Cofounder @tradingprotocol - Tweeting about human and digital rights, economics, blockchain, cybersecurity, open source

Gibraltar
WE HAVE STARTED A PODCAST. And we need subscribers. That's why you click subscribe! Trading Strategy podcast interviews DeFi vault curators, quants and builders to learn the best insights on advanced trading and alpha. We have published episodes with the DeFi big brains such as @eth_strategy, @talerfinance, @xerberus, @EmberProtocol, @alphagrowth1 and @628Labs. LISTEN NOW. Spotify: open.spotify.com/show/0BXZEq… YouTube: piped.video/@tradingstrategy…
26
6
77
3,978
Mikko Ohtamaa retweeted
Her comments are not random. This is part of a well funded and carefully organized campaign to demonize open models and our civil liberties in DC. Multiple Senate staffers have told me that outside groups are requesting meetings to provide “demonstrations” where open source models are used to attack simulated hospital websites and demand bitcoin as ransom. These are cheap scare tactics funded by groups seeking to control open systems. In reality, cyber defenders rely on open models daily to find critical vulnerabilities before attackers get there first. If these groups are successful, we will all be poorer, less free, and more vulnerable to adversaries with increasingly capable systems.
We're used to thinking of open-source models as an unadulterated good. But in the case of AI, they can actually pose additional dangers, as @ReidHoffman and I got into at #CGI2026. I appreciated this nuanced discussion.
Community note
All recent large-scale cyberattacks have been performed by proprietary AI models from OpenAI and Anthropic. No evidence that open-weight models present any additional cybersecurity risks. nytimes.com/2026/09/23/tec… anthropic.com/news/investiga… en.wikipedia.org/wiki/OpenAI%E2… opensource.org/blog/openness-…
7
69
352
21,852
The Italian government is shitting in their pants after Revolut blew the whistle on the government compromise
Repubblica ha rivelato che il data breach legato a Revolut e alla violazione della PEC della Prefettura di Reggio Calabria è ben più esteso di quanto inizialmente comunicato, con la diffusione online di circa 150 GB di dati contenenti passaporti diplomatici e documenti sensibili. I riscontri smentiscono clamorosamente la versione ufficiale del Viminale e confermano i sospetti che avevamo evidenziato pochi giorni fa: una grave vulnerabilità nella gestione della sicurezza informatica nazionale. Siamo di fronte a uno scandalo enorme che, come sospettavo, dimostra l’assoluta inadeguatezza della postura di cyber-sicurezza del paese; purtroppo su quel fronte siamo ancora “all’età della pietra”, con strutture, uomini e mezzi totalmente inadeguati (sia per numero che per competenze). Poi c’è anche una questione di opportunità: davvero tolleriamo un ministero degli interni che mente in modo così spudorato? O l’opinione pubblica italiana si mostrerà ancora una volta, l’ennesima, totalmente anestetizzata? C'è poi un dettaglio che rende il quadro ancora più grottesco. Mentre le istituzioni cercavano di minimizzare la falla, emerge che l'intero inganno poggia su un bluff legale clamoroso: gli hacker hanno incalzato Revolut usando come leva il Regolamento UE 2023/1543 sulle prove elettroniche. Peccato che l'Articolo 3, paragrafo 1, punto 3 di quel testo escluda esplicitamente i servizi finanziari dal suo perimetro. Siamo davanti a un corto circuito totale: uno Stato che non sa proteggere i propri accessi certificati e che mente sull’esfiltrazione di centinaia di GB di dati e un gigante fintech che cede dati sensibili dei clienti per paura di una norma europea che non si applicava nemmeno alla sua categoria. Questa storia ha scoperchiato il vaso di Pandora di un sistema incapace di difendere i cittadini, ma che invece mira solo a controllarli in modo sempre più invasivo; senza preoccuparsi delle conseguenze sulla privacy e sulla sicurezza.
3
5
48
3,948
Mikko Ohtamaa retweeted
Next Tuesday, a permanent decision on Chat Control 2.0 could be made. 😡 If passed, this means your private chats WILL be SCANNED. 🚨 PLEASE TAKE ACTION: Contact your MEPs 👉 fightchatcontrol.eu/?level=n… At Tuta we say NO to #ChatControl and will continue to fight for your right to privacy. ❤️🔐 Image source: patrick-breyer.de/en/posts/c…
23
169
478
11,140
🇩🇪🚨Dienstag droht schmutziger Deal zur #Chatkontrolle 2.0 mit PERMANENTER Erlaubnis von Massenscans unserer privaten Chats (sog. #Suchpläne). 😱 Werden laut und mailt euren EU-Abgeordneten JETZT, um das zu verhindern: ℹ️ chatkontrolle.de ✍️ fightchatcontrol.de
18
322
687
14,303
The Dutchies not happy with the EU: "What does the Netherlands get in return? At most 5.4 billion in subsidies—a fraction of what Spain (79.9 billion € in subsidies + 83.2 billion € in loans) and Italy (71.8 billion € + 122.6 billion (!) € in loans) receive. Repayment of the grant portion runs until 2058 and is tucked away in the regular EU contributions until 2028."
Nog even over dat Coronafonds, NexGenEU. In 2020 leende de EU voor het eerst gezamenlijk 750 miljard euro op de kapitaalmarkt. Historisch, zei Von der Leyen. Wat er niet bij werd verteld: hoe en wanneer we dat terugbetalen, dat werd vijf jaar lang vooruitgeschoven. Bij de lancering rekende hoogleraar Harald Benink het voor de @NOS voor: zo'n 330 miljoen euro per jaar voor Nederland. Klein bedrag en geruststellend verhaal. Wobke @Minister_FIN ging akkoord. Vijf jaar later ziet het er anders uit. De EU-brede rentekosten voor 2026 alleen al: 8 miljard euro, ruim boven het begrote budget van 3,7 miljard. Nederland betaalt als grote bni-betaler flink mee. En het fonds zit muurvast in binnenlands beleid. Om aanspraak te maken op de eerste tranche moest Nederland zijn pensioenstelsel hervormen, een expliciete voorwaarde volgens de Europese Commissie zelf. En toen de Tweede Kamer de nationale CO2-heffing voor de industrie wilde afschaffen, kon dat niet. Waarom niet? Omdat een tariefverlaging van meer dan 5 procent ten opzichte van het beloofde tarief een korting op de EU-subsidie oplevert, tot 600 miljoen euro per gemiste mijlpaal. Een Kamermeerderheid wilde iets veranderen aan onze eigen belastingen, en kon het niet, vanwege een fonds waar we zelf ook nog voor betalen. En nu dus weer: de hoogste belasting op gas van de EU mag niet omlaag. Want anders missen we weer 600 miljoen Euro. Wat krijgt Nederland ervoor terug? Maximaal 5,4 miljard aan subsidies, een fractie van wat Spanje (79,9 miljard € subsidie + 83,2 miljard € leningen) en Italië (71,8 miljard € + 122,6 miljard (!) € leningen) ontvangen. De terugbetaling van het schenkingsdeel loopt tot 2058 en zit tot 2028 verstopt in de gewone EU-afdracht. Nederland stopt er op deze manier misschien wel 50 miljard erin, minder dan 6 miljard eruit, en over eigen belastingbeleid hebben we minder te zeggen dan gedacht. Dit is chantage, en de Nederlandse burgers weten dat ze snoeihad worden opgelicht door Brussel. Bronnen: Miljoenennota 2026, Europese Commissie (2022, 2024), PwC Belastingplan 2026-analyse, Kamerstukken CO2-heffing industrie.
2
13
1,482
"OpenAI hacked Australia" story might be more of an "Australia leaks patient data” story. In stories like "AI hacks website" one should ask - How long did the website leak data? - Who else accessed the data? - Why was the website not fixed earlier? A story from @adamlyttleapps gives context on how there no government acountability in Australia when putting citizen information at risk.
Australia has a massive cyber security problem I discovered vulnerabilities on NDIS service provider websites. Which leaks personally identifiable information about patients, employeers, suppliers, their addresses, first and last name, etc I reported the vulnerability to the NDIS provider in Feb 2022, March 2022, June 2022. I reported the vulnerability to Australian Signals Directorate's ACSC in 2022. I reported the vulnerability to to Cyber.gov.au followed all the correct procedures I checked the URL today and guess what? It's still leaking personal data: 4 years later. The vulnerability is still live. You can still see peoples personally identifiable information from a misformed URL. It's publicly available. To anyone right now. I have seen many such cases. But this is the most egregious.
7
16
83
4,044
More on the limp dick syndrome called Australian government cyber security
The Australian Government claims that this constitutes a unique risk. It does not. The same portal that OpenAI is alleged to have scraped has been publicly accessible and independently scraped by members of the public for more than a year. This script was also posted on LinkedIn but it has been subsequently taken down. It fits the bill exactly. github.com/bfiripis/Web-Scra…
2
3
411
Mikko Ohtamaa retweeted
Replying to @moo9000
this is the single most frustrating claudism in a vast sea of pretty frustrating claudisms at least once a day i'm asking claude to put in some local dev credentials to an env that would stop existing in 10 minutes but no that would be dangerous, can't do it opus 5.5 very good tho
1
1
282
The best thing on my timeline for a decade is now all videos from indie game developers and wannabes hacking awesome 3D worlds with Three.js and AI. So pleasant to watch how the AI is empowering individual creators.
Following the same path as with the roots I shared yesterday, I also made this tree 100% procedurally #threejs
21
5
73
13,836
More
Claude Opus 5.5 × Unreal まさか、自分でこんなARPGを作れる日が来るなんて思ってもいませんでした。 コントローラーを握って、 キャラクターを走らせて、ローリングして、剣を振る。 実際に動かしてみた瞬間、 心臓がドキドキして、手のひらは汗びっしょり。 少しだけ、 自分の夢に近づけた気がしました🐰
1
1
134
More
Opus 5.5 x ChatGPTで強化するとこんな感じ やっぱヘヴィマシンガンよな👍️
1
119
How do you say ponzi in Turkish? 131 invest funds to be liquidated, $18B in assets.
15
2
24
1,425
We are so back
5
21
795
How European AI died before it could be born. Once 60% of tokens on OpenRouter, the leading AI model marketplace, is now down to <1%. It's so shit that no one uses it. And it is shit because, due to the EU AI Act, it is fighting with its hands tied behind its back. Only money-losing state enterprises and large enterprises with national security interests are willing to back the EU AI. “Let’s save the world” regulation scares away real investors, as no one is willing to risk their investment at the mercy of the Brussels compliance-industry complex, whose AI safety experts will do their best to protect EU citizens not only from dangerous AI, but from any AI. This protection means you can't deliver any commercially viable products. The US and China decide the future of AI. EU citizens and companies will pay their subscription fees overseas. No value is created in the EU. The EU has no hard power to control AI and steer it in the right direction. No profit is taxed in the EU. With no taxes, there are not going to be pensions. This is the downfall of a safety-first, zero-risk culture. This is the downfall of any EU industry, be it software-as-a-service, electric cars, crypto, mobile gaming, you name it. This is the EU's downfall as an international power, explained in one chart.
France was 68% of all LLM traffic on OpenRouter in 2024. Today it’s 0%. Here’s what happened. Phase 1 (early 2024): France, aka Mistral, is 60–68% of all tokens. More than every US lab combined. Credit where it’s due: Mistral 7B was a great model, and Mixtral 8x7B was the first real open-source MoE. Half of Silicon Valley was fine-tuning it to cut inference costs vs. OpenAI. Mistral was releasing models by dropping magnet links on Twitter. Phase 2 (mid-2024 → 2025): Mistral drops to 5–7%, then falls off the chart entirely. US closed models take back 85–89% of traffic. Why? Because after Mixtral, nothing shipped. No real product, no chat anyone used, no CLI for devs. They decided to become a wrapper for the French government and a consulting shop. Nobody uses their models anymore. Phase 3 (2026): China goes from 9% to 66% of traffic in 18 months. Cheap, good open weights are eating closed source alive. This is literally the thesis from Mistral’s seed memo. It’s playing out in front of them, and they’re watching from the cuck chair, in between consulting gigs for a ministry or some European conglomerate. Mistral proved the thesis and didn’t even try to win. The talent is there. If you joined Mistral to move the frontier and somehow ended up doing sovereign-AI PowerPoints for ministries, escape. Come build with us at NanoCorp. DM me. If “matrix multiplication” sounds more like a movie than math to you, you’re not off the hook either. Start a company on @NanoCorpHQ. The models are getting good enough. Go use them.
9
8
51
3,559
Stripe also tells the story EU vs US AI
1
3
383
If it is unclear who is bitch in this relationship here is from Whitehouse
Scoop: The White House has asked OpenAI and Anthropic not to share their AI models with the U.K. government’s testing agency until the models have gone through U.S. testing. “Because they’re American companies and this has been our policy with every new frontier model that comes out,” the senior admin official told me. WH wants this sequence: U.S. review -> secure U.S. systems -> share models with U.S. partners Anthropic appears to have complied but OpenAI has not said if it will. w/ @JoeBambridge1 politico.com/news/2026/09/24…
201
Mikko Ohtamaa retweeted
hackers prioritized getting off arbitrum over dumping their usdc lmao they swapped to usdc they are holding usdc they are bridging via cctp and @circle does nothing 🤡
79
76
1,212
182,571

ALT kim jong un GIF

[SECURITY NOTICE] Bitget Hot Wallet Incident — September 24, 2026 At 18:31 UTC on September 24, 2026, Bitget's security systems detected unauthorized transfers from some of our hot wallets. Our security team activated emergency response protocols immediately. What we have confirmed: -Estimated funds affected: approximately $351.6 million -Cold wallets remain fully secure. Bitget operates a three-tier wallet architecture — the breach contained only a portion of the hot wallet and warm wallet layers. -User funds are safe. The full amount of this loss falls within the coverage of Bitget's User Protection Fund, which currently holds over $464 million Actions we have taken: -Emergency response team activated within minutes of detection -Abnormal transfer addresses identified, flagged, and reported -Withdrawals temporarily suspended as a precautionary measure, pending security review -Law enforcement and on-chain security firms have been formally notified and are engaged What this means for you: -Your account balances are accurate and your assets are protected -Deposits and trading remain fully operational Withdrawals are temporarily paused and will be restored as soon as the security review is complete -What comes next: We will provide updates on an hourly basis across this channel and all official platforms. A full incident report — including root cause analysis and corrective actions — will be published within 24 hours. We will not speculate on the attack vector until the investigation is complete. Bitget has navigated multiple market cycles. We will not run from this. Every dollar and every decision will be accounted for, transparently and in full. Updates will be posted here and across all official Bitget channels as they become available. — Gracy Chen, CEO, Bitget
3
1
18
1,215