/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

Maddie Stone

@maddiestone
39 posts
2024-03-28
🪲And the 2023 Year in Review of Zero-Days Exploited In-the-Wild is out! This year I teamed up with @JaredSemrau & James from Mandiant to write a joint report combining our expertise and providing a more holistic view on in-the-wild 0-days in 2023 🔥🧐 https://blog.google/... [image]
2024-03-28 View on X
The Record

Google researchers observed 97 zero-day exploits in the wild in 2023, up 50% from 62 in 2022; 48 were used by espionage actors and 10 were financially-motivated

Jonathan Greig / The Record :

2024-02-07
We're naming names 🔥 because the harm is not hypothetical. Today we share “Buying Spying”, our new report diving into the commercial surveillance/spyware industry. We dive into the players, the campaigns, the spyware, & the harm it perpetuates. https://blog.google/... [image]
2024-02-07 View on X
CyberScoop

Google's TAG publishes a report on commercial spyware, detailing ~40 vendors, and says global governments should take more aggressive steps to combat spyware

Twitter's natural heir is finally open to the public — and it has some big ideas for social networking Shane Huntley / The Keyword : Buying Spying: How the commercial surveillance ...

2023-11-17
🪲 New blog from me, @_clem1, and Kristen on the Zimbra in-the-wild 0-day, CVE-2023-37580, discovered by TAG in the summer. We discovered 4 different campaigns using the bug against organizations in Greece, Moldova, Tunisia, Vietnam, and Pakistan. https://blog.google/...
2023-11-17 View on X
Engadget

Google finds and helps patch a Zimbra Collaboration email server zero-day used to steal data from governments in Greece, Moldova, Tunisia, Vietnam, and Pakistan

It links the attacks to past Chinese APT activity, but does not formally attribute the attacks.  —  It also points out that Winter Vivern (suspected Belarus) also exploited this af...

2023-09-29
@ChessRadar @_clem1 Industry standard for a non-actively exploited vuln is 90 days so they fixed it in less than a third of the time that is industry standard?
2023-09-29 View on X
TechCrunch

Google patches a Chrome zero-day that was exploited by a commercial spyware vendor, just two days after Google's Threat Analysis Group informed the Chrome team

update now! Jai Vijayan / Dark Reading : Chrome Flags Third Zero-Day This Month That's Tied to Spying Exploits Austin Blake / iPhone in Canada Blog : Google Patches Chrome Zero-Day...

.@_clem1 discovered another ITW 0-day in use by a commercial surveillance vendor: CVE-2023-5217. Thank you to Chrome for releasing a patch in TWO 🤯day!! https://chromereleases.googleblog.com/ ...
2023-09-29 View on X
TechCrunch

Google patches a Chrome zero-day that was exploited by a commercial spyware vendor, just two days after Google's Threat Analysis Group informed the Chrome team

update now! Jai Vijayan / Dark Reading : Chrome Flags Third Zero-Day This Month That's Tied to Spying Exploits Austin Blake / iPhone in Canada Blog : Google Patches Chrome Zero-Day...

2023-09-10
North Korean actors 🇰🇵 are targeting security researchers again including use of at least one 0-day. IOCs in the blog ⬇️ If you've been in contact, please reach out https://blog.google/... [image]
2023-09-10 View on X
Ars Technica

Google says North Korea-backed hackers are again targeting security researchers via a zero-day exploit; this still unfixed flaw is in a popular software package

Google researchers say currently unfixed vulnerability affects a popular software package.  —  North Korea-backed hackers …

Our contact email is at the bottom of this blog post: https://blog.google/...
2023-09-10 View on X
Ars Technica

Google says North Korea-backed hackers are again targeting security researchers via a zero-day exploit; this still unfixed flaw is in a popular software package

Google researchers say currently unfixed vulnerability affects a popular software package.  —  North Korea-backed hackers …

2023-09-09
North Korean actors 🇰🇵 are targeting security researchers again including use of at least one 0-day. IOCs in the blog ⬇️ If you've been in contact, please reach out https://blog.google/... [image]
2023-09-09 View on X
Ars Technica

Google says North Korea-backed hackers are targeting security researchers with an exploit using a currently unfixed zero-day flaw in a popular software package

Google researchers say currently unfixed vulnerability affects a popular software package.  —  North Korea-backed hackers …

Our contact email is at the bottom of this blog post: https://blog.google/...
2023-09-09 View on X
Ars Technica

Google says North Korea-backed hackers are targeting security researchers with an exploit using a currently unfixed zero-day flaw in a popular software package

Google researchers say currently unfixed vulnerability affects a popular software package.  —  North Korea-backed hackers …

Two ITW 0-days for iOS: ImageIO (CVE-2023-41064) discovered by Citizen Lab & Wallet (CVE-2023-41061) discovered by Apple. This is the first time that Apple has been publicly credited for an ITW 0day since we began tracking in 2014! Thank you Apple! 🥳 https://support.apple.com/...
2023-09-09 View on X
The Record

Apple releases macOS, iOS, iPadOS, and watchOS updates to address two zero-day flaws that Citizen Lab says were used to deliver NSO Group's Pegasus spyware

2023-09-08
Two ITW 0-days for iOS: ImageIO (CVE-2023-41064) discovered by Citizen Lab & Wallet (CVE-2023-41061) discovered by Apple. This is the first time that Apple has been publicly credited for an ITW 0day since we began tracking in 2014! Thank you Apple! 🥳 https://support.apple.com/...
2023-09-08 View on X
The Record

Apple releases macOS, iOS, iPadOS, and watchOS updates to address two zero-day flaws that Citizen Lab says were used to deliver NSO Group's Pegasus spyware

Apple released software updates on Thursday to address two zero-day vulnerabilities that researchers said were used …

2023-04-12
Another Windows CLFS itw 0-day: CVE-2023-28252 discovered by @oct0xor, Mandiant, and DBAppSecurity #itw0days https://securelist.com/...
2023-04-12 View on X
BleepingComputer

Microsoft releases 97 security fixes, patching one actively exploited zero-day flaw in the Windows Common Log File System and seven critical RCE vulnerabilities

Today is Microsoft's April 2023 Patch Tuesday, and security updates fix one actively exploited zero-day vulnerability and a total of 97 flaws.

2023-03-30
✨Amazing detection and analysis by @_clem1 and Google TAG on 2 different campaigns using 5 different 0-days and numerous n-days. Android, iOS, and Samsung devices were targeted https://blog.google/... https://twitter.com/...
2023-03-30 View on X
The Record

Google's Threat Analysis Group details two limited but highly targeted spyware campaigns using several zero-day exploits against Android, iOS, and Chrome

Two targeted spyware campaigns involving several zero-day exploits for Android, iOS and mobile versions of the Chrome browser were unmasked …

2022-02-12
WebKit in-the-wild patched today ⬇️ https://twitter.com/...
2022-02-12 View on X
BleepingComputer

Apple releases iOS 15.3.1, iPadOS 15.3.1, and macOS Monterey 12.2.1 to fix a WebKit flaw that may have been actively exploited, its third zero-day patch in 2022

Friday, February 11, 2022 // (IG): BB //Weekly Sponsor: BLKTRIANGLE Mitchell Clark / The Verge : Apple's latest update should fix MacBooks' battery drain issue Tyler Lee / Ubergizm...

2022-02-11
WebKit in-the-wild patched today ⬇️ https://twitter.com/...
2022-02-11 View on X
BleepingComputer

Apple releases iOS 15.3.1, iPadOS 15.3.1, and macOS Monterey 12.2.1 to fix a WebKit flaw that may have been actively exploited, its third zero-day patch in 2022

Friday, February 11, 2022 // (IG): BB //Weekly Sponsor: BLKTRIANGLE Pieter Arntz / Malwarebytes Labs : Update now! Apple fixes actively exploited zero-day Ravie Lakshmanan / The Ha...

2021-12-18
Candiru, Cytrox, & NSO: all brought into the public eye by @citizenlab in just the last few of months. Our, the public's, understanding of the surveillance industry & its use against activists, journalists, & human rights defenders, is due in large part to them.
2021-12-18 View on X
TechCrunch

Meta bans seven surveillance-for-hire groups, including Cytrox, removing over 1,500 Facebook and Instagram accounts and alerting 50K users who were targeted

Cytrox is one of seven surveillance companies now banned from Meta's platforms  —  While NSO Group was taking flak for hacking …

Candiru, Cytrox, & NSO: all brought into the public eye by @citizenlab in just the last few of months. Our, the public's, understanding of the surveillance industry & its use against activists, journalists, & human rights defenders, is due in large part to them.
2021-12-18 View on X
The Citizen Lab

Two Egyptians living in exile had their iPhones compromised in June 2021 using Predator spyware built by North Macedonian developer Cytrox

2021-12-17
Candiru, Cytrox, & NSO: all brought into the public eye by @citizenlab in just the last few of months. Our, the public's, understanding of the surveillance industry & its use against activists, journalists, & human rights defenders, is due in large part to them.
2021-12-17 View on X
The Citizen Lab

Two Egyptians living in exile had their iPhones compromised in June 2021 using Predator spyware built by North Macedonian developer Cytrox

Key Findings  — Two Egyptians—exiled politician Ayman Nour and the host of a popular news program (who wishes to remain anonymous) …

2021-12-05
“They were infected through the same graphics processing vulnerability that Apple did not fix until September, the sources said.” Sounds like CVE-2021-30860, reported to Apple by @citizenlab in Sept (https://citizenlab.ca/...) #itw0days https://twitter.com/...
2021-12-05 View on X
Reuters

Sources: the iPhones of at least nine US State Department employees were hacked using NSO's spyware in the past several months

2021-12-04
“They were infected through the same graphics processing vulnerability that Apple did not fix until September, the sources said.” Sounds like CVE-2021-30860, reported to Apple by @citizenlab in Sept (https://citizenlab.ca/...) #itw0days https://twitter.com/...
2021-12-04 View on X
Reuters

Sources: the iPhones of at least nine US State Department employees were hacked using NSO's spyware in the past several months