Start your day with intelligence. Get The OODA Daily Pulse.

Home > OODA Analysis and Briefs

Analysis

  • Homebrewed

    Consider: Seven radical (black) Muslims arrested in Miami Mid-2005 Population of black men between 20-39 in US prisons: ~ 500,000 (DOJ BJS) In 2004, # Muslim men in just federal facilities ~9,000 (DOJ OIG) % of Muslims in federal facilities who declare affiliation with Sunni or Nation of Islam: 85 All elephants are gray, but…

  • Journalistic Success (Update)

    That’s what we can call subsequent terrorist attacks. Don’t I mean intelligence failure? No, because by all accounts intel is doing everything it can to keep us safe without imposing the “papers please” environment fear-mongers would have you believe we are marching towards. By its own admission there is nothing wrong or illegal about the…

  • Sooner Rather Than Later

    The mailbag fills up early today: When are you neocons going to give up? 500 shells is not a WMD program! They are so old they probably wouldn’t even work! Even your own president doesn’t care! Dude, easy on the exclamation points . . . If your reading comprehension skills were up to snuff you’d…

  • Time to Vote Again

    . . . on NK launch / no launch / shoot-down options at GroupIntel Forums: http://groupintel.net/eve/forums/a/tpc/f/9901014161/m/7341046191

  • Book Review

    Monograph really. Judge Posner’s Remaking Domestic Intelligence. An excellent treatment of the subject. If it isn’t on Charlie Allen’s bookshelf it should be.

  • Techies: Pay Attention

    In a striking departure from the hush-hush culture of intelligence community IT, the CIO’s office for the Director of National Intelligence is running an open online forum about certification and accreditation issues, as well as other technology matters. It might not seem like it, but this is very, very important. It is probably the most…

  • So Many Lost Opportunities

    A perfectly good and entirely feasable idea via Bruce Schneier: There are a variety of encryption technologies that allow you to analyze data without knowing details of the data: I am reminded of the after-action meeting held after a major cyber threat event about, oh, eight years ago. In one room sat the working-level experts…

  • Mailbag

    Did you see Bruce’s post this morning? So much for your profiling argument. Which is what exactly? Were we to continue the parlor game of listing terrorist attacks and linking them to race or religion I’m fairly confident that there would be more tick marks in the swarthy-ethnic-man column than in the pissed-off-whitey column. In…

  • Going Purple

    As part of an effort to break down barriers between intelligence agencies, [Intelligence Community] employees will be required to serve tours of duty outside their home offices to qualify for promotion into the government’s senior ranks. A directive mandating “joint duty” assignments was recently issued by John D. Negroponte, the director of national intelligence. It…

  • For want of some OPSEC, a Jihad Lost

    I predict that US and coalition forces will be out of Iraq much sooner than anyone expects. I base this prediction in part on the intelligence and military aftermath following Abu Musab al-Zarqawi’s death; though not necessarily for the same reasons that other commentators have offered up. Frankly, I think al-Qaida in Iraq is too…

  • DOCEX Rocks

    Courtsey of Time (oddly enough): U.S. intelligence got its first inkling of the plot from the contents of a laptop computer belonging to a Bahraini jihadist captured in Saudi Arabia early in 2003. It contained plans for a gas-dispersal system dubbed “the mubtakkar” (Arabic for inventive). Fearing that al-Qaeda’s engineers had achieved the holy grail…

  • One more reason to hate Red Sox fans

    (H/T Bruce Schneier) Yet another disturbing story about DHS, the punch line being: Homeland Security, the $40-billion-a-year agency set up to combat terrorism after 9/11, has been given universal jurisdiction and can hold anyone on Earth for crimes unrelated to national security — even me for a court date I missed while I was in…

  • Just Pretend its Evidence

    The U.S. FBI may have lost 400 pieces of equipment, National Journal’s Technology Daily reported Monday.The Federal Bureau of Investigation still has not told the Government Accountability Office what has happened to hundreds of pieces of equipment that were supposed to be part of a failed department-wide case-management system. “The FBI also has not provided…

  • HLS: Serious or Not Serious XVI

    Homeland Security Secretary Michael Chertoff no longer has a problem with spam. Not wanting to be deluged with lots of garbage, Chertoff no longer uses e-mail. His conversion to Luddism started after Hurricane Katrina last year, when a deluge of overnight messages about levee breaches flooded his e-mail account, according to a report in U.S.…

  • “John” on IC Reform

    “John Doe,” late of the CIA, sounds off with his ideas on how to shake things up (via Washington Times): Why not reform the intelligence community to make core functions the centerpiece of a truly effective intelligence service? A small but efficient DNI office can manage the community and serve as the link to policy-makers.…

Briefs

  • US-based generative AI job postings up 20% in May, Indeed data show

    Generative AI-related job postings in the United States jumped about 20% last month as companies look to harness a technology that has been widely touted as the next big growth driver, according to data from job portal Indeed. The May figure, at 204 per million job postings, was also more than double the 2021 level…

  • ASML says decoupling chip supply chain is practically impossible

    Decoupling the global semiconductor supply chain would be “extremely difficult and expensive” if not impossible, a senior executive at ASML, the world’s most valuable chip equipment maker, told Nikkei Asia. Christophe Fouquet, ASML’s executive vice president and chief business officer, said in an exclusive interview that any single country would struggle to build its own…

  • Wall Street-Backed Cryptocurrency Exchange EDX Goes Live

    EDX Markets – a cryptocurrency exchange that received support from behemoths in the finance sector, such as Fidelity Digital Assets, Charles Schwab, and Citadel Securities – went live. Initially, the platform will support four of the leading digital assets, including Bitcoin, Ethereum, Bitcoin Cash, and Litecoin. The development could be one reason behind the recent…

  • With West Bank in turmoil, uncertainty over Palestinian leadership intensifies

    Prospects of a negotiated peace between Palestinians and Israelis in the West Bank are looking bleak. A firefight on Monday left seven Palestinians dead and 90 wounded, and retaliatory attacks the following day killed four Israelis. The increasing violence has left many questioning Palestinian President Mahmoud Abbas’ effectiveness in office. The Palestinian Authority (PA) stood…

  • Paris blast: At least 37 hurt, sniffer dogs pick up scent under rubble

    At 4:55 pm GMT, a large blast occurred in Paris’ Latin Quarter. The explosion injured at least 37 individuals, four of which are hospitalized in serious condition. Interior Minister Gerald Darmanin stated that sniffer dogs continue to search for missing people and clues regarding the source of the explosion. Witnesses said they smelled gas before…

  • Bipartisan Bill Proposes Cybersecurity Funds for Rural Water Systems

    The proposed Cybersecurity for Rural Water Systems Act of 2023 would allot $7.5 million dollars per year to securing critical infrastructure. The bill was announced in the House by Representatives Don Davis (NC-01), Zachary Nunn (IA-03), Angie Craig (MN-02), Abigail Spanberger (VA-07), and U.S. House Committee on Agriculture members. The bill specifically focuses on small…

  • Fire breaks out at Romania’s biggest oil refinery

    A fire broke out at Romania’s Black Sea crude oil refinery Petromidia after an explosion occurred on Wednesday. There are reportedly no victims from the explosion or ensuing fire, which has been brought under control by authorities. The refinery, located 150 miles east of Bucharest, is the largest in the country. An emergency response spokesperson…

  • Compromised ChatGPT accounts garner rapid dark web popularity

    Group-IB researchers have identified a large number of stolen ChatGPT credentials on the dark marketplace. Access to ChatGPT accounts can provide bad actors access to sensitive personal and organizational data. Group-IB analysis determined that the majority of victims’ credentials were breached by the Raccoon info stealer. Logs containing stolen ChatGPT information peaked at 26,802 in…

  • Indonesia moves site of ASEAN military drills away from South China Sea

    The joint military exercise for members of the Association of Southeast Asian Nations (ASEAN) is scheduled for September 18-25. The drills were originally going to occur within the southern border of the South China Sea, which is claimed and monitored by multiple nations. China’s claim to sovereignty over the sea rests in the nine-dash line,…

  • Apple Patches iOS Flaws Used in Kaspersky ‘Operation Triangulation’

    Apple released a major iOS update intended to fix bugs exploited during Operation Triangulation. The operation, discovered by Russian cybersecurity company Kaspersky, used zero-click iMessage malware to spy on iOS users. The updates (iOS 16.5.1 and iOS 15.7.7) patched exploited bugs in kernel and WebKit (CVE-2023-32434 and CVE-2023-32435). Although the iOS and associated macOS and…

  • DOJ Launches Cyber Unit to Prosecute Nation-State Threat Actors

    The US Department of Justice (DOJ) established a new National Security Cyber Section to prosecute threat actors that are directly or indirectly backed by foreign governments. NatSec Cyber will allow the National Security Division (NSD) to efficiently prosecute cybercriminals, cyber-enabled threats, and associated money launderers. The new section will also boost DOJ collaboration with the…

  • Jack Ma-Backed Ant Developing Large Language Model Technology

    Jack Ma-backed Ant Group Co. is developing large-language model technology that will power ChatGPT-style services, joining a list of Chinese companies seeking to win an edge in next-generation artificial intelligence. The project known as “Zhen Yi” is being created by a dedicated unit and will deploy in-house research. An Ant spokesperson confirmed the news which…

  • 5 ways generative AI will help bring greater precision to cybersecurity

    Every cybersecurity vendor has a different vision of how generative AI will serve its customers, yet they all share a common direction. Generative AI brings a new focus on data accuracy, precision and real-time insights. DevOps, product engineering and product management are delivering new generative AI-based products in record time, looking to capitalize on the…

  • Biden Discusses Risks and Promises of Artificial Intelligence With Tech Leaders in San Francisco

    President Joe Biden convened a group of technology leaders on Tuesday to debate what he called the “risks and enormous promises” of artificial intelligence. The Biden administration is seeking to figure out how to regulate the emergent field of AI, looking for ways to nurture its potential for economic growth and national security and protect…

  • Google Cloud Launches Anti-Money-Laundering Tool for Banks, Betting on the Power of AI

    Financial institutions have long relied on human judgment to calibrate systems that help spot potentially risky transactions and customers. Now, Google Cloud wants them to let its artificial intelligence technology take greater control of that process. Alphabet’s cloud business on Wednesday announced the launch of a new AI-driven anti-money-laundering product. Like many other tools already…

  • US lawmakers introduce National AI Commission Act

    On June 20, a bipartisan group of United States lawmakers introduced a bill to establish a commission to study the country’s approach toward artificial intelligence (AI). The bill’s primary objective revolves around establishing regulations in the AI industry. The act comes hot on the heels of consumer protection groups in the European Union (EU) urging regulators…

  • World must rethink fundamental approach to Myanmar: UN expert

    The United Nations Special Rapporteur on the human rights situation in Myanmar, Thomas Andrews, has called for a reconsideration of the global approach to the crisis in Myanmar. He criticized the lack of progress in implementing the ASEAN five-point peace plan, which Myanmar’s military government has shown no willingness to implement. The military’s intensified efforts…

  • ‘Underwater noises’ detected in search for missing Titanic sub

    During the search for a missing deep-sea vessel exploring the Titanic wreck, underwater noises were detected in the search area by a Canadian aircraft, leading to the relocation of remotely operated vehicles (ROVs) to investigate the source of the sounds. However, the ROVs yielded negative results so far. The missing submersible, named Titan, was operated…

  • Honduras prison violence: At least 41 killed in women’s jail riot

    A deadly riot occurred at a women’s prison in Honduras, resulting in the deaths of at least 41 people. The violence erupted during a fight between rival gangs, leading to one gang setting a cell on fire. The fire caused most of the deaths, but some victims were also shot. The country’s Deputy Security Minister…

  • US-China tensions: Biden calls Xi a dictator a day after Beijing talks

    During a fundraising event in California, US President Joe Biden referred to Chinese President Xi Jinping as a dictator. Biden’s comments came after US Secretary of State Antony Blinken’s recent talks with Xi aimed at easing tensions between the US and China. Biden also mentioned an incident where the US shot down an alleged Chinese…

  • European Groups Pile On Pressure For Greater Regulation Of Generative AI

    Consumer groups across Europe are urging government investigations into the risks associated with generative AI, according to a report by Norwegian consumer organization Forbrukerrådet. Concerns include closed-off systems hindering external scrutiny, inaccuracies and bias in AI output, and the potential for manipulation and deception of consumers. Privacy and personal integrity are also at stake, as…

  • On Facebook, DHS Investigates Plot To Enslave Female Prisoners

    A DHS investigator has revealed that a 66-year-old Facebook user heavily relied on the platform to target vulnerable women for various exploitative activities such as enforced domestic servitude, theft, babysitting, and sex work. The accused, Clifton Gibbs, and his accomplice, Brooke Walters, are accused of running a decade-long trafficking and enslavement conspiracy that utilized Facebook…

  • VMware Confirms Live Exploits Hitting Just-Patched Security Flaw

    VMware has warned that hackers are actively exploiting a critical vulnerability, CVE-2023-20887, in its Aria Operations for Networks software. The vulnerability allows for command injection attacks, potentially leading to remote code execution. The company had recently released urgent patches to address security defects in the software. Alongside this vulnerability, VMware also disclosed two other critical-severity…

  • Biden Discusses Risks and Promises of Artificial Intelligence With Tech Leaders in San Francisco

    President Joe Biden convened a group of technology leaders to discuss the risks and promises of artificial intelligence (AI). The Biden administration aims to regulate AI to foster economic growth and national security while mitigating potential dangers. The emergence of AI tools has sparked investment but also raised concerns about job displacement, disinformation, and the…

  • Meta’s AI leaders want you to know fears over AI existential risk are “ridiculous”

    It’s a really weird time in AI. In just six months, the public discourse around the technology has gone from “Chatbots generate funny sea shanties” to “AI systems could cause human extinction.” Who else is feeling whiplash? We’ve been here before, of course: AI doom follows AI hype. But this time feels different. The Overton…

  • Is AI revolutionizing cybersecurity? The answer isn’t as clear

    Peruse last quarter’s press releases from top cybersecurity vendors, and it’s hard to miss the focus on artificial intelligence (AI) and machine learning (ML). According to these vendors, traditional security tools are getting boosted by advanced algorithms that can analyze large amounts of event and behavioral data to trigger automated decisions that keep organizations safe…

  • Space Development Agency’s missile warning satellites transmit first images

    The U.S. Space Force’s Space Development Agency said it received initial images from its first missile-warning satellites launched April 2 to low Earth orbit. “First tracking sats, built by SpaceX, achieved first light: infrared images using wide-field-of-view sensors,” the agency said June 14 in a twitter post. The two tracking satellites were part of SDA’s…

  • Keeping An Eye On AI: The New Skills Needed To Embrace Artificial Intelligence

    It’s been called the biggest breakthrough in the fight against deadly superbugs in decades. Scientists have successfully used Artificial Intelligence (AI) to analyse thousands of chemical compounds and identify a new antibiotic to treat lethal drug resistant bacteria. The transformational technology has been hailed as a revolutionary force in science and medicine, but it has…

  • Artificial Intelligence May Eliminate Some Jobs, OpenAI Executive Says

    An executive at a leading artificial-intelligence company has said what many people fear: While its technology may create new jobs, it will likely eliminate some too. “Every large company has an army of people that read and review contracts for revenue recognition purposes, for example,” said Brad Lightcap, chief operating officer of OpenAI, at a…

  • Titanic tourist sub missing for third day with five aboard

    One pilot and four passengers remain deep in the Atlantic after a submersible carrying Titanic tourists went missing on Sunday. The vessel has enough oxygen to last 96 hours, and U.S. and Canadian ships are intensely searching for the craft both underwater and on the surface. U.S. Coast Guard Rear Admiral John Mauger announced that…

  • Qatar strikes second big LNG supply deal with China

    Doha announced on Tuesday that QatarEnergy has signed a LNG supply deal with the China National Petroleum Corporation (CNPC). This agreement marks a significant shift toward China and its allies in the race to secure resources from Qatar’s recent expansion projects. CNPC’s agreement with QatarEnergy establishes that China will purchase 4 million metric tons of…

  • “China’s economy is way more screwed than anyone thought” – Insider Article

    China’s anticipated economic recovery in 2023 has fallen short, raising concerns on Wall Street. Despite expectations of a boom following the end of Beijing’s zero-COVID policy, China’s recovery from the pandemic has been lackluster. Industrial production and trade, both imports and exports, have disappointed. High levels of debt, particularly in the property development sector, weigh…

  • Asus Patches Highly Critical WiFi Router Flaws

    Asus advised consumers on Monday that nine security flaws in its routers allowed for remote code execution, denial-of-service attacks, and authentication bypasses. The computer hardware company distributed firmware updates the same day to address the vulnerabilities. CVE-2018-1160, one of the vulnerabilities, has a high severity rating and has exposed routers to code execution attacks for…

  • Australian Government Says Its Data Was Stolen in Law Firm Ransomware Attack

    HWL Ebsworth, a large Australian law firm with government clients, discovered they were hacked by Alphv/BlackCat on April 28. The Office of the Australian Information Commissioner (OAIC) recently confirmed that government files were stolen during the ransomware attack. According to HWL Ebsworth, the ransomware gang was only able to obtain files from a restricted area…

  • Ransomware Gang Takes Credit for February Reddit Hack

    Last weekend, Alphv/BlackCat claimed responsibility for a February 2023 Reddit hack. The ransomware group claimed they stole 80 gigabytes of sensitive data through a complicated phishing attack. The compromised information includes Reddit business systems, internal documents, source code, employee details, and advertiser data. Reddit stated in February that there was no evidence the attack impacted…

  • New Information Stealer ‘Mystic Stealer’ Rising to Fame

    Mystic Stealer malware first appeared in April 2023, when it was given to experienced hackers for testing. Cyfirma researchers now warn that the malware has become popular among bad actors on underground forums. The developer of Mystic Stealer altered the program according to user feedback which instigated a further surge in usage. There are now…

  • AI-generated child sex images spawn new nightmare for the web

    The revolution in artificial intelligence has sparked an explosion of disturbingly lifelike images showing child sexual exploitation, fueling concerns among child-safety investigators that they will undermine efforts to find victims and combat real-world abuse. Generative-AI tools have set off what one analyst called a “predatory arms race” on pedophile forums because they can create within seconds…

  • Do Kwon gets 4 months in prison in Montenegro on fake passport charges

    Terraform Labs founder Do Kwon has been found guilty of using a false passport by a court in Montenegro and has been sentenced to four months in prison. Kwon’s colleague and former Terraform Labs chief financial officer Han Chong-joon was charged alongside him and received the same sentence. The time both men spent in detention…

  • How generative AI is creating new classes of security threats

    The promised AI revolution has arrived. OpenAI’s ChatGPT set a new record for the fastest-growing user base and the wave of generative AI has extended to other platforms, creating a massive shift in the technology world. It’s also dramatically changing the threat landscape — and we’re starting to see some of these risks come to…

  • SpaceX successfully launches world’s first “space factory”

    On June 12, a SpaceX Falcon 9 rocket deployed 72 small satellites for customers — including the world’s first space factory. The challenge: In 2019, pharma giant Merck revealed that an experiment on the International Space Station had shown how to make its blockbuster cancer drug Keytruda more stable. That meant it could now be…

  • After Artificial Intelligence, Quantum Computing Could Be The Next Big Thing

    Artificial intelligence is clearly the latest craze sweeping the technology industry, but an even bigger trend may be on the horizon in the form of quantum computing — provided it can solve troubling cybersecurity questions. Advances in quantum computing seem destined to humble today’s electronic chip-based supercomputers. These machines work on a subatomic level and use…

  • Yemen prisoner exchange talks wrap with focus on political figure

    The latest conversations between the Yemeni government and the Houthi movement to exchange prisoners has concluded. There has been an increasing focus on a longtime political detainee in the talks, which began on Friday. The talks were held in Jordan’s capital Amman under the auspices of the United Nations, which has negotiated ceasefires and agreements…

  • China welcomes ‘progress’ in US ties after Xi-Blinken talks

    China President Xi Jinping says progress was made between the United States and China on a number of issues during a visit by US Secretary of State Antony Blinken. A 30 minute meeting on Monday with Xi was the last engagement on Blinken’s trip, which also included talks with China’s top diplomate, Wang Yi, and…

  • More deaths in north India amid extreme heat

    Approximately 170 people have died in recent days in two of India’s most populous states amid a heatwave. Hospitals are overwhelmed with patients and routine power outages. In the state of Uttar Pradesh, 119 people have died due to heat-related illnesses over the past few days. In neighboring Bihar, 47 people have died. The northern…

  • Five Palestinians killed in Israeli military raid in Jenin

    Five Palestinians have been killed in a raid into Jenin refugee camp by Israeli forces. An Israeli helicopter fired missiles after Palestinian militants targeted troop carriers with explosives in the conflict. This incident marks an escalation of fighting as raids in the city in the occupied West Bank continue. The Israeli army says several vehicles…

  • Russia-affiliated Shuckworm Intensifies Cyber-Attacks on Ukraine

    The Shuckworm espionage group, believed to be linked to the Russian FSB, has intensified cyber-attacks on Ukraine, targeting military and security intelligence. The campaign involved phishing emails with malicious attachments, deploying backdoors and tools, and spreading custom malware via USB drives. The group displayed persistence, updating its toolset and leveraging legitimate services for command-and-control infrastructure.…

  • A Russian Ransomware Gang Breaches the Energy Department and Other Federal Agencies

    The Department of Energy and other federal agencies were compromised in a global hack by a Russian cyber-extortion group targeting the file-transfer program MOVEit. While the impact on federal agencies was not expected to be significant, other victims, including state motor vehicle agencies and businesses, experienced serious impacts. The hack, attributed to the Cl0p ransomware…

  • Microsoft Says Early June Disruptions to Outlook, Cloud Platform, Were Cyberattacks

    Microsoft has disclosed that distributed denial-of-service (DDoS) attacks by a group called Anonymous Sudan were responsible for the recent service disruptions in its flagship office suite, including Outlook and OneDrive. The attacks, which flooded the sites with junk traffic, temporarily impacted availability but did not compromise customer data. While DDoS attacks are typically a nuisance,…

  • MOVEit Customers Urged to Patch Third Critical Vulnerability

    Progress Software is urging its MOVEit customers to apply patches for a critical SQL injection vulnerability, CVE-2023-35708, which could enable unauthorized access to the MOVEit Transfer database. The vulnerability affects multiple versions of MOVEit Transfer and was disclosed in a way that deviated from industry standards. Progress has responded swiftly to the release of proof-of-concept…

  • MITRE Outlines Regulatory Considerations for AI Security

    MITRE has released a new paper outlining a set of recommendations for establishing a regulatory framework for addressing potential security risks posed by artificial intelligence. The paper, titled “A Sensible Regulatory Framework for AI Security,” lays out regulatory considerations in three categories of application: AI as a component or subsystem; AI as human augmentation; and…

  • IBM Achieves Breakthrough In Quantum Computing

    For the first time, IBM has used a quantum computer to solve a problem that that stumps the leading classical methods. This accomplishment marks a significant milestone in the path towards useful quantum computing systems and software. IBM has published a paper in Nature that describes a breakthrough in Quantum computing wherein they solved a…

  • Virgin Galactic’s first commercial flight to space is days away from taking off

    Virgin Galactic’s commercial flights to space are getting ready for liftoff. The company announced on Thursday that it’s just days away from sending “private astronauts” on its first flight, “Galactic 01” beyond the realms of Earth. Galactic 01 is expected to fly between June 27 and June 30 with three crew members on board to conduct…

  • AI automation could take over 50% of today’s work activity by 2045: McKinsey

    In just 22 years, generative AI may be able to fully automate half of all work activity conducted today, including tasks related to decision-making, management, and interfacing with stakeholders, according to a new report from McKinsey & Co. The prediction came from the management consulting firm report on June 14, forecasting 75% of generative AI…

  • Is The New AMD MI300X Better Than The NVIDIA H100?

    AMD disclosed a few more details on the MI300 GPU, due later this year, with support for 192GB of memory on the MI300X. Here’s what we know. In today’s world of ChatGPT, everyone keeps asking if the NVIDIA A100 and H100 GPUs are the only platforms that can deliver the computational and large memory requirements of…

  • Russian National Arrested, Charged in US Over Role in LockBit Ransomware Attacks

    Russian citizen Ruslan Magomedovich Astamirov was recently arrested in Arizona. The U.S. Department of Justice charged him with deploying LockBit ransomware while using multiple IP addresses and email accounts. An FBI complaint claims that Astamirov has worked for LockBit since 2020 and has carried out attacks on at least five US victims. Court documents also…

  • Fake Security Researcher Accounts Pushing Malware Disguised as Zero-Day Exploits

    VulnCheck discovered fake security researcher accounts sharing malware disguised as zer0-day exploits for Chrome, Discord, Signal, Whatsapp, and Exchange. The fake accounts mainly operated on GitHub and used Twitter to attract users to GitHub repositories. The accounts claim to work for the non-existent High Sierra Cyber Security and use profile pictures of real researchers. VulnCheck…

  • Chinese spies breached hundreds of public, private networks, security firm says

    Mandiant stated on Thursday that they have “high confidence” that the Chinese-backed group UNC 4841 is behind the exploitation of Barracuda Network’s Email Security Gateway. Starting in October 2022, the hackers sent malicious emails to Barracuda clients to gain access to their devices and sensitive information. Over half of the victims are American, a quarter…

  • Ransomware Group Starts Naming Victims of MOVEit Zero-Day Attacks

    The CIOp ransomware group named over two dozen organizations they targeted during a recent campaign. The hackers utilized CVE-2023-34362, a zero-day vulnerability in the MOVEit managed file transfer (MFT) software. CIOp allegedly stole data from hundreds of organizations in late May 2023 and set a June 14 contact deadline. The organizations now listed on the…

  • Australia blocks new Canberra Russian embassy site over spying risk

    Australia has blocked Russia from building an embassy near its parliament, due to a spying risk. Intelligence agencies have given clear advice on the move according to Prime Minister Anthony Albanese. Laws drafter to halt construction were rapidly passed on Thursday after legal attempts to block the development failed. The Kremlin called the move “yet…

  • Seoul salvages part of rocket from North Korea’s failed launch

    South Korea has salvaged a piece of a rocket that was used in North Korea’s failed military satellite launch last month. The part was salvaged on Thursday evening and searches are continuing for additional objects from what North Korea has claimed was a space launch vehicle. North Korea attempted to launch its first spy satellite…