/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

Cristin Flynn Goodwin

@cristingoodwin
15 posts
2024-02-03
Iran's actions are definitely worth sanctioning. Cyber attacks must have consequences, or else there's no reason to stop. (Unlike @ericgeller who's still reporting - hire him, news agencies!)
2024-02-03 View on X
CyberScoop

The US Treasury sanctions six Iranian government officials for their role in targeting devices at a Pennsylvania water utility in November 2023

The Iranian attack targeted a device manufactured by an Israeli company.  —  The U.S. Treasury Department on Friday announced sanctions …

2022-09-30
This is a great piece of work from MSTIC and LinkedIn Security highlighting #nationstate attacks from North Korean actor ZINC that are weaponizing open-source software as a part of the attack. Learn more: https://www.microsoft.com/...
2022-09-30 View on X
Ars Technica

Microsoft says the Lazarus group is weaponizing open-source software like PuTTY, KiTTY, TightVNC, and Sumatra PDF Reader to compromise “numerous” organizations

PuTTY, KiTTY, TightVNC, Sumatra PDF Reader, and muPDF/Subliminal Recording all targeted.

2022-07-28
Continuing the fight against cyberweapons and surveillance is important. Today, we announced a disruption against a private sector actor we call KNOTWEED and filed testimony in support of the House Permanent Select Committee on Intelligence hearing. Info: https://blogs.microsoft.com/ ...
2022-07-28 View on X
The Register

Microsoft details Austria-based malware group Knotweed, which has used Windows and Adobe zero-day exploits to attack European and Central American organizations

Reports seeing ‘offensive actor’ flinging SubZero malware  —  Microsoft has published an analysis of a Europe-based … Source: Microsoft Security Blog .

2021-12-23
This story about China's MIIT suspending some work with Alibaba over its failure to report the Log4j vulnerability is the future. China wants to know first. Foreshadowing of the potential politicization of vulns? https://www.reuters.com/...
2021-12-23 View on X
Reuters

Chinese state media says regulators suspended an info-sharing partnership with Alibaba Cloud over accusations it failed to promptly report and fix a Log4j flaw

2021-10-08
Here is our blog post highlighting the report. Russia moved into the top slot this year, knocking North Korea down to 2nd. https://blogs.microsoft.com/ ...
2021-10-08 View on X
Associated Press

Microsoft says Russia carried out 58% of detected state-backed hacks in the year ending June 30, with a 32% success rate; China accounted for 8%

and how organizations can better protect themselves: https://blogs.microsoft.com/ ...

2021-07-16
Terrific report from @citizenlab detailing the work of this private sector offensive actor we call SOURGUM, also known as Candiru. With over 100 victims in 10 countries, important to take this step. https://twitter.com/...
2021-07-16 View on X
VICE

Microsoft and Citizen Lab say government hackers from several countries have used spyware from Israeli vendor Candiru that uses two 0-day exploits in Windows

Microsoft and Citizen Lab found a new kind of spyware made by the mysterious Israeli vendor Candiru, and targeting someone in Europe based on their political beliefs.

2021-05-29
Technical details on the #Nobelium #nationstate attack from our #MSTIC team here: https://www.microsoft.com/...
2021-05-29 View on X
New York Times

Microsoft: hackers behind SolarWinds recently breached State Dept. aid agency to send emails with malicious code to 150 orgs, including NGOs critical of Putin

Microsoft reported that it had detected the intrusion and that the same hackers behind the earlier SolarWinds attack were responsible.

2021-05-28
Technical details on the #Nobelium #nationstate attack from our #MSTIC team here: https://www.microsoft.com/...
2021-05-28 View on X
New York Times

Microsoft says SolarWinds hackers seized an email system used by State Department's international aid agency to breach NGOs and organizations critical of Putin

Microsoft reported that it had detected the intrusion and that the same hackers behind the earlier SolarWinds attack were responsible.

2021-04-30
The #RansomwareTaskForce report is out! #Ransomware is a #nationalsecurity issue, and requires a coordinated response. Looking forward to reading this closely. https://securityandtechnology.org/ ...
2021-04-30 View on X
Washington Post

A task force of 60+ experts from industry, government, nonprofits, and academia calls on the US and allies to take steps to fight a surge in ransomware attacks

the Secret Weapon to Combatting Ransomware Danny Palmer / ZDNet : Ransomware is now a national security risk. This group thinks it knows how to defeat it Duncan Riley / SiliconANG...

2020-12-22
Private sector offensive actors do not deserve immunity for their actionsZ. Proud to be a part of the amicus brief before the 9th circuit in WhatsApp v. NSO. #PSOAs #cybersecurity 1/https://blogs.microsoft.com/ ...
2020-12-22 View on X
Reuters

Microsoft, Alphabet, Cisco, LinkedIn, GitHub, VMware, and the Internet Association file an amicus brief in support of WhatsApp in the WhatsApp v. NSO Group case

(Reuters) - Tech giants Microsoft, Alphabet , Cisco, and VMware on Monday joined Facebook's legal battle against hacking company NSO …

2020-10-12
We need to really think hard about this. It's not a “Sunday night quick read”. This pulls on the intersection of privacy, security, and law enforcement and merits serious national debate. https://twitter.com/...
2020-10-12 View on X
ZDNet

Five Eyes governments as well as India and Japan make a new call for backdoors into products that are end-to-end encrypted

A number of experts have pointed to the information … Manik Berry / Fossbytes : Five Eyes, India, And Japan Want ‘Backdoor’ To End-To-End Encryption Phil Muncaster / infosecurity-m...

2020-03-05
Keeping @Microsoft local employees home will reduce risk and let us use our products and services too. Stay healthy, cyber friends! https://twitter.com/...
2020-03-05 View on X
CNBC

Microsoft encourages Seattle area and Bay Area employees to work from home if possible through March 25 and asks sick employees to stay home

- People who can work from home in the two affected areas should do that, Microsoft said.  — Microsoft said non-essential business travel …

2020-01-02
Proud of the work my DCU and MSTIC colleagues are driving to use the courts to disrupt Nation State attacks, like this one against Thallium. https://blogs.microsoft.com/ ...
2020-01-02 View on X
ZDNet

Microsoft wins court order to seize 50 domains run by North Korean cyber-espionage group Thallium, the fourth APT Microsoft has combated with this tactic

Catalin Cimpanu / ZDNet :

2020-01-01
Proud of the work my DCU and MSTIC colleagues are driving to use the courts to disrupt Nation State attacks, like this one against Thallium. https://blogs.microsoft.com/ ...
2020-01-01 View on X
ZDNet

Microsoft wins court order to seize 50 domains run by North Korean cyber-espionage group Thallium, the fourth APT Microsoft has combated with this tactic

Microsoft takes control of 50 domains operated by Thallium (APT37), a North Korean cyber-espionage group.

2019-12-31
Proud of the work my DCU and MSTIC colleagues are driving to use the courts to disrupt Nation State attacks, like this one against Thallium. https://blogs.microsoft.com/ ...
2019-12-31 View on X
ZDNet

Microsoft wins court order to seize 50 domains run by North Korean cyber-espionage group Thallium, the fourth APT Microsoft has combated with this tactic

Microsoft takes control of 50 domains operated by Thallium (APT37), a North Korean cyber-espionage group.