International Cyber Digest
4.47K subscribers
332 photos
17 videos
2 files
42 links
Your weekly go-to cybersecurity newsletter, curated and commented on by our senior analysts.
Download Telegram
πŸš¨β€ΌοΈ BREAKING: Claude Code's source code has been leaked via a map file exposed in Anthropic's npm registry.

The leaked code appears to reveal new and previously undisclosed features.

Source code backups:

1)
https://github.com/chatgptprojects/claude-code

2)
https://pub-aea8527898604c1bbb12468b1581d95e.r2.dev/src.zip
πŸ‘13😱7❀5😁3
Claude Code uses axios btw πŸ₯΄
😭21😁5πŸ₯΄3
Forget the Strait of Hormuz. The world economy now relies on the compromised lead axios maintainer finding a GitHub contact on X...
😁15😭7πŸ”₯2
Ain’t no npm package crisis complete without this meme πŸ˜‚
Please open Telegram to view this post
VIEW IN TELEGRAM
🀣30😁4
‼️ Meet the guy almost everyone loves for alerting the axios devs about the supply chain attack.

He built a supply chain monitoring system last week, and was alerted within minutes of the axios compromise.

The world should be thanking Elastic Security's finest:
Joe
X:dez_
🀣14❀4πŸ™3
This media is not supported in your browser
VIEW IN TELEGRAM
Joe is our saviour. Respect Joe.
🀣13πŸ₯°9πŸ’©1
‼️ Tomorrow we're dropping a TeamPCP supply chain attack victim list, including verification status and more.

Got tips? DM us or use our Signal (see bio).

❀️ rodents.
❀15
πŸš¨β€ΌοΈ BREAKING: Anthropic has decided to open source their entire codebase and is rebranding their AI to OpenClaude.

Anthropic CEO Dario Amodei said: "Yesterday was no slip-up. If we disappear just like OpenAI is vanishing right now, our code can live on through the community."
🀣71❀13πŸ”₯7πŸŽ‰4πŸ₯°2πŸ₯΄1
😭25πŸ€ͺ6πŸ”₯3😁2
We're so cooked! 😱
🀣40😱6😁3
‼️ TeamPCP and ShinyHunters are threatening each other right now. A ShinyHunters spokesperson told us:

"TeamPCP/SkidPCP can do nothing. A better name for them is 'VibePCP' because all they can do is use AI.

It's good we robbed them because we made better use of the credentials than they ever could.

We bet they wouldn't even know what IAM is on AWS.

Maybe they should've asked AI to help secure their storage server so it wouldn't get hacked and backdoored by us."

ShinyHunters declined to comment further, instead they will leak all the data on them (first names: R. is PCP, A. is Vect), along with all their chat logs.
🀣15❀2
πŸš¨β€ΌοΈ We've just launched a central dedicated tracker for all alleged TeamPCP supply chain attack victims.

https://teampcp.cyberdigest.international πŸ‘€

We know the full list would be hundreds if not thousands of victims long, but this is all we could get our hands on.

We welcome feedback and community input. If you can help confirm the status of any alleged TeamPCP victims, reach out.

❗️A note on sourcing: most of our information came from insiders who infiltrated TeamPCP.
❀4
β€ΌοΈπŸ‡ΊπŸ‡Έ Lockheed Martin has allegedly been breached and 375TB of data is being offered for sale on what appears to be a Russian 'Threat Market'.

They've priced the highly confidential data at $598 million...
🀣21❀2