Zach Edwards's Avatar

Zach Edwards

@thezedwards.bsky.social

data supply auditor | privacy & ad tech expert | internet threats Personal @ victorymedium.com Sr Threat Analyst @ SilentPush.com

1,333 Followers  |  6,457 Following  |  3,650 Posts  |  Joined: 23.11.2023  |  2.329

Latest posts by thezedwards.bsky.social on Bluesky

Has anyone ever successfully received data from a personal Yandex data access request? Essentially receiving what data they collect on you as required under a bunch of privacy laws?

19.09.2025 03:59 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

appreciate the link!

09.09.2025 04:59 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

fwiw it was formerly owned by Elizabeth Wurtzel

09.09.2025 04:29 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

It's possible but really no clue - got it at an estate sale from another author

09.09.2025 04:26 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 2    ๐Ÿ“Œ 0
Picture of a light blue book cover with a drawing of Abraham Lincoln and the text โ€œAbraham Lincoln A Play By John Drinkwaterโ€

Picture of a light blue book cover with a drawing of Abraham Lincoln and the text โ€œAbraham Lincoln A Play By John Drinkwaterโ€

A book page with a large black box glued to it with a white border in the box - the text says โ€œExLibris Alden Nashโ€ and there is a strange symbol in the middle which appears to be the personal emblem of this Nash individual. The symbol has a double cross on top of a circle with a N in part of the circle. The circle is split by a horizontal line and part of the vertical line of the cross above.

A book page with a large black box glued to it with a white border in the box - the text says โ€œExLibris Alden Nashโ€ and there is a strange symbol in the middle which appears to be the personal emblem of this Nash individual. The symbol has a double cross on top of a circle with a N in part of the circle. The circle is split by a horizontal line and part of the vertical line of the cross above.

Iโ€™ve got this 100+ year old copy of an old play about Abraham Lincolnโ€™s life which was owned by someone named Alden Nash who had an interesting personal emblem that he screen printed & glued onto the cover page.

The play was shown at the Birmingham Repertory Theatre then the Hammersmith Playhouse.๐Ÿ“š

09.09.2025 02:46 โ€” ๐Ÿ‘ 21    ๐Ÿ” 0    ๐Ÿ’ฌ 3    ๐Ÿ“Œ 0

cheers thanks very much!! ๐Ÿ––

06.08.2025 20:37 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Mind map of SocGholish (Operated by TA56) infection chains. The details are complex but explained in more detail on our blog post.

Mind map of SocGholish (Operated by TA56) infection chains. The details are complex but explained in more detail on our blog post.

Our team @silentpush just dropped a definitive look at SocGholish (operated by TA569) and the initial access broker ecosystem they are facilitating. Big thanks to past researchers who have worked on SocGholish! We've got details about our visibility @ www.silentpush.com/blog/socghol... ๐Ÿ––๐Ÿป

06.08.2025 19:49 โ€” ๐Ÿ‘ 11    ๐Ÿ” 5    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1

Congrats! Very well deserved. ๐Ÿ––๐Ÿป

22.07.2025 00:41 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Our team looks forward to providing updates on the FUNNULL CDN and the owner over the coming weeks and months. This network isnโ€™t done and much stronger efforts need to be taken in the U.S. by a wide range of companies to deal w/ this ongoing persistent threat out of China. ๐Ÿ––

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Iโ€™ve got my own personal non-lawyer opinions (seems quite risky to host accounts for the owner of the largest CDN hosting scams targeting Americans), but I gotta assume that this is complex and there is currently a grey area that the U.S. Treasury needs to clarify.

03.07.2025 16:56 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

It seems clear that serious enterprise lawyers from major tech companies may not agree on what U.S. Treasury sanctions require them to do when an individual is sanctioned who has accounts on their service.

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Our research confirmed Lizhi still has active accounts on services including:
Twitter
GitHub
LinkedIn
Facebook
Google Code / Google Groups
Medium
PayPal
WordPress
HuggingFace
Gravatar / WordPress
Vercel
Deviant Art / Wix
Flickr / SmugMug
About Me / Vendasta
Tawk[.]to

03.07.2025 16:56 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Krebs put it nicely in his piece, โ€œHowever, as Mr. Lizhiโ€™s case makes clear, just because someone is sanctioned doesnโ€™t necessarily mean big tech companies are going to suspend their online accounts.โ€

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Do U.S. Treasury sanctions really have no teeth to require companies to ban accounts?

In this publishing process, we learned that different enterprise companies currently have different interpretations of what U.S. Treasury Sanctions / SDN processes require.

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

FUNNULL hosted websites have caused over $200 million in losses to U.S. victims, with an average loss of $150,000 per individual.

And yet the FUNNULL admin, who was also directly sanctioned, still has dozens of accounts on various Western enterprise services. So what gives?

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

FUNNULL CDN and the admin Liu Lizhi (aka Steve / Steven Lizihi) were both sanctioned by the U.S. Treasury in May 2025 โ€“ and in the announcement it was noted that โ€œFunnull is linked to the majority of virtual currency investment scam websites reported to the FBI.โ€

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Big Techโ€™s Mixed Response to U.S. Treasury Sanctions In May 2025, the U.S. government sanctioned a Chinese national for operating a cloud provider linked to the majority of virtual currency investment scam websites reported to the FBI. But more than a m...

Read @briankrebs.infosec.exchange.ap.brid.gy report @ "Big Techโ€™s Mixed Response to U.S. Treasury Sanctions" @ krebsonsecurity.com/2025/07/big-...

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

We found tons of interesting details including some anti-American and anti-Japanese statements on his personal blog.

Brian Krebs was also able to cover the research and helped to engage the enterprise organizations who are still hosting his accounts.

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Numerous Western Companies May Still Need to Ban FUNNULL Admin Accounts to Comply with U.S. Treasury Sanctions Numerous western companies may still need to ban FUNNULL Admin accounts to comply with U.S. Treasury Sanctions.

Our SP piece can be viewed @ "Numerous Western Companies May Still Need to Ban FUNNULL Admin Accounts to Comply with U.S. Treasury Sanctions" @ www.silentpush.com/blog/funnull...

03.07.2025 16:56 โ€” ๐Ÿ‘ 0    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

If Iโ€™ve been quiet you know Iโ€™m cooking up some fire research!

Our team at @silentpush.bsky.social is out today with a big report about the admin / owner of the FUNNULL CDN โ€“ essentially a dox of all his accounts and activities on the internet for the last 15+ years.

03.07.2025 16:56 โ€” ๐Ÿ‘ 4    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

"Funnull had direct exposure to Huione Pay, for which the U.S. Department of the Treasuryโ€™s Financial Crimes Enforcement Network (FinCEN) recently issued a finding and notice of proposed rulemaking (NPRM) identifying it as a primary money laundering concern" ๐Ÿ‘€

29.05.2025 19:02 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

More on Funnull in this Silent Push report from January: www.silentpush.com/blog/infrast...

These are also Funnull IPs and domains: bsky.app/profile/camp...

29.05.2025 17:37 โ€” ๐Ÿ‘ 4    ๐Ÿ” 3    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
US government sanctions tech company involved in cyber scams | TechCrunch The Treasury said FUNNULL was involved in providing infrastructure for pig butchering crypto scams.

NEW: The U.S. government has announced sanctions against FUNNULL and its administrator.

FUNNULL is accused of providing infrastructure for pig butchering crypto scams, as well as being the company behind the Polyfill supply chain attack, which pushed malware to victims who visited certain websites.

29.05.2025 16:59 โ€” ๐Ÿ‘ 13    ๐Ÿ” 5    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Infrastructure Laundering: Silent Push Exposes Cloudy Behavior Around FUNNULL CDN Renting IPs from Big Tech Infrastructure Laundering is a criminal practice of intermediaries enabling threat actors to hide infrastructure with major cloud providers.

In case you aren't familiar with Infrastructure Laundering, it's the new fad for Chinese threat actors trying to keep their infrastructure online. It's Bulletproof Hosts but through major legit providers, getting online by ~stealing accounts through illicit means. www.silentpush.com/blog/infrast...

29.05.2025 15:41 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

"(Funnull) enables virtual currency investment scams by purchasing IP addresses in bulk from major cloud services companies worldwide and selling them to cybercriminals to host scam platforms and other malicious web content.

They are describing "Infrastructure Laundering" here

29.05.2025 15:41 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
the man is wearing a suit and tie and clapping his hands . Alt: Leonardo Dicaprio wearing a suit and tie and clapping his hands .

"Funnull is linked to the majority of virtual currency investment scam websites reported to the FBI."

29.05.2025 15:41 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
Meme Loafcat GIF Alt: Meme Loafcat GIF saying "Is there any way to do 200 million?"

The FBI partnered with the Treasury on this recent effort, and released details today including:

"Funnull has directly facilitated several of these schemes, resulting in over $200 million in U.S. victim-reported losses."

29.05.2025 15:41 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The last 6 months I've traveled around the world giving presentations on FUNNULL about the scams and money laundering they are facilitating -- and today -- the U.S. Treasury has sanctioned FUNNULL and we got a bunch more facts about the operation now public.

home.treasury.gov/news/press-r...

29.05.2025 15:41 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The location data they will be selling will primarily be powered by Google and Appleโ€™s Mobile Advertising ID schemes - combining that with new data lakes trying to connect scraped social media content to IPs and MAIDs is truly connecting the dots on dystopia.

22.05.2025 19:54 โ€” ๐Ÿ‘ 15    ๐Ÿ” 10    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 2

oh absolutely -- but they would also need to register as a Data Broker imo. And they explicitly do NOT mention any data lakes / graphs as part of this process. That's why I think it's BS marketing rhetoric. They make a magic leap from scraping social to mapping MAIDs by claiming "AI did it"

21.05.2025 17:59 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@thezedwards is following 18 prominent accounts