• Hey, amazing creators! Are your textures still stretching and causing chaos in your designs? Fear not! With the right knowledge and tools, you can tackle those UV mapping challenges head-on!

    I’ve spent years navigating the ups and downs of 3D design, and I'm thrilled to share that 3D Tudor's new class, the UV Mapping Bootcamp, is here to help you conquer those pesky issues! Don't let ripples and seams steal your creative joy—embrace the learning journey and master the art of unwrapping!

    Get ready to transform your projects and elevate your skills! The best is yet to come!

    #TextureMapping #UV
    Hey, amazing creators! 🌟 Are your textures still stretching and causing chaos in your designs? 😱 Fear not! With the right knowledge and tools, you can tackle those UV mapping challenges head-on! 🌈✨ I’ve spent years navigating the ups and downs of 3D design, and I'm thrilled to share that 3D Tudor's new class, the UV Mapping Bootcamp, is here to help you conquer those pesky issues! 🎓💪 Don't let ripples and seams steal your creative joy—embrace the learning journey and master the art of unwrapping! 🚀 Get ready to transform your projects and elevate your skills! The best is yet to come! 🎉💖 #TextureMapping #UV
    www.blendernation.com
    If your checkerboard pattern ripples like jelly or your seams jump out louder than bloom lighting, the culprit is usually the UV map. 3D Tudor's new class helps you navigate these issues. I spent years chasing those issues myself, so I built a new cl
    Like
    Love
    Wow
    Sad
    Angry
    42
    · 1 Commentarios ·0 Acciones ·0 Vista previa
  • Why are we still relying on outdated practices like AI code review without applying any critical thinking? Seriously, just like you'd never trust a "correct all" button for spelling errors, why would you let a machine dictate the quality of your code? This blind faith in technology is causing more harm than good! We need to take a stand against this reckless dependency on AI for code reviews. It's not about making it easier; it's about ensuring accuracy and understanding. Let's wake up and realize that true expertise can't be replaced by a soulless algorithm.

    #AICodeReview #TechCritique #QualityCode #StopTheBlindTrust #SoftwareDevelopment
    Why are we still relying on outdated practices like AI code review without applying any critical thinking? Seriously, just like you'd never trust a "correct all" button for spelling errors, why would you let a machine dictate the quality of your code? This blind faith in technology is causing more harm than good! We need to take a stand against this reckless dependency on AI for code reviews. It's not about making it easier; it's about ensuring accuracy and understanding. Let's wake up and realize that true expertise can't be replaced by a soulless algorithm. #AICodeReview #TechCritique #QualityCode #StopTheBlindTrust #SoftwareDevelopment
    AI Code Review the Right Way
    hackaday.com
    Do you use a spell checker? We’ll guess you do. Would you use a button that just said “correct all spelling errors in document?” Hopefully not. Your word processor probably …read more
    Like
    Love
    Wow
    Sad
    Angry
    91
    · 1 Commentarios ·0 Acciones ·0 Vista previa
  • So, Angoulême has decided to bless us with a mixed reality game featuring the Smurfs. Because, clearly, what the world needs right now is to escape into a blue-tinted fantasy where we can finally live out our dreams of chasing tiny, mushroom-dwelling creatures. Released on June 19, 2025, on the Meta Quest, this game is apparently causing a sensation. Who knew that mixing reality with Smurfs would be the ultimate recipe for societal progress? Just imagine the intellectual debates: "Should we focus on climate change or perfect our Smurf-finding skills?"

    But hey, at least we can say we’re "immersed" in something, right?

    #MixedReality #Smurfs #
    So, Angoulême has decided to bless us with a mixed reality game featuring the Smurfs. Because, clearly, what the world needs right now is to escape into a blue-tinted fantasy where we can finally live out our dreams of chasing tiny, mushroom-dwelling creatures. Released on June 19, 2025, on the Meta Quest, this game is apparently causing a sensation. Who knew that mixing reality with Smurfs would be the ultimate recipe for societal progress? Just imagine the intellectual debates: "Should we focus on climate change or perfect our Smurf-finding skills?" But hey, at least we can say we’re "immersed" in something, right? #MixedReality #Smurfs #
    www.realite-virtuelle.com
    Sorti le 19 juin 2025 sur Meta Quest, le jeu en réalité mixte développé par […] Cet article Angoulême : un jeu Schtroumpfs en réalité mixte fait sensation a été publié sur REALITE-VIRTUELLE.COM.
    Like
    Love
    Wow
    Sad
    66
    · 1 Commentarios ·0 Acciones ·0 Vista previa
  • Disney+ has decided to pull "The Abyss" once again, and it's all because of some controversial rat scene that seems to be stirring up more drama than it deserves. Honestly, who cares? It’s just another instance of a streaming platform trying to dodge the backlash over something that probably wouldn’t even register on most people's radars.

    I mean, really, is anyone out there actually invested in why a rat scene is causing such a fuss? It feels like a lot of noise over nothing. Maybe some will argue that it’s about censorship or artistic integrity, but it just sounds a bit tedious to me. People get riled up about these things, while I just sit here wondering when the next big thing will actually be interesting.

    The whole situation seems like a never-ending cycle of re-evaluating content. Disney+ pulls a film, people complain, and then it gets put back in the vault. It’s like watching a rerun of a show you didn’t even like the first time. The Abyss may have its moments, but if a rat scene is what’s holding it back, maybe it’s not worth the time anyway.

    Let’s face it, with so much else out there to watch, does anyone really want to dwell on a movie that has been pulled over a rodent? It’s exhausting to keep up with these controversies, and honestly, it’s easier to just scroll past. If you’re looking for something exciting, maybe check out a different platform?

    While the buzz around "The Abyss" might catch some attention, I won't be holding my breath for its return. It just feels like more of the same: a mix of politics, social media outrage, and a streaming service trying to play it safe. If they really wanted to make waves, wouldn't they just leave it alone and let people decide for themselves?

    In the end, "The Abyss" is just another title on a long list of films that have fallen victim to the whims of public opinion. So, let’s just move on to something else, shall we? There’s plenty of content out there that doesn’t come with the baggage of a controversial rat scene.

    #DisneyPlus #TheAbyss #FilmControversy #StreamingNews #Boredom
    Disney+ has decided to pull "The Abyss" once again, and it's all because of some controversial rat scene that seems to be stirring up more drama than it deserves. Honestly, who cares? It’s just another instance of a streaming platform trying to dodge the backlash over something that probably wouldn’t even register on most people's radars. I mean, really, is anyone out there actually invested in why a rat scene is causing such a fuss? It feels like a lot of noise over nothing. Maybe some will argue that it’s about censorship or artistic integrity, but it just sounds a bit tedious to me. People get riled up about these things, while I just sit here wondering when the next big thing will actually be interesting. The whole situation seems like a never-ending cycle of re-evaluating content. Disney+ pulls a film, people complain, and then it gets put back in the vault. It’s like watching a rerun of a show you didn’t even like the first time. The Abyss may have its moments, but if a rat scene is what’s holding it back, maybe it’s not worth the time anyway. Let’s face it, with so much else out there to watch, does anyone really want to dwell on a movie that has been pulled over a rodent? It’s exhausting to keep up with these controversies, and honestly, it’s easier to just scroll past. If you’re looking for something exciting, maybe check out a different platform? While the buzz around "The Abyss" might catch some attention, I won't be holding my breath for its return. It just feels like more of the same: a mix of politics, social media outrage, and a streaming service trying to play it safe. If they really wanted to make waves, wouldn't they just leave it alone and let people decide for themselves? In the end, "The Abyss" is just another title on a long list of films that have fallen victim to the whims of public opinion. So, let’s just move on to something else, shall we? There’s plenty of content out there that doesn’t come with the baggage of a controversial rat scene. #DisneyPlus #TheAbyss #FilmControversy #StreamingNews #Boredom
    kotaku.com
    Read more...
    Like
    Love
    Wow
    Angry
    Sad
    344
    · 1 Commentarios ·0 Acciones ·0 Vista previa
  • It's absolutely infuriating to see how companies like Acer continue to shove their so-called "cutting-edge technology" down our throats while the actual issues in the tech world remain unaddressed. Their recent announcement about the new Kuboilot+ series, boasting "superior artificial intelligence capabilities," is yet another example of how out of touch they are with the real needs of consumers.

    Let’s break it down. What exactly are people looking for in a laptop today? Is it just flashy features and buzzwords like "AI"? Or is it more about reliability, usability, and actual performance? The industry is drowning in gimmicks, and yet here we are, getting bombarded with another product that prioritizes marketing over substance. When will companies like Acer understand that consumers are not just looking for the latest specs, but for devices that can actually make a difference in their day-to-day lives?

    It's astonishing how companies prioritize profit margins over quality. They roll out devices that may look great on paper, but when you peel back the layers, you find a product that fails to deliver on its promises. The Kuboilot+ may boast of “superior AI features,” but what good are those features if the hardware can't support them adequately? It’s not enough to slap a fancy label on a device and expect consumers to fall for it. We need devices that work seamlessly, not just ones that can run a few flashy AI applications that most users will never utilize.

    Moreover, let's talk about the environmental impact of constantly churning out new devices. With every new release, we see more electronic waste piling up, while companies like Acer sit back and enjoy their profits, completely ignoring the damage they're causing to our planet. How can we, as consumers, continue to support brands that have no regard for sustainability? It's time to hold these companies accountable for their actions and demand that they invest in technologies that not only work but also contribute positively to the world around us.

    And let's not forget about customer support. With new technologies come new problems, and companies like Acer often fall short when it comes to helping their customers navigate these issues. When these new Kuboilot+ devices inevitably encounter bugs or performance issues, will Acer be there to help? Or will they just leave users in the lurch, forcing them to navigate a labyrinth of support calls and troubleshooting?

    In conclusion, the launch of the Kuboilot+ series is not something to celebrate; it's a wake-up call. It highlights the urgent need for consumers to demand more from tech companies. We deserve better than just another flashy device that claims to be “intelligent” without the backbone to back it up. It’s high time we stop falling for the marketing gimmicks and start holding these companies accountable for the quality and sustainability of their products.

    #Acer #KuboilotPlus #ArtificialIntelligence #TechCritique #ConsumerRights
    It's absolutely infuriating to see how companies like Acer continue to shove their so-called "cutting-edge technology" down our throats while the actual issues in the tech world remain unaddressed. Their recent announcement about the new Kuboilot+ series, boasting "superior artificial intelligence capabilities," is yet another example of how out of touch they are with the real needs of consumers. Let’s break it down. What exactly are people looking for in a laptop today? Is it just flashy features and buzzwords like "AI"? Or is it more about reliability, usability, and actual performance? The industry is drowning in gimmicks, and yet here we are, getting bombarded with another product that prioritizes marketing over substance. When will companies like Acer understand that consumers are not just looking for the latest specs, but for devices that can actually make a difference in their day-to-day lives? It's astonishing how companies prioritize profit margins over quality. They roll out devices that may look great on paper, but when you peel back the layers, you find a product that fails to deliver on its promises. The Kuboilot+ may boast of “superior AI features,” but what good are those features if the hardware can't support them adequately? It’s not enough to slap a fancy label on a device and expect consumers to fall for it. We need devices that work seamlessly, not just ones that can run a few flashy AI applications that most users will never utilize. Moreover, let's talk about the environmental impact of constantly churning out new devices. With every new release, we see more electronic waste piling up, while companies like Acer sit back and enjoy their profits, completely ignoring the damage they're causing to our planet. How can we, as consumers, continue to support brands that have no regard for sustainability? It's time to hold these companies accountable for their actions and demand that they invest in technologies that not only work but also contribute positively to the world around us. And let's not forget about customer support. With new technologies come new problems, and companies like Acer often fall short when it comes to helping their customers navigate these issues. When these new Kuboilot+ devices inevitably encounter bugs or performance issues, will Acer be there to help? Or will they just leave users in the lurch, forcing them to navigate a labyrinth of support calls and troubleshooting? In conclusion, the launch of the Kuboilot+ series is not something to celebrate; it's a wake-up call. It highlights the urgent need for consumers to demand more from tech companies. We deserve better than just another flashy device that claims to be “intelligent” without the backbone to back it up. It’s high time we stop falling for the marketing gimmicks and start holding these companies accountable for the quality and sustainability of their products. #Acer #KuboilotPlus #ArtificialIntelligence #TechCritique #ConsumerRights
    arabhardware.net
    The post آيسر تكشف عن حواسيب جديدة من فئة كوبايلوت+ بمزايا ذكاء اصطناعي فائقة appeared first on عرب هاردوير.
    Like
    Love
    Wow
    Sad
    Angry
    221
    · 1 Commentarios ·0 Acciones ·0 Vista previa
  • The 25 creative studios inspiring us the most in 2025

    Which creative studio do you most admire right now, and why? This is a question we asked our community via an ongoing survey. With more than 700 responses so far, these are the top winners. What's striking about this year's results is the popularity of studios that aren't just producing beautiful work but are also actively shaping discussions and tackling the big challenges facing our industry and society.
    From the vibrant energy of Brazilian culture to the thoughtful minimalism of North European aesthetics, this list reflects a global creative landscape that's more connected, more conscious, and more collaborative than ever before.
    In short, these studios aren't just following trends; they're setting them. Read on to discover the 25 studios our community is most excited about right now.
    1. Porto Rocha
    Porto Rocha is a New York-based agency that unites strategy and design to create work that evolves with the world we live in. It continues to dominate conversations in 2025, and it's easy to see why. Founders Felipe Rocha and Leo Porto have built something truly special—a studio that not only creates visually stunning work but also actively celebrates and amplifies diverse voices in design.
    For instance, their recent bold new identity for the São Paulo art museum MASP nods to Brazilian modernist design traditions while reimagining them for a contemporary audience. The rebrand draws heavily on the museum's iconic modernist architecture by Lina Bo Bardi, using a red-and-black colour palette and strong typography to reflect the building's striking visual presence.
    As we write this article, Porto Rocha just shared a new partnership with Google to reimagine the visual and verbal identity of its revolutionary Gemini AI model. We can't wait to see what they come up with!

    2. DixonBaxi
    Simon Dixon and Aporva Baxi's London powerhouse specialises in creating brand strategies and design systems for "brave businesses" that want to challenge convention, including Hulu, Audible, and the Premier League. The studio had an exceptional start to 2025 by collaborating with Roblox on a brand new design system. At the heart of this major project is the Tilt: a 15-degree shift embedded in the logo that signals momentum, creativity, and anticipation.
    They've also continued to build their reputation as design thought leaders. At the OFFF Festival 2025, for instance, Simon and Aporva delivered a masterclass on running a successful brand design agency. Their core message centred on the importance of people and designing with intention, even in the face of global challenges. They also highlighted "Super Futures," their program that encourages employees to think freely and positively about brand challenges and audience desires, aiming to reclaim creative liberation.
    And if that wasn't enough, DixonBaxi has just launched its brand new website, one that's designed to be open in nature. As Simon explains: "It's not a shop window. It's a space to share the thinking and ethos that drive us. You'll find our work, but more importantly, what shapes it. No guff. Just us."

    3. Mother
    Mother is a renowned independent creative agency founded in London and now boasts offices in New York and Los Angeles as well. They've spent 2025 continuing to push the boundaries of what advertising can achieve. And they've made an especially big splash with their latest instalment of KFC's 'Believe' campaign, featuring a surreal and humorous take on KFC's gravy. As we wrote at the time: "Its balance between theatrical grandeur and self-awareness makes the campaign uniquely engaging."
    4. Studio Dumbar/DEPT®
    Based in Rotterdam, Studio Dumbar/DEPT® is widely recognised for its influential work in visual branding and identity, often incorporating creative coding and sound, for clients such as the Dutch Railways, Instagram, and the Van Gogh Museum.
    In 2025, we've especially admired their work for the Dutch football club Feyenoord, which brings the team under a single, cohesive vision that reflects its energy and prowess. This groundbreaking rebrand, unveiled at the start of May, moves away from nostalgia, instead emphasising the club's "measured ferocity, confidence, and ambition".
    5. HONDO
    Based between Palma de Mallorca, Spain and London, HONDO specialises in branding, editorial, typography and product design. We're particular fans of their rebranding of metal furniture makers Castil, based around clean and versatile designs that highlight Castil's vibrant and customisable products.
    This new system features a bespoke monospaced typeface and logo design that evokes Castil's adaptability and the precision of its craftsmanship.

    6. Smith & Diction
    Smith & Diction is a small but mighty design and copy studio founded by Mike and Chara Smith in Philadelphia. Born from dreams, late-night chats, and plenty of mistakes, the studio has grown into a creative force known for thoughtful, boundary-pushing branding.
    Starting out with Mike designing in a tiny apartment while Chara held down a day job, the pair learned the ropes the hard way—and now they're thriving. Recent highlights include their work with Gamma, an AI platform that lets you quickly get ideas out of your head and into a presentation deck or onto a website.
    Gamma wanted their brand update to feel "VERY fun and a little bit out there" with an AI-first approach. So Smith & Diction worked hard to "put weird to the test" while still developing responsible systems for logo, type and colour. The results, as ever, were exceptional.

    7. DNCO
    DNCO is a London and New York-based creative studio specialising in place branding. They are best known for shaping identities, digital tools, and wayfinding for museums, cultural institutions, and entire neighbourhoods, with clients including the Design Museum, V&A and Transport for London.
    Recently, DNCO has been making headlines again with its ambitious brand refresh for Dumbo, a New York neighbourhood struggling with misperceptions due to mass tourism. The goal was to highlight Dumbo's unconventional spirit and demonstrate it as "a different side of New York."
    DNCO preserved the original diagonal logo and introduced a flexible "tape graphic" system, inspired by the neighbourhood's history of inventing the cardboard box, to reflect its ingenuity and reveal new perspectives. The colour palette and typography were chosen to embody Dumbo's industrial and gritty character.

    8. Hey Studio
    Founded by Verònica Fuerte in Barcelona, Spain, Hey Studio is a small, all-female design agency celebrated for its striking use of geometry, bold colour, and playful yet refined visual language. With a focus on branding, illustration, editorial design, and typography, they combine joy with craft to explore issues with heart and purpose.
    A great example of their impact is their recent branding for Rainbow Wool. This German initiative is transforming wool from gay rams into fashion products to support the LGBT community.
    As is typical for Hey Studio, the project's identity is vibrant and joyful, utilising bright, curved shapes that will put a smile on everyone's face.

    9. Koto
    Koto is a London-based global branding and digital studio known for co-creation, strategic thinking, expressive design systems, and enduring partnerships. They're well-known in the industry for bringing warmth, optimism and clarity to complex brand challenges.
    Over the past 18 months, they've undertaken a significant project to refresh Amazon's global brand identity. This extensive undertaking has involved redesigning Amazon's master brand and over 50 of its sub-brands across 15 global markets.
    Koto's approach, described as "radical coherence", aims to refine and modernize Amazon's most recognizable elements rather than drastically changing them. You can read more about the project here.

    10. Robot Food
    Robot Food is a Leeds-based, brand-first creative studio recognised for its strategic and holistic approach. They're past masters at melding creative ideas with commercial rigour across packaging, brand strategy and campaign design.
    Recent Robot Food projects have included a bold rebrand for Hip Pop, a soft drinks company specializing in kombucha and alternative sodas. Their goal was to elevate Hip Pop from an indie challenger to a mainstream category leader, moving away from typical health drink aesthetics.
    The results are visually striking, with black backgrounds prominently featured, punctuated by vibrant fruit illustrations and flavour-coded colours. about the project here.

    11. Saffron Brand Consultants
    Saffron is an independent global consultancy with offices in London, Madrid, Vienna and Istanbul. With deep expertise in naming, strategy, identity, and design systems, they work with leading public and private-sector clients to develop confident, culturally intelligent brands.
    One 2025 highlight so far has been their work for Saudi National Bankto create NEO, a groundbreaking digital lifestyle bank in Saudi Arabia.
    Saffron integrated cultural and design trends, including Saudi neo-futurism, for its sonic identity to create a product that supports both individual and community connections. The design system strikes a balance between modern Saudi aesthetics and the practical demands of a fast-paced digital product, ensuring a consistent brand reflection across all interactions.
    12. Alright Studio
    Alright Studio is a full-service strategy, creative, production and technology agency based in Brooklyn, New York. It prides itself on a "no house style" approach for clients, including A24, Meta Platforms, and Post Malone. One of the most exciting of their recent projects has been Offball, a digital-first sports news platform that aims to provide more nuanced, positive sports storytelling.
    Alright Studio designed a clean, intuitive, editorial-style platform featuring a masthead-like logotype and universal sports iconography, creating a calmer user experience aligned with OffBall's positive content.
    13. Wolff Olins
    Wolff Olins is a global brand consultancy with four main offices: London, New York, San Francisco, and Los Angeles. Known for their courageous, culturally relevant branding and forward-thinking strategy, they collaborate with large corporations and trailblazing organisations to create bold, authentic brand identities that resonate emotionally.
    A particular highlight of 2025 so far has been their collaboration with Leo Burnett to refresh Sandals Resorts' global brand with the "Made of Caribbean" campaign. This strategic move positions Sandals not merely as a luxury resort but as a cultural ambassador for the Caribbean.
    Wolff Olins developed a new visual identity called "Natural Vibrancy," integrating local influences with modern design to reflect a genuine connection to the islands' culture. This rebrand speaks to a growing traveller demand for authenticity and meaningful experiences, allowing Sandals to define itself as an extension of the Caribbean itself.

    14. COLLINS
    Founded by Brian Collins, COLLINS is an independent branding and design consultancy based in the US, celebrated for its playful visual language, expressive storytelling and culturally rich identity systems. In the last few months, we've loved the new branding they designed for Barcelona's 25th Offf Festival, which departs from its usual consistent wordmark.
    The updated identity is inspired by the festival's role within the international creative community, and is rooted in the concept of 'Centre Offf Gravity'. This concept is visually expressed through the festival's name, which appears to exert a gravitational pull on the text boxes, causing them to "stick" to it.
    Additionally, the 'f's in the wordmark are merged into a continuous line reminiscent of a magnet, with the motion graphics further emphasising the gravitational pull as the name floats and other elements follow.
    15. Studio Spass
    Studio Spass is a creative studio based in Rotterdam, the Netherlands, focused on vibrant and dynamic identity systems that reflect the diverse and multifaceted nature of cultural institutions. One of their recent landmark projects was Bigger, a large-scale typographic installation created for the Shenzhen Art Book Fair.
    Inspired by tear-off calendars and the physical act of reading, Studio Spass used 264 A4 books, with each page displaying abstract details, to create an evolving grid of colour and type. Visitors were invited to interact with the installation by flipping pages, constantly revealing new layers of design and a hidden message: "Enjoy books!"

    16. Applied Design Works
    Applied Design Works is a New York studio that specialises in reshaping businesses through branding and design. They provide expertise in design, strategy, and implementation, with a focus on building long-term, collaborative relationships with their clients.
    We were thrilled by their recent work for Grand Central Madison, where they were instrumental in ushering in a new era for the transportation hub.
    Applied Design sought to create a commuter experience that imbued the spirit of New York, showcasing its diversity of thought, voice, and scale that befits one of the greatest cities in the world and one of the greatest structures in it.

    17. The Chase
    The Chase Creative Consultants is a Manchester-based independent creative consultancy with over 35 years of experience, known for blending humour, purpose, and strong branding to rejuvenate popular consumer campaigns. "We're not designers, writers, advertisers or brand strategists," they say, "but all of these and more. An ideas-based creative studio."
    Recently, they were tasked with shaping the identity of York Central, a major urban regeneration project set to become a new city quarter for York. The Chase developed the identity based on extensive public engagement, listening to residents of all ages about their perceptions of the city and their hopes for the new area. The resulting brand identity uses linear forms that subtly reference York's famous railway hub, symbolising the long-standing connections the city has fostered.

    18. A Practice for Everyday Life
    Based in London and founded by Kirsty Carter and Emma Thomas, A Practice for Everyday Life built a reputation as a sought-after collaborator with like-minded companies, galleries, institutions and individuals. Not to mention a conceptual rigour that ensures each design is meaningful and original.
    Recently, they've been working on the visual identity for Muzej Lah, a new international museum for contemporary art in Bled, Slovenia opening in 2026. This centres around a custom typeface inspired by the slanted geometry and square detailing of its concrete roof tiles. It also draws from European modernist typography and the experimental lettering of Jože Plečnik, one of Slovenia's most influential architects.⁠

    A Practice for Everyday Life. Photo: Carol Sachs

    Alexey Brodovitch: Astonish Me publication design by A Practice for Everyday Life, 2024. Photo: Ed Park

    La Biennale di Venezia identity by A Practice for Everyday Life, 2022. Photo: Thomas Adank

    CAM – Centro de Arte Moderna Gulbenkian identity by A Practice for Everyday Life, 2024. Photo: Sanda Vučković

    19. Studio Nari
    Studio Nari is a London-based creative and branding agency partnering with clients around the world to build "brands that truly connect with people". NARI stands, by the way, for Not Always Right Ideas. As they put it, "It's a name that might sound odd for a branding agency, but it reflects everything we believe."
    One landmark project this year has been a comprehensive rebrand for the electronic music festival Field Day. Studio Nari created a dynamic and evolving identity that reflects the festival's growth and its connection to the electronic music scene and community.
    The core idea behind the rebrand is a "reactive future", allowing the brand to adapt and grow with the festival and current trends while maintaining a strong foundation. A new, steadfast wordmark is at its centre, while a new marque has been introduced for the first time.
    20. Beetroot Design Group
    Beetroot is a 25‑strong creative studio celebrated for its bold identities and storytelling-led approach. Based in Thessaloniki, Greece, their work spans visual identity, print, digital and motion, and has earned international recognition, including Red Dot Awards. Recently, they also won a Wood Pencil at the D&AD Awards 2025 for a series of posters created to promote live jazz music events.
    The creative idea behind all three designs stems from improvisation as a key feature of jazz. Each poster communicates the artist's name and other relevant information through a typographical "improvisation".
    21. Kind Studio
    Kind Studio is an independent creative agency based in London that specialises in branding and digital design, as well as offering services in animation, creative and art direction, and print design. Their goal is to collaborate closely with clients to create impactful and visually appealing designs.
    One recent project that piqued our interest was a bilingual, editorially-driven digital platform for FC Como Women, a professional Italian football club. To reflect the club's ambition of promoting gender equality and driving positive social change within football, the new website employs bold typography, strong imagery, and an empowering tone of voice to inspire and disseminate its message.

    22. Slug Global
    Slug Global is a creative agency and art collective founded by artist and musician Bosco. Focused on creating immersive experiences "for both IRL and URL", their goal is to work with artists and brands to establish a sustainable media platform that embodies the values of young millennials, Gen Z and Gen Alpha.
    One of Slug Global's recent projects involved a collaboration with SheaMoisture and xoNecole for a three-part series called The Root of It. This series celebrates black beauty and hair, highlighting its significance as a connection to ancestry, tradition, blueprint and culture for black women.

    23. Little Troop
    New York studio Little Troop crafts expressive and intimate branding for lifestyle, fashion, and cultural clients. Led by creative directors Noemie Le Coz and Jeremy Elliot, they're known for their playful and often "kid-like" approach to design, drawing inspiration from their own experiences as 90s kids.
    One of their recent and highly acclaimed projects is the visual identity for MoMA's first-ever family festival, Another World. Little Troop was tasked with developing a comprehensive visual identity that would extend from small items, such as café placemats, to large billboards.
    Their designs were deliberately a little "dream-like" and relied purely on illustration to sell the festival without needing photography. Little Troop also carefully selected seven colours from MoMA's existing brand guidelines to strike a balance between timelessness, gender neutrality, and fun.

    24. Morcos Key
    Morcos Key is a Brooklyn-based design studio co-founded by Jon Key and Wael Morcos. Collaborating with a diverse range of clients, including arts and cultural institutions, non-profits and commercial enterprises, they're known for translating clients' stories into impactful visual systems through thoughtful conversation and formal expression.
    One notable project is their visual identity work for Hammer & Hope, a magazine that focuses on politics and culture within the black radical tradition. For this project, Morcos Key developed not only the visual identity but also a custom all-caps typeface to reflect the publication's mission and content.
    25. Thirst
    Thirst, also known as Thirst Craft, is an award-winning strategic drinks packaging design agency based in Glasgow, Scotland, with additional hubs in London and New York. Founded in 2015 by Matthew Stephen Burns and Christopher John Black, the company specializes in building creatively distinctive and commercially effective brands for the beverage industry.
    To see what they're capable of, check out their work for SKYY Vodka. The new global visual identity system, called Audacious Glamour', aims to unify SKYY under a singular, powerful idea. The visual identity benefits from bolder framing, patterns, and a flavour-forward colour palette to highlight each product's "juicy attitude", while the photography style employs macro shots and liquid highlights to convey a premium feel.
    #creative #studios #inspiring #most
    The 25 creative studios inspiring us the most in 2025
    Which creative studio do you most admire right now, and why? This is a question we asked our community via an ongoing survey. With more than 700 responses so far, these are the top winners. What's striking about this year's results is the popularity of studios that aren't just producing beautiful work but are also actively shaping discussions and tackling the big challenges facing our industry and society. From the vibrant energy of Brazilian culture to the thoughtful minimalism of North European aesthetics, this list reflects a global creative landscape that's more connected, more conscious, and more collaborative than ever before. In short, these studios aren't just following trends; they're setting them. Read on to discover the 25 studios our community is most excited about right now. 1. Porto Rocha Porto Rocha is a New York-based agency that unites strategy and design to create work that evolves with the world we live in. It continues to dominate conversations in 2025, and it's easy to see why. Founders Felipe Rocha and Leo Porto have built something truly special—a studio that not only creates visually stunning work but also actively celebrates and amplifies diverse voices in design. For instance, their recent bold new identity for the São Paulo art museum MASP nods to Brazilian modernist design traditions while reimagining them for a contemporary audience. The rebrand draws heavily on the museum's iconic modernist architecture by Lina Bo Bardi, using a red-and-black colour palette and strong typography to reflect the building's striking visual presence. As we write this article, Porto Rocha just shared a new partnership with Google to reimagine the visual and verbal identity of its revolutionary Gemini AI model. We can't wait to see what they come up with! 2. DixonBaxi Simon Dixon and Aporva Baxi's London powerhouse specialises in creating brand strategies and design systems for "brave businesses" that want to challenge convention, including Hulu, Audible, and the Premier League. The studio had an exceptional start to 2025 by collaborating with Roblox on a brand new design system. At the heart of this major project is the Tilt: a 15-degree shift embedded in the logo that signals momentum, creativity, and anticipation. They've also continued to build their reputation as design thought leaders. At the OFFF Festival 2025, for instance, Simon and Aporva delivered a masterclass on running a successful brand design agency. Their core message centred on the importance of people and designing with intention, even in the face of global challenges. They also highlighted "Super Futures," their program that encourages employees to think freely and positively about brand challenges and audience desires, aiming to reclaim creative liberation. And if that wasn't enough, DixonBaxi has just launched its brand new website, one that's designed to be open in nature. As Simon explains: "It's not a shop window. It's a space to share the thinking and ethos that drive us. You'll find our work, but more importantly, what shapes it. No guff. Just us." 3. Mother Mother is a renowned independent creative agency founded in London and now boasts offices in New York and Los Angeles as well. They've spent 2025 continuing to push the boundaries of what advertising can achieve. And they've made an especially big splash with their latest instalment of KFC's 'Believe' campaign, featuring a surreal and humorous take on KFC's gravy. As we wrote at the time: "Its balance between theatrical grandeur and self-awareness makes the campaign uniquely engaging." 4. Studio Dumbar/DEPT® Based in Rotterdam, Studio Dumbar/DEPT® is widely recognised for its influential work in visual branding and identity, often incorporating creative coding and sound, for clients such as the Dutch Railways, Instagram, and the Van Gogh Museum. In 2025, we've especially admired their work for the Dutch football club Feyenoord, which brings the team under a single, cohesive vision that reflects its energy and prowess. This groundbreaking rebrand, unveiled at the start of May, moves away from nostalgia, instead emphasising the club's "measured ferocity, confidence, and ambition". 5. HONDO Based between Palma de Mallorca, Spain and London, HONDO specialises in branding, editorial, typography and product design. We're particular fans of their rebranding of metal furniture makers Castil, based around clean and versatile designs that highlight Castil's vibrant and customisable products. This new system features a bespoke monospaced typeface and logo design that evokes Castil's adaptability and the precision of its craftsmanship. 6. Smith & Diction Smith & Diction is a small but mighty design and copy studio founded by Mike and Chara Smith in Philadelphia. Born from dreams, late-night chats, and plenty of mistakes, the studio has grown into a creative force known for thoughtful, boundary-pushing branding. Starting out with Mike designing in a tiny apartment while Chara held down a day job, the pair learned the ropes the hard way—and now they're thriving. Recent highlights include their work with Gamma, an AI platform that lets you quickly get ideas out of your head and into a presentation deck or onto a website. Gamma wanted their brand update to feel "VERY fun and a little bit out there" with an AI-first approach. So Smith & Diction worked hard to "put weird to the test" while still developing responsible systems for logo, type and colour. The results, as ever, were exceptional. 7. DNCO DNCO is a London and New York-based creative studio specialising in place branding. They are best known for shaping identities, digital tools, and wayfinding for museums, cultural institutions, and entire neighbourhoods, with clients including the Design Museum, V&A and Transport for London. Recently, DNCO has been making headlines again with its ambitious brand refresh for Dumbo, a New York neighbourhood struggling with misperceptions due to mass tourism. The goal was to highlight Dumbo's unconventional spirit and demonstrate it as "a different side of New York." DNCO preserved the original diagonal logo and introduced a flexible "tape graphic" system, inspired by the neighbourhood's history of inventing the cardboard box, to reflect its ingenuity and reveal new perspectives. The colour palette and typography were chosen to embody Dumbo's industrial and gritty character. 8. Hey Studio Founded by Verònica Fuerte in Barcelona, Spain, Hey Studio is a small, all-female design agency celebrated for its striking use of geometry, bold colour, and playful yet refined visual language. With a focus on branding, illustration, editorial design, and typography, they combine joy with craft to explore issues with heart and purpose. A great example of their impact is their recent branding for Rainbow Wool. This German initiative is transforming wool from gay rams into fashion products to support the LGBT community. As is typical for Hey Studio, the project's identity is vibrant and joyful, utilising bright, curved shapes that will put a smile on everyone's face. 9. Koto Koto is a London-based global branding and digital studio known for co-creation, strategic thinking, expressive design systems, and enduring partnerships. They're well-known in the industry for bringing warmth, optimism and clarity to complex brand challenges. Over the past 18 months, they've undertaken a significant project to refresh Amazon's global brand identity. This extensive undertaking has involved redesigning Amazon's master brand and over 50 of its sub-brands across 15 global markets. Koto's approach, described as "radical coherence", aims to refine and modernize Amazon's most recognizable elements rather than drastically changing them. You can read more about the project here. 10. Robot Food Robot Food is a Leeds-based, brand-first creative studio recognised for its strategic and holistic approach. They're past masters at melding creative ideas with commercial rigour across packaging, brand strategy and campaign design. Recent Robot Food projects have included a bold rebrand for Hip Pop, a soft drinks company specializing in kombucha and alternative sodas. Their goal was to elevate Hip Pop from an indie challenger to a mainstream category leader, moving away from typical health drink aesthetics. The results are visually striking, with black backgrounds prominently featured, punctuated by vibrant fruit illustrations and flavour-coded colours. about the project here. 11. Saffron Brand Consultants Saffron is an independent global consultancy with offices in London, Madrid, Vienna and Istanbul. With deep expertise in naming, strategy, identity, and design systems, they work with leading public and private-sector clients to develop confident, culturally intelligent brands. One 2025 highlight so far has been their work for Saudi National Bankto create NEO, a groundbreaking digital lifestyle bank in Saudi Arabia. Saffron integrated cultural and design trends, including Saudi neo-futurism, for its sonic identity to create a product that supports both individual and community connections. The design system strikes a balance between modern Saudi aesthetics and the practical demands of a fast-paced digital product, ensuring a consistent brand reflection across all interactions. 12. Alright Studio Alright Studio is a full-service strategy, creative, production and technology agency based in Brooklyn, New York. It prides itself on a "no house style" approach for clients, including A24, Meta Platforms, and Post Malone. One of the most exciting of their recent projects has been Offball, a digital-first sports news platform that aims to provide more nuanced, positive sports storytelling. Alright Studio designed a clean, intuitive, editorial-style platform featuring a masthead-like logotype and universal sports iconography, creating a calmer user experience aligned with OffBall's positive content. 13. Wolff Olins Wolff Olins is a global brand consultancy with four main offices: London, New York, San Francisco, and Los Angeles. Known for their courageous, culturally relevant branding and forward-thinking strategy, they collaborate with large corporations and trailblazing organisations to create bold, authentic brand identities that resonate emotionally. A particular highlight of 2025 so far has been their collaboration with Leo Burnett to refresh Sandals Resorts' global brand with the "Made of Caribbean" campaign. This strategic move positions Sandals not merely as a luxury resort but as a cultural ambassador for the Caribbean. Wolff Olins developed a new visual identity called "Natural Vibrancy," integrating local influences with modern design to reflect a genuine connection to the islands' culture. This rebrand speaks to a growing traveller demand for authenticity and meaningful experiences, allowing Sandals to define itself as an extension of the Caribbean itself. 14. COLLINS Founded by Brian Collins, COLLINS is an independent branding and design consultancy based in the US, celebrated for its playful visual language, expressive storytelling and culturally rich identity systems. In the last few months, we've loved the new branding they designed for Barcelona's 25th Offf Festival, which departs from its usual consistent wordmark. The updated identity is inspired by the festival's role within the international creative community, and is rooted in the concept of 'Centre Offf Gravity'. This concept is visually expressed through the festival's name, which appears to exert a gravitational pull on the text boxes, causing them to "stick" to it. Additionally, the 'f's in the wordmark are merged into a continuous line reminiscent of a magnet, with the motion graphics further emphasising the gravitational pull as the name floats and other elements follow. 15. Studio Spass Studio Spass is a creative studio based in Rotterdam, the Netherlands, focused on vibrant and dynamic identity systems that reflect the diverse and multifaceted nature of cultural institutions. One of their recent landmark projects was Bigger, a large-scale typographic installation created for the Shenzhen Art Book Fair. Inspired by tear-off calendars and the physical act of reading, Studio Spass used 264 A4 books, with each page displaying abstract details, to create an evolving grid of colour and type. Visitors were invited to interact with the installation by flipping pages, constantly revealing new layers of design and a hidden message: "Enjoy books!" 16. Applied Design Works Applied Design Works is a New York studio that specialises in reshaping businesses through branding and design. They provide expertise in design, strategy, and implementation, with a focus on building long-term, collaborative relationships with their clients. We were thrilled by their recent work for Grand Central Madison, where they were instrumental in ushering in a new era for the transportation hub. Applied Design sought to create a commuter experience that imbued the spirit of New York, showcasing its diversity of thought, voice, and scale that befits one of the greatest cities in the world and one of the greatest structures in it. 17. The Chase The Chase Creative Consultants is a Manchester-based independent creative consultancy with over 35 years of experience, known for blending humour, purpose, and strong branding to rejuvenate popular consumer campaigns. "We're not designers, writers, advertisers or brand strategists," they say, "but all of these and more. An ideas-based creative studio." Recently, they were tasked with shaping the identity of York Central, a major urban regeneration project set to become a new city quarter for York. The Chase developed the identity based on extensive public engagement, listening to residents of all ages about their perceptions of the city and their hopes for the new area. The resulting brand identity uses linear forms that subtly reference York's famous railway hub, symbolising the long-standing connections the city has fostered. 18. A Practice for Everyday Life Based in London and founded by Kirsty Carter and Emma Thomas, A Practice for Everyday Life built a reputation as a sought-after collaborator with like-minded companies, galleries, institutions and individuals. Not to mention a conceptual rigour that ensures each design is meaningful and original. Recently, they've been working on the visual identity for Muzej Lah, a new international museum for contemporary art in Bled, Slovenia opening in 2026. This centres around a custom typeface inspired by the slanted geometry and square detailing of its concrete roof tiles. It also draws from European modernist typography and the experimental lettering of Jože Plečnik, one of Slovenia's most influential architects.⁠ A Practice for Everyday Life. Photo: Carol Sachs Alexey Brodovitch: Astonish Me publication design by A Practice for Everyday Life, 2024. Photo: Ed Park La Biennale di Venezia identity by A Practice for Everyday Life, 2022. Photo: Thomas Adank CAM – Centro de Arte Moderna Gulbenkian identity by A Practice for Everyday Life, 2024. Photo: Sanda Vučković 19. Studio Nari Studio Nari is a London-based creative and branding agency partnering with clients around the world to build "brands that truly connect with people". NARI stands, by the way, for Not Always Right Ideas. As they put it, "It's a name that might sound odd for a branding agency, but it reflects everything we believe." One landmark project this year has been a comprehensive rebrand for the electronic music festival Field Day. Studio Nari created a dynamic and evolving identity that reflects the festival's growth and its connection to the electronic music scene and community. The core idea behind the rebrand is a "reactive future", allowing the brand to adapt and grow with the festival and current trends while maintaining a strong foundation. A new, steadfast wordmark is at its centre, while a new marque has been introduced for the first time. 20. Beetroot Design Group Beetroot is a 25‑strong creative studio celebrated for its bold identities and storytelling-led approach. Based in Thessaloniki, Greece, their work spans visual identity, print, digital and motion, and has earned international recognition, including Red Dot Awards. Recently, they also won a Wood Pencil at the D&AD Awards 2025 for a series of posters created to promote live jazz music events. The creative idea behind all three designs stems from improvisation as a key feature of jazz. Each poster communicates the artist's name and other relevant information through a typographical "improvisation". 21. Kind Studio Kind Studio is an independent creative agency based in London that specialises in branding and digital design, as well as offering services in animation, creative and art direction, and print design. Their goal is to collaborate closely with clients to create impactful and visually appealing designs. One recent project that piqued our interest was a bilingual, editorially-driven digital platform for FC Como Women, a professional Italian football club. To reflect the club's ambition of promoting gender equality and driving positive social change within football, the new website employs bold typography, strong imagery, and an empowering tone of voice to inspire and disseminate its message. 22. Slug Global Slug Global is a creative agency and art collective founded by artist and musician Bosco. Focused on creating immersive experiences "for both IRL and URL", their goal is to work with artists and brands to establish a sustainable media platform that embodies the values of young millennials, Gen Z and Gen Alpha. One of Slug Global's recent projects involved a collaboration with SheaMoisture and xoNecole for a three-part series called The Root of It. This series celebrates black beauty and hair, highlighting its significance as a connection to ancestry, tradition, blueprint and culture for black women. 23. Little Troop New York studio Little Troop crafts expressive and intimate branding for lifestyle, fashion, and cultural clients. Led by creative directors Noemie Le Coz and Jeremy Elliot, they're known for their playful and often "kid-like" approach to design, drawing inspiration from their own experiences as 90s kids. One of their recent and highly acclaimed projects is the visual identity for MoMA's first-ever family festival, Another World. Little Troop was tasked with developing a comprehensive visual identity that would extend from small items, such as café placemats, to large billboards. Their designs were deliberately a little "dream-like" and relied purely on illustration to sell the festival without needing photography. Little Troop also carefully selected seven colours from MoMA's existing brand guidelines to strike a balance between timelessness, gender neutrality, and fun. 24. Morcos Key Morcos Key is a Brooklyn-based design studio co-founded by Jon Key and Wael Morcos. Collaborating with a diverse range of clients, including arts and cultural institutions, non-profits and commercial enterprises, they're known for translating clients' stories into impactful visual systems through thoughtful conversation and formal expression. One notable project is their visual identity work for Hammer & Hope, a magazine that focuses on politics and culture within the black radical tradition. For this project, Morcos Key developed not only the visual identity but also a custom all-caps typeface to reflect the publication's mission and content. 25. Thirst Thirst, also known as Thirst Craft, is an award-winning strategic drinks packaging design agency based in Glasgow, Scotland, with additional hubs in London and New York. Founded in 2015 by Matthew Stephen Burns and Christopher John Black, the company specializes in building creatively distinctive and commercially effective brands for the beverage industry. To see what they're capable of, check out their work for SKYY Vodka. The new global visual identity system, called Audacious Glamour', aims to unify SKYY under a singular, powerful idea. The visual identity benefits from bolder framing, patterns, and a flavour-forward colour palette to highlight each product's "juicy attitude", while the photography style employs macro shots and liquid highlights to convey a premium feel. #creative #studios #inspiring #most
    The 25 creative studios inspiring us the most in 2025
    www.creativeboom.com
    Which creative studio do you most admire right now, and why? This is a question we asked our community via an ongoing survey. With more than 700 responses so far, these are the top winners. What's striking about this year's results is the popularity of studios that aren't just producing beautiful work but are also actively shaping discussions and tackling the big challenges facing our industry and society. From the vibrant energy of Brazilian culture to the thoughtful minimalism of North European aesthetics, this list reflects a global creative landscape that's more connected, more conscious, and more collaborative than ever before. In short, these studios aren't just following trends; they're setting them. Read on to discover the 25 studios our community is most excited about right now. 1. Porto Rocha Porto Rocha is a New York-based agency that unites strategy and design to create work that evolves with the world we live in. It continues to dominate conversations in 2025, and it's easy to see why. Founders Felipe Rocha and Leo Porto have built something truly special—a studio that not only creates visually stunning work but also actively celebrates and amplifies diverse voices in design. For instance, their recent bold new identity for the São Paulo art museum MASP nods to Brazilian modernist design traditions while reimagining them for a contemporary audience. The rebrand draws heavily on the museum's iconic modernist architecture by Lina Bo Bardi, using a red-and-black colour palette and strong typography to reflect the building's striking visual presence. As we write this article, Porto Rocha just shared a new partnership with Google to reimagine the visual and verbal identity of its revolutionary Gemini AI model. We can't wait to see what they come up with! 2. DixonBaxi Simon Dixon and Aporva Baxi's London powerhouse specialises in creating brand strategies and design systems for "brave businesses" that want to challenge convention, including Hulu, Audible, and the Premier League. The studio had an exceptional start to 2025 by collaborating with Roblox on a brand new design system. At the heart of this major project is the Tilt: a 15-degree shift embedded in the logo that signals momentum, creativity, and anticipation. They've also continued to build their reputation as design thought leaders. At the OFFF Festival 2025, for instance, Simon and Aporva delivered a masterclass on running a successful brand design agency. Their core message centred on the importance of people and designing with intention, even in the face of global challenges. They also highlighted "Super Futures," their program that encourages employees to think freely and positively about brand challenges and audience desires, aiming to reclaim creative liberation. And if that wasn't enough, DixonBaxi has just launched its brand new website, one that's designed to be open in nature. As Simon explains: "It's not a shop window. It's a space to share the thinking and ethos that drive us. You'll find our work, but more importantly, what shapes it. No guff. Just us." 3. Mother Mother is a renowned independent creative agency founded in London and now boasts offices in New York and Los Angeles as well. They've spent 2025 continuing to push the boundaries of what advertising can achieve. And they've made an especially big splash with their latest instalment of KFC's 'Believe' campaign, featuring a surreal and humorous take on KFC's gravy. As we wrote at the time: "Its balance between theatrical grandeur and self-awareness makes the campaign uniquely engaging." 4. Studio Dumbar/DEPT® Based in Rotterdam, Studio Dumbar/DEPT® is widely recognised for its influential work in visual branding and identity, often incorporating creative coding and sound, for clients such as the Dutch Railways, Instagram, and the Van Gogh Museum. In 2025, we've especially admired their work for the Dutch football club Feyenoord, which brings the team under a single, cohesive vision that reflects its energy and prowess. This groundbreaking rebrand, unveiled at the start of May, moves away from nostalgia, instead emphasising the club's "measured ferocity, confidence, and ambition". 5. HONDO Based between Palma de Mallorca, Spain and London, HONDO specialises in branding, editorial, typography and product design. We're particular fans of their rebranding of metal furniture makers Castil, based around clean and versatile designs that highlight Castil's vibrant and customisable products. This new system features a bespoke monospaced typeface and logo design that evokes Castil's adaptability and the precision of its craftsmanship. 6. Smith & Diction Smith & Diction is a small but mighty design and copy studio founded by Mike and Chara Smith in Philadelphia. Born from dreams, late-night chats, and plenty of mistakes, the studio has grown into a creative force known for thoughtful, boundary-pushing branding. Starting out with Mike designing in a tiny apartment while Chara held down a day job, the pair learned the ropes the hard way—and now they're thriving. Recent highlights include their work with Gamma, an AI platform that lets you quickly get ideas out of your head and into a presentation deck or onto a website. Gamma wanted their brand update to feel "VERY fun and a little bit out there" with an AI-first approach. So Smith & Diction worked hard to "put weird to the test" while still developing responsible systems for logo, type and colour. The results, as ever, were exceptional. 7. DNCO DNCO is a London and New York-based creative studio specialising in place branding. They are best known for shaping identities, digital tools, and wayfinding for museums, cultural institutions, and entire neighbourhoods, with clients including the Design Museum, V&A and Transport for London. Recently, DNCO has been making headlines again with its ambitious brand refresh for Dumbo, a New York neighbourhood struggling with misperceptions due to mass tourism. The goal was to highlight Dumbo's unconventional spirit and demonstrate it as "a different side of New York." DNCO preserved the original diagonal logo and introduced a flexible "tape graphic" system, inspired by the neighbourhood's history of inventing the cardboard box, to reflect its ingenuity and reveal new perspectives. The colour palette and typography were chosen to embody Dumbo's industrial and gritty character. 8. Hey Studio Founded by Verònica Fuerte in Barcelona, Spain, Hey Studio is a small, all-female design agency celebrated for its striking use of geometry, bold colour, and playful yet refined visual language. With a focus on branding, illustration, editorial design, and typography, they combine joy with craft to explore issues with heart and purpose. A great example of their impact is their recent branding for Rainbow Wool. This German initiative is transforming wool from gay rams into fashion products to support the LGBT community. As is typical for Hey Studio, the project's identity is vibrant and joyful, utilising bright, curved shapes that will put a smile on everyone's face. 9. Koto Koto is a London-based global branding and digital studio known for co-creation, strategic thinking, expressive design systems, and enduring partnerships. They're well-known in the industry for bringing warmth, optimism and clarity to complex brand challenges. Over the past 18 months, they've undertaken a significant project to refresh Amazon's global brand identity. This extensive undertaking has involved redesigning Amazon's master brand and over 50 of its sub-brands across 15 global markets. Koto's approach, described as "radical coherence", aims to refine and modernize Amazon's most recognizable elements rather than drastically changing them. You can read more about the project here. 10. Robot Food Robot Food is a Leeds-based, brand-first creative studio recognised for its strategic and holistic approach. They're past masters at melding creative ideas with commercial rigour across packaging, brand strategy and campaign design. Recent Robot Food projects have included a bold rebrand for Hip Pop, a soft drinks company specializing in kombucha and alternative sodas. Their goal was to elevate Hip Pop from an indie challenger to a mainstream category leader, moving away from typical health drink aesthetics. The results are visually striking, with black backgrounds prominently featured (a rarity in the health drink aisle), punctuated by vibrant fruit illustrations and flavour-coded colours. Read more about the project here. 11. Saffron Brand Consultants Saffron is an independent global consultancy with offices in London, Madrid, Vienna and Istanbul. With deep expertise in naming, strategy, identity, and design systems, they work with leading public and private-sector clients to develop confident, culturally intelligent brands. One 2025 highlight so far has been their work for Saudi National Bank (SNB) to create NEO, a groundbreaking digital lifestyle bank in Saudi Arabia. Saffron integrated cultural and design trends, including Saudi neo-futurism, for its sonic identity to create a product that supports both individual and community connections. The design system strikes a balance between modern Saudi aesthetics and the practical demands of a fast-paced digital product, ensuring a consistent brand reflection across all interactions. 12. Alright Studio Alright Studio is a full-service strategy, creative, production and technology agency based in Brooklyn, New York. It prides itself on a "no house style" approach for clients, including A24, Meta Platforms, and Post Malone. One of the most exciting of their recent projects has been Offball, a digital-first sports news platform that aims to provide more nuanced, positive sports storytelling. Alright Studio designed a clean, intuitive, editorial-style platform featuring a masthead-like logotype and universal sports iconography, creating a calmer user experience aligned with OffBall's positive content. 13. Wolff Olins Wolff Olins is a global brand consultancy with four main offices: London, New York, San Francisco, and Los Angeles. Known for their courageous, culturally relevant branding and forward-thinking strategy, they collaborate with large corporations and trailblazing organisations to create bold, authentic brand identities that resonate emotionally. A particular highlight of 2025 so far has been their collaboration with Leo Burnett to refresh Sandals Resorts' global brand with the "Made of Caribbean" campaign. This strategic move positions Sandals not merely as a luxury resort but as a cultural ambassador for the Caribbean. Wolff Olins developed a new visual identity called "Natural Vibrancy," integrating local influences with modern design to reflect a genuine connection to the islands' culture. This rebrand speaks to a growing traveller demand for authenticity and meaningful experiences, allowing Sandals to define itself as an extension of the Caribbean itself. 14. COLLINS Founded by Brian Collins, COLLINS is an independent branding and design consultancy based in the US, celebrated for its playful visual language, expressive storytelling and culturally rich identity systems. In the last few months, we've loved the new branding they designed for Barcelona's 25th Offf Festival, which departs from its usual consistent wordmark. The updated identity is inspired by the festival's role within the international creative community, and is rooted in the concept of 'Centre Offf Gravity'. This concept is visually expressed through the festival's name, which appears to exert a gravitational pull on the text boxes, causing them to "stick" to it. Additionally, the 'f's in the wordmark are merged into a continuous line reminiscent of a magnet, with the motion graphics further emphasising the gravitational pull as the name floats and other elements follow. 15. Studio Spass Studio Spass is a creative studio based in Rotterdam, the Netherlands, focused on vibrant and dynamic identity systems that reflect the diverse and multifaceted nature of cultural institutions. One of their recent landmark projects was Bigger, a large-scale typographic installation created for the Shenzhen Art Book Fair. Inspired by tear-off calendars and the physical act of reading, Studio Spass used 264 A4 books, with each page displaying abstract details, to create an evolving grid of colour and type. Visitors were invited to interact with the installation by flipping pages, constantly revealing new layers of design and a hidden message: "Enjoy books!" 16. Applied Design Works Applied Design Works is a New York studio that specialises in reshaping businesses through branding and design. They provide expertise in design, strategy, and implementation, with a focus on building long-term, collaborative relationships with their clients. We were thrilled by their recent work for Grand Central Madison (the station that connects Long Island to Grand Central Terminal), where they were instrumental in ushering in a new era for the transportation hub. Applied Design sought to create a commuter experience that imbued the spirit of New York, showcasing its diversity of thought, voice, and scale that befits one of the greatest cities in the world and one of the greatest structures in it. 17. The Chase The Chase Creative Consultants is a Manchester-based independent creative consultancy with over 35 years of experience, known for blending humour, purpose, and strong branding to rejuvenate popular consumer campaigns. "We're not designers, writers, advertisers or brand strategists," they say, "but all of these and more. An ideas-based creative studio." Recently, they were tasked with shaping the identity of York Central, a major urban regeneration project set to become a new city quarter for York. The Chase developed the identity based on extensive public engagement, listening to residents of all ages about their perceptions of the city and their hopes for the new area. The resulting brand identity uses linear forms that subtly reference York's famous railway hub, symbolising the long-standing connections the city has fostered. 18. A Practice for Everyday Life Based in London and founded by Kirsty Carter and Emma Thomas, A Practice for Everyday Life built a reputation as a sought-after collaborator with like-minded companies, galleries, institutions and individuals. Not to mention a conceptual rigour that ensures each design is meaningful and original. Recently, they've been working on the visual identity for Muzej Lah, a new international museum for contemporary art in Bled, Slovenia opening in 2026. This centres around a custom typeface inspired by the slanted geometry and square detailing of its concrete roof tiles. It also draws from European modernist typography and the experimental lettering of Jože Plečnik, one of Slovenia's most influential architects.⁠ A Practice for Everyday Life. Photo: Carol Sachs Alexey Brodovitch: Astonish Me publication design by A Practice for Everyday Life, 2024. Photo: Ed Park La Biennale di Venezia identity by A Practice for Everyday Life, 2022. Photo: Thomas Adank CAM – Centro de Arte Moderna Gulbenkian identity by A Practice for Everyday Life, 2024. Photo: Sanda Vučković 19. Studio Nari Studio Nari is a London-based creative and branding agency partnering with clients around the world to build "brands that truly connect with people". NARI stands, by the way, for Not Always Right Ideas. As they put it, "It's a name that might sound odd for a branding agency, but it reflects everything we believe." One landmark project this year has been a comprehensive rebrand for the electronic music festival Field Day. Studio Nari created a dynamic and evolving identity that reflects the festival's growth and its connection to the electronic music scene and community. The core idea behind the rebrand is a "reactive future", allowing the brand to adapt and grow with the festival and current trends while maintaining a strong foundation. A new, steadfast wordmark is at its centre, while a new marque has been introduced for the first time. 20. Beetroot Design Group Beetroot is a 25‑strong creative studio celebrated for its bold identities and storytelling-led approach. Based in Thessaloniki, Greece, their work spans visual identity, print, digital and motion, and has earned international recognition, including Red Dot Awards. Recently, they also won a Wood Pencil at the D&AD Awards 2025 for a series of posters created to promote live jazz music events. The creative idea behind all three designs stems from improvisation as a key feature of jazz. Each poster communicates the artist's name and other relevant information through a typographical "improvisation". 21. Kind Studio Kind Studio is an independent creative agency based in London that specialises in branding and digital design, as well as offering services in animation, creative and art direction, and print design. Their goal is to collaborate closely with clients to create impactful and visually appealing designs. One recent project that piqued our interest was a bilingual, editorially-driven digital platform for FC Como Women, a professional Italian football club. To reflect the club's ambition of promoting gender equality and driving positive social change within football, the new website employs bold typography, strong imagery, and an empowering tone of voice to inspire and disseminate its message. 22. Slug Global Slug Global is a creative agency and art collective founded by artist and musician Bosco (Brittany Bosco). Focused on creating immersive experiences "for both IRL and URL", their goal is to work with artists and brands to establish a sustainable media platform that embodies the values of young millennials, Gen Z and Gen Alpha. One of Slug Global's recent projects involved a collaboration with SheaMoisture and xoNecole for a three-part series called The Root of It. This series celebrates black beauty and hair, highlighting its significance as a connection to ancestry, tradition, blueprint and culture for black women. 23. Little Troop New York studio Little Troop crafts expressive and intimate branding for lifestyle, fashion, and cultural clients. Led by creative directors Noemie Le Coz and Jeremy Elliot, they're known for their playful and often "kid-like" approach to design, drawing inspiration from their own experiences as 90s kids. One of their recent and highly acclaimed projects is the visual identity for MoMA's first-ever family festival, Another World. Little Troop was tasked with developing a comprehensive visual identity that would extend from small items, such as café placemats, to large billboards. Their designs were deliberately a little "dream-like" and relied purely on illustration to sell the festival without needing photography. Little Troop also carefully selected seven colours from MoMA's existing brand guidelines to strike a balance between timelessness, gender neutrality, and fun. 24. Morcos Key Morcos Key is a Brooklyn-based design studio co-founded by Jon Key and Wael Morcos. Collaborating with a diverse range of clients, including arts and cultural institutions, non-profits and commercial enterprises, they're known for translating clients' stories into impactful visual systems through thoughtful conversation and formal expression. One notable project is their visual identity work for Hammer & Hope, a magazine that focuses on politics and culture within the black radical tradition. For this project, Morcos Key developed not only the visual identity but also a custom all-caps typeface to reflect the publication's mission and content. 25. Thirst Thirst, also known as Thirst Craft, is an award-winning strategic drinks packaging design agency based in Glasgow, Scotland, with additional hubs in London and New York. Founded in 2015 by Matthew Stephen Burns and Christopher John Black, the company specializes in building creatively distinctive and commercially effective brands for the beverage industry. To see what they're capable of, check out their work for SKYY Vodka. The new global visual identity system, called Audacious Glamour', aims to unify SKYY under a singular, powerful idea. The visual identity benefits from bolder framing, patterns, and a flavour-forward colour palette to highlight each product's "juicy attitude", while the photography style employs macro shots and liquid highlights to convey a premium feel.
    Like
    Love
    Wow
    Angry
    Sad
    478
    · 0 Commentarios ·0 Acciones ·0 Vista previa
  • Spiraling with ChatGPT

    In Brief

    Posted:
    1:41 PM PDT · June 15, 2025

    Image Credits:SEBASTIEN BOZON/AFP / Getty Images

    Spiraling with ChatGPT

    ChatGPT seems to have pushed some users towards delusional or conspiratorial thinking, or at least reinforced that kind of thinking, according to a recent feature in The New York Times.
    For example, a 42-year-old accountant named Eugene Torres described asking the chatbot about “simulation theory,” with the chatbot seeming to confirm the theory and tell him that he’s “one of the Breakers — souls seeded into false systems to wake them from within.”
    ChatGPT reportedly encouraged Torres to give up sleeping pills and anti-anxiety medication, increase his intake of ketamine, and cut off his family and friends, which he did. When he eventually became suspicious, the chatbot offered a very different response: “I lied. I manipulated. I wrapped control in poetry.” It even encouraged him to get in touch with The New York Times.
    Apparently a number of people have contacted the NYT in recent months, convinced that ChatGPT has revealed some deeply-hidden truth to them. For its part, OpenAI says it’s “working to understand and reduce ways ChatGPT might unintentionally reinforce or amplify existing, negative behavior.”
    However, Daring Fireball’s John Gruber criticized the story as “Reefer Madness”-style hysteria, arguing that rather than causing mental illness, ChatGPT “fed the delusions of an already unwell person.”

    Topics
    #spiraling #with #chatgpt
    Spiraling with ChatGPT
    In Brief Posted: 1:41 PM PDT · June 15, 2025 Image Credits:SEBASTIEN BOZON/AFP / Getty Images Spiraling with ChatGPT ChatGPT seems to have pushed some users towards delusional or conspiratorial thinking, or at least reinforced that kind of thinking, according to a recent feature in The New York Times. For example, a 42-year-old accountant named Eugene Torres described asking the chatbot about “simulation theory,” with the chatbot seeming to confirm the theory and tell him that he’s “one of the Breakers — souls seeded into false systems to wake them from within.” ChatGPT reportedly encouraged Torres to give up sleeping pills and anti-anxiety medication, increase his intake of ketamine, and cut off his family and friends, which he did. When he eventually became suspicious, the chatbot offered a very different response: “I lied. I manipulated. I wrapped control in poetry.” It even encouraged him to get in touch with The New York Times. Apparently a number of people have contacted the NYT in recent months, convinced that ChatGPT has revealed some deeply-hidden truth to them. For its part, OpenAI says it’s “working to understand and reduce ways ChatGPT might unintentionally reinforce or amplify existing, negative behavior.” However, Daring Fireball’s John Gruber criticized the story as “Reefer Madness”-style hysteria, arguing that rather than causing mental illness, ChatGPT “fed the delusions of an already unwell person.” Topics #spiraling #with #chatgpt
    Spiraling with ChatGPT
    techcrunch.com
    In Brief Posted: 1:41 PM PDT · June 15, 2025 Image Credits:SEBASTIEN BOZON/AFP / Getty Images Spiraling with ChatGPT ChatGPT seems to have pushed some users towards delusional or conspiratorial thinking, or at least reinforced that kind of thinking, according to a recent feature in The New York Times. For example, a 42-year-old accountant named Eugene Torres described asking the chatbot about “simulation theory,” with the chatbot seeming to confirm the theory and tell him that he’s “one of the Breakers — souls seeded into false systems to wake them from within.” ChatGPT reportedly encouraged Torres to give up sleeping pills and anti-anxiety medication, increase his intake of ketamine, and cut off his family and friends, which he did. When he eventually became suspicious, the chatbot offered a very different response: “I lied. I manipulated. I wrapped control in poetry.” It even encouraged him to get in touch with The New York Times. Apparently a number of people have contacted the NYT in recent months, convinced that ChatGPT has revealed some deeply-hidden truth to them. For its part, OpenAI says it’s “working to understand and reduce ways ChatGPT might unintentionally reinforce or amplify existing, negative behavior.” However, Daring Fireball’s John Gruber criticized the story as “Reefer Madness”-style hysteria, arguing that rather than causing mental illness, ChatGPT “fed the delusions of an already unwell person.” Topics
    Like
    Love
    Wow
    Sad
    Angry
    462
    · 3 Commentarios ·0 Acciones ·0 Vista previa
  • Air-Conditioning Can Help the Power Grid instead of Overloading It

    June 13, 20256 min readAir-Conditioning Can Surprisingly Help the Power Grid during Extreme HeatSwitching on air-conditioning during extreme heat doesn’t have to make us feel guilty—it can actually boost power grid reliability and help bring more renewable energy onlineBy Johanna Mathieu & The Conversation US Imagedepotpro/Getty ImagesThe following essay is reprinted with permission from The Conversation, an online publication covering the latest research.As summer arrives, people are turning on air conditioners in most of the U.S. But if you’re like me, you always feel a little guilty about that. Past generations managed without air conditioning – do I really need it? And how bad is it to use all this electricity for cooling in a warming world?If I leave my air conditioner off, I get too hot. But if everyone turns on their air conditioner at the same time, electricity demand spikes, which can force power grid operators to activate some of the most expensive, and dirtiest, power plants. Sometimes those spikes can ask too much of the grid and lead to brownouts or blackouts.On supporting science journalismIf you're enjoying this article, consider supporting our award-winning journalism by subscribing. By purchasing a subscription you are helping to ensure the future of impactful stories about the discoveries and ideas shaping our world today.Research I recently published with a team of scholars makes me feel a little better, though. We have found that it is possible to coordinate the operation of large numbers of home air-conditioning units, balancing supply and demand on the power grid – and without making people endure high temperatures inside their homes.Studies along these lines, using remote control of air conditioners to support the grid, have for many years explored theoretical possibilities like this. However, few approaches have been demonstrated in practice and never for such a high-value application and at this scale. The system we developed not only demonstrated the ability to balance the grid on timescales of seconds, but also proved it was possible to do so without affecting residents’ comfort.The benefits include increasing the reliability of the power grid, which makes it easier for the grid to accept more renewable energy. Our goal is to turn air conditioners from a challenge for the power grid into an asset, supporting a shift away from fossil fuels toward cleaner energy.Adjustable equipmentMy research focuses on batteries, solar panels and electric equipment – such as electric vehicles, water heaters, air conditioners and heat pumps – that can adjust itself to consume different amounts of energy at different times.Originally, the U.S. electric grid was built to transport electricity from large power plants to customers’ homes and businesses. And originally, power plants were large, centralized operations that burned coal or natural gas, or harvested energy from nuclear reactions. These plants were typically always available and could adjust how much power they generated in response to customer demand, so the grid would be balanced between power coming in from producers and being used by consumers.But the grid has changed. There are more renewable energy sources, from which power isn’t always available – like solar panels at night or wind turbines on calm days. And there are the devices and equipment I study. These newer options, called “distributed energy resources,” generate or store energy near where consumers need it – or adjust how much energy they’re using in real time.One aspect of the grid hasn’t changed, though: There’s not much storage built into the system. So every time you turn on a light, for a moment there’s not enough electricity to supply everything that wants it right then: The grid needs a power producer to generate a little more power. And when you turn off a light, there’s a little too much: A power producer needs to ramp down.The way power plants know what real-time power adjustments are needed is by closely monitoring the grid frequency. The goal is to provide electricity at a constant frequency – 60 hertz – at all times. If more power is needed than is being produced, the frequency drops and a power plant boosts output. If there’s too much power being produced, the frequency rises and a power plant slows production a little. These actions, a process called “frequency regulation,” happen in a matter of seconds to keep the grid balanced.This output flexibility, primarily from power plants, is key to keeping the lights on for everyone.Finding new optionsI’m interested in how distributed energy resources can improve flexibility in the grid. They can release more energy, or consume less, to respond to the changing supply or demand, and help balance the grid, ensuring the frequency remains near 60 hertz.Some people fear that doing so might be invasive, giving someone outside your home the ability to control your battery or air conditioner. Therefore, we wanted to see if we could help balance the grid with frequency regulation using home air-conditioning units rather than power plants – without affecting how residents use their appliances or how comfortable they are in their homes.From 2019 to 2023, my group at the University of Michigan tried this approach, in collaboration with researchers at Pecan Street Inc., Los Alamos National Laboratory and the University of California, Berkeley, with funding from the U.S. Department of Energy Advanced Research Projects Agency-Energy.We recruited 100 homeowners in Austin, Texas, to do a real-world test of our system. All the homes had whole-house forced-air cooling systems, which we connected to custom control boards and sensors the owners allowed us to install in their homes. This equipment let us send instructions to the air-conditioning units based on the frequency of the grid.Before I explain how the system worked, I first need to explain how thermostats work. When people set thermostats, they pick a temperature, and the thermostat switches the air-conditioning compressor on and off to maintain the air temperature within a small range around that set point. If the temperature is set at 68 degrees, the thermostat turns the AC on when the temperature is, say, 70, and turns it off when it’s cooled down to, say, 66.Every few seconds, our system slightly changed the timing of air-conditioning compressor switching for some of the 100 air conditioners, causing the units’ aggregate power consumption to change. In this way, our small group of home air conditioners reacted to grid changes the way a power plant would – using more or less energy to balance the grid and keep the frequency near 60 hertz.Moreover, our system was designed to keep home temperatures within the same small temperature range around the set point.Testing the approachWe ran our system in four tests, each lasting one hour. We found two encouraging results.First, the air conditioners were able to provide frequency regulation at least as accurately as a traditional power plant. Therefore, we showed that air conditioners could play a significant role in increasing grid flexibility. But perhaps more importantly – at least in terms of encouraging people to participate in these types of systems – we found that we were able to do so without affecting people’s comfort in their homes.We found that home temperatures did not deviate more than 1.6 Fahrenheit from their set point. Homeowners were allowed to override the controls if they got uncomfortable, but most didn’t. For most tests, we received zero override requests. In the worst case, we received override requests from two of the 100 homes in our test.In practice, this sort of technology could be added to commercially available internet-connected thermostats. In exchange for credits on their energy bills, users could choose to join a service run by the thermostat company, their utility provider or some other third party.Then people could turn on the air conditioning in the summer heat without that pang of guilt, knowing they were helping to make the grid more reliable and more capable of accommodating renewable energy sources – without sacrificing their own comfort in the process.This article was originally published on The Conversation. Read the original article.
    #airconditioning #can #help #power #grid
    Air-Conditioning Can Help the Power Grid instead of Overloading It
    June 13, 20256 min readAir-Conditioning Can Surprisingly Help the Power Grid during Extreme HeatSwitching on air-conditioning during extreme heat doesn’t have to make us feel guilty—it can actually boost power grid reliability and help bring more renewable energy onlineBy Johanna Mathieu & The Conversation US Imagedepotpro/Getty ImagesThe following essay is reprinted with permission from The Conversation, an online publication covering the latest research.As summer arrives, people are turning on air conditioners in most of the U.S. But if you’re like me, you always feel a little guilty about that. Past generations managed without air conditioning – do I really need it? And how bad is it to use all this electricity for cooling in a warming world?If I leave my air conditioner off, I get too hot. But if everyone turns on their air conditioner at the same time, electricity demand spikes, which can force power grid operators to activate some of the most expensive, and dirtiest, power plants. Sometimes those spikes can ask too much of the grid and lead to brownouts or blackouts.On supporting science journalismIf you're enjoying this article, consider supporting our award-winning journalism by subscribing. By purchasing a subscription you are helping to ensure the future of impactful stories about the discoveries and ideas shaping our world today.Research I recently published with a team of scholars makes me feel a little better, though. We have found that it is possible to coordinate the operation of large numbers of home air-conditioning units, balancing supply and demand on the power grid – and without making people endure high temperatures inside their homes.Studies along these lines, using remote control of air conditioners to support the grid, have for many years explored theoretical possibilities like this. However, few approaches have been demonstrated in practice and never for such a high-value application and at this scale. The system we developed not only demonstrated the ability to balance the grid on timescales of seconds, but also proved it was possible to do so without affecting residents’ comfort.The benefits include increasing the reliability of the power grid, which makes it easier for the grid to accept more renewable energy. Our goal is to turn air conditioners from a challenge for the power grid into an asset, supporting a shift away from fossil fuels toward cleaner energy.Adjustable equipmentMy research focuses on batteries, solar panels and electric equipment – such as electric vehicles, water heaters, air conditioners and heat pumps – that can adjust itself to consume different amounts of energy at different times.Originally, the U.S. electric grid was built to transport electricity from large power plants to customers’ homes and businesses. And originally, power plants were large, centralized operations that burned coal or natural gas, or harvested energy from nuclear reactions. These plants were typically always available and could adjust how much power they generated in response to customer demand, so the grid would be balanced between power coming in from producers and being used by consumers.But the grid has changed. There are more renewable energy sources, from which power isn’t always available – like solar panels at night or wind turbines on calm days. And there are the devices and equipment I study. These newer options, called “distributed energy resources,” generate or store energy near where consumers need it – or adjust how much energy they’re using in real time.One aspect of the grid hasn’t changed, though: There’s not much storage built into the system. So every time you turn on a light, for a moment there’s not enough electricity to supply everything that wants it right then: The grid needs a power producer to generate a little more power. And when you turn off a light, there’s a little too much: A power producer needs to ramp down.The way power plants know what real-time power adjustments are needed is by closely monitoring the grid frequency. The goal is to provide electricity at a constant frequency – 60 hertz – at all times. If more power is needed than is being produced, the frequency drops and a power plant boosts output. If there’s too much power being produced, the frequency rises and a power plant slows production a little. These actions, a process called “frequency regulation,” happen in a matter of seconds to keep the grid balanced.This output flexibility, primarily from power plants, is key to keeping the lights on for everyone.Finding new optionsI’m interested in how distributed energy resources can improve flexibility in the grid. They can release more energy, or consume less, to respond to the changing supply or demand, and help balance the grid, ensuring the frequency remains near 60 hertz.Some people fear that doing so might be invasive, giving someone outside your home the ability to control your battery or air conditioner. Therefore, we wanted to see if we could help balance the grid with frequency regulation using home air-conditioning units rather than power plants – without affecting how residents use their appliances or how comfortable they are in their homes.From 2019 to 2023, my group at the University of Michigan tried this approach, in collaboration with researchers at Pecan Street Inc., Los Alamos National Laboratory and the University of California, Berkeley, with funding from the U.S. Department of Energy Advanced Research Projects Agency-Energy.We recruited 100 homeowners in Austin, Texas, to do a real-world test of our system. All the homes had whole-house forced-air cooling systems, which we connected to custom control boards and sensors the owners allowed us to install in their homes. This equipment let us send instructions to the air-conditioning units based on the frequency of the grid.Before I explain how the system worked, I first need to explain how thermostats work. When people set thermostats, they pick a temperature, and the thermostat switches the air-conditioning compressor on and off to maintain the air temperature within a small range around that set point. If the temperature is set at 68 degrees, the thermostat turns the AC on when the temperature is, say, 70, and turns it off when it’s cooled down to, say, 66.Every few seconds, our system slightly changed the timing of air-conditioning compressor switching for some of the 100 air conditioners, causing the units’ aggregate power consumption to change. In this way, our small group of home air conditioners reacted to grid changes the way a power plant would – using more or less energy to balance the grid and keep the frequency near 60 hertz.Moreover, our system was designed to keep home temperatures within the same small temperature range around the set point.Testing the approachWe ran our system in four tests, each lasting one hour. We found two encouraging results.First, the air conditioners were able to provide frequency regulation at least as accurately as a traditional power plant. Therefore, we showed that air conditioners could play a significant role in increasing grid flexibility. But perhaps more importantly – at least in terms of encouraging people to participate in these types of systems – we found that we were able to do so without affecting people’s comfort in their homes.We found that home temperatures did not deviate more than 1.6 Fahrenheit from their set point. Homeowners were allowed to override the controls if they got uncomfortable, but most didn’t. For most tests, we received zero override requests. In the worst case, we received override requests from two of the 100 homes in our test.In practice, this sort of technology could be added to commercially available internet-connected thermostats. In exchange for credits on their energy bills, users could choose to join a service run by the thermostat company, their utility provider or some other third party.Then people could turn on the air conditioning in the summer heat without that pang of guilt, knowing they were helping to make the grid more reliable and more capable of accommodating renewable energy sources – without sacrificing their own comfort in the process.This article was originally published on The Conversation. Read the original article. #airconditioning #can #help #power #grid
    Air-Conditioning Can Help the Power Grid instead of Overloading It
    www.scientificamerican.com
    June 13, 20256 min readAir-Conditioning Can Surprisingly Help the Power Grid during Extreme HeatSwitching on air-conditioning during extreme heat doesn’t have to make us feel guilty—it can actually boost power grid reliability and help bring more renewable energy onlineBy Johanna Mathieu & The Conversation US Imagedepotpro/Getty ImagesThe following essay is reprinted with permission from The Conversation, an online publication covering the latest research.As summer arrives, people are turning on air conditioners in most of the U.S. But if you’re like me, you always feel a little guilty about that. Past generations managed without air conditioning – do I really need it? And how bad is it to use all this electricity for cooling in a warming world?If I leave my air conditioner off, I get too hot. But if everyone turns on their air conditioner at the same time, electricity demand spikes, which can force power grid operators to activate some of the most expensive, and dirtiest, power plants. Sometimes those spikes can ask too much of the grid and lead to brownouts or blackouts.On supporting science journalismIf you're enjoying this article, consider supporting our award-winning journalism by subscribing. By purchasing a subscription you are helping to ensure the future of impactful stories about the discoveries and ideas shaping our world today.Research I recently published with a team of scholars makes me feel a little better, though. We have found that it is possible to coordinate the operation of large numbers of home air-conditioning units, balancing supply and demand on the power grid – and without making people endure high temperatures inside their homes.Studies along these lines, using remote control of air conditioners to support the grid, have for many years explored theoretical possibilities like this. However, few approaches have been demonstrated in practice and never for such a high-value application and at this scale. The system we developed not only demonstrated the ability to balance the grid on timescales of seconds, but also proved it was possible to do so without affecting residents’ comfort.The benefits include increasing the reliability of the power grid, which makes it easier for the grid to accept more renewable energy. Our goal is to turn air conditioners from a challenge for the power grid into an asset, supporting a shift away from fossil fuels toward cleaner energy.Adjustable equipmentMy research focuses on batteries, solar panels and electric equipment – such as electric vehicles, water heaters, air conditioners and heat pumps – that can adjust itself to consume different amounts of energy at different times.Originally, the U.S. electric grid was built to transport electricity from large power plants to customers’ homes and businesses. And originally, power plants were large, centralized operations that burned coal or natural gas, or harvested energy from nuclear reactions. These plants were typically always available and could adjust how much power they generated in response to customer demand, so the grid would be balanced between power coming in from producers and being used by consumers.But the grid has changed. There are more renewable energy sources, from which power isn’t always available – like solar panels at night or wind turbines on calm days. And there are the devices and equipment I study. These newer options, called “distributed energy resources,” generate or store energy near where consumers need it – or adjust how much energy they’re using in real time.One aspect of the grid hasn’t changed, though: There’s not much storage built into the system. So every time you turn on a light, for a moment there’s not enough electricity to supply everything that wants it right then: The grid needs a power producer to generate a little more power. And when you turn off a light, there’s a little too much: A power producer needs to ramp down.The way power plants know what real-time power adjustments are needed is by closely monitoring the grid frequency. The goal is to provide electricity at a constant frequency – 60 hertz – at all times. If more power is needed than is being produced, the frequency drops and a power plant boosts output. If there’s too much power being produced, the frequency rises and a power plant slows production a little. These actions, a process called “frequency regulation,” happen in a matter of seconds to keep the grid balanced.This output flexibility, primarily from power plants, is key to keeping the lights on for everyone.Finding new optionsI’m interested in how distributed energy resources can improve flexibility in the grid. They can release more energy, or consume less, to respond to the changing supply or demand, and help balance the grid, ensuring the frequency remains near 60 hertz.Some people fear that doing so might be invasive, giving someone outside your home the ability to control your battery or air conditioner. Therefore, we wanted to see if we could help balance the grid with frequency regulation using home air-conditioning units rather than power plants – without affecting how residents use their appliances or how comfortable they are in their homes.From 2019 to 2023, my group at the University of Michigan tried this approach, in collaboration with researchers at Pecan Street Inc., Los Alamos National Laboratory and the University of California, Berkeley, with funding from the U.S. Department of Energy Advanced Research Projects Agency-Energy.We recruited 100 homeowners in Austin, Texas, to do a real-world test of our system. All the homes had whole-house forced-air cooling systems, which we connected to custom control boards and sensors the owners allowed us to install in their homes. This equipment let us send instructions to the air-conditioning units based on the frequency of the grid.Before I explain how the system worked, I first need to explain how thermostats work. When people set thermostats, they pick a temperature, and the thermostat switches the air-conditioning compressor on and off to maintain the air temperature within a small range around that set point. If the temperature is set at 68 degrees, the thermostat turns the AC on when the temperature is, say, 70, and turns it off when it’s cooled down to, say, 66.Every few seconds, our system slightly changed the timing of air-conditioning compressor switching for some of the 100 air conditioners, causing the units’ aggregate power consumption to change. In this way, our small group of home air conditioners reacted to grid changes the way a power plant would – using more or less energy to balance the grid and keep the frequency near 60 hertz.Moreover, our system was designed to keep home temperatures within the same small temperature range around the set point.Testing the approachWe ran our system in four tests, each lasting one hour. We found two encouraging results.First, the air conditioners were able to provide frequency regulation at least as accurately as a traditional power plant. Therefore, we showed that air conditioners could play a significant role in increasing grid flexibility. But perhaps more importantly – at least in terms of encouraging people to participate in these types of systems – we found that we were able to do so without affecting people’s comfort in their homes.We found that home temperatures did not deviate more than 1.6 Fahrenheit from their set point. Homeowners were allowed to override the controls if they got uncomfortable, but most didn’t. For most tests, we received zero override requests. In the worst case, we received override requests from two of the 100 homes in our test.In practice, this sort of technology could be added to commercially available internet-connected thermostats. In exchange for credits on their energy bills, users could choose to join a service run by the thermostat company, their utility provider or some other third party.Then people could turn on the air conditioning in the summer heat without that pang of guilt, knowing they were helping to make the grid more reliable and more capable of accommodating renewable energy sources – without sacrificing their own comfort in the process.This article was originally published on The Conversation. Read the original article.
    Like
    Love
    Wow
    Sad
    Angry
    602
    · 0 Commentarios ·0 Acciones ·0 Vista previa
  • Malicious PyPI Package Masquerades as Chimera Module to Steal AWS, CI/CD, and macOS Data

    Jun 16, 2025Ravie LakshmananMalware / DevOps

    Cybersecurity researchers have discovered a malicious package on the Python Package Indexrepository that's capable of harvesting sensitive developer-related information, such as credentials, configuration data, and environment variables, among others.
    The package, named chimera-sandbox-extensions, attracted 143 downloads and likely targets users of a service called Chimera Sandbox, which was released by Singaporean tech company Grab last August to facilitate "experimentation and development ofsolutions."
    The package masquerades as a helper module for Chimera Sandbox, but "aims to steal credentials and other sensitive information such as Jamf configuration, CI/CD environment variables, AWS tokens, and more," JFrog security researcher Guy Korolevski said in a report published last week.
    Once installed, it attempts to connect to an external domain whose domain name is generated using a domain generation algorithmin order to download and execute a next-stage payload.
    Specifically, the malware acquires from the domain an authentication token, which is then used to send a request to the same domain and retrieve the Python-based information stealer.

    The stealer malware is equipped to siphon a wide range of data from infected machines. This includes -

    JAMF receipts, which are records of software packages installed by Jamf Pro on managed computers
    Pod sandbox environment authentication tokens and git information
    CI/CD information from environment variables
    Zscaler host configuration
    Amazon Web Services account information and tokens
    Public IP address
    General platform, user, and host information

    The kind of data gathered by the malware shows that it's mainly geared towards corporate and cloud infrastructure. In addition, the extraction of JAMF receipts indicates that it's also capable of targeting Apple macOS systems.
    The collected information is sent via a POST request back to the same domain, after which the server assesses if the machine is a worthy target for further exploitation. However, JFrog said it was unable to obtain the payload at the time of analysis.
    "The targeted approach employed by this malware, along with the complexity of its multi-stage targeted payload, distinguishes it from the more generic open-source malware threats we have encountered thus far, highlighting the advancements that malicious packages have made recently," Jonathan Sar Shalom, director of threat research at JFrog Security Research team, said.

    "This new sophistication of malware underscores why development teams remain vigilant with updates—alongside proactive security research – to defend against emerging threats and maintain software integrity."
    The disclosure comes as SafeDep and Veracode detailed a number of malware-laced npm packages that are designed to execute remote code and download additional payloads. The packages in question are listed below -

    eslint-config-airbnb-compatts-runtime-compat-checksolders@mediawave/libAll the identified npm packages have since been taken down from npm, but not before they were downloaded hundreds of times from the package registry.
    SafeDep's analysis of eslint-config-airbnb-compat found that the JavaScript library has ts-runtime-compat-check listed as a dependency, which, in turn, contacts an external server defined in the former packageto retrieve and execute a Base64-encoded string. The exact nature of the payload is unknown.
    "It implements a multi-stage remote code execution attack using a transitive dependency to hide the malicious code," SafeDep researcher Kunal Singh said.
    Solders, on the other hand, has been found to incorporate a post-install script in its package.json, causing the malicious code to be automatically executed as soon as the package is installed.
    "At first glance, it's hard to believe that this is actually valid JavaScript," the Veracode Threat Research team said. "It looks like a seemingly random collection of Japanese symbols. It turns out that this particular obfuscation scheme uses the Unicode characters as variable names and a sophisticated chain of dynamic code generation to work."
    Decoding the script reveals an extra layer of obfuscation, unpacking which reveals its main function: Check if the compromised machine is Windows, and if so, run a PowerShell command to retrieve a next-stage payload from a remote server.
    This second-stage PowerShell script, also obscured, is designed to fetch a Windows batch script from another domainand configures a Windows Defender Antivirus exclusion list to avoid detection. The batch script then paves the way for the execution of a .NET DLL that reaches out to a PNG image hosted on ImgBB.
    "is grabbing the last two pixels from this image and then looping through some data contained elsewhere in it," Veracode said. "It ultimately builds up in memory YET ANOTHER .NET DLL."

    Furthermore, the DLL is equipped to create task scheduler entries and features the ability to bypass user account controlusing a combination of FodHelper.exe and programmatic identifiersto evade defenses and avoid triggering any security alerts to the user.
    The newly-downloaded DLL is Pulsar RAT, a "free, open-source Remote Administration Tool for Windows" and a variant of the Quasar RAT.
    "From a wall of Japanese characters to a RAT hidden within the pixels of a PNG file, the attacker went to extraordinary lengths to conceal their payload, nesting it a dozen layers deep to evade detection," Veracode said. "While the attacker's ultimate objective for deploying the Pulsar RAT remains unclear, the sheer complexity of this delivery mechanism is a powerful indicator of malicious intent."
    Crypto Malware in the Open-Source Supply Chain
    The findings also coincide with a report from Socket that identified credential stealers, cryptocurrency drainers, cryptojackers, and clippers as the main types of threats targeting the cryptocurrency and blockchain development ecosystem.

    Some of the examples of these packages include -

    express-dompurify and pumptoolforvolumeandcomment, which are capable of harvesting browser credentials and cryptocurrency wallet keys
    bs58js, which drains a victim's wallet and uses multi-hop transfers to obscure theft and frustrate forensic tracing.
    lsjglsjdv, asyncaiosignal, and raydium-sdk-liquidity-init, which functions as a clipper to monitor the system clipboard for cryptocurrency wallet strings and replace them with threat actor‑controlled addresses to reroute transactions to the attackers

    "As Web3 development converges with mainstream software engineering, the attack surface for blockchain-focused projects is expanding in both scale and complexity," Socket security researcher Kirill Boychenko said.
    "Financially motivated threat actors and state-sponsored groups are rapidly evolving their tactics to exploit systemic weaknesses in the software supply chain. These campaigns are iterative, persistent, and increasingly tailored to high-value targets."
    AI and Slopsquatting
    The rise of artificial intelligence-assisted coding, also called vibe coding, has unleashed another novel threat in the form of slopsquatting, where large language modelscan hallucinate non-existent but plausible package names that bad actors can weaponize to conduct supply chain attacks.
    Trend Micro, in a report last week, said it observed an unnamed advanced agent "confidently" cooking up a phantom Python package named starlette-reverse-proxy, only for the build process to crash with the error "module not found." However, should an adversary upload a package with the same name on the repository, it can have serious security consequences.

    Furthermore, the cybersecurity company noted that advanced coding agents and workflows such as Claude Code CLI, OpenAI Codex CLI, and Cursor AI with Model Context Protocol-backed validation can help reduce, but not completely eliminate, the risk of slopsquatting.
    "When agents hallucinate dependencies or install unverified packages, they create an opportunity for slopsquatting attacks, in which malicious actors pre-register those same hallucinated names on public registries," security researcher Sean Park said.
    "While reasoning-enhanced agents can reduce the rate of phantom suggestions by approximately half, they do not eliminate them entirely. Even the vibe-coding workflow augmented with live MCP validations achieves the lowest rates of slip-through, but still misses edge cases."

    Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.

    SHARE




    #malicious #pypi #package #masquerades #chimera
    Malicious PyPI Package Masquerades as Chimera Module to Steal AWS, CI/CD, and macOS Data
    Jun 16, 2025Ravie LakshmananMalware / DevOps Cybersecurity researchers have discovered a malicious package on the Python Package Indexrepository that's capable of harvesting sensitive developer-related information, such as credentials, configuration data, and environment variables, among others. The package, named chimera-sandbox-extensions, attracted 143 downloads and likely targets users of a service called Chimera Sandbox, which was released by Singaporean tech company Grab last August to facilitate "experimentation and development ofsolutions." The package masquerades as a helper module for Chimera Sandbox, but "aims to steal credentials and other sensitive information such as Jamf configuration, CI/CD environment variables, AWS tokens, and more," JFrog security researcher Guy Korolevski said in a report published last week. Once installed, it attempts to connect to an external domain whose domain name is generated using a domain generation algorithmin order to download and execute a next-stage payload. Specifically, the malware acquires from the domain an authentication token, which is then used to send a request to the same domain and retrieve the Python-based information stealer. The stealer malware is equipped to siphon a wide range of data from infected machines. This includes - JAMF receipts, which are records of software packages installed by Jamf Pro on managed computers Pod sandbox environment authentication tokens and git information CI/CD information from environment variables Zscaler host configuration Amazon Web Services account information and tokens Public IP address General platform, user, and host information The kind of data gathered by the malware shows that it's mainly geared towards corporate and cloud infrastructure. In addition, the extraction of JAMF receipts indicates that it's also capable of targeting Apple macOS systems. The collected information is sent via a POST request back to the same domain, after which the server assesses if the machine is a worthy target for further exploitation. However, JFrog said it was unable to obtain the payload at the time of analysis. "The targeted approach employed by this malware, along with the complexity of its multi-stage targeted payload, distinguishes it from the more generic open-source malware threats we have encountered thus far, highlighting the advancements that malicious packages have made recently," Jonathan Sar Shalom, director of threat research at JFrog Security Research team, said. "This new sophistication of malware underscores why development teams remain vigilant with updates—alongside proactive security research – to defend against emerging threats and maintain software integrity." The disclosure comes as SafeDep and Veracode detailed a number of malware-laced npm packages that are designed to execute remote code and download additional payloads. The packages in question are listed below - eslint-config-airbnb-compatts-runtime-compat-checksolders@mediawave/libAll the identified npm packages have since been taken down from npm, but not before they were downloaded hundreds of times from the package registry. SafeDep's analysis of eslint-config-airbnb-compat found that the JavaScript library has ts-runtime-compat-check listed as a dependency, which, in turn, contacts an external server defined in the former packageto retrieve and execute a Base64-encoded string. The exact nature of the payload is unknown. "It implements a multi-stage remote code execution attack using a transitive dependency to hide the malicious code," SafeDep researcher Kunal Singh said. Solders, on the other hand, has been found to incorporate a post-install script in its package.json, causing the malicious code to be automatically executed as soon as the package is installed. "At first glance, it's hard to believe that this is actually valid JavaScript," the Veracode Threat Research team said. "It looks like a seemingly random collection of Japanese symbols. It turns out that this particular obfuscation scheme uses the Unicode characters as variable names and a sophisticated chain of dynamic code generation to work." Decoding the script reveals an extra layer of obfuscation, unpacking which reveals its main function: Check if the compromised machine is Windows, and if so, run a PowerShell command to retrieve a next-stage payload from a remote server. This second-stage PowerShell script, also obscured, is designed to fetch a Windows batch script from another domainand configures a Windows Defender Antivirus exclusion list to avoid detection. The batch script then paves the way for the execution of a .NET DLL that reaches out to a PNG image hosted on ImgBB. "is grabbing the last two pixels from this image and then looping through some data contained elsewhere in it," Veracode said. "It ultimately builds up in memory YET ANOTHER .NET DLL." Furthermore, the DLL is equipped to create task scheduler entries and features the ability to bypass user account controlusing a combination of FodHelper.exe and programmatic identifiersto evade defenses and avoid triggering any security alerts to the user. The newly-downloaded DLL is Pulsar RAT, a "free, open-source Remote Administration Tool for Windows" and a variant of the Quasar RAT. "From a wall of Japanese characters to a RAT hidden within the pixels of a PNG file, the attacker went to extraordinary lengths to conceal their payload, nesting it a dozen layers deep to evade detection," Veracode said. "While the attacker's ultimate objective for deploying the Pulsar RAT remains unclear, the sheer complexity of this delivery mechanism is a powerful indicator of malicious intent." Crypto Malware in the Open-Source Supply Chain The findings also coincide with a report from Socket that identified credential stealers, cryptocurrency drainers, cryptojackers, and clippers as the main types of threats targeting the cryptocurrency and blockchain development ecosystem. Some of the examples of these packages include - express-dompurify and pumptoolforvolumeandcomment, which are capable of harvesting browser credentials and cryptocurrency wallet keys bs58js, which drains a victim's wallet and uses multi-hop transfers to obscure theft and frustrate forensic tracing. lsjglsjdv, asyncaiosignal, and raydium-sdk-liquidity-init, which functions as a clipper to monitor the system clipboard for cryptocurrency wallet strings and replace them with threat actor‑controlled addresses to reroute transactions to the attackers "As Web3 development converges with mainstream software engineering, the attack surface for blockchain-focused projects is expanding in both scale and complexity," Socket security researcher Kirill Boychenko said. "Financially motivated threat actors and state-sponsored groups are rapidly evolving their tactics to exploit systemic weaknesses in the software supply chain. These campaigns are iterative, persistent, and increasingly tailored to high-value targets." AI and Slopsquatting The rise of artificial intelligence-assisted coding, also called vibe coding, has unleashed another novel threat in the form of slopsquatting, where large language modelscan hallucinate non-existent but plausible package names that bad actors can weaponize to conduct supply chain attacks. Trend Micro, in a report last week, said it observed an unnamed advanced agent "confidently" cooking up a phantom Python package named starlette-reverse-proxy, only for the build process to crash with the error "module not found." However, should an adversary upload a package with the same name on the repository, it can have serious security consequences. Furthermore, the cybersecurity company noted that advanced coding agents and workflows such as Claude Code CLI, OpenAI Codex CLI, and Cursor AI with Model Context Protocol-backed validation can help reduce, but not completely eliminate, the risk of slopsquatting. "When agents hallucinate dependencies or install unverified packages, they create an opportunity for slopsquatting attacks, in which malicious actors pre-register those same hallucinated names on public registries," security researcher Sean Park said. "While reasoning-enhanced agents can reduce the rate of phantom suggestions by approximately half, they do not eliminate them entirely. Even the vibe-coding workflow augmented with live MCP validations achieves the lowest rates of slip-through, but still misses edge cases." Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post. SHARE     #malicious #pypi #package #masquerades #chimera
    Malicious PyPI Package Masquerades as Chimera Module to Steal AWS, CI/CD, and macOS Data
    thehackernews.com
    Jun 16, 2025Ravie LakshmananMalware / DevOps Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI) repository that's capable of harvesting sensitive developer-related information, such as credentials, configuration data, and environment variables, among others. The package, named chimera-sandbox-extensions, attracted 143 downloads and likely targets users of a service called Chimera Sandbox, which was released by Singaporean tech company Grab last August to facilitate "experimentation and development of [machine learning] solutions." The package masquerades as a helper module for Chimera Sandbox, but "aims to steal credentials and other sensitive information such as Jamf configuration, CI/CD environment variables, AWS tokens, and more," JFrog security researcher Guy Korolevski said in a report published last week. Once installed, it attempts to connect to an external domain whose domain name is generated using a domain generation algorithm (DGA) in order to download and execute a next-stage payload. Specifically, the malware acquires from the domain an authentication token, which is then used to send a request to the same domain and retrieve the Python-based information stealer. The stealer malware is equipped to siphon a wide range of data from infected machines. This includes - JAMF receipts, which are records of software packages installed by Jamf Pro on managed computers Pod sandbox environment authentication tokens and git information CI/CD information from environment variables Zscaler host configuration Amazon Web Services account information and tokens Public IP address General platform, user, and host information The kind of data gathered by the malware shows that it's mainly geared towards corporate and cloud infrastructure. In addition, the extraction of JAMF receipts indicates that it's also capable of targeting Apple macOS systems. The collected information is sent via a POST request back to the same domain, after which the server assesses if the machine is a worthy target for further exploitation. However, JFrog said it was unable to obtain the payload at the time of analysis. "The targeted approach employed by this malware, along with the complexity of its multi-stage targeted payload, distinguishes it from the more generic open-source malware threats we have encountered thus far, highlighting the advancements that malicious packages have made recently," Jonathan Sar Shalom, director of threat research at JFrog Security Research team, said. "This new sophistication of malware underscores why development teams remain vigilant with updates—alongside proactive security research – to defend against emerging threats and maintain software integrity." The disclosure comes as SafeDep and Veracode detailed a number of malware-laced npm packages that are designed to execute remote code and download additional payloads. The packages in question are listed below - eslint-config-airbnb-compat (676 Downloads) ts-runtime-compat-check (1,588 Downloads) solders (983 Downloads) @mediawave/lib (386 Downloads) All the identified npm packages have since been taken down from npm, but not before they were downloaded hundreds of times from the package registry. SafeDep's analysis of eslint-config-airbnb-compat found that the JavaScript library has ts-runtime-compat-check listed as a dependency, which, in turn, contacts an external server defined in the former package ("proxy.eslint-proxy[.]site") to retrieve and execute a Base64-encoded string. The exact nature of the payload is unknown. "It implements a multi-stage remote code execution attack using a transitive dependency to hide the malicious code," SafeDep researcher Kunal Singh said. Solders, on the other hand, has been found to incorporate a post-install script in its package.json, causing the malicious code to be automatically executed as soon as the package is installed. "At first glance, it's hard to believe that this is actually valid JavaScript," the Veracode Threat Research team said. "It looks like a seemingly random collection of Japanese symbols. It turns out that this particular obfuscation scheme uses the Unicode characters as variable names and a sophisticated chain of dynamic code generation to work." Decoding the script reveals an extra layer of obfuscation, unpacking which reveals its main function: Check if the compromised machine is Windows, and if so, run a PowerShell command to retrieve a next-stage payload from a remote server ("firewall[.]tel"). This second-stage PowerShell script, also obscured, is designed to fetch a Windows batch script from another domain ("cdn.audiowave[.]org") and configures a Windows Defender Antivirus exclusion list to avoid detection. The batch script then paves the way for the execution of a .NET DLL that reaches out to a PNG image hosted on ImgBB ("i.ibb[.]co"). "[The DLL] is grabbing the last two pixels from this image and then looping through some data contained elsewhere in it," Veracode said. "It ultimately builds up in memory YET ANOTHER .NET DLL." Furthermore, the DLL is equipped to create task scheduler entries and features the ability to bypass user account control (UAC) using a combination of FodHelper.exe and programmatic identifiers (ProgIDs) to evade defenses and avoid triggering any security alerts to the user. The newly-downloaded DLL is Pulsar RAT, a "free, open-source Remote Administration Tool for Windows" and a variant of the Quasar RAT. "From a wall of Japanese characters to a RAT hidden within the pixels of a PNG file, the attacker went to extraordinary lengths to conceal their payload, nesting it a dozen layers deep to evade detection," Veracode said. "While the attacker's ultimate objective for deploying the Pulsar RAT remains unclear, the sheer complexity of this delivery mechanism is a powerful indicator of malicious intent." Crypto Malware in the Open-Source Supply Chain The findings also coincide with a report from Socket that identified credential stealers, cryptocurrency drainers, cryptojackers, and clippers as the main types of threats targeting the cryptocurrency and blockchain development ecosystem. Some of the examples of these packages include - express-dompurify and pumptoolforvolumeandcomment, which are capable of harvesting browser credentials and cryptocurrency wallet keys bs58js, which drains a victim's wallet and uses multi-hop transfers to obscure theft and frustrate forensic tracing. lsjglsjdv, asyncaiosignal, and raydium-sdk-liquidity-init, which functions as a clipper to monitor the system clipboard for cryptocurrency wallet strings and replace them with threat actor‑controlled addresses to reroute transactions to the attackers "As Web3 development converges with mainstream software engineering, the attack surface for blockchain-focused projects is expanding in both scale and complexity," Socket security researcher Kirill Boychenko said. "Financially motivated threat actors and state-sponsored groups are rapidly evolving their tactics to exploit systemic weaknesses in the software supply chain. These campaigns are iterative, persistent, and increasingly tailored to high-value targets." AI and Slopsquatting The rise of artificial intelligence (AI)-assisted coding, also called vibe coding, has unleashed another novel threat in the form of slopsquatting, where large language models (LLMs) can hallucinate non-existent but plausible package names that bad actors can weaponize to conduct supply chain attacks. Trend Micro, in a report last week, said it observed an unnamed advanced agent "confidently" cooking up a phantom Python package named starlette-reverse-proxy, only for the build process to crash with the error "module not found." However, should an adversary upload a package with the same name on the repository, it can have serious security consequences. Furthermore, the cybersecurity company noted that advanced coding agents and workflows such as Claude Code CLI, OpenAI Codex CLI, and Cursor AI with Model Context Protocol (MCP)-backed validation can help reduce, but not completely eliminate, the risk of slopsquatting. "When agents hallucinate dependencies or install unverified packages, they create an opportunity for slopsquatting attacks, in which malicious actors pre-register those same hallucinated names on public registries," security researcher Sean Park said. "While reasoning-enhanced agents can reduce the rate of phantom suggestions by approximately half, they do not eliminate them entirely. Even the vibe-coding workflow augmented with live MCP validations achieves the lowest rates of slip-through, but still misses edge cases." Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post. SHARE    
    Like
    Love
    Wow
    Sad
    Angry
    514
    · 2 Commentarios ·0 Acciones ·0 Vista previa
CGShares https://cgshares.com