Adventures in Dystopia
1.92K subscribers
514 photos
50 videos
7 files
288 links
Download Telegram
https://www.zerodayinitiative.com/advisories/ZDI-23-1470/ โ€” still Exim, still stack based overflow
Open X-Embodiment: Robotic Learning Datasets and RT-X Models โ€” https://robotics-transformer-x.github.io/ one more step
https://ant-rng.ru/ โ€” ANT true RNG, Cloudflare hold my beer
๐Ÿ˜3
It may be good toolkit for smart-contracts development too?

--

What is Ferrocene?
Ferrocene is the main Rust compiler - rustc - but quality managed and qualified for use in automotive and industrial environments (currently by ISO 26262 and IEC 61508) by Ferrous Systems. It operates as a downstream to the Rust project, further increasing its testing and quality on specific platforms. We will publish further detailed blog posts on the components and changes in Ferrocene in the coming weeks.

All changes we made to increase the quality of the Rust compiler have already made it to the main Rust project upstream. See Pietroโ€™s blog post for more details.

(Source)
When Solana is compiling
๐Ÿ˜6
Did you know, that Gaza had their own airport? 1998-2000
https://curl.se/docs/CVE-2023-38545.html why didn't I find this? ((((
๐ŸŒš1
This media is not supported in your browser
VIEW IN TELEGRAM
๐Ÿ‘1๐Ÿฅฐ1
๐Ÿ˜6๐Ÿคฎ1๐Ÿ’ฉ1
One more attack on web3 developers:

Through https://playcrypterium.io (don't open) and https://discord.gg/MyZgrYnh (don't open) they distribute AMOS malware (OS X, Linux, Win) that steals cryptocurrency wallets.

The attack scenario is as follows:
โ€” Ads, offers for artists and moderators are posted in the group-chat rooms (pic).
โ€” An operator communicates with a person and asks verification questions (creating the appearance of filtering and selection).
โ€” Then invited to Discord, where it is offered to download the game client and check the game (pic).
โ€” For downloading, they send the user to the site (link above), where instead of playing the game, the user downloads malware (pic).

Discord has about 3667 users and 24 boosters for now. Discord users send messages when you're online (gm/hi). Moreover, they fill chats history with fake conversations from multiple users. Without deep thinking, it is very nature.

Virus-total Report is https://www.virustotal.com/gui/file/0c547caa2a441a4ee10cc04e68473ffa768303fab7f7658ad4efc2c84476f7da?nocache=1
C&C // C2 (server used to collect stolen data) is http://185.106.93.154/ (don't open)

Little bit about AMOS Stealer: https://telegra.ph/Atomic-Stealer---Obzor-loga-06-27

I think that next time, ICO/IEO investors may be targeted.
Never, never installs any software from recruiters or job offerers. Never send your private keys.

Pay attention and protect yourself, have a good night, my dear stranger!
๐Ÿคฌ5๐Ÿ‘4๐Ÿคฏ4๐Ÿ’ฉ1
SoK: Web3 Recovery Mechanisms (source)

This study explores Web3 account recovery challenges due to key pair usage. Solutions for improved usability and security are developed, with future research directions suggested.

https://eprint.iacr.org/2023/1575.pdf
โค3
Hi, strangers ๐Ÿ˜Š!

Turkish internet provider (Comnet) blocked outbound connections on 22 port: the are all Turkish developers and administrators cannot use GitHub, GitLab, BitBucket with ssh! (Source)

Be brave and stay calm in our adventures!
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿคฏ3
๐Ÿคฃ5๐Ÿ‘1๐Ÿ˜1
Hi, my dear ๐Ÿ˜Š!

New day, new attack on web3 developers and artists.
At this time, the scam link is https://fluffmania.com/.

Attackers send this link in comments (for example, in our group, too) (pic)

This site is looks like free-mint landing (do you like free minting?).
But instead, the site asked users to send their liquidity to a target address. 0x02b73dcA543Adf4061CA45ec118CD13ee37Bf2db (debank)
After, the site sends report to a telegram chat group using a special bot.
The bot credentials is bot6522192634:AAHy8NqRdYBBaoTJSH5N5K2HQRktKMqegSU (pic) (getMe, getUpdates)

The invite link to the telegram chat group is https://t.me/+AHq8y1C9GWMxMjg0 (pic)
The chat group created on 27 September 2023.

The report chat has two telegram users:
- @nothingnessssssssss (tg id 5549919234)
- @mutuNFTs (tg id 6444639769)

Another users:
- @bothfs (tg id 6437252778) โ€” owner of pandra tg chat group
- @LUNPEP (tg id 6236128085) โ€” invited into log report chat by owner

All sites that are used to deceive visitors:
- fluffmania.com
- pandra.io
- cyberconnect.fi
- apyether.io
- bigtime.wtf
- nftboxes.co
- fewos.io
- layerzero.cat

Found scaminessman's addresses:
- 0x3D684317b03BC4248A0EeE8C2Ed0B3b0c3a7F58d
- 0x375Fa8d7a500aBEfb0eB18B2Cb9f4e68db01F398
- 0x02b73dca543adf4061ca45ec118cd13ee37bf2db
- 0x00005C99BA69Ca6a18be16234F95850F2C100000
- 0x00002020429F161E2B3c3f5845a836f06E550000

Log reports endpoint is: moralis-api.zip

Update: I think they are Armenian
Update2: add layerzero.cat and fewos.io
Update3: decryptor https://gist.github.com/kalloc/c81e8c63fbb56d42d3df93803d8ed006, add few domains, the scammers still continue their attack

--
Stay safe my friends!
Please open Telegram to view this post
VIEW IN TELEGRAM
Please open Telegram to view this post
VIEW IN TELEGRAM
๐Ÿ‘5