/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

@chicagocyber

@chicagocyber
8 posts
2022-04-08
As Facebook talks about, their interactive targeting and exploit protection make this groups one of the more advanced that I've seen. Kudos to the cyber espionage team at Meta for disrupting this threat!
2022-04-08 View on X
Washington Post

Meta disrupts covert influence operations by Belarus- and Russia-linked actors targeting Ukrainians, like hacking Ukrainian military staff's Facebook accounts

combining computer network exploitation with influence operations, CNE & active measures, in classic terminology (to be expected historically). Meta does an exceptionally good job ...

Facebook announced disruptions against two Iranian aligned groups: #TA453 & #TA455. TA455 has never been reported on publicly and is super unique. We actually saw front companies used as pretexts for obtaining trials from software companies. https://about.fb.com/...
2022-04-08 View on X
Washington Post

Meta disrupts covert influence operations by Belarus- and Russia-linked actors targeting Ukrainians, like hacking Ukrainian military staff's Facebook accounts

combining computer network exploitation with influence operations, CNE & active measures, in classic terminology (to be expected historically). Meta does an exceptionally good job ...

2021-10-22
I honestly hope this is true. If it is, it shouldn't be leaked out from people tangential to the operation, but should be announced officially by US gov sources. https://twitter.com/...
2021-10-22 View on X
Reuters

Sources: ransomware gang REvil was hacked and forced offline this week by an active multi-country operation that includes US law enforcement

The ransomware group REvil was itself hacked and forced offline this week by a multi-country operation, according to three private sector cyber experts working …

2021-04-04
FISA modernization is definitely needed. This article is one of the most nuanced takes I've seen on the “blind spot” argument. I highly recommend reading it as it identifies some of the roadblocks. We have to balance civil liberties & national security. https://twitter.com/...
2021-04-04 View on X
Fortune

ACLU discloses that it shares personally identifiable info of its website users and donors with platforms like Facebook, Google, and others, for ad targeting

The American Civil Liberties Union revealed that it shares data with a company it regularly criticizes for privacy blunders: Facebook.

2021-04-03
FISA modernization is definitely needed. This article is one of the most nuanced takes I've seen on the “blind spot” argument. I highly recommend reading it as it identifies some of the roadblocks. We have to balance civil liberties & national security. https://twitter.com/...
2021-04-03 View on X
Zero Day

Officials say SolarWinds hackers succeeded in part because NSA is barred from monitoring domestic networks, leading to calls for new spying powers for the NSA

Kim Zetter / Zero Day : Tweets: @kimzetter , @kimzetter , and @chicagocyber Tweets: Kim Zetter / @kimzetter : I never submit my stories to Techmeme so this is a nice surprise to s...

2020-12-16
Some companies are about to find out they actually do use SolarWinds in production... https://twitter.com/...
2020-12-16 View on X
ZDNet

Sources: Microsoft and industry partners seize key command and control domain used in SolarWinds hack

By seizing the domain, Microsoft and its partners hope to identify all victims, but are also preventing attackers from escalating intrusions in currently infected networks.

Some companies are about to find out they actually do use SolarWinds in production... https://twitter.com/...
2020-12-16 View on X
Washington Post

SolarWinds' top investors Silver Lake and Thoma Bravo sold a combined $286M worth of stock in the company on Dec. 7, six days before the hack was made public

The timing of the trades raises questions about whether major shareholders used inside information to avoid stark losses after the attack.

2020-08-14
Releasing something detailed publicly likely took a herculean bureaucratic effort. Kudos to the authors. If you liked the level of detail, let them know next time you're at Infragard or talking to your local agent. https://twitter.com/...
2020-08-14 View on X
CyberScoop

NSA and FBI say Russian state sponsored hacker group Fancy Bear is using a previously undisclosed Linux malware called Drovorub for cyber espionage operations

my favorite thing so far: NSA casually reveals that Drovorub is the codename used by GRU itself (!), and even offers a step-by-step translation https://www.nsa.gov/... https://twit...