The Banshee Queen πŸ‘‘'s Avatar

The Banshee Queen πŸ‘‘

@cyberoverdrive.bsky.social

#threatintel @Recorded Future | Formerly @PwC GTI | Malware & infrastructure analysis with a side of cyberpunk. πŸŒƒπŸŒŒ She/her, support πŸ³οΈβ€πŸŒˆπŸ³οΈβ€βš§οΈβœ¨

871 Followers  |  274 Following  |  109 Posts  |  Joined: 19.11.2024
Posts Following

Posts by The Banshee Queen πŸ‘‘ (@cyberoverdrive.bsky.social)

move slow and repair things

06.03.2026 12:06 β€” πŸ‘ 3679    πŸ” 1188    πŸ’¬ 5    πŸ“Œ 0
Preview
Video Shows US Tomahawk Missile Strike Next to Girls’ School in Iran - bellingcat New video footage shows a US Tomahawk missile hitting an Islamic Revolutionary Guard Corps (IRGC) facility in Minab, Iran, on Feb 28, showing for the first time that the US struck the area. The footag...

New from Bellingcat - Video Shows US Tomahawk Missile Strike Next to Girls’ School in Iran
www.bellingcat.com/news/2026/03...

08.03.2026 19:09 β€” πŸ‘ 343    πŸ” 149    πŸ’¬ 5    πŸ“Œ 14
Inside Coruna: Reverse Engineering a Nation-State iOS Exploit Kit | NadSec Deep-dive into Coruna - a nation-state iOS exploit kit reverse-engineered from obfuscated JavaScript. WebKit RCE, PAC bypass, JIT cage escape.

Reverse-engineered Coruna - a nation-state iOS exploit kit - from raw JavaScript. 28 modules + MUCH MORE!
www.nadsec.online/blog/coruna
www.nadsec.online/blog/coruna-...
(technical analysis more interesting, read coruna blog post first, technical analysis looks better on github, link on-site)

06.03.2026 08:20 β€” πŸ‘ 4    πŸ” 3    πŸ’¬ 1    πŸ“Œ 3
Preview
They Came to Spy on America. They Stayed to Coach Little League. In the wake of the Cold War, some Soviet bloc spies decided their fake American lives weren’t so bad.

NEW, from me: A secret chapter of Cold War history, told here for the first time. A deep cover Soviet Bloc spy living in America as the Berlin Wall fell. The shocking moves by a European intel chief. And the incredible CI chess games by FBI and CIA counterspies.

www.politico.com/news/magazin...

08.03.2026 15:42 β€” πŸ‘ 48    πŸ” 14    πŸ’¬ 2    πŸ“Œ 1

"Just after starting on Cars 2, I was told by a superior that I would be uninvited from all weekly art department meetings because Lasseter 'has a hard time controlling himself' around young women... It was clear that the institution was working hard to protect him, at the expense of women like me."

08.03.2026 11:23 β€” πŸ‘ 1800    πŸ” 688    πŸ’¬ 16    πŸ“Œ 27

I expect we'll see a lot of this coming from the US administration

08.03.2026 16:20 β€” πŸ‘ 310    πŸ” 124    πŸ’¬ 10    πŸ“Œ 2

Iran's Fars News Agency confirmed that the country's military intentionally targeted AWS data centers in the region to see if they played a role in supporting the US military's attacks.

Strikes hit AWS data centers in Bahrain and the UAE, and a Microsoft data center

t.me/farsna/41529...

08.03.2026 14:38 β€” πŸ‘ 13    πŸ” 10    πŸ’¬ 0    πŸ“Œ 0

Starting to see Nordic countries detaining and boarding more shadow fleet ships. There has been a hard to understand hesitancy to do this www.dn.se/direkt/2026-...

07.03.2026 11:47 β€” πŸ‘ 162    πŸ” 44    πŸ’¬ 5    πŸ“Œ 3

Yes. And we have to talk about this now, because talking about it is the first step to making it seem like a callous crime rather than a surprising emergency.

07.03.2026 02:43 β€” πŸ‘ 3755    πŸ” 1262    πŸ’¬ 68    πŸ“Œ 23
Preview
From Ukraine to Iran, Hacking Security Cameras Is Now Part of War’s β€˜Playbook’ New research shows hundreds of attempts by apparent Iranian state hackers to hijack consumer-grade cameras, timed to missile and drone strikes. Israel, Russia, and Ukraine have also adopted this trick...

Hacking internet-connected civilian security cameras for recon has become a standard operating procedure of modern warfare. First for Russia and Ukraine, now for Israel and Iran.

Your insecure internet-of-things surveillance system is now their targeting system.

www.wired.com/story/from-u...

06.03.2026 14:16 β€” πŸ‘ 199    πŸ” 106    πŸ’¬ 3    πŸ“Œ 9
Preview
The Most Chilling Detail in the U.S. Attack on an Iranian Naval Ship The Iranian warship was taking part in an international exercise with many other countriesβ€”including the United States.

That Iranian Navy ship we torpedoed had no ammunition on board because that was a requirement to participate in the MILAN 2026 exercise (organized by the Indian Navy).

The US Navy knew this because IT ALSO PARTICIPATED IN THE EXERCISE. What a national embarrassment.
newrepublic.com/post/207429/...

06.03.2026 16:40 β€” πŸ‘ 843    πŸ” 350    πŸ’¬ 54    πŸ“Œ 39
Post image

Fascinating on the critical minerals consumed in US weapons in the past week and the time it will take to replenish those. Gallium is a particular concern.
foreignpolicy.com/2026/03/05/i...

06.03.2026 16:56 β€” πŸ‘ 114    πŸ” 40    πŸ’¬ 9    πŸ“Œ 2
Preview
Israel says it knocked out Iran’s cyber warfare headquarters But it’s unclear if the strike has fully taken out Iran’s ability to launch cyberattacks as the Middle East war expands.

I absolutely beg people not to take the IDF’s word that it hit IRGC-CEC HQ as a datapoint that is detailed or reliable enough to support any assessments about a meaningful reduction in Iran’s cyber capacity.

Neither the IRGC nor the MOIS has their actual CNO operators centralized in tidy locations.

06.03.2026 07:12 β€” πŸ‘ 20    πŸ” 3    πŸ’¬ 2    πŸ“Œ 0
Preview
Earth Is Warming Faster Than Previously Estimated, New Study Shows Researchers found the first statistically significant evidence that global warming is accelerating.

"Planetary warming has significantly accelerated over the past 10 years, with temperatures rising at a higher rate since 2015 than in any previous decade on record, a new study showed." www.bloomberg.com/news/article...

06.03.2026 14:35 β€” πŸ‘ 9    πŸ” 4    πŸ’¬ 0    πŸ“Œ 1

NSO Group has been sanctioned by the US because of abuses connected to its Pegasus spyware

Of course it's furiously lobbying to get off of those lists, in order to open up the lucrative πŸ‡ΊπŸ‡Έ defence and intelligence contract opportunities

@vaspanagiotopoulos.com describes those efforts in detail πŸ‘‡

04.03.2026 15:05 β€” πŸ‘ 13    πŸ” 11    πŸ’¬ 0    πŸ“Œ 0

No "stupid rules of engagement" -- like, you know, the Geneva Convention.

It's clear where the πŸ‡ΊπŸ‡Έ stands on international law.

Question for Canadians πŸ‡¨πŸ‡¦: what's our position?

02.03.2026 14:43 β€” πŸ‘ 18    πŸ” 5    πŸ’¬ 0    πŸ“Œ 0
Preview
Reframing misinformation as informational-systemic risk in the age of societal volatility | HKS Misinformation Review When a bank run, a pandemic, or an election spirals out of control, the spark is often informational. In 2023, rumors online helped accelerate the collapse of Silicon Valley Bank. During COVID-19, fal...

The danger of misinformation lies "...in its capacity to undermine...confidence in science, the legitimacy of elections, and shared historical narratives...[S]ystemic risk analysis...helps clarify why misinformation should be understood as a structural condition..." See following link πŸ‘‡πŸΌ

02.03.2026 06:27 β€” πŸ‘ 70    πŸ” 20    πŸ’¬ 2    πŸ“Œ 1
Preview
Meta won’t let morality get in the way of a product launch What a great time to add facial recognition to everything!

β€œJust because you are outside of your home doesn’t mean you have consented to having a random bozo collect your face and your name, the latter of which can enable them to search for your digital presence or even home address. The act of existing in public should not carry those risks.”

01.03.2026 14:19 β€” πŸ‘ 755    πŸ” 299    πŸ’¬ 23    πŸ“Œ 26

Those 100 or so children that were killed in an Israeli airstrike in Iran. They all had names. They had parents, siblings and perhaps pets. They had best friends. They had dreams, frustrations and anxieties. They had moments of utter happiness. And each of them was someone else's everything.

01.03.2026 06:24 β€” πŸ‘ 52    πŸ” 18    πŸ’¬ 1    πŸ“Œ 1

if people are using classified information to place bets, then theoretically others can analyze betting behavior to find signals that reveal classified information.

01.03.2026 03:28 β€” πŸ‘ 3451    πŸ” 941    πŸ’¬ 44    πŸ“Œ 35
Preview
Exclusive: US orders diplomats to fight data sovereignty initiatives An internal diplomatic cable said such efforts could interfere with AI-related services.

Scoop: Rubio has ordered US diplomats to fight data sovereignty initiatives worldwide

www.reuters.com/sustainabili...

25.02.2026 11:15 β€” πŸ‘ 45    πŸ” 46    πŸ’¬ 9    πŸ“Œ 24
Post image

The US tech giants use a lot of subsea cable connectivity - and these days, they're major cable owners (including sole owners).

What would happen if they, for whatever reason, decided to suspend connectivity to Europe?

www.politico.eu/article/us-t...

(Me @politico.eu. No paywall.)

25.02.2026 09:34 β€” πŸ‘ 31    πŸ” 18    πŸ’¬ 1    πŸ“Œ 2
Preview
Here’s What a Google Subpoena Response Looks Like, Courtesy of the Epstein Files The US Justice Department disclosures give fresh clues about how tech companies handle government inquiries about your data.

NEW: One aspect of the Epstein Files I find fascinating is that they're a rare window into the inner-workings of a federal investigation, including how tech companies respond to government requests for information. We looked at some Google-related ones: www.wired.com/story/heres-...

24.02.2026 23:27 β€” πŸ‘ 88    πŸ” 32    πŸ’¬ 3    πŸ“Œ 0

This is Contagious Interview and I’m not sure why Microsoft didn’t attribute in the blog. I have a couple guesses but that’s all they would be: guesses.

25.02.2026 04:08 β€” πŸ‘ 5    πŸ” 2    πŸ’¬ 1    πŸ“Œ 0
Preview
Russian firms have routed $8bn of trade through British island territories since invasion of Ukraine Anti-corruption group Transparency International have catalogued β€˜sanctions circumvention’ channelled through β€˜unaccountable jurisdictions’

Drilling kit for Russia's money-spinning oil industry, yachts linked to Medvedev and Yanukovych, an aircraft for Chechen warlord Ramzan Kadyrov.

All part of $8bn trade flowing through the UK's island havens since 2022.

25.02.2026 08:15 β€” πŸ‘ 168    πŸ” 93    πŸ’¬ 0    πŸ“Œ 2
Preview
Treasury sanctions Russian zero-day broker accused of buying exploits stolen from U.S. defense contractor | TechCrunch The U.S. Treasury announced it was imposing sanctions against a Russian broker of zero-day exploits, its founder and two affiliates, citing a threat to U.S. national security. Another affiliated zero-...

NEW: The U.S. government is sanctioning Russian zero-day broker Operation Zero and its founder, alleging it acquired stolen hacking tools from U.S. defense contractor L3Harris Trenchant.

The U.S. said former Trenchant boss Peter Williams stole and sold these exploits to Operation Zero.

24.02.2026 19:03 β€” πŸ‘ 16    πŸ” 10    πŸ’¬ 2    πŸ“Œ 2

censys.com/blog/vshell/

24.02.2026 18:55 β€” πŸ‘ 1    πŸ” 1    πŸ’¬ 0    πŸ“Œ 0
Preview
North Korean Lazarus Group Now Working With Medusa Ransomware North Korean attackers continuing to mount extortion attacks against the U.S. healthcare sector despite indictment.

Moonstone Sleet using Medusa ransomware www.security.com/threat-intel...

24.02.2026 12:41 β€” πŸ‘ 2    πŸ” 3    πŸ’¬ 1    πŸ“Œ 0
Post image

Nice @maggiemiller.bsky.social writeup on how CISA is scaling back support to state and local governments during the DHS shutdown: www.politico.com/newsletters/...

23.02.2026 15:32 β€” πŸ‘ 12    πŸ” 4    πŸ’¬ 1    πŸ“Œ 2

Cellebrite taking a page out of the NSO Group playbook.

Denialism is a bad look for a company that tries to frame itself as more ethical than notorious spyware companies.

And a good sign that there are deeper issues with the company.

23.02.2026 15:41 β€” πŸ‘ 23    πŸ” 14    πŸ’¬ 0    πŸ“Œ 0