Duke, which lost to UConn (like every team that reached a result with UConn in 60 minutes did) won the ACC.
PUT UCONN IN THE PLAYOFF
@benread.bsky.social
CTI @wizsecurity.bsky.social Previously NSC44, Mandiant, Google Go Mammoths
Duke, which lost to UConn (like every team that reached a result with UConn in 60 minutes did) won the ACC.
PUT UCONN IN THE PLAYOFF
Shout out to whoever is exploiting CVE-2025-55182 to drop cryptominers and using "reactOnMynuts" as your campaign code.
06.12.2025 16:30 — 👍 9 🔁 0 💬 0 📌 0A new blog this evening from Amazon Threat Intelligence detailing ongoing China-nexus cyber actors leveraging React2Shell (CVE-2025-55182): aws.amazon.com/blogs/securi...
05.12.2025 01:06 — 👍 15 🔁 9 💬 0 📌 0There is critical vulnerability in React Server Components disclosed as CVE-2025-55182 that impacts React 19 and frameworks that use it.
A fix has been published in React versions 19.0.1, 19.1.2, and 19.2.1. We recommend upgrading immediately.
react.dev/blog/2025/12...
An update on Sha1-Hulud from the team here @wizsecurity.bsky.social. Rami & Shay break down how we've seen it spread, the types of environments targeted and what secrets have been leaked.
www.wiz.io/blog/shai-hu...
Pete must be held accountable. This is not the opinion of some reactionary lib. I get accused all the fucking goddamn time of being the mainstream.
People need to be adjudicated for this. There are ideals of what an American thinks they are that have been violent violated here.
We demand justice.
Heads up for East Coast people waking up.
24.11.2025 12:43 — 👍 1 🔁 0 💬 0 📌 0New report from Positive Technologies vivisects recent (2024-2025) APT31 attacks targeting Russian IT firms specifically government contractors and integrators
ptsecurity.com/research/pt-...
“Providing tech services to supercharge ICE operations while blocking tools that support accountability of ICE officers is entirely backwards." - @kateruane.bsky.social www.404media.co/google-has-c...
13.11.2025 14:16 — 👍 198 🔁 89 💬 5 📌 8TTPs Things that Threat Actors do when they Perform a cyber attack
Never assume your audience knows what acronyms stand for.
13.11.2025 01:28 — 👍 18 🔁 3 💬 0 📌 0Remember NFTs? 😂😂😂😂😂😂😂
11.11.2025 01:00 — 👍 78 🔁 12 💬 11 📌 3Attribution has historically not changed the attacker's behavior (especially in the case of the PRC) and there are likely other higher priorities in the bilateral relationships.
Capacity constraints are real, but unlikely to be the proximate limiting factor given the volume of activity.
The authors identify three factors:
1. Unclear Returns
2. Lack of Capacity
3. Strategic Culture
Those all contribute, but I lean towards the first one being the most important.
An interesting article talking about public attribution and the lack thereof in Indonesia and India on @bindinghook.bsky.social.
bindinghook.com/india-and-in...
New Iran drop from me tracking an attribution nightmare - UNK_SmudgedSerpent! A little Charming, a little Muddy, and a lot C5. Targeting policy experts with benign conversation starters, health-themed infra, OnlyOffice spoofs, and RMMs. Check out the full story www.proofpoint.com/us/blog/thre...
05.11.2025 13:37 — 👍 18 🔁 12 💬 2 📌 0It's a good night, but I'm a little concerned that New York is going to have a mayor that knows this song: youtu.be/WZzCHcMKyDc?...
#NESCAC
I love kids. I have two of them. They’re amazing. However, kids are the absolute least self aware, clumsiest little puffins on the planet.
Please don’t drive tonight unless you have to, and if you do drive, drive super slow and pay 100% attention at all times.
Happy Halloween! 🎃 👻 💀
#PublicHealth
The romantic fables of peoplehood, of real “men with chests” (Fukuyama 2018) who make national histories… once you treat debates about liberalism in the Global South as reflecting the same common impulses that motivates illiberal politics everywhere else, you begin to see our common humanity
/end
Follow this thread 👇
With the inaugural SOS just 18 days away, we'll be highlighting a few of the amazing talks you'll be hearing on October 28 in Brussels!
stateofstatecraft.com/agenda
Get a ticket while you still can! 🎟️🎟️🎟️
"What if, in the process of trying to ban AI products that quite actually encourage children to kill themselves, we wind up banning chatbots that help children cheat on their homework, diminish their propensity for critical thought, and lead to the development of other forms of AI psychosis?"
16.10.2025 23:23 — 👍 1165 🔁 323 💬 13 📌 1Berlin
08.10.2025 23:35 — 👍 0 🔁 0 💬 0 📌 0“James Comey’s rights and liberties are not the only ones at risk today. So is your own right to participate in free and fair elections in order to render a verdict on Trump’s invasion of those rights and liberties.” From @davidfrum.bsky.social apple.news/AX8_ub4UHR0G...
26.09.2025 02:12 — 👍 17 🔁 6 💬 0 📌 0🚨 #Shai-Hulud: Major npm supply chain attack.
100+ packages weaponized with stolen GitHub tokens, stealing secrets, hijacking repos, and auto-propagating like a worm.
Guidance + detections inside
www.wiz.io/blog/shai-hu...
New from 404 Media: airlines are selling *5 billion* ticketing records to the government for warrantless searching, per new docs we obtained. ARC is a data broker owned by United, American, Delta, etc. Then sells peoples' travel info to ICE, Secret Service, FBI etc www.404media.co/airlines-sel...
15.09.2025 13:16 — 👍 2766 🔁 1865 💬 97 📌 222A private individual with power to get public servants fired, put them at physical risk, get them investigated, threaten their post government careers, go after their families and defame them with fantasies is an enormous threat to our national security and public well being. This can't stand.
12.09.2025 12:54 — 👍 9 🔁 2 💬 0 📌 0A fun investigation from the team here at @wizsecurity.bsky.social www.wiz.io/blog/wiz-dis...
Showing how leaked/stolen AWS keys can be used to enable other financially motivated schemes. (s/o to our friends at Proofpoint who helped us get some context on the phishing emails)
Now up to 22 different Cinnamon Toast Crunch related products. The quest continues.
03.09.2025 16:19 — 👍 2 🔁 1 💬 0 📌 0Cinnamon Toast Crunch with Strawberry
Cinnamon Toast Crunch with Strawberry. Doesn't seem like it would add much, but who knows.
03.09.2025 16:16 — 👍 1 🔁 0 💬 0 📌 1I can't speculate on Trump's health in this new press conference but he just ribbed Alabama Senator Tommy Tuberville over Bama losing badly on Saturday. Tuberville coached Auburn, Bama's big in-state conference rival.
02.09.2025 18:53 — 👍 60 🔁 14 💬 2 📌 3