Joined August 2018
45 Photos and videos
#BitMine $BMNR goes to 0 $9B unrealized loss. Cost basis lies. A chairman whose every ETH prediction has missed. A death spiral with no exit. Full breakdown in the video👇 youtu.be/6imvfoxeDoU Slides: foxreymann.github.io/bitmine… @arukanism @zmzlois @Lantos1618 @dimplnotsimpl
3
12
480
BitMine $BMNR bought 5.4M $ETH at ~$3,997 avg cost. $ETH is at $1,555. That's an $9B unrealized loss. CEO is calling for $250k ETH. Every past prediction has missed. The chart doesn't lie. $BMNR goes to 0 VIDEO COMING! @arukanism · @zmzlois · @Lantos1618 · @dimplnotsimpl
2
7
292
We ran the numbers on $BMNR BitMine. The story doesn't hold up! $BMNR goes to 0. We're publishing a full evidence pack — every claim sourced, every number verified. @arukanism @zmzlois @Lantos1618 @dimplnotsimpl
3
1
10
520
Fox Reymann retweeted
May 22
A truly historic moment 👏🏻
22nd of May 2026 a Polish programmer bought 5 pizzas with @coca_card. #BitcoinPizzaDay #PaidWithCOCA history in the making.
1
9
723
22nd of May 2026 a Polish programmer bought 5 pizzas with @coca_card. #BitcoinPizzaDay #PaidWithCOCA history in the making.
1
3
832
Fox Reymann retweeted
🚨A HACKER GROUP JUST STOLE 4,000 OF GITHUB'S OWN PRIVATE REPOSITORIES.. PUT THEM UP FOR SALE FOR $50,000.. AND THE WAY THEY GOT IN IS THE SCARIEST PART.. They didn't hack GitHub's servers.. They poisoned a VS Code extension.. One GitHub employee installed it.. And the attackers walked through the front door using the employee's own credentials.. The group calls themselves TeamPCP.. They name their malware after the sandworms from Dune.. And they've been running the most sophisticated supply chain attack campaign in cybersecurity history.. Here's how the whole thing unfolded.. In March.. They poisoned Trivy.. One of the most trusted security scanners in the world.. Used by over 10,000 development workflows globally.. They injected credential-stealing malware into Trivy's official GitHub Action.. The malware ran silently BEFORE the security scan.. So every log showed "scan completed successfully" while the malware was stealing AWS keys, SSH credentials, database passwords, and Kubernetes tokens in the background.. It took Aqua Security 5 days to fully remove them.. Using the stolen credentials.. They breached Cisco Systems.. Cloned over 300 private repositories.. Including source code for unreleased AI products.. And repositories belonging to Cisco's customers.. Major banks.. Government agencies.. BPO firms.. In April.. They hit Checkmarx.. Another security vendor.. Poisoned 5 official Docker images in 83 minutes.. The scanner worked perfectly.. It just silently sent all your secrets to the attackers.. That automatically cascaded into Bitwarden.. The password manager.. Their CI/CD system pulled the poisoned Docker image.. And the attackers injected malware into Bitwarden's official CLI package published on npm.. One compromised security scanner poisoned a password manager.. Automatically.. No human involved.. In May.. They hit TanStack.. Libraries downloaded millions of times per week.. 84 malicious package versions across 42 packages.. And here's the terrifying part.. The malware scraped the raw memory of GitHub's build servers.. Extracted authentication tokens.. Used those tokens to bypass two-factor authentication.. And then published the infected packages with completely valid cryptographic signatures.. Every security verification tool on earth said the packages were legitimate.. Because they were signed by the real pipeline.. Using real keys.. The attackers just happened to be inside the pipeline when it signed.. They defeated the entire trust model of modern software supply chains.. The same week they hit the Nx Console VS Code extension.. 2.2 million installations.. The malware specifically targeted Claude Code configurations.. Hunting for AI assistant credentials.. That's a first.. Supply chain malware designed to steal your AI's access keys.. Then on May 19.. They revealed the GitHub breach.. 4,000 internal repositories.. Listed for sale at $50,000.. With a warning.. "If nobody buys it.. We leak everything for free".. Their malware is self-propagating.. Once it infects one package.. It automatically finds every other package that developer maintains.. Steals the publish tokens.. And infects all of them.. Then those packages infect the next developer.. And the next.. It jumps between npm and PyPI automatically.. The group doesn't even do the extortion themselves.. They sell stolen credentials to ransomware gangs.. One gang used TeamPCP's data to threaten Cisco with leaking FBI and NASA personnel records.. And the scariest part of all.. They didn't break any encryption.. They didn't find any zero-days.. They exploited the fact that the entire software industry blindly trusts its own build tools.. Every security scanner.. Every Docker image.. Every VS Code extension.. Every GitHub Action.. Is a potential weapon if someone poisons it upstream.. And right now.. Nobody can tell the difference between a legitimate build and a compromised one.. Because the compromised ones have valid signatures too.
May 19
We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
168
1,006
3,251
618,207
Fox Reymann retweeted
🚨 Anthropic just showed a 24-minute workshop on how to actually do prompts for Claude. Taught by the people who built it. Free. No registration. No paywall. I've seen $300 courses that don't cover what they teach in the first 8 minutes. Watch it and bookmark it now.
57
599
4,033
633,751
Fox Reymann retweeted
100% utilization rate of $ZEC - $NEAR pool on @rhea_finance AMM and 30% utilization rate on RHEA's $ZEC $USDC CLMM with 795% APY > RHEA's AMM LP leveraged by solver to provide trade > CLMM only trade happen on NEAR Upcoming -> solver will be able to leverage RHEA's Lending pool to provide liquidity on trades 🌓
NEAR Intents has now processed more than $1.5 billion of Zcash flows 🛡️
5
5
64
58,046
Rhea Finance hacker returned the funds. Rhea has asked: "Hi, could you please return the funds to the following addresses: 0x237e67d9cAcAD42b4aCE31d61f444d14BEA78E39 on ethereum, TGRqAfvnm2j8HbGd3mNRHHs1gMyfXVUuQZ on tron, t1KsyGrJMo6K6MJc2RSdZKXSuTozJ4M9iJ4 on zec"
1
1
122
Fox Reymann retweeted
This was a right thing to do, sir. Thanks for returning the money.
We have identified you, sir. Maybe I even followed you. Maybe not. Return the funds now.
45
32
203
51,452
Fox Reymann retweeted
Tether froze 3.29M USDT to the hackers. Tether cares.
#CertiKInsight 🚨 We have seen an incident affecting @rhea_finance The attacker created fake token contracts and added liquidity in fresh pools, likely misleading the oracle and validation layer. In total, at least ~$7.6M was extracted nearblocks.io/address/31ac7a…
133
106
1,464
315,971
Rhea Finance on $NEAR hacked. Near Intents down as hackers are laundering money via Near Intents.
1
1
2
301
#UK in a war against IRAN, #Nawrocki vetoed SAFE, any other solution than anarchy?
78
COCA card for my wife. #LoveWithCOCA. This valentines let her spend these stables. ⁦@coca_wallet
1
1
10
580
@coca_wallet#MyCOCAcard admires iconic UFO arena while visiting #Katowice
1
4
159
@coca_wallet⁩ Emergency! My cat took #MyCOCAcard. Please send a new one ;)
1
10
802