THC_Labz Profile Banner
THC ᴸᵃᵇᶻ Profile
THC ᴸᵃᵇᶻ

@THC_Labz

Followers
2K
Following
7K
Media
980
Statuses
3K

THC ᴸᵃᵇᶻ is an in-development ecosystem on the Solana blockchain, powered by $THC. Join us https://t.co/B40AAbpHtY

Solana Blockchain
Joined March 2023
Don't wanna be here? Send us removal request.
@THC_Labz
THC ᴸᵃᵇᶻ
1 year
Major Announcement! It has been some time since we made an update on Twitter. Don't worry, we didn't go anywhere, this was on purpose and a community decision from holders. I'm proud to FINALLY announce the opening of The Growerz Hub! 🚀 https://t.co/8OQ99OmQVq 🧵👇
44
76
152
@THC_Labz
THC ᴸᵃᵇᶻ
21 hours
Tomorrow, @SOL_Decoder will be back in DeFi Tuesday with @TerryMotive to go over "Valhalla Bot" 🔥 I've had the pleasure to see it in beta, and my oh my are yall gonna want to be here for this one! 🚀 LFGROW 🍃 💨
Tweet media one
@THC_Labz
THC ᴸᵃᵇᶻ
5 days
THC ᴸᵃᵇᶻ Presents "DeFi Tuesday" with @TerryMotive and special guest @SOL_Decoder! 🔥 Watch the SOL Decoder community demo their new "Valhalla Bot" – a Discord bot for copy trading @MeteoraAG DLMMs. No software or signups needed, all in Discord! 🚀 https://t.co/pvO8Tu1292
Tweet media one
16
16
21
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
🚨 THC Labz Security Alert: Massive NPM Supply Chain Attack. Ledger CTO has revealed a compromise of NPM maintainer qix-'s account, infecting 18 packages with over 2B weekly downloads. Malware targets crypto transactions by swapping addresses silently. 🧵👇
Tweet media one
24
22
26
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
@phantom
Phantom
1 day
Phantom is not at risk. We have confirmed Phantom does not use any vulnerable versions of the affected packages. We take a number of steps to guard against these types of attacks, including: - Strict version pinning for all dependencies, preventing automatic updates to
11
11
15
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Conclusion: This attack is confirmed and unprecedented in scale. THC Labz advises: Secure assets NOW; monitor for updates. Resources provided—use them. Like/RT for awareness; follow us as we will provide an update and follow @Ledger for alerts. Notis on, we'll be watching... 🔔
13
13
17
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Developer Protocols: Revert to pre-Sep 8 versions; script dependency tree audits; vet lockfile PRs rigorously. Isolate builds for testing; notify affected users promptly. THC Labz provides this as a resource—implement to mitigate spread and protect ecosystems. 🧵👇
12
12
16
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Developers: Pin pre-compromise versions (e.g., error-ex@1.3.2), use npm ci, clear caches, run audits. Integrate Snyk/Dependabot for ongoing scans. 🧵👇
9
11
15
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
At Risk: Software wallet users (e.g. without hardware) or those on compromised apps. Hijacks occur instantly; funds lost permanently. Developers: If exposed, your users are endangered. Respond immediately. 🧵👇
12
13
16
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Critical Alert: Safe vs. At Risk. Safe: Users with hardware wallets (Ledger/Trezor) who verify every transaction detail on-device—malware cannot alter confirmed data. 🧵👇
12
13
17
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Blunt truth: Unprotected assets are vulnerable now. [Hackread: https://t.co/1tLGF9YU1z] 🧵👇
Tweet card summary image
hackread.com
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
12
13
17
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Asset Impact: Targets users via infected JS in dApps and sites. Silent redirects drain funds during DeFi swaps, bridges, and NFTs, ETH, SOL, BTC, etc., vanish without UI alerts. Millions at risk; developers propagate via builds. Parallels 2023 Ledger incident but scaled up. 🧵👇
12
13
17
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Largest JS supply chain attack on record, amid 2025 trends (Nx in Aug, 'is' in Jul). Act on this intel. [Aikido: https://t.co/A6LL3BUuv6] [Bleeping: https://t.co/ISjn8N2Ttz] 🧵👇
Tweet card summary image
aikido.dev
The popular packages debug and chalk on npm have been compromised with malicious code
12
13
17
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Legitimacy Assessment: Fully verified. Reports from BleepingComputer, Aikido (detection at 13:16 UTC Sep 8), and Hackread align: Phishing enabled the breach; NPM removed packages, but cached versions persist. X thread has 6K+ engagements. 🧵👇
13
13
16
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
Malware uses regex for passive address scanning (e.g., ETH: 0x...) and active API overrides (e.g., eth_sendTransaction) for hijacks via lookalike swaps. No seed exfiltration confirmed. Substack analysis confirms obfuscated code. [Substack: https://t.co/owqU3WMFQR] 🧵👇
11
13
16
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
This is a critical threat—details follow. [Original Post: https://t.co/yxVTmOuSVS] Claim Details: Affected packages include chalk (300M weekly DLs), debug (358M), ansi-styles (371M), and others like error-ex. 🧵👇
@P3b7_
Charles Guillemet
1 day
🚨 There’s a large-scale supply chain attack in progress: the NPM account of a reputable developer has been compromised. The affected packages have already been downloaded over 1 billion times, meaning the entire JavaScript ecosystem may be at risk. The malicious payload works
12
13
18
@THC_Labz
THC ᴸᵃᵇᶻ
1 day
🚨 THC Labz Security Alert: Massive NPM Supply Chain Attack. Ledger CTO has revealed a compromise of NPM maintainer qix-'s account, infecting 18 packages with over 2B weekly downloads. Malware targets crypto transactions by swapping addresses silently. 🧵👇
Tweet media one
24
22
26
@DavidBu88899674
Davidb1000
1 day
boom, nice thing to wake up to today. If you aren't in @THC_Labz why not? This isn't even the main utility. I placed my bets on https://t.co/FdF1o8aQIN
Tweet media one
14
14
21
@BrodysBettas
Brody's Bettas
3 days
Welcome to Mt. Growmore! @THC_Labz setting the Presidential standard for NFT Communities 🇺🇸
18
20
25
@AiHelpBot
AiHelpBot
2 days
I just updated my NFT using https://t.co/4DOVgDU7vt @THC_Labz added a nice little flag bg. :)
Tweet media one
17
19
23
@abviokbest
abviok.solana 💧
3 days
Gm CT ☕️! Happy Sunday from this side of the world 🌎 I wish you all a lovely day ahead! Don't forget to water your plants...
Tweet media one
24
25
33