The FBI confirms Iran-linked Handala breached Kash Patel's personal email but says the data accessed was “historical in nature” and involves no government info
Lorenzo Franceschi-Bicchierai Zack Whittaker — A hacking group backed by the Iranian government dubbed “Handala” …
A GitHub user published a newer version of iPhone exploit kit DarkSword; iVerify co-founder Matthias Frielingsdorf says the exploits “will work out of the box”
Lorenzo Franceschi-Bicchierai Zack Whittaker — Last week, cybersecurity researchers uncovered …
A new version of iPhone exploit kit DarkSword has been leaked on GitHub; iVerify co-founder Matthias Frielingsdorf says the exploits “will work out of the box”
Lorenzo Franceschi-Bicchierai Zack Whittaker — Last week, cybersecurity researchers uncovered …
Lapsus$ publishes a data leak site on the dark web that threatens to release ~1B records allegedly stolen from dozens of companies' Salesforce-hosted databases
Lorenzo Franceschi-Bicchierai Zack Whittaker — A notorious predominantly English-speaking hacking group has launched a website …
A Citizen Lab report finds that two European journalists had their iPhones hacked with Paragon spyware; Apple fixed the zero-day used in the spyware in February
Act Now To Prevent Attacks Markus Kasanmascheff / WinBuzzer : Apple Confirms iPhone Flaw Was Used to Spy on Journalists Kevin Poireault / Infosecurity : European Journalists Targeted by Paragon Spywar...
Coinbase says hackers accessed data of a “small subset” of users, but not credentials, expects to incur $180M-$400M in costs, and refuses to pay a $20M ransom
and the investigators who saw it coming Sead Fadilpašić / TechRadar : Personal information leaked in Coinbase cyberattack, cost could be $400 million Bloomberg : Coinbase Hack Could Cost Company $400 ...
Open letter: the EFF and top security experts urge the Trump administration to end its “political retribution” investigation into ex-CISA Director Chris Krebs
“An independent infosec community is fundamental to protecting our democracy, and to the profession itself.” — www.cybersecuritydive.com/news/chris- k... Zack Whittaker / @zackwhittaker.com : Electr...
The UK, the US, and other governments publish advisories on China-linked spyware families BadBazaar and Moonshine and highlight legitimate-looking Android apps
iPhone And Android At Risk From New Attack Tyler Lee / Android Headlines : Dozens of Android apps discovered with spyware bundled with them Alex Scroxton / ComputerWeekly.com : NCSC issues warning ove...
Morgan Marquis-Boire, the once-celebrated hacker accused of sexual assaults in 2017, is the undisclosed co-founder of crypto intelligence firm Unciphered
Employees said they weren't told that the co-founder of Unciphered was a once-celebrated spyware foe who dropped out of the public eye after being accused of sexual assault. Mastodon: @zackwhittaker@m...
An investigation into 300+ cyberattacks against US K-12 schools since 2020 shows how they can withhold details from students and parents whose data was stolen
An investigation into more than 300 cyberattacks against US K-12 schools over the past five years shows how schools … Bluesky: @zackwhittaker and @dell . Mastodon: @douglevin@infosec.exchange Bluesky:...