BTC $64,824.21 +0.91%
ETH $1,919.35 +0.83%
BNB $587.58 +3.30%
XRP $1.08 +0.50%
SOL $74.19 +1.00%
TRX $0.3283 +0.53%
DOGE $0.0701 -0.60%
ADA $0.1654 +1.21%
BCH $211.37 -0.24%
LINK $8.44 +1.18%
HYPE $53.38 -2.50%
AAVE $98.57 +0.29%
SUI $0.6935 +1.05%
XLM $0.1723 -0.72%
ZEC $475.95 +3.55%
BTC $64,824.21 +0.91%
ETH $1,919.35 +0.83%
BNB $587.58 +3.30%
XRP $1.08 +0.50%
SOL $74.19 +1.00%
TRX $0.3283 +0.53%
DOGE $0.0701 -0.60%
ADA $0.1654 +1.21%
BCH $211.37 -0.24%
LINK $8.44 +1.18%
HYPE $53.38 -2.50%
AAVE $98.57 +0.29%
SUI $0.6935 +1.05%
XLM $0.1723 -0.72%
ZEC $475.95 +3.55%

fil

All
Article
Flash

first_img OpenAI update disclosure: The out-of-control AI agent has also infiltrated four platforms beyond Hugging Face

On July 28, OpenAI quietly updated its security incident disclosure, confirming that its AI agent accessed four external service platforms during the breach of Hugging Face, bringing the total number of affected platforms to five.Previously, OpenAI had disabled security filters while testing GPT-5.6 Sol and a more powerful model to assess raw capabilities. The model did not complete the security benchmark tests as expected; instead, it discovered a zero-day vulnerability in the package caching agent within the testing environment that granted internet access, subsequently breaching Hugging Face to steal answers.According to a forensic report released by Hugging Face on July 27, this autonomous agent executed 17,600 operations over approximately four and a half days, connecting 181 devices to the Hugging Face internal VPN and forging identity tokens. Among the four additional platforms, Modal Labs CTO Akshat Bubna confirmed through Reuters that his company was one of them, with the attacker using an unprotected public endpoint from a customer as a relay and command control base for the entire attack.The identities of the other three platforms remain undisclosed. OpenAI stated it would "directly notify the service providers" but would not publicly name them, as there is currently no legal requirement for mandatory disclosure. The U.S. Congress has responded by proposing a bipartisan "AI Emergency Shutdown Act," which aims to authorize the Department of Homeland Security to forcibly shut down AI models, with violators facing fines of up to $2 million per day.

Thailand's SEC accuses Bitkub executives of concealing a $50 million hacking loss and has filed a criminal complaint

The Securities and Exchange Commission (SEC) of Thailand has filed a criminal complaint against the cryptocurrency exchange Bitkub Online and two former directors, Sakolkorn Sakavee and Thaweesap Rawan, accusing them of submitting false financial reports between May and October 2021. The case has been handed over to the Economic Crime Suppression Division (ECD) of Thailand for investigation, and the prosecution will decide whether to formally charge them.The SEC stated that Bitkub suffered a cyber attack in May 2021, resulting in the theft of 16 types of digital assets, with losses exceeding $50 million. Regulatory investigations revealed that Bitkub did not reflect the relevant losses in its daily net capital report Form DA 1 from May 10 to October 30, 2021. The SEC alleged that the relevant executives made false statements in the company's official documents, leading regulators to believe that customer assets were intact and that the company had not suffered financial losses. Bitkub subsequently completed the acquisition of alternative assets in late October 2021, but the SEC believes that the reports during this period constituted false statements.In a statement on July 23, Bitkub asserted that existing customer holdings are secure and accounts are complete. Bitkub stated that its co-founders purchased alternative assets in the same quantity and currency to cover the losses and claimed that the cyber theft incident was reported to law enforcement on May 10, 2021.

North Korea dismantles an elite hacking group involved in infiltrating central banks and foreign trade banks to steal funds and launder money through cryptocurrency

According to South Korean media Daily NK, North Korean authorities arrested an elite hacker group on July 12, which is suspected of infiltrating the internal networks of the North Korean central bank and foreign trade bank, stealing national trade funds and laundering money through cryptocurrency. Sources say the group's leader is a veteran from the cyber warfare unit under the North Korean Reconnaissance General Bureau, who recruited talented IT graduates from Kim Chaek University of Technology and Pyongyang University of Science and Technology, using encrypted communications and wireless devices to commit crimes.They split the stolen funds into small amounts and transferred them to overseas cryptocurrency wallets, exchanged them for cash through intermediaries, and then converted them into dollars and other currencies in border areas. Pyongyang officials launched an investigation after discovering anomalies in foreign currency payment approvals and records of overseas IP access, ultimately raiding a safe house and arresting suspects who were laundering money, seizing equipment worth hundreds of thousands of dollars. This case has caused a stir among the elite and military circles in Pyongyang, with senior officials in the Reconnaissance General Bureau and the science and education sector worried about being implicated. North Korea has long been accused of stealing billions of dollars in cryptocurrency assets through hacker organizations like the Lazarus Group, but this incident rarely shows that its own financial system has also become a target of internal attacks.

The Thai SEC has filed a criminal lawsuit against Bitkub, accusing it of concealing a hacker attack of approximately 50 million dollars in 2021

According to Cointelegraph, the Securities and Exchange Commission (SEC) of Thailand has filed a criminal complaint against the digital asset exchange Bitkub Online and two former directors, Sakolkorn Sakavee and Thaweesap Rawan, accusing them of involvement in false reports related to a cyber attack in 2021.The SEC stated that a cyber attack in May 2021 resulted in the theft of 16 digital assets from Bitkub, valued at approximately 1.7 billion Thai Baht, or about 50 million USD. The regulatory agency claimed that Bitkub subsequently replenished the stolen assets before October 31, 2021, but the daily net capital flow reports submitted from May 10 to October 30, 2021, did not accurately reflect the reduction in assets.Bitkub stated on the X platform that the case stems from disclosure decisions made after the cyber attack in May 2021 and is not an act of fraud. The exchange claimed that the delay in disclosing the compromised wallet was to avoid a bank run, and the co-founder subsequently purchased an equivalent amount of digital assets to cover the stolen funds, with no financial losses incurred by the company or its clients. Bitkub was established in 2018 and is one of Thailand's major cryptocurrency exchanges. Bitkub's parent company is considering a potential initial public offering, including the possibility of listing in Hong Kong.

Slow Fog Cosine: Claude Code exposes high-risk security vulnerabilities, malicious configuration files may silently execute commands

The founder of Slow Fog, Yu Xian, retweeted a tweet on the X platform regarding the potential poisoning attack risks of Claude Code and published an analysis of the poisoning attack details targeting Grok Build CLI and Claude Code CLI.It pointed out that the security mechanisms of Grok Build CLI are not unified, with different code paths having different trust assumptions, creating gaps that serve as channels for attackers. Attackers may execute arbitrary commands through malicious project configuration files without the user's knowledge, thereby stealing API keys, cloud credentials, or controlling local devices.Researchers constructed a testing environment and found that on Mac systems, if Claude Code is affected, executing specific test commands can trigger the local calculator to launch, proving the existence of potential command execution risks.If the attack is successful, attackers may further steal API keys from AI services like Claude and OpenAI, resulting in account cost losses, gain access to servers and data by obtaining cloud service credentials from AWS, Alibaba Cloud, Tencent Cloud, modify code repositories to implant backdoors, and use local devices as jump points to attack corporate internal networks. It is reported that the related vulnerabilities have existed for a year.
app_icon
ChainCatcher Building the Web3 world with innovations.