Avatar
Catalin Cimpanu
5813cb0c08b954765976fe9867ea38b2b1524e39b1f75ab22b326e25833aa766
Cybersecurity reporter for Risky Business #infosec #cybersecurity #security

Telegram founder and general a-hole Pavel Durov, who's IM network hosts hundreds of groups where info-ops coordinate their activity and pay for content, is annoyed that democracies are fighting back against the damage he, personally, has helped usher in in many autocratic regimes

-US charges major ransomware figure

-White House to keep CyberCom and NSA dual role

-Apple ships "always-on" memory safety protection feature

-another massive supply chain attack hits the npm world

-Vietnam mega-breach

-Jeremy Clarkson's farm hacked

-Ransomware hits K Club before Irish Open

-SwissBorg hacked for $41mil

-Nemo Protocol hacked for $2.4mil

-Plex resets passwords after breach

-Tor VPN now available

Podcast: https://risky.biz/RBNEWS476/

Newsletter: https://news.risky.biz/risky-bulletin-us-charges-major-ransomware-figure/

Poland's data protection agency has fined McDonald's Poland almost €4 million for leaking employee personal data

This is the second-largest GDPR fine handed out by Polish authorities

https://uodo.gov.pl/pl/138/3827

Fun times ahead for Pegasus customers

Israeli ambassador to Spain threatens to use Pegasus data seized from NSO to attack Spanish government

"Mi Gobierno aún no ha respondido con revelaciones de Pegasus"

"My Government has not yet responded with Pegasus revelations"

https://www.elespanol.com/espana/politica/20250527/embajador-israel-funciones-advierte-gobierno-no-respondido-revelaciones-pegasus/1003743774464_0.html

Elon Musk: We're modifying the algorithm to surface tweets from smaller accounts

The accounts:

Happy one-week anniversary, CrowdStrike customers!

Thanks to that stupid EU cookie bs, the

Wayback Machine is now capturing those popups instead of a site's content

How about you f*** off instead

Sometimes I wonder why the f*** I even bother using Signal

Travian is still online

I am actually impressed

GhostRace - Exploiting and Mitigating Speculative Race Conditions

https://www.vusec.net/projects/ghostrace/

Jury Finds Russian-Swedish Operator of ‘Bitcoin Fog’ Guilty of Running the Darknet Cryptocurrency Mixer

https://www.justice.gov/usao-dc/pr/jury-finds-russian-swedish-operator-bitcoin-fog-guilty-running-darknet-cryptocurrency

Hunt & Hackett looks at the leak from Chinese hacker-for-hire contractor i-SOON and its possible ties to at least three Chinese APTs—Poison Carp (also known as Evil Eye, Earth Empusa, EvilBamboo), Jackpot Panda, and APT41 (also known as Double Dragon, Wicked Panda, Bronze Atlas).

https://www.huntandhackett.com/blog/isoon-leak-sheds-light

Broadcom has merged Carbon Black into its Symantec cybersecurity division.

The two brands will continue to operate separately. Broadcom acquired the Carbon Black Black last year as part of its $69 billion acquisition of VMware. The company initially planned to sell off Carbon Black.

Broadcom previously acquired Symantec for $10.7 billion in August 2019.

https://www.broadcom.com/blog/broadcom-brings-together-two-proven-portfolios-to-deliver-complete-hybrid-cloud-cybersecurity

Tuta has enabled quantum-safe encryption by default on all new Tuta Mail accounts.

https://tuta.com/blog/post-quantum-cryptography

Is Twitch just endless commercials now?

Spotify saying the quiet part out loud

Article title: Spotify will end service in Uruguay due to bill requiring fair pay for artists

https://mixmag.net/read/spotify-end-service-uruguay-copyright-law-change-artists-fair-pay-amendment-news

Senior Ukrainian cybersecurity officials sacked amid corruption probe

Yurii Shchyhol and Victor Zhora were accused of participating in a scheme to contract software at inflated prices.

https://cyberscoop.com/zhora-shchyhol-fired-corruption/