Robert Malmgren's Avatar

Robert Malmgren

@robertmalmgren.bsky.social

cybersecurity guy, often in the context of OT. Music, guitars, concerts

369 Followers  |  614 Following  |  61 Posts  |  Joined: 16.11.2024  |  2.2369

Latest posts by robertmalmgren.bsky.social on Bluesky

Post image

AWS Outage #itwasdns

20.10.2025 09:46 β€” πŸ‘ 811    πŸ” 152    πŸ’¬ 14    πŸ“Œ 13
Post image

With the AWS outage, nowβ€˜s as good a time as any to post this old strip.

20.10.2025 10:18 β€” πŸ‘ 2679    πŸ” 1063    πŸ’¬ 17    πŸ“Œ 29
Preview
Even the Inventor of 'Vibe Coding' Says Vibe Coding Can't Cut It Humans keep hanging on.

Even the Inventor of 'Vibe Coding' Says Vibe Coding Can't Cut It

19.10.2025 19:12 β€” πŸ‘ 8    πŸ” 4    πŸ’¬ 0    πŸ“Œ 0
Preview
Chinese cyberspies compromised Russian tech provider : Who needs enemies when you have friends like Xi?

Chinese cyberspies snoop on Russian IT biz in rare east-on-east attack www.theregister.com/2025/10/16/c...

19.10.2025 07:42 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
npm, PyPI, and RubyGems Packages Found Sending Developer Data to Discord Channels Researchers expose Discord webhook C2 in npm, PyPI, RubyGems; North Korean actors published 338 malicious npm packages with 50k+ downloads.

npm, PyPI, and RubyGems Packages Found Sending Developer Data to Discord Channels thehackernews.com/2025/10/npm-...

18.10.2025 03:12 β€” πŸ‘ 1    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Preview
Fuji Electric HMI Configurator Flaws Expose Industrial Organizations to Hacking Fuji Electric has released patches and Japan’s JPCERT has informed organizations about the vulnerabilities.

Fuji Electric HMI Configurator Flaws Expose Industrial Organizations to Hacking www.securityweek.com/fuji-electri...

17.10.2025 21:12 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Operation Zero Disco: Attackers Exploit Cisco SNMP Vulnerability to Deploy Rootkits Trendβ„’ Research has uncovered an attack campaign exploiting the Cisco SNMP vulnerability CVE-2025-20352, allowing remote code execution and rootkit deployment on unprotected devices, with impacts obse...

Great investigation from Trend Micro with the contributions from Joey Chen! Threat actor are actively targeting the SNMP protocol on routers for exploitation.

www.trendmicro.com/en_us/resear...

15.10.2025 14:18 β€” πŸ‘ 4    πŸ” 1    πŸ’¬ 1    πŸ“Œ 0

Contrary to popular belief, some things shouldn't be connected to any network.

15.10.2025 00:13 β€” πŸ‘ 6    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
Attacks on Palo Alto PAN-OS Global Protect Login Portals Surge from 2,200 IPs A massive escalation in attacks targeting Palo Alto Networks PAN-OS GlobalProtect login portals, with over 2,200 unique IP addresses conducting reconnaissance operations as of October 7, 2025.

Attacks on Palo Alto PAN-OS Global Protect Login Portals Surge from 2,200 IPs share.google/3AKnoRQdBoy1...

11.10.2025 18:23 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
FBI takedown banner appears on BreachForums site as Scattered Spider promotes leak As part of its plan to extort high-profile customers of Salesforce, the Scattered Spider group had revived the BreachForums platform. The site now bears an FBI seizure notice.

FBI takedown banner appears on BreachForums site as Scattered Spider promotes leak #cybersecurity #hacking #news #infosec #security #technology #privacy

11.10.2025 11:44 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
ID photos of 70,000 users may have been leaked, Discord says The platform says hackers targeted a firm that helped to verify the ages of its users.

Fanns det problem med hela den hΓ€r approachen "skicka en bild av ditt pass/ID", alltsΓ₯?

www.bbc.com/news/article...

09.10.2025 17:49 β€” πŸ‘ 23    πŸ” 8    πŸ’¬ 4    πŸ“Œ 0

Huh, ID checks not such a great idea

09.10.2025 19:15 β€” πŸ‘ 39    πŸ” 11    πŸ’¬ 0    πŸ“Œ 0
Preview
Wiz Finds Critical Redis RCE Vulnerability: CVE‑2025‑49844 | Wiz Blog A 13‑year Redis flaw (CVE‑2025‑49844) allows attackers to escape Lua sandbox and run code on hosts. See Wiz Research’s analysis and mitigations.

RediShell security flaw in Redis:

-remotely exploitable
-CVSSv3 10/10
-impacts all versions released over the past 13 years
-impacts 75% of cloud instances

www.wiz.io/blog/wiz-res...

redis.io/blog/securit...

07.10.2025 10:29 β€” πŸ‘ 20    πŸ” 13    πŸ’¬ 1    πŸ“Œ 4
Preview
NIRS fire destroys government's cloud storage system, no backups available A fire at the National Information Resources Service (NIRS) Daejeon headquarters destroyed the government’s G-Drive cloud storage system, erasing work files saved individually by some 750,000 civil servants.

A fire at the National Information Resources Service (NIRS) Daejeon headquarters destroyed the government’s G-Drive cloud storage system, erasing work files saved individually by some 750,000 civil servants.

05.10.2025 21:02 β€” πŸ‘ 2    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Cryptography Performance Improvements Coming For Linux 6.18 Adding to the list of pull requests submitted early in advance of the Linux 6.18 merge window opening are several cryptography-related improvements. In particular, some nice performance optimizations once again for the Linux kernel...

Cryptography Performance Improvements Coming For Linux 6.18 - https://www.phoronix.com/news/Linux-6.18-Faster-Crypto

28.09.2025 10:16 β€” πŸ‘ 20    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
What to do if your company discovers a North Korean worker in its ranks U.S. businesses face complex legal, cybersecurity, and compliance challenges after uncovering North Korean IT workers on their payrolls, experts warn at Google's Cyber Defense Summit.

What to do if your company discovers a North Korean worker in its ranks cyberscoop.com/north-korean...

25.09.2025 03:42 β€” πŸ‘ 0    πŸ” 2    πŸ’¬ 0    πŸ“Œ 0
Post image

sec-t can start….

10.09.2025 12:01 β€” πŸ‘ 2    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0
Post image Post image

ICS[AP] Dashboards are updated with the 14 (9 new & 5 updated) CISA Advisories 9/9/25:

Rockwell Automation: 8 New | 1 Update
ABB: 1 New
Mitsubishi Electric: 2 Update
Schneider Electric: 1 Update
EG4 Electronics: 1 Update

www.icsadvisoryproject.com
#icssecurity
#otsecurity
#vulnerabilitymanagement

10.09.2025 03:25 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

Two of my favorite people being intensely human and smart about an overhyped subject. There’s wisdom here. Worth your time.

09.09.2025 02:42 β€” πŸ‘ 83    πŸ” 30    πŸ’¬ 3    πŸ“Œ 1
Preview
AI-powered malware hit 2,180 GitHub accounts in β€œs1ngularity” attack Investigations into the Nx "s1ngularity" NPM supply chain attack have unveiled a massive fallout, with thousands of account tokens and repository secrets leaked.
07.09.2025 06:42 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Preview
The crazy, true story behind the first AI-powered ransomware interview: tldr; boffins did it

The crazy, true story behind the first AI-powered ransomware www.theregister.com/2025/09/05/r...

07.09.2025 03:42 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
NYU team behind AI-powered malware dubbed β€˜PromptLock’ Researchers at NYU’s Tandon School of Engineering confirmed they created PromptLock to illustrate potential harms of AI-powered malware.

NYU team behind AI-powered malware dubbed β€˜PromptLock’ cyberscoop.com/ai-ransomwar...

07.09.2025 04:42 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Cyberattack forces Jaguar Land Rover to tell staff to stay at home Luxury automaker Jaguar Land Rover says employees should stay home through the weekend as it works to mitigate the impact of a cyberattack.

Cyberattack forces Jaguar Land Rover to tell staff to stay at home #cybersecurity #hacking #news #infosec #security #technology #privacy

06.09.2025 18:48 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
Anthropic Agrees to Pay Authors at Least $1.5 Billion in AI Copyright Settlement Anthropic will pay at least $3,000 for each copyrighted work that it pirated. The company downloaded unauthorized copies of books in early efforts to gather training data for its AI tools.

BREAKING: Anthropic has agreed to pay at least $1.5 billion to authors in class action lawsuit for pirating their works www.wired.com/story/anthro...

05.09.2025 19:29 β€” πŸ‘ 612    πŸ” 254    πŸ’¬ 20    πŸ“Œ 72
Preview
AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products An AI supply chain issue named Model Namespace Reuse can allow attackers to deploy malicious models and achieve code execution.

AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products www.securityweek.com/ai-supply-ch...

05.09.2025 09:12 β€” πŸ‘ 0    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0

Not a lot of public reporting on this, but we are seeing a mountain of activity πŸ‘€

04.09.2025 19:36 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 0    πŸ“Œ 0
Post image

Financial Times has a new VDLeyen-jamming article where the most senior expert on GNSS jamming there is, Todd Humphreys, professor of aerospace engineering, agrees with my assessment that the transponder-GPS might have been healthy and the pilot-view GPS might have been jammed.

03.09.2025 22:38 β€” πŸ‘ 65    πŸ” 6    πŸ’¬ 5    πŸ“Œ 0
Post image

Russia's largest oil company is collapsing.
YES!! πŸ‘πŸ‘πŸŽ‰πŸŽŠ

30.08.2025 20:45 β€” πŸ‘ 351    πŸ” 62    πŸ’¬ 12    πŸ“Œ 5
Preview
Japan's utilities cut fossil fuel electricity share to new lows Fossil fuels generated a record low share of Japan's utility-scale electricity supplies over the first half of 2025, marking an important milestone in the energy transition momentum of one of the world's largest fossil fuel consumers.

We're trying to bully Japan into taking our LNG, but ...

"Fossil fuels generated a record low share of Japan's utility-scale electricity supplies over the first half of 2025, marking an important milestone in the energy transition momentum of one of the world's largest fossil fuel consumers."

30.08.2025 19:43 β€” πŸ‘ 695    πŸ” 158    πŸ’¬ 22    πŸ“Œ 11
Preview
a man wearing headphones and a pink shirt is making a funny face in a recording studio . ALT: a man wearing headphones and a pink shirt is making a funny face in a recording studio .
27.08.2025 14:26 β€” πŸ‘ 1    πŸ” 0    πŸ’¬ 0    πŸ“Œ 0

@robertmalmgren is following 20 prominent accounts