Avatar
Moss
5144fe88ff4253c6408ee89ce7fae6f501d84599bc5bd14014d08e489587d5af
⚡️ I build AI Banana and Freerse.⚡️🔮🔥🚀 AI Banana: Your AI agent design assistant. Where inspiration strikes, intelligence arrives. https://aibanana.me Bitcoin lets you to own your wealth, Nostr lets you to own your mind. Bitcoin+ Nostr =freedom.

Pura Vida #Nostr 🤙

Is it possible to launch a Bitcoin bank card?

GM Sergio ☕️

物质的追求永远没有底线,人只有在欲望寡淡的时候,才会感到幸福,一个人最好的状态,就是能够,心平气和的过好每一天。

“人生是一团欲望,欲望满足了,就会空虚,欲望不满足,就会痛苦,人生就像钟摆,在空虚和痛苦中来回摇摆。”叔本华

GN Fishcake Regular work and rest days 😉

We can always see people on #Nostr who are constantly trying and practicing. It is because of this group of outliers that Nostr has such a strong vitality.

Thank you, outliers

nostr:note1dr7zau0wegt7vazvsrg3ex02mkfqtttfq7xq29r939mhqktn2a2s4q8q66

We're still investigating what happened here. It seems a handful of accounts may have been compromised and had their autowithdrawal settings tampered with, including our own "coinos@coinos.io" account.

We ran a script to search for accounts that had the attacker's "speed.app" withdrawal address in place and found about 9 that seem to have been affected. There could be more though, we will update as we have more information.

I worry that this may be the same attacker who exploited a password reset vulnerability back in January which allowed them to gain access to a number of accounts. It's possible that since that time they have been sitting on the account data and working to brute force the encrypted nostr private keys that we had on file for some accounts that had imported their nostr key into Coinos. Those keys were encrypted at rest in our database but it's possible they may have been cracked.

We no longer store nostr private keys for accounts and have since added support for external signing apps and browser extension login, but there was a time when we were storing encrypted nsec private keys.

Having a users nsec would allow an attacker to authenticate into Coinos by signing a nostr event and change the user settings. It also means your entire nostr profile and identity may be compromised.

This is only a hypothesis at this point and we need to investigate further but we may end up recommending that affected users rotate their nostr keys.

nostr:nevent1qvzqqqqqqypzpggzvz325tcf9kz79s9c9627430ccc82r8rgujycwxd43n92y037qy88wumn8ghj7mn0wvhxcmmv9uq32amnwvaz7tmjv4kxz7fwv3sk6atn9e5k7tcqyrdx8njpnvvulfcsqqd7ud47uw6dnzl4a3fmsrafsp0rte9f29h5uxpgg73

Keep up the great work. Thanks 🫡

Crazy, AI can already perform tasks. The development of AI is exponential. nostr:npub1sg6plzptd64u62a878hep2kev88swjh3tw00gjsfl8f237lmu63q0uf63m , look at this

Manus: The General AI Agent.

#AI #Manus

https://m.youtube.com/watch?v=K27diMbCsuw&pp=ygUITWFudXMgQUk%3D nostr:note13qsysm4z3gpyrc623jj2vwpcz8h3u4zmsxyvkxp92gpd6pzrkzxqxu5mj6