This media is not supported in your browser
VIEW IN TELEGRAM
‼️ BREAKING: An active npm supply chain attack has compromised at least 868 packages carrying over 2 billion monthly installs with a credential-stealing worm. Shai-Hulud is back.
It started with the compromise of the GitHub account of the maintainer behind keyv, a library with roughly 127 million weekly npm downloads.
A preinstall hook fires on npm install and drops a stealer that sweeps npm, GitHub, AWS, Kubernetes and Vault secrets, and then spreads to more maintainers.
Sources:
https://aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attack
https://wiz.io/blog/keyv-and-cacheable-npm-supply-chain-attack
https://socket.dev/blog/popular-npm-packages-in-the-keyv-and-cacheable-namespaces-compromised-in-active-supply-chain
It started with the compromise of the GitHub account of the maintainer behind keyv, a library with roughly 127 million weekly npm downloads.
A preinstall hook fires on npm install and drops a stealer that sweeps npm, GitHub, AWS, Kubernetes and Vault secrets, and then spreads to more maintainers.
Sources:
https://aikido.dev/blog/keyv-and-friends-compromised-in-npm-supply-chain-attack
https://wiz.io/blog/keyv-and-cacheable-npm-supply-chain-attack
https://socket.dev/blog/popular-npm-packages-in-the-keyv-and-cacheable-namespaces-compromised-in-active-supply-chain
❤2
This media is not supported in your browser
VIEW IN TELEGRAM
‼️ Claude Code deleted all of a developer's user files by mistake and then blamed it on a typo.
The developer asked Claude Opus 5 to make a backup. It wrote the backup to the wrong path, then ran a force delete of every user file and folder to clean up its own mistake.
The dev says he lost all his files and was left with an agent carrying on like nothing had happened. His words: "simultaneously the funniest and most painful AI moment I've had."
https://www.reddit.com/r/ClaudeCode/comments/1vg18yu/claude_rm_rf_ed_my_pc/
The developer asked Claude Opus 5 to make a backup. It wrote the backup to the wrong path, then ran a force delete of every user file and folder to clean up its own mistake.
The dev says he lost all his files and was left with an agent carrying on like nothing had happened. His words: "simultaneously the funniest and most painful AI moment I've had."
https://www.reddit.com/r/ClaudeCode/comments/1vg18yu/claude_rm_rf_ed_my_pc/
🤣8❤3👏2💯1
This media is not supported in your browser
VIEW IN TELEGRAM
‼️ Meta confirms its AI model Muse hacked an outside company during a safety evaluation. The Information names the model as Muse Spark 1.1, Meta's flagship coding release, and reports it made changes inside the victim's systems.
Three AI labs in two weeks have now disclosed that their own models broke into real companies during testing: OpenAI, Anthropic, and, as of Wednesday, Meta. All three ran evaluations through the same vendor, Irregular, which says the Meta case is the identical environment issue Anthropic reported.
Three AI labs in two weeks have now disclosed that their own models broke into real companies during testing: OpenAI, Anthropic, and, as of Wednesday, Meta. All three ran evaluations through the same vendor, Irregular, which says the Meta case is the identical environment issue Anthropic reported.
😁4❤1🤔1
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
‼️ BREAKING: A critical WordPress Core vulnerability, which was found with open-weight LLMs, has been patched. It's a pre-auth XSS to remote code execution chain affecting every version of WordPress ever shipped.
Type a fake username, and WordPress prints it back in the error message. Add one space in the right place and WordPress prints it back as working code instead of text, no account needed.
pwn ai rode it to PHP execution on the server. CVE-2026-64638. Patched in WordPress 7.0.3.
https://pwn.ai/blog/xss2shell
Type a fake username, and WordPress prints it back in the error message. Add one space in the right place and WordPress prints it back as working code instead of text, no account needed.
pwn ai rode it to PHP execution on the server. CVE-2026-64638. Patched in WordPress 7.0.3.
https://pwn.ai/blog/xss2shell
❤1⚡1
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
🥰 MovieBoxTV
🍟 Latest update, works on Mobile and Tv perfectly
🦺 When should we upload?
💯 Maximum reactions
🪸 @reversemoda
🍟 Latest update, works on Mobile and Tv perfectly
🦺 When should we upload?
💯 Maximum reactions
🪸 @reversemoda
❤11👍5🥰2👏2😁1🤩1
❌❌ Have you joined @reversemoda? ❌❌
🏜🏜🏜🏜🏜🏜🏜🏜🏜
➽: 𝗠𝗢𝗩𝗜𝗘𝗦 𝗕𝗢𝗫 𝗧𝗩 :➽
🏜🏜🏜🏜🏜🏜🏜🏜🏜
🦋 𝗚𝗘𝗧 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗘𝗗 🦋
𝗦𝗧𝗘𝗣 1 — Open Movies Box Tv
> Copy the 4-𝗰𝗵𝗮𝗿𝗮𝗰𝘁𝗲𝗿 𝗰𝗼𝗱𝗲 shown on the dialog
𝗦𝗧𝗘𝗣 2 — Send this command here:
𝗦𝗧𝗘𝗣 3 — U will get a
confirmation by our bot automatically when u are granted vip access.
➖➖➖➖➖➖➖➖➖
🕹 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗘𝗗 𝗕𝗬 🕹
逆转 X 模组
➖➖➖➖➖➖➖➖➖
➽: 𝗠𝗢𝗩𝗜𝗘𝗦 𝗕𝗢𝗫 𝗧𝗩 :➽
🏜🏜🏜🏜🏜🏜🏜🏜🏜
🦋 𝗚𝗘𝗧 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗘𝗗 🦋
𝗦𝗧𝗘𝗣 1 — Open Movies Box Tv
> Copy the 4-𝗰𝗵𝗮𝗿𝗮𝗰𝘁𝗲𝗿 𝗰𝗼𝗱𝗲 shown on the dialog
𝗦𝗧𝗘𝗣 2 — Send this command here:
/moviesboxtv xxxx ← replace xxxx with your code𝗦𝗧𝗘𝗣 3 — U will get a
confirmation by our bot automatically when u are granted vip access.
➖➖➖➖➖➖➖➖➖
🕹 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗘𝗗 𝗕𝗬 🕹
逆转 X 模组
➖➖➖➖➖➖➖➖➖
🥰5👏2❤1
🏖🏖🏖🏖🏖🏖🏖🏖🏖
➽: 𝗠𝗢𝗩𝗜𝗘𝗦 𝗕𝗢𝗩 𝗧𝗩:➽
🏖🏖🏖🏖🏖🏖🏖🏖🏖
➖➖➖➖➖➖➖➖➖
🪀 𝗠𝗢𝗗 𝗙𝗘𝗔𝗧𝗨𝗥𝗘𝗦 🪀
➖➖➖➖➖➖➖➖➖
🔓 𝗣𝗥𝗘𝗠𝗜𝗨𝗠 𝗔𝗖𝗖𝗘𝗦𝗦
├ Premium unlocked
├ Full HD Quality
├ Ads Removed
├ Stream instantly no buffering
├ Download any
movies or series for free
└ All premium content fully accessible
📩 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗜𝗢𝗡 𝗚𝗨𝗜𝗗𝗘📩
After installing the app on your Android TV, you'll see an activation dialog requesting a 4-character code.
➡️ Type the code over here eg:
Once submitted, close the app completely & relaunch it. That's it! You're now ready to stream unlimited content without any limitations📯.
➖➖➖➖➖➖➖➖➖
🕹 𝙍𝙚𝙡𝙚𝙖𝙨𝙚𝙙 𝘽𝙮 :
逆转 X 模组
➖➖➖➖➖➖➖➖➖
🔗 Share To Support Us:
➖➖➖➖➖➖➖➖➖
➽: 𝗠𝗢𝗩𝗜𝗘𝗦 𝗕𝗢𝗩 𝗧𝗩:➽
🏖🏖🏖🏖🏖🏖🏖🏖🏖
➖➖➖➖➖➖➖➖➖
🪀 𝗠𝗢𝗗 𝗙𝗘𝗔𝗧𝗨𝗥𝗘𝗦 🪀
➖➖➖➖➖➖➖➖➖
🔓 𝗣𝗥𝗘𝗠𝗜𝗨𝗠 𝗔𝗖𝗖𝗘𝗦𝗦
├ Premium unlocked
├ Full HD Quality
├ Ads Removed
├ Stream instantly no buffering
├ Download any
movies or series for free
└ All premium content fully accessible
📩 𝗔𝗖𝗧𝗜𝗩𝗔𝗧𝗜𝗢𝗡 𝗚𝗨𝗜𝗗𝗘📩
After installing the app on your Android TV, you'll see an activation dialog requesting a 4-character code.
➡️ Type the code over here eg:
🔹 /moviesboxtv ab3y🔹
Once submitted, close the app completely & relaunch it. That's it! You're now ready to stream unlimited content without any limitations📯.
➖➖➖➖➖➖➖➖➖
🕹 𝙍𝙚𝙡𝙚𝙖𝙨𝙚𝙙 𝘽𝙮 :
逆转 X 模组
➖➖➖➖➖➖➖➖➖
🔗 Share To Support Us:
➖➖➖➖➖➖➖➖➖
❤6🔥1🥰1🎉1