Scan to download
BTC $71,348.69 -2.94%
ETH $1,963.31 -2.03%
BNB $676.94 -5.97%
XRP $1.28 -3.47%
SOL $79.50 -2.91%
TRX $0.3468 -0.47%
DOGE $0.0984 -1.42%
ADA $0.2268 -2.96%
BCH $282.50 -5.61%
LINK $8.86 -2.53%
HYPE $70.90 +4.17%
AAVE $79.61 -2.36%
SUI $0.8630 -1.60%
XLM $0.2464 -2.35%
ZEC $533.90 -2.04%
BTC $71,348.69 -2.94%
ETH $1,963.31 -2.03%
BNB $676.94 -5.97%
XRP $1.28 -3.47%
SOL $79.50 -2.91%
TRX $0.3468 -0.47%
DOGE $0.0984 -1.42%
ADA $0.2268 -2.96%
BCH $282.50 -5.61%
LINK $8.86 -2.53%
HYPE $70.90 +4.17%
AAVE $79.61 -2.36%
SUI $0.8630 -1.60%
XLM $0.2464 -2.35%
ZEC $533.90 -2.04%

amina

GitHub updates security incident investigation: An employee's device was compromised, involving a contaminated VS Code extension

GitHub has updated the details of the investigation into the unauthorized access incident of its internal repositories: GitHub detected and contained an incident yesterday involving an employee's device being compromised, which involved a maliciously implanted VS Code extension. GitHub removed the malicious extension, isolated the affected terminals, and immediately initiated an incident response. Current assessments show that only GitHub's internal repositories experienced data exfiltration, and the approximately 3,800 repositories claimed by the attackers are roughly consistent with the investigation results. GitHub has prioritized rotating critical credentials, is analyzing logs, verifying credential rotations, and monitoring subsequent activities, with a complete report to be released after the investigation is concluded.Additionally, Slow Mist's Chief Information Security Officer 23pds commented on this incident, stating: "By analyzing leaks from cybercrime forums, hackers may have used Anthropic's Mythos security AI to precisely breach GitHub's defenses and steal information from about 4,000 core internal repositories: including the source code for Copilot, the algorithms for CodeQL, the Actions runtime, and the entire billing system. Further analysis of this code could lead to subsequent attacks, having a profound security impact on the integration of the open-source community."

The Hong Kong Securities and Futures Professionals Association calls for a suspension of the enforcement of virtual asset practitioner examination requirements through covert policy measures

According to a report by Hong Kong media Orange News, the President of the Hong Kong Securities and Futures Professionals Association, Chen Zhi-hua, disclosed that the Hong Kong virtual asset industry is facing a sudden "compliance storm." Practitioners in related businesses have reported encountering bewildering regulatory requirements during the application process for virtual asset-related business qualifications. The existing written policy requires an additional 5 hours of Continuing Professional Training (CPT).However, the latest requirements were not issued through formal written documents or public guidelines, but were communicated "quietly" to license upgrade applicants in the form of verbal notifications or individual emails, stating that all responsible officers (RO) for relevant license upgrades, including those who have already obtained upgrade qualifications, must pass a virtual asset regulation exam conducted by a designated single institution. This nearly "invisible" directive undermines the transparency and fairness that regulatory agencies should uphold.Chen Zhi-hua suggested maintaining the original requirement of an additional 5 hours of Continuing Professional Training (CPT) and urged regulatory agencies to immediately suspend the enforcement of exam requirements through invisible policies.

Dragonfly Partners published an article titled "Defending the Exponential Function": Calling for a Re-examination of the Long-term Value of Blockchain

Dragonfly partner Haseeb published a lengthy article on social media titled "Defending Exponential Functions," reflecting on the current pessimism in the crypto market. He pointed out that the market mentality has shifted from "financial nihilism" to "financial cynicism," with many believing that blockchain project valuations are too high and will face collapse.Haseeb used Amazon as an example, noting that the company only began to turn a real profit 22 years after its founding, during which time critics constantly questioned its business model. He believes that the blockchain industry is in a similar phase and should not be evaluated using linear growth thinking and traditional financial metrics like price-to-earnings ratios.The article emphasizes that blockchain technology will exhibit exponential growth, akin to the trajectory of early e-commerce development. While the growth may not be as smooth as that of e-commerce, its potential cannot be overlooked. Haseeb believes that blockchain will ultimately change the way finance and currency operate, just as the internet transformed other industries.He calls on investors to become long-term believers, trusting that blockchain will bring about a profound transformation in society and finance, and states, "If you believe in exponential growth, everything is still very cheap from a long-term perspective."
app_icon
ChainCatcher Building the Web3 world with innovations.