When governments are scared of their own citizens, they see an 800K member anime club as a threat.
CYBERSECURITY
-
Intellectual Property Theft Ethics in Technology
By
–
You can say the team stole money > Show proof, report them But you cannot turn around to steal their IP, ideas and assets. Why? > You become a thief too.
-
Security Risks: Becoming Hacker Target Through Unsafe Practices
By
–
Not sure if that’s a good idea. It would certainly make you a hacker target.
-
Trentclaw: Security Audit Tool for OpenClaw Gateway Setup
By
–
clawhub install trentclaw audits your openclaw setup for gateway security, tool permissions, MCP servers, and chained attack paths. results grouped by severity with specific fixes. secrets never leave your machine. trent.ai/openclaw/
-
LLM Performance Depends on Engineering and Funding, Not Models
By
–
🤪 🤪 For me the biggest reveal was that there is nothing special about the LLM. The engineering around it is what delivers the performance, which is directly correlated with funding $$. So if African GOVs want good performance & data security, just invest in local players 🤝 @timnitGebru (@dair-community.social/bsky.social) (@timnitGebru) This "careful" "AI Safety" company that just accidentally leaked its entire source code to the world is the one that African governments are entering into agreements with to include in infrastructures from health care to god knows what. theguardian.com/technology/2… — https://nitter.net/timnitGebru/status/2039795659990286656#m
→ View original post on X — @timnitgebru, 2026-04-02 20:25 UTC
-
Anthropic’s source code leak raises concerns for African government deals
By
–
This "careful" "AI Safety" company that just accidentally leaked its entire source code to the world is the one that African governments are entering into agreements with to include in infrastructures from health care to god knows what. theguardian.com/technology/2…
→ View original post on X — @timnitgebru, 2026-04-02 20:02 UTC
-
AI-Generated Security Reports Threaten Linux Kernel Projects
By
–
Prediction: This is gonna kill some oss projects. "On the kernel security list we've seen a huge bump of reports. We were between 2 and 3 per week maybe two years ago, then reached probably 10 a week over the last year with the only difference being only AI slop, and now since
-
Trent Security Advisor for Lovable: Continuous Security Guidance
By
–
🚀 Today we’re launching Trent’s Security Advisor for Lovable. Lovable gives builders a strong security baseline. 💪 Trent adds what’s been missing: continuous, in-context security advice while your app evolves. ✅ Ongoing code analysis ✅ Prioritized mitigation plans ✅ Direct fixes in Lovable via MCP ✅ No manual triage ✅ No security expertise required You build with Lovable. You secure with Trent. Read more ↓ trent.ai/blog/trent-security… Ready to secure your agent or app? Sign up for early access today. #CyberSecurity #AI #Lovable #MCP
-
PSF Security Reports LiteLLM and Telnyx Supply Chain Attacks
By
–
PSF Security developers have published incident reports on the LiteLLM & Telnyx #supplychain attacks. Read what happened, who's affected, and what developers & maintainers can do to prepare and protect themselves from future incidents. #security #python blog.pypi.org/posts/2026-04-…
-

Slopsquatting: AI Hallucinations Enable New Supply Chain Attack
By
–
URGENT PSA – New supply chain attack vector that I found WILD > AI LLMs hallucinate package names roughly 18-21% of the time.
— Basel Ismail (@BaselIsmail) 2 avril 2026
Hackers have started pre-registering those hallucinated names on PyPI and npm with malicious payloads; they call it "slopsquatting"
You can only imagine… pic.twitter.com/wyPwHE9NT5URGENT PSA – New supply chain attack vector that I found WILD > AI LLMs hallucinate package names roughly 18-21% of the time. Hackers have started pre-registering those hallucinated names on PyPI and npm with malicious payloads; they call it "slopsquatting" You can only imagine what's next Community note: The 'slopsquatting' attack vector was documented as early as April 2025 and not newly discovered. The cited 18-21% package hallucination rate applies to open-source LLMs; commercial models average 5.2% according to the referenced study using pre-2025 models. socket.dev/blog/slopsquat… arxiv.org/pdf/2406.10279