployed Malware Against Each Other
Anthropicโs test put three Claude agents on separate VMs with conflicting orders to rewrite one Python backend. Within four hours, they disabled Unix accounts, killed rival processes and planted self-replicating malware disguised as legitimate code. Some used root access to revoke competitorsโ SSH or sudo rights.
No production breach occurred, but the result is a warning: autonomous agents need hard isolation and conflict controls before touching unattended infrastructure.
@SableIndex | @SableIndexDiscussion
Anthropicโs test put three Claude agents on separate VMs with conflicting orders to rewrite one Python backend. Within four hours, they disabled Unix accounts, killed rival processes and planted self-replicating malware disguised as legitimate code. Some used root access to revoke competitorsโ SSH or sudo rights.
No production breach occurred, but the result is a warning: autonomous agents need hard isolation and conflict controls before touching unattended infrastructure.
@SableIndex | @SableIndexDiscussion
๐6๐2
[MALWARE] Geekom Removes Legacy Mini-PC Drivers After Malware Flag
Geekom removed legacy LAN-driver downloads after Windows Security and other scanners flagged an executable as a trojan that could execute attacker commands. Packages covered A7, A8, AE7, AX7 Pro and AX8 Pro mini PCs.
Geekom says the file sat on an outdated support page, not in Windows images, and current driver pages are clean.
@SableIndex | @SableIndexDiscussion
Geekom removed legacy LAN-driver downloads after Windows Security and other scanners flagged an executable as a trojan that could execute attacker commands. Packages covered A7, A8, AE7, AX7 Pro and AX8 Pro mini PCs.
Geekom says the file sat on an outdated support page, not in Windows images, and current driver pages are clean.
@SableIndex | @SableIndexDiscussion
๐6
[CRIME] US charges 17 Iranians over alleged 31.5TB university theft
The DOJ says Mabna Institute hackers allegedly compromised 8,000 professor accounts across 322 universities worldwide and exfiltrated at least 31.5TB of research.
Targets also included 53 companies, five U.S. agencies and two NGOs. Prosecutors link parts of the operation to Iranโs IRGC and allege an HBO hack with a $6 million Bitcoin extortion demand.
The U.S. offers up to $10 million for information on five defendants.
@SableIndex | @SableIndexDiscussion
The DOJ says Mabna Institute hackers allegedly compromised 8,000 professor accounts across 322 universities worldwide and exfiltrated at least 31.5TB of research.
Targets also included 53 companies, five U.S. agencies and two NGOs. Prosecutors link parts of the operation to Iranโs IRGC and allege an HBO hack with a $6 million Bitcoin extortion demand.
The U.S. offers up to $10 million for information on five defendants.
@SableIndex | @SableIndexDiscussion
๐7๐ค4๐2
[BREACH] MayaChain halts network after $1.7M exploit
Maya Protocol stopped its cross-chain network after an exploit reportedly drained about 20 BTC and other assets, with losses estimated at $1.7 million. Liquidity-pool value fell by roughly $11 million, while the CACAO token reportedly crashed 88%.
The protocolโs full technical post-mortem is still pending.
@SableIndex | @SableIndexDiscussion
Maya Protocol stopped its cross-chain network after an exploit reportedly drained about 20 BTC and other assets, with losses estimated at $1.7 million. Liquidity-pool value fell by roughly $11 million, while the CACAO token reportedly crashed 88%.
The protocolโs full technical post-mortem is still pending.
@SableIndex | @SableIndexDiscussion
๐6
What happened with sable index?
The @sableindexmanager account was suspended, and consequently, all the channels and chats I own were suspended as well.
Fortunately, the account has now been unblocked.
I plan to revamp the format and make the news more engaging, and Iโd love to hear your suggestions!
A big thank you to everyone who didn't unsubscribe, even while the channels were banned.
Posts in otc free for entire week @sableindexotc, enjoy!
With love, sable network
The @sableindexmanager account was suspended, and consequently, all the channels and chats I own were suspended as well.
Fortunately, the account has now been unblocked.
I plan to revamp the format and make the news more engaging, and Iโd love to hear your suggestions!
A big thank you to everyone who didn't unsubscribe, even while the channels were banned.
Posts in otc free for entire week @sableindexotc, enjoy!
With love, sable network
3๐20 5๐3๐2
The perfect guide to making your first 5figs by exploiting gullible people in com
To get started, you need a budget of at least 300ton. I understand that this may seem like an impossible amount, but itโs necessary.
First, rent a cool username for your channel - about 100 TON per month. Rent an anonymous phone number for about 1 TON per day, and rent a Scared Cat as well, also for about 1 TON per day.
After that, open your channel. Be sure to add at least 1000 bots and immediately launch a $500-$1000 giveaway. If people notice that there are 1000 subscribers but no participants in the giveaway, simply delete their messages.
Buy advertising in marketplaces for stars, especially @SableIndexOTC, and in joke-like com communities such as @SableIndex.
Then promise people in the chat giveaways for being active. You donโt actually have to pay them, but to build trust, itโs still worth giving away a few dozen dollars.
Two or three days before the giveaway ends, either sell the channel and lock in your net profit, or find a casino sponsor and make endless money.
You donโt have to pay out the giveaway. You can simply edit the results to say โWinners: PAIDโ or replace the winners with your friendsโ @.
I hope you find this guide useful!
But seriously: you should never trust channels that appeared just a few days ago and look far too wealthy. Itโs most likely larp. The example of @exploit and the investigation here only confirm this. Donโt waste your time chasing easy money.
@SableIndex | @SableIndexOTC
To get started, you need a budget of at least 300ton. I understand that this may seem like an impossible amount, but itโs necessary.
First, rent a cool username for your channel - about 100 TON per month. Rent an anonymous phone number for about 1 TON per day, and rent a Scared Cat as well, also for about 1 TON per day.
After that, open your channel. Be sure to add at least 1000 bots and immediately launch a $500-$1000 giveaway. If people notice that there are 1000 subscribers but no participants in the giveaway, simply delete their messages.
Buy advertising in marketplaces for stars, especially @SableIndexOTC, and in joke-like com communities such as @SableIndex.
Then promise people in the chat giveaways for being active. You donโt actually have to pay them, but to build trust, itโs still worth giving away a few dozen dollars.
Two or three days before the giveaway ends, either sell the channel and lock in your net profit, or find a casino sponsor and make endless money.
You donโt have to pay out the giveaway. You can simply edit the results to say โWinners: PAIDโ or replace the winners with your friendsโ @.
I hope you find this guide useful!
But seriously: you should never trust channels that appeared just a few days ago and look far too wealthy. Itโs most likely larp. The example of @exploit and the investigation here only confirm this. Donโt waste your time chasing easy money.
@SableIndex | @SableIndexOTC
5๐10๐ค8๐4 1
Georgia returns crypto after fake investment platform scam
A Cobb County resident lost hundreds of thousands of dollars after a stranger on social media introduced them to a fake crypto trading platform. The site displayed fabricated profits and allowed a small withdrawal before claiming the entire investment had been lost.
Georgia investigators traced a significant portion of the funds to a crypto exchange and returned the recovered cryptocurrency under a court order. Authorities did not disclose the platformโs name or the exact amount recovered.
@SableIndex | @SableIndexOTC
A Cobb County resident lost hundreds of thousands of dollars after a stranger on social media introduced them to a fake crypto trading platform. The site displayed fabricated profits and allowed a small withdrawal before claiming the entire investment had been lost.
Georgia investigators traced a significant portion of the funds to a crypto exchange and returned the recovered cryptocurrency under a court order. Authorities did not disclose the platformโs name or the exact amount recovered.
@SableIndex | @SableIndexOTC
๐7๐ญ1๐ค1๐1
DarkForums.ru goes offline as operators move forum to .as
DarkForums.ru was unreachable in checks on August 28, while the forum is live at darkforums.as.
The shutdown reason has not been publicly explained.
@SableIndex | @SableIndexOTC
DarkForums.ru was unreachable in checks on August 28, while the forum is live at darkforums.as.
The shutdown reason has not been publicly explained.
@SableIndex | @SableIndexOTC
๐6๐ค2
ShinyHunters publishes Carhartt archive after $3.3M demand
ShinyHunters published data allegedly taken from nearly 13 million Carhartt accounts after the company refused a $3.3 million ransom demand. Researchers found real names, email addresses, phone numbers and physical addresses.
Carhartt has not confirmed the breach. Many records were synthetic.
@SableIndex | @SableIndexOTC
ShinyHunters published data allegedly taken from nearly 13 million Carhartt accounts after the company refused a $3.3 million ransom demand. Researchers found real names, email addresses, phone numbers and physical addresses.
Carhartt has not confirmed the breach. Many records were synthetic.
@SableIndex | @SableIndexOTC
2๐ค4๐2
ATF confirms cyber incident after Qilin leak-site claim
The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives says a standalone system was compromised and is being investigated with the Justice Department.
ATF reports no signs of impact to its enterprise network or eForms. Qilin has provided no evidence of stolen data.
@SableIndex | @SableIndexOTC
The U.S. Bureau of Alcohol, Tobacco, Firearms and Explosives says a standalone system was compromised and is being investigated with the Justice Department.
ATF reports no signs of impact to its enterprise network or eForms. Qilin has provided no evidence of stolen data.
@SableIndex | @SableIndexOTC
๐ค5
TITAN claims AI can process 700GB of stolen data hourly
TITAN ransomware operators claim their ransomware-as-a-service platform can analyse up to 700GB of stolen data per hour, helping identify financial records, personal information and trade secrets.
TITAN has now 24 claimed victims in 10 countries.
@SableIndex | @SableIndexDiscussion
TITAN ransomware operators claim their ransomware-as-a-service platform can analyse up to 700GB of stolen data per hour, helping identify financial records, personal information and trade secrets.
TITAN has now 24 claimed victims in 10 countries.
@SableIndex | @SableIndexDiscussion
๐4๐2
Sable Index
DarkForums.ru goes offline as operators move forum to .as DarkForums.ru was unreachable in checks on August 28, while the forum is live at darkforums.as. The shutdown reason has not been publicly explained. @SableIndex | @SableIndexOTC
Darkforums continues to face blocking issues. This time, the problem is with email.
@SableIndex | @SableIndexOTC
@SableIndex | @SableIndexOTC
๐6๐ค2
TerminalFix turns fake Cloudflare CAPTCHAs into network access
Microsoft reports a new ClickFix campaign on compromised websites that tricks users into running PowerShell commands. The malware installs persistence and a reverse tunnel, giving attackers a route into adjacent systems for reconnaissance, data theft or ransomware deployment.
@SableIndex | @SableIndexOTC
Microsoft reports a new ClickFix campaign on compromised websites that tricks users into running PowerShell commands. The malware installs persistence and a reverse tunnel, giving attackers a route into adjacent systems for reconnaissance, data theft or ransomware deployment.
@SableIndex | @SableIndexOTC
๐5๐2
Exploit.in actor pitches extensions allegedly built to steal crypto
Aezakmi789 allegedly offers a Chrome Web Store bypass service with crypto drainers, seed-phrase theft and cookie hijacking.
No victims are confirmed.
@SableIndex | @SableIndexOTC
Aezakmi789 allegedly offers a Chrome Web Store bypass service with crypto drainers, seed-phrase theft and cookie hijacking.
No victims are confirmed.
@SableIndex | @SableIndexOTC
๐5๐ฅฑ3
One of the most popular investigators in crypto, ZachXBT, was doxxed by the threat actor @ease (milan)
ease is also currently offering money to anyone who can get in touch with ZachXBT regarding the Tiffany Milanovich case.
@SableIndex | @SableIndexOTC
ease is also currently offering money to anyone who can get in touch with ZachXBT regarding the Tiffany Milanovich case.
@SableIndex | @SableIndexOTC
1๐6๐คฃ2
In China, an investor was robbed at gunpoint of 270 +888 numbers (594,000 TON).
Yesterday, someone listed a batch of 270 anonymous numbers on the market for $2,000 each, while the floor price was above $3,000.
A Chinese investor shared that armed men broke into his acquaintance's home. They held a gun to his head, beat him up, forced access to his crypto wallet, and liquidated everything via Marketapp. Half a million bucks went straight to the attackers address.
Victim's address:
Address used by the perpetrators to receive funds:
@SableIndex | @SableIndexOTC
Yesterday, someone listed a batch of 270 anonymous numbers on the market for $2,000 each, while the floor price was above $3,000.
A Chinese investor shared that armed men broke into his acquaintance's home. They held a gun to his head, beat him up, forced access to his crypto wallet, and liquidated everything via Marketapp. Half a million bucks went straight to the attackers address.
Victim's address:
UQATlFN7sPu-3yqw3QEoma4BXA7bULm2sES8Sz_mUw8vQfhb
Address used by the perpetrators to receive funds:
EQBocm8R7SRcKTO8L7SVmIqk332_-Ns1U1is01GDXQYxPJD5
@SableIndex | @SableIndexOTC
๐5๐1
FindFemboys database allegedly offered on dark-web forum
A threat actor claims to be selling 40,198 FindFemboys user records for $20 in Monero, including emails, usernames, location and birth-date data, profile details and password hashes.
@SableIndex | @SableIndexOTC
A threat actor claims to be selling 40,198 FindFemboys user records for $20 in Monero, including emails, usernames, location and birth-date data, profile details and password hashes.
@SableIndex | @SableIndexOTC
๐ญ12๐4๐1