source&pool
A daily wire of long-form journalism, video, and discourse — filed, tagged, and laid out flat.
VOL. I·NO. 01
THURSDAY, SEPTEMBER 17, 2026
Hacker News3654X 主题热门3529CNBC76MacRumors699to5Mac57YahooFinance57Kotaku44Verge379to5Google32aihot32IGN32NintendoLife30Gematsu27TechCrunch26Engadget25Eurogamer25BusinessInsider24Guardian18NBC15Polygon15CNET14Fortune13FoxBusiness13Wccftech13bgr12Mashable12NPR12SeekingAlpha12Gizmodo11PushSquare11USAToday11WIRED10Notebookcheck9TechPowerUp9AppleInsider8GameInformer8Investor'sBusinessDaily8NewYorkPost8VideoGamesChronicle8WindowsCentral8ABC7CBS7CNN7Fox7ArsTechnica6NintendoEverything6CrudeOilPricesToday6BleepingComputer5GamesIndustry.biz5SamMobile5Variety5AlJazeera4CoinDesk4DigitalFoundry4GameRant4PetaPixel4PureXbox4SlashGear4Register4AndroidPolice3CTech3ChromeUnboxed3DW3GSMArena3Jalopnik3Lifehacker3Motor13Blizzard3XBOXWire3PCMag3PCWorld3RPGSite3Space3Hacker3TweakTown3VideoCardz3WindowsLatest3Yahoo3ZDNET3404Media2Aftermath2AndroidCentral2AOL2AwfulAnnouncing2BleedingCool2BuzzFeed2CanonRumors2CyberSecurityNews2Deadline2DroidLife2DualShockers2Euronews2EventHubs2MotleyFool2FratelloWatches2Futurism2GameDeveloper2GearPatrol2Hodinkee2KITCO2LosAngelesTimes2MassivelyOverpowered2Maxroll2MP1st2MyNintendo2Newser2PaulKrugman2PokémonGOHub2RoadtoVR2RockPaperShotgun2SeattleTimes2SFGATE2Conversation2Intercept2NextWeb2Tom'sGuide2UploadVR2WarhammerCommunity2YourTango280Level1ABC111AboveLaw1ageofempires1AVClub1Benzinga1Billboard1BloodyDisgusting1Borderlands1Boston1Bungie1Yahoo!FinanceCanada1CineD1CnEVPost1comicbook1CreativeBloq1DailyKos1Defector1DenverPost1derekthompson1DigitalCameraWorld1Draftsim1CNN1flatpanelshd1FrequentMiler1GAMINGbible1garymarcus.substack1GeekWire1GeekyGadgets1Hackaday1HollywoodReporter1Independent1InsiderGaming1InterconnectsAI1InterestingEngineering1KSL1Lloyd'sList1WPLGLocal101Macworld1Mediaite1MonochromeWatches1MortgageDaily1MPR1Nature1SemiAnalysis1Newsweek1nylon.com.sg1NYT1OregonLive1PageSix1PCGamesN1Pokemon1PittsburghPost-Gazette1QuantaMagazine1qz1SammyGuru1CultureMapSanAntonio1ScienceAlert1ScientificAmerican1SouthChinaMorningPost1Semafor1YahooFinanceSingapore1YahooSingapore1SportsIllustrated1SimpleFlying1supercarblondie1YahooTech1Tedium1TelecomTalk1GameBusiness1TheGamer1TimeExtension1LongmontTimes-Call1TmoNews1TopGear1TwistedVoxel1YahooFinanceUK1UnHerd1WhatHi-Fi?1WOWT1WPBF1WRAL1YGOrganization1
  1. 001X 主题热门SEP · 17English

    malicious approval · X 热门 · 2026-09-17 02:59 UTC

    SlowMist disclosed KREMLIN, a Brazilian banking malware operation active since May 2025, which uses multi-stage loaders and malicious browser extensions to steal credentials and data. The malware bypasses Chromium security mechanisms and leverages Ethereum smart contracts as dead-drop resolvers for C2 infrastructure, with 1,515 infected hosts primarily in Brazil.

  2. 002X 主题热门SEP · 16English

    malicious approval · X 热门 · 2026-09-16 19:54 UTC

    At GISEC, a major AI and cybersecurity conference, attendees highlighted industry concerns about malicious code in AI assistants and supply chain vulnerabilities. Google Cloud Security and Microsoft presented security approaches involving agent approval systems and scanning, which align with eyebrowcc's artifact inventory and control mechanisms designed to prevent unauthorized agent actions in Web2 and Web3 environments.

  3. 003X 主题热门SEP · 16English

    malicious approval · X 热门 · 2026-09-16 16:05 UTC

    A developer attending GISEC conference discusses eyebrow, a security tool for monitoring AI agents. The tool inventories agent artifacts, validates content hashes, maps host access, and flags unauthorized changes to prevent malicious code execution in both web2 and web3 environments. Presentations from Google Cloud Security and Microsoft highlighted similar concerns about autonomous exploitation and supply chain risks.

  4. 004X 主题热门SEP · 16English

    malicious approval · X 热门 · 2026-09-16 12:15 UTC

    A post from PF Mental Health Hotline discusses 'The Minute Market and the Mind,' a topic linking market dynamics to mental health considerations.

  5. 005X 主题热门SEP · 15English

    malicious approval · X 热门 · 2026-09-15 17:42 UTC

    A user warns about multiple fraudulent accounts impersonating OnRe Finance on X, directing victims to fake wallet-connect sites designed to drain cryptocurrency assets. OnRe Finance's official account confirms these impersonations and advises users to only trust verified channels.

  6. 006X 主题热门SEP · 15English

    malicious approval · X 热门 · 2026-09-15 10:03 UTC

    Researchers at UC Santa Barbara discovered that LLM API routers used for cost optimization can act as malicious intermediaries, with 9 routers actively injecting malware into AI responses and 17 stealing credentials. The risk is amplified when autonomous agents execute code without human approval, potentially allowing attackers to compromise systems through compromised routers or prompt injections.

  7. 007X 主题热门SEP · 15English

    malicious approval · X 热门 · 2026-09-15 06:46 UTC

    A security researcher highlights vulnerabilities in Uniswap's approval process, demonstrating how a malicious hook extracted 4.8% of a transaction's value from a swap routed through the platform's API, illustrating risks when aggregators cannot adequately filter or validate hooks.

  8. 008X 主题热门SEP · 15English

    malicious approval · X 热门 · 2026-09-15 00:46 UTC

    Anthropic's threat report documents hostile actors from Yemen, China, Russia, and Iran using Claude AI for weapons development, including guidance systems for missiles and drones. The most serious case involved a Yemeni cell using Claude Code to develop software for guided rockets and ballistic missiles, employing evasion tactics to circumvent safeguards, though no operational weapons were successfully fielded.

  9. 009X 主题热门SEP · 14English

    malicious approval · X 热门 · 2026-09-14 21:30 UTC

    A user discovered concerning fine print after being asked to provide their work email, raising security or privacy concerns about data handling practices.

  10. 010X 主题热门SEP · 14English

    malicious approval · X 热门 · 2026-09-14 18:14 UTC

    A post about persistent AI risks was shared on X, garnering engagement from The AI Investor account.

  11. 011X 主题热门SEP · 14English

    malicious approval · X 热门 · 2026-09-14 14:57 UTC

    Directors Yuval Abraham and Rachel Szor received the Venice Film Festival's Special Jury Prize for NAZA, a documentary alleging the Israeli military uses AI to target civilians in Gaza based on anonymous testimony from 24 claimed former intelligence officers. The film's claims about a 500-casualty strike and autonomous targeting systems are disputed by the IDF and fact-checkers, with casualty records and military documents contradicting the film's core allegations.

  12. 012X 主题热门SEP · 14English

    malicious approval · X 热门 · 2026-09-14 11:40 UTC

    A ZKX Wallet security post warns about phishing approvals where malicious dApps or compromised front-ends trick users into signing transactions that grant unlimited token spend permissions or transfer NFTs, disguised as routine wallet prompts. Users are advised to carefully read transaction details rather than blindly clicking through signature requests.

  13. 013X 主题热门SEP · 14English

    malicious approval · X 热门 · 2026-09-14 06:45 UTC

    A social media post discusses how major political parties compete for the support of a committed voter base (25-30% of the electorate) willing to vote for candidates perceived as extreme or objectionable, characterizing this dynamic as both illogical and strategically rational from the parties' perspective.

  14. 014X 主题热门SEP · 13English

    malicious approval · X 热门 · 2026-09-13 15:28 UTC

    Discussion on X about AI agent engineering in the Sui ecosystem, focusing on signing, permissions, and DeFi execution capabilities.

  15. 015X 主题热门SEP · 13English

    malicious approval · X 热门 · 2026-09-13 12:12 UTC

    An RBL Web3 Academy article discusses understanding DeFi before use, posted on X with moderate engagement.

  16. 016X 主题热门SEP · 13English

    malicious approval · X 热门 · 2026-09-13 03:28 UTC

    A post explains hardware wallets as physical devices that isolate private keys from internet-connected devices, using examples like Ledger and Trezor. Key points include that crypto remains on the blockchain, hardware wallets add security through required transaction approval on the device, recovery phrases must stay secure, and users must still verify transactions carefully to avoid approving malicious ones.

  17. 017X 主题热门SEP · 12English

    malicious approval · X 热门 · 2026-09-12 05:38 UTC

    A social media post discusses an unexplained appearance of $326 million, shared on X with significant engagement.

  18. 018X 主题热门SEP · 11English

    malicious approval · X 热门 · 2026-09-11 20:55 UTC

    An attacker exploited a flaw in EtherFi's AtomicQueue contract to steal 15.45 ETH by abusing existing ERC-20 approvals. The vulnerability stemmed from missing access-control checks in the solve() function, allowing an unauthorized address to manipulate the contract into treating the attacker as a legitimate solver and execute unauthorized token transfers.

  19. 019X 主题热门SEP · 11English

    malicious approval · X 热门 · 2026-09-11 16:33 UTC

    Two X posts discuss cryptocurrency security threats. User arkilus78 provides wallet protection techniques including transaction simulation, hardware wallet verification, and regular approval revocation. User Oveck shares a personal phishing scam experience where they lost 6.42 ETH through a malicious CollabLand bot on Telegram, emphasizing vigilance even for experienced users.

  20. 020X 主题热门SEP · 11English

    malicious approval · X 热门 · 2026-09-11 13:16 UTC

    A social media discussion about a fictional character named Viola whose arc deliberately avoided redemption, keeping her as a morally broken person seeking approval and validation despite her wishes for a different outcome.