/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

Chris Krebs

@c_c_krebs
61 posts
2024-08-11
Buckle up. Confirmed hack & leak of Trump Campaign sensitive documents. Initial response by Campaign suggests foreign sources, coinciding with Microsoft's alert from this past week and the @ODNIgov alert of the week before. Someone is running the 2016 playbook, expect continued
2024-08-11 View on X
Politico

Trump campaign says some of its internal communications were hacked, citing a Microsoft report that Iranian hackers “sent a spear phishing email” to a campaign

The campaign suggested Iran was to blame.  POLITICO has not independently verified the identity of the hacker or their motivation.

2024-07-14
Noteworthy here: AT&T received a National Security Exception from DOJ under the SEC Reporting Requirements. First such exception I'm aware of. [image]
2024-07-14 View on X
TechCrunch

AT&T says it will begin notifying consumers about a data breach where cybercriminals stole phone records of “nearly all” of its cellular and landline customers

Item 1.05 Material Cybersecurity Incidents.  On April 19, 2024, AT&T Inc. … AT&T : Unlawful access of customer data AT&T : AT&T Addresses Illegal Download of Customer Data Lily Hay...

2024-07-13
Noteworthy here: AT&T received a National Security Exception from DOJ under the SEC Reporting Requirements. First such exception I'm aware of. [image]
2024-07-13 View on X
404 Media

Sources: John Binns, a US citizen who has been incarcerated in Turkey and indicted for allegedly hacking T-Mobile in 2021, is linked to the AT&T data breach

across the breadth of America's second largest teleco. It's just awful. https://x.com/... Joseph Cox / @josephfcox : Scoop: John Binns, an American hacker in Turkey, is linked to t...

Noteworthy here: AT&T received a National Security Exception from DOJ under the SEC Reporting Requirements. First such exception I'm aware of. [image]
2024-07-13 View on X
TechCrunch

AT&T says it will begin notifying consumers about a data breach where cybercriminals stole phone records of “nearly all” of its cellular and landline customers

Item 1.05 Material Cybersecurity Incidents.  On April 19, 2024, AT&T Inc. … AT&T : AT&T Addresses Illegal Download of Customer Data CNN : Nearly all AT&T cell customers' call and t...

2023-05-22
This jumps right off the page: “The Micron review is the first investigation into foreign firms that was carried out by the cyberspace watchdog, which reports to a leadership group headed by President Xi Jinping.” As I was saying.... https://twitter.com/...
2023-05-22 View on X
Bloomberg

China says Micron's products caused “significant security risks to our critical information infrastructure supply chain” and warns operators against buying them

less than 2 months after it's announced. The Micron ban applies to major Chinese cos, but impact could be broader. https://www.wsj.com/... via @WSJ Bill Bishop / @niubi : Did they ...

2023-05-10
.@TheJusticeDept & @FBI with another Federal Rule of Criminal Procedure Rule 41(b) disruption flex. https://www.justice.gov/...
2023-05-10 View on X
CyberScoop

The US says the FBI disrupted a long-running Russian cyberespionage operation by inspecting FSB's Snake malware and decrypting and decoding its communications

AJ Vicens / CyberScoop :

2023-02-10
Big development here, worth highlighting this little gem: “Current members of the Trickbot Group are associated with Russian Intelligence Services.” Extent of that association unclear, but long suspected nonetheless. https://twitter.com/...
2023-02-10 View on X
The Record

The US and the UK sanction seven people based in Russia, with likely FSB ties, connected to the Conti and Ryuk ransomware gangs and the Trickbot banking trojan

on par with terrorism and military crisis between states. Cheyenne Ligon / CoinDesk : Russian Cybercrime Gang Trickbot Sanctioned by US, UK Maggie Miller / Politico : U.S., U.K. sa...

2023-01-11
Gonna be a fun day to fly! FAA seems to be on it, hopefully they get the NOTAM system back up and running quickly. https://twitter.com/...
2023-01-11 View on X
Reuters

The FAA says normal air traffic is “resuming gradually” across the US after its Notice to Air Missions system failed; FlightAware: 5,400+ flights were delayed

U.S. flights were slowly beginning to resume departures and a ground stop was lifted after the Federal Aviation Administration …

2022-07-08
The age old challenge of balancing usability & security. Directionally a good thing, but assume a ton of stuff broke w/ this move. MSFT should keep pushing. https://www.bleepingcomputer.com/ ...
2022-07-08 View on X
BleepingComputer

Microsoft rolls back blocking VBA macro scripts by default in Excel, PowerPoint, Access, Visio, and Word, “based on feedback” and “to make improvements”

While Microsoft announced earlier this year that it would block VBA macros on downloaded documents by default …

2022-03-22
“as political and economic conditions deteriorate, the red lines and escalation judgments that kept Moscow's most potent cyber capabilities in check may adjust.” https://www.ft.com/...
2022-03-22 View on X
The White House

The White House again warns that Russia may expand cyberattacks against the US, citing “evolving intelligence that the Russian Government is exploring options”

This is a critical moment to accelerate our work to improve domestic cybersecurity and bolster our national resilience.

USG is doing what it can to support Ukraine & blunt Russian efforts. Remember cyberattacks aren't always about the technical impact, but also the psychological affects. Part of Russia's plan may be to create fear, stoke division, and undermine US support for UKR.
2022-03-22 View on X
The White House

The White House again warns that Russia may expand cyberattacks against the US, citing “evolving intelligence that the Russian Government is exploring options”

This is a critical moment to accelerate our work to improve domestic cybersecurity and bolster our national resilience.

In my op-ed in yesterday's @FT I touched on exactly this point: as sanctions achieve their intended affect and lethal aid support continues to flow to Ukraine, the Kremlin is reassessing its options. https://twitter.com/...
2022-03-22 View on X
The White House

The White House again warns that Russia may expand cyberattacks against the US, citing “evolving intelligence that the Russian Government is exploring options”

This is a critical moment to accelerate our work to improve domestic cybersecurity and bolster our national resilience.

2022-03-17
Conventionally speaking (at the expense of precision), tho, “deepfake” seems to = all manipulated media. Plus, when tensions are up, emotions high, and trigger fingers are itchy, optimizing for quality isn't always the priority and any old shit will do.
2022-03-17 View on X
The Verge

Meta says it removed a deepfake video of Ukrainian President Volodymyr Zelenskyy asking Ukrainians to surrender, citing its misleading manipulated media policy

In the fake video, Zelenskyy surrenders to Russian invasion  —  On Wednesday, Facebook's parent company, Meta …

Some legit questions of whether this is a true deepfake and not just a manipulated video. In the purest “AI-generated deepfake” sense, no, it's not a deepfake. Nor is it a cheapfake like a slowed down video to imply someone's drunk, recalling the edited Pelosi video.
2022-03-17 View on X
The Verge

Meta says it removed a deepfake video of Ukrainian President Volodymyr Zelenskyy asking Ukrainians to surrender, citing its misleading manipulated media policy

In the fake video, Zelenskyy surrenders to Russian invasion  —  On Wednesday, Facebook's parent company, Meta …

Hey @peterwsinger, check off another one off the #LikeWar bingo card. Interesting timing, with reports of a peace deal brewing. Not clear who's behind it, but notable to see a capability that's been long-feared observed in time of war. https://twitter.com/...
2022-03-17 View on X
The Verge

Meta says it removed a deepfake video of Ukrainian President Volodymyr Zelenskyy asking Ukrainians to surrender, citing its misleading manipulated media policy

In the fake video, Zelenskyy surrenders to Russian invasion  —  On Wednesday, Facebook's parent company, Meta …

2022-02-14
Nice work by the @SentinelOne team - more evidence the #APT ranks extend beyond CRINK, and another reminder civil society sits at the top of the surveillance targeting list. (NB: I'm on the S1 advisory board). https://twitter.com/...
2022-02-14 View on X
SentinelOne

Research: ModifiedElephant APT has targeted activists, journalists, lawyers, and others in India to spy on or plant digital evidence since at least 2012

files that incriminate the target in specific crimes—prior to conveniently coordinated arrests.” 2/n https://www.sentinelone.com/ ... Nilanjana Roy / @nilanjanaroy : That stage of ...

2022-02-13
Nice work by the @SentinelOne team - more evidence the #APT ranks extend beyond CRINK, and another reminder civil society sits at the top of the surveillance targeting list. (NB: I'm on the S1 advisory board). https://twitter.com/...
2022-02-13 View on X
SentinelOne

Research: ModifiedElephant APT has targeted activists, journalists, lawyers, and others in India to spy on or plant digital evidence since at least 2012

Executive Summary  — Our research attributes a decade of activity to a threat actor we call ModifiedElephant.

2022-02-04
Very welcome to see the CSRB announcement! Hugely important to get deeper understanding of events so we can fix the structural/systemic challenges in our technology dependencies. Hope to see public reporting of the group's findings! https://twitter.com/...
2022-02-04 View on X
Wall Street Journal

White House forms the Cyber Safety Review Board, loosely modeled on NTSB, to investigate major national cybersecurity failures, starting with the Log4j bug

2022-01-17
The other shoe drops on the comment made by Ukrainian official about behind the scenes destructive attacks. Good work here by @MSTIC. Who could it be? https://twitter.com/... https://twitter.com/...
2022-01-17 View on X
Microsoft Security Blog

Microsoft identifies a destructive malware operation targeting Ukrainian organizations; the malware looks like ransomware but lacks a ransom recovery mechanism

European Union simulated a cyber attack on a fictitious Finnish power company Vilius Petkauskas / cybernews.com : Belarus state hackers suspected behind Ukraine cyberattack Grugq /...

2021-12-15
New! Looks like @CISAgov's #log4j affected software @github repo is up https://github.com/.... Useful central compilation of products and guidance.
2021-12-15 View on X
The Record

CISA orders US federal civilian agencies to patch systems affected by the Log4j vulnerability by December 24

The US Cybersecurity and Infrastructure Security Agency has told federal civilian agencies to patch systems affected by the Log4Shell vulnerability by Christmas Eve. Source: CISA .