John Scott-Railton

John Scott-Railton

@jsrailton.bsky.social

Chasing digital badness. Senior Researcher at Citizen Lab, but words here are mine.

27,029 Followers 463 Following 704 Posts Joined Apr 2023
3 days ago
Post image

3/ What an absolutely wild story. And yet another Epstein docs mystery.

25 1 0 0
3 days ago
Post image

2/ Hacker stumbles across Epstein child abuse on FBI server.

Is disgusted.

Threatens to call FBI.

FBI gets on video call to prove they are in fact the FBI.

33 8 2 1
3 days ago
full text for all screenshots is here, please let me know if you use Alt Text and find this helpful: https://www.reuters.com/world/us/foreign-hacker-2023-compromised-epstein-files-held-by-fbi-source-documents-show-2026-03-11/ Post image Post image

NEW: foreign hacker compromised Epstein files held by #FBI

"included combing through certain files pertaining to the Epstein investigation”

Source describes it as cybercriminal.

Previously all we knew was: there was some sort of breach. 1/

By @raphae.li
www.reuters.com/world/us/for...

76 33 6 7
3 days ago
Post image

You used Pokemon Go. You were not the customer.

You were the product.

By @willdouglasheaven.bsky.social
www.technologyreview.com/2026/03/10/1...

51 22 4 5
4 days ago
YouTube
House Intelligence Committee Open Hearing on Commercial Cyber Surveillance YouTube video by House Intelligence

14/ Want to go deeper on risks from commercial surveillance proliferation?

Watch my full testimony to the House Intelligence committee alongside remarkable advocate & spyware target Carine Kanimba & Shane Huntley of Google's Threat Intelligence.

www.youtube.com/watch?v=3Q52...

42 6 1 0
4 days ago

13/ Irony: China is often cited as reason offensive industry should be 10x'd

I understand the geopolitical arguments.

Yet in #Coruna case, privately-developed crown-jewel exploits just went to...China.

What exactly stops that from happening in future? And in even more catastrophic ways?

44 6 2 0
4 days ago
Post image

12/ Foreign demand has never been higher for people with US taxpayer-subsidized hacking knowledge...

If you grow the industry, it's foolish to believe companies & staff won't start looking for more customers overseas...

By @chrisbing.bsky.social & Joel Schectman
www.reuters.com/investigates...

37 5 1 0
4 days ago

11/ Some stand to get rich if US to radically expands commercial hacking industry.

But risks to rest of us are now there for all to see, even from 'top tier' players like Trenchant.

For example, a growing offensive industry will be a priority target for foreign hackers & recruitment.

45 3 1 0
4 days ago
Post image

10/ I believe we shouldn't have to fear that hacking capabilities bought with our tax dollars ...

Wind up used by hackers to steal our live savings.

59 4 1 0
4 days ago

9/ Today, some lobby for taxpayer funding a massive expansion of commercial hacking & exploit capabilities.

Notorious spyware companies are leaning into the hype.

I note that almost nobody is warning of the risks.

Reckless.

48 7 1 0
4 days ago
Preview
State-backed attackers and commercial surveillance vendors repeatedly use the same exploits We’re sharing an update on suspected state-backed attacker APT29 and the use of exploits identical to those used by Intellexa and NSO.

8/ Terrifyingly, #Coruna isn't even the first time commercially-developed hacking capabilities go to hostile actors.

Like how exploits first used by #NSOGroup's Pegasus & #Intellexa's Predator mysteriously found their way to Russian gov hackers...

blog.google/threat-analy...

50 6 1 1
4 days ago
Post image

7/ I believe more breaches of commercially-developed exploits are inevitable because the incentives are deeply wrong.

The commercial offensive industry's incentives are structurally misaligned with being transparent about their failures.

The price will be paid in hacked civilians & govs alike.

52 7 1 0
4 days ago
Video thumbnail

6/ In 2022 I warned Congress that commercially-developed exploits would leak.

I testified to House Intelligence that the tech would go to adversaries and criminal organizations.

That has now happened with #Coruna.

And as the commercial offensive industry grows, it will happen again.

106 27 1 1
4 days ago
Video thumbnail

6/ In 2022 I warned Congress that commercially-developed exploits would leak.

I testified to House Intelligence that the tech would go to adversaries and criminal organizations.

That has now happened with #Coruna.

And as the commercial offensive industry grows, it will happen again.

106 27 1 1
4 days ago

5/ Remember Peter Williams? Executive at Trenchant who sold exploits out the back door?

Many circumstances of the #Coruna case match up.

Implication: a devastating breach caused by an insider & a company that, for an extended period, failed to spot the unfolding disaster.
bsky.app/profile/vasp...

85 20 1 0
4 days ago
Post image

4/ Tonight, @lorenzofb.bsky.social brings the #Coruna exploit story home: they were probably paid for by tax dollars.

And developed by Trenchant, part of defense giant L3 Harris.

So, how did these ultra-sophisticated exploits walk out the door?

71 8 1 1
4 days ago
Post image

3/ Thing is, the powerful #Coruna exploits didn't originate with Chinese cybercriminals.

Some months before they were used by #Russian government hackers.

Before that? Google Threat Intel described it, it was being used by a customer of a surveillance company...

cloud.google.com/blog/topics/...

69 5 1 0
4 days ago
Post image Post image

2/ Last week, the team #google blew open a massive hacking operation: #Coruna.

A Chinese hacking operation somehow had a huge catalogue of very, very good iPhone exploits stealing banking information & crypto from people all over the web.

Hard to overstate how bizarre this was.

84 17 1 0
4 days ago
Post image Post image

BREAKING: powerful iPhone hacking tools used by Chinese criminals originated from US defense giant L3 Harris.

Their zero-click exploits went to Russian spies too.

Unbelievable harm to our collective security.

Scoop: @lorenzofb.bsky.social, here's why it matters 1/
techcrunch.com/2026/03/09/a...

488 246 5 21
4 days ago

5/ The failure conditions are fascinating:

"Oops a mirror partially collapsed and created a near concave geometry, concentrating the sun like a powerful magnifying glass. We burned an off-axis town and crisped the exposed skin of everyone at school recess before we could re-orient"

113 13 4 1
4 days ago
Post image

5/ If you don't want a company literally stealing night, now is the time to write to the #FCC.

Here's how to make a comment: darksky.org/news/two-sat...

133 58 4 4
4 days ago

4/ Economically, the increased energy costs of buildings & tech having to keep everything cool at night after workers go home..or get baked would be huge.

And for that matter, just how many mirrors might you need to add powerful solar irradiance to a solar farm? That's a LOT of mirrors...

96 8 1 0
4 days ago

3/ Night mirrors would disrupt the circadian rhythms of every organism in the zone. Bees forgetting to pollinate, critters mating at the wrong season, nocturnal animals suddenly have new predators, etc etc.

Even crops would suddenly have all sorts of strange issues. Flowering at the wrong time etc.

143 21 2 0
4 days ago

2/ Messed up sleep sleep leads to all sorts of health problems, from depression to cancer. The science is super clear & well-established..

The human body needs day/night rhythms.

OK so what about just pointing these space reflectors at farm areas?

118 12 1 0
4 days ago
Post image Post image

The #FCC is reviewing a proposal for space mirrors to blast sunlight at the earth at night.

Sounds awful.

Anyone who that been to the far north or tried to sleep under lights knows how disorienting 24h of light is.

Everybody gets insomnia.

It's also an ecological disaster machinery 1/

223 79 53 68
1 week ago

5/ Or maybe you've been clever and, despite some initial founder discomfort that the VCs pushed through, you quietly built a for-government tokenflow pipe during the Series C...

And when the uncomfortable questions come, you justify it by talking about fraud prevention, safety etc.

12 0 0 0
1 week ago

4/ That tokenflow data smells like commercial insight, business & market intelligence for days...

So, you build in surveillance and monetization becomes your big defensible margin.

And then one day the warrants arrive...

18 2 1 0
1 week ago

3/ If you're routing data to inference providers, you get: who is querying what, when & how. Unprecedented window into thought process, tool calls, proprietary workflows.

Already a scarce, valuable resource mostly available to the big inference providers (key part of their moat!).

12 1 1 0
1 week ago

2/ Thusly a new generation of founders rediscovers fire: the data they route is more valuable than fees they get for routing it.

Spoiler: Your ISP discovered this. And now sells your data. Financial services companies discovered this. And now sell your data.

AI middleware companies are next.

22 4 2 0
1 week ago

We're about to see a new surveillance trap: "Plaid for AI"

This will look like slick middleware that seamlessly hooks CRMs to Claude, gmail to GPT-5 etc, etc.

UX will be great & founders well-meaning.

Then the VCs ask: what else can we do with this sick tokenflow data? 1/

51 20 3 1