/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

@780thc

@780thc
35 posts
2026-02-10
Largest Multi-Agency Cyber Operation Mounted to Counter Threat Posed by Advanced Persistent Threat (APT) Actor UNC3886 to Singapore's Telecommunications Sector The Cyber Security Agency of Singapore (CSA) https://www.csa.gov.sg/... @CSAsingapore
2026-02-10 View on X
TechCrunch

Singapore blames China-backed hacking group UNC3886 for an 11+ months-long cyber-espionage campaign that targeted its four largest telecommunication companies

Singapore's government has blamed a known Chinese cyber-espionage group for targeting four of its top telecommunication companies as part of a months-long attack.

2025-05-05
Hunted Labs has discovered an open source software package that appears to be completely owned, maintained, and controlled by developers based in Moscow who work for one of Russia's largest internet services conglomerates, VK Group (VK). https://huntedlabs.com/... [image]
2025-05-05 View on X
Wired

Researchers warn that open-source Go serialization tool easyjson, owned by Russia's VK Group and used by the US DOD and others, poses a national security risk

The open source software easyjson is used by the US government and American companies.  But its ties to Russia's VK …

2025-02-19
Google Threat Intelligence Group (GTIG) has observed increasing efforts from several Russia state-aligned threat actors to compromise Signal Messenger accounts used by individuals of interest to Russia's intelligence services. https://cloud.google.com/... @Google
2025-02-19 View on X
Wired

Signal updates its app with phishing protections after Google warned Russia-linked hackers are using fake QR codes for group invites to trick Ukrainian soldiers

Google warns that hackers tied to Russia are tricking Ukrainian soldiers with fake QR codes for Signal group invites that let spies steal their messages.

2024-05-30
Treasury Sanctions a Cybercrime Network Associated with the 911 S5 Botnet @USTreasury | https://home.treasury.gov/...
2024-05-30 View on X
Associated Press

Europol says police in Germany, the UK, the US, and others took down botnets spreading ransomware via infected emails, arrested four, and seized 2,000+ domains

Police coordinated by the European Union's justice and police agencies have taken down computer networks responsible …

2024-05-01
China's state-sponsored disinformation campaign has been running at a massive scale for seven years—but no one is looking at it. https://www.wired.com/... @WIRED
2024-05-01 View on X
Wired

Experts say Spamouflage Dragon, China's yearslong disinformation campaign targeting the US, has largely failed due to China missing cultural context and more

but no one is looking at it. https://www.wired.com/... @WIRED Tori Elliott / @telliotter : There's a lot of talk about China's disinfo/propaganda efforts, but turns out... they're ...

2024-04-17
Unearthing APT44: Russia's Notorious Cyber Sabotage Unit Sandworm | Given the active and diffuse nature of the threat posed by Sandworm globally, @Mandiant has decided to graduate the group into a named Advanced Persistent Threat: APT44. https://cloud.google.com/...
2024-04-17 View on X
Wired

Mandiant links hacktivist group Cyber Army of Russia, which claimed to target utilities in France, the US, and Poland, to Russia-linked hacking group Sandworm

Cyber Army of Russia Reborn, a group with ties to the Kremlin's Sandworm unit, is crossing lines even that notorious cyberwarfare unit wouldn't dare to.

2024-04-06
Microsoft: China is using fake social media accounts to poll voters on what divides them most to sow division and possibly influence the outcome of the U.S. presidential election in its favor. https://blogs.microsoft.com/ ... @MsftSecIntel
2024-04-06 View on X
The Guardian

Microsoft warns that China plans to disrupt US, South Korean, and Indian elections in 2024 with AI-generated content, after using Taiwan's election as a dry run

Dan Milmo / The Guardian :

2023-10-14
In at least 12 states, including Arkansas, Ohio, Oklahoma, Tennessee, Texas and Wyoming, @nytimes identified Chinese-owned or -operated Bitcoin mines that together use as much energy as 1.5 million homes. https://www.nytimes.com/...
2023-10-14 View on X
New York Times

As China-linked Bitcoin mines open across the US, officials raise national security concerns, like about a Wyoming mine that is close to a nuclear missile base

Microsoft reported one site in Wyoming because of its proximity to a data center and nuclear missile base.

2023-09-19
In this report, @TrendMicro discusses the new backdoor SprySOCKS used by Earth Lusca, a China-linked threat actor, which expands the group's Linux arsenal. https://www.trendmicro.com/...
2023-09-19 View on X
BleepingComputer

Trend Micro: Chinese cyberespionage group Earth Lusca used a new Linux malware dubbed SprySOCKS to target government agencies in multiple countries in H1 2023

A Chinese espionage-focused hacker tracked as ‘Earth Lusca’ was observed targeting government agencies in multiple countries, using a new Linux backdoor dubbed ‘SprySOCKS.’

2023-03-22
WIRED: Recent reports from the UK's National Cyber Security Center and security firm Mandiant found that spear-phishing activities of TA453 and APT42, affiliated with the Iranian Revolutionary Guard Corps, have been increasingly prevalent | https://www.wired.com/... @WIRED
2023-03-22 View on X
Wired

Researchers: Iran's cyber army, or Cyberi, ramped up spear-phishing and adopted new tactics aiming to sow distrust among citizens as political unrest continues

Arian Khameneh / Wired :

2023-01-24
FBI Confirms Lazarus Group, APT38 Cyber Actors Responsible for Harmony's Horizon Bridge Currency Theft https://www.fbi.gov/... @FBI
2023-01-24 View on X
CoinDesk

The FBI says North Korea-backed hacking groups Lazarus and APT38 are behind the June 2022 theft of ~$100M in ETH, USDT, and wBTC from Harmony's Horizon bridge

Lazarus Group and APT38, both associated with North Korea, are responsible for the attack in June, the agency concluded.

2022-09-13
Reuters' review of more than 300 accounts representing local governments found that as of the time of this story's publication less than a dozen were labelled by Twitter as state-affiliated media. https://www.reuters.com/... @Reuters
2022-09-13 View on X
Reuters

An investigation details Twitter's business in China: local governments and state media buying ads, a growing non-US revenue stream, internal tensions, and more

Even as China bars 1.4 billion citizens from Twitter, its local authorities are splurging on global advertising on the site … Tweets: @niubi , @mattnavarra , @780thc , @olivertheyo...

2022-09-05
NAFO (North Atlantic Fellas Organization) an informal alliance of internet culture warriors, national security experts & ordinary Twitter users weaponizing memes, viral videos &, yes, dog photos to push back against Russian online disinformation. https://www.politico.eu/... @politico
2022-09-05 View on X
Politico

How the North Atlantic Fellas Organization, or NAFO, a group of national security experts and ordinary Twitter users, is using memes to fight Russian propaganda

Ivana Stradner opened her iPhone and typed a simple call-to-arms: Unleash the hounds.  —  A Washington think-tanker and an expert … Tweets: @780thc and @jmichaelwaller Tweets: @780...

2022-08-09
“They came to them and put guns to their head and just said, ‘Do this,’” said Maxim Smelyanets, who owns an internet provider that operates in the area and is based in Kyiv. “They did that step by step for each company.” https://www.nytimes.com/... @nytimes
2022-08-09 View on X
New York Times

Russia has been rerouting internet traffic in occupied Ukrainian territories through domestic networks since June, blocking uncensored information and services

New York Times :

2022-06-03
Mandiant has investigated multiple LOCKBIT ransomware intrusions attributed to UNC2165, a financially motivated threat cluster that shares numerous overlaps with the threat group publicly reported as “Evil Corp.” https://www.mandiant.com/... @Mandiant
2022-06-03 View on X
TechCrunch

Mandiant: Russia-based cybercriminal group Evil Corp has shifted to a ransomware-as-a-service model to evade December 2019 US sanctions for its Dridex malware

2022-05-21
The Advanced Intel report explains that Conti has partnered with numerous well-known ransomware operations, including HelloKitty, AvosLocker, Hive, BlackCat, BlackByte, and more. https://www.bleepingcomputer.com/ ...
2022-05-21 View on X
TechCrunch

Conti urges Costa Rican citizens to pressure their government to pay a ransom, now doubled to $20M, and says it is “determined to overthrow the government”

2022-05-20
The Advanced Intel report explains that Conti has partnered with numerous well-known ransomware operations, including HelloKitty, AvosLocker, Hive, BlackCat, BlackByte, and more. https://www.bleepingcomputer.com/ ...
2022-05-20 View on X
BleepingComputer

AdvIntel: the Conti ransomware group has taken its infrastructure offline and its leaders have partnered with other smaller ransomware groups to conduct attacks

The notorious Conti ransomware gang has officially shut down their operation, with infrastructure taken offline and team leaders told that the brand is no more.

2022-05-10
The UK, EU, US and allies have announced that Russia is responsible for a series of cyber-attacks since the renewed invasion of Ukraine. https://www.gov.uk/... @GOVUK
2022-05-10 View on X
Reuters

The UK and EU say Russia launched a cyberattack on satellite internet network Viasat at the onset of the Ukraine war in late February, affecting many in Ukraine

Russia was behind a massive cyberattack against a satellite internet network which took thousands of modems offline at the onset … Source: GOV.UK and European Council .

2022-05-05
Researchers at Cybereason recently discovered an attack, which was assessed to be the work of Chinese APT Winnti. For years, the campaign had operated undetected, siphoning intellectual property and sensitive data. https://www.cybereason.com/... @cybereason
2022-05-05 View on X
CBS News

Cybereason: China-linked Winnti APT exfiltrated hundreds of GBs of IP in a cyber campaign targeting ~30 companies in North America, Europe, and Asia since 2019

A yearslong malicious cyber operation spearheaded by the notorious Chinese state actor, APT 41, has siphoned off an estimated trillions … Source: Cybereason .

2022-04-14
Since Russian troops crossed Ukraine's borders at the end of February, colossal amounts of information about the Russian state and its activities have been made public. https://www.wired.com/... @WIRED
2022-04-14 View on X
Wired

Ukraine, its allies, and hactivists have made public hundreds of gigabytes of files and millions of emails on the Russian state, including doxing Russian troops

Ukraine claims to have doxed Russian troops and spies, while' hacktivists are regularly leaking private information from Russian organizations. Tweets: @findingveracity and @780thc...