/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

Rachel Tobac

@racheltobac
89 posts
2026-01-28
Heard of Apple's lockdown mode? Now WhatsApp is launching its own anti-spyware prevention mode called Strict Account Settings. If you're someone who might be a target of sophisticated spyware, this could be a match. Thanks @WhatsApp for the partnership to keep folks safe. [video]
2026-01-28 View on X
Reuters

WhatsApp launches Strict Account Settings, a high-security mode to protect high-risk users like journalists and public figures from sophisticated cyberattacks

Meta's WhatsApp messaging service is offering users an advanced security mode, joining a growing number of U.S. tech firms …

2025-10-09
The Discord breach is another example of the risk of collecting IDs for age verification. If you're going to collect sensitive data, you have to protect it. We're not seeing it protected well so far.
2025-10-09 View on X
The Verge

Discord estimates that 70K users' government ID photos may have been exposed in a 1.5TB data breach of third-party customer service Zendesk on September 20

Discord claims that the attackers are circulating inaccurate information about the breach of a customer service provider as part of an extortion attempt.

2025-09-19
Huge Scattered Spider arrest today — 19 years old, in the UK, & allegedly committed 120 intrusions, extorted 47+ U.S. orgs for $115 Million in ransom. If convicted, a potential 95 years in prison. A definite “tell us everyone involved or you'll die in a cell” attempt here.
2025-09-19 View on X
Financial Times

The US DOJ charges a UK teen allegedly tied to Scattered Spider over 120+ cyberattacks and the UK charged him and another teen over a Transport for London hack

The 19-year-old is alleged to have extracted $115mn in ransom payments from victims  —  A British teenager has been charged …

2025-07-29
2nd Tea App breach?! 1 million messages w/ sensitive cheating stories, details of ending pregnancies, contact details, real names — it could not be more serious. Here are actions to protect yourself and what to do next. I'll be on NBC News Now at 7 pm ET tomorrow discussing this. [video]
2025-07-29 View on X
9to5Mac

Tea, which claims to make dating safer for women, is the #2 app in the US App Store, despite multiple security flaws exposing private chats, photo IDs, and more

Two major security vulnerabilities in the Tea app - which claims to make dating safer for women - have exposed the private chats …

2nd Tea App breach?! 1 million messages w/ sensitive cheating stories, details of ending pregnancies, contact details, real names — it could not be more serious. Here are actions to protect yourself and what to do next. I'll be on NBC News Now at 7 pm ET tomorrow discussing this. [video]
2025-07-29 View on X
404 Media

A second security breach at women's safety app Tea exposes 1.1M+ user messages, dating from early 2023 up to last week, many containing sensitive information

A second, major security issue with women's dating safety app Tea has exposed much more user data than the first breach we first reported …

2025-06-14
If a user's expectations about how a tool functions don't match reality, you've got yourself a huge user experience and security problem.  Humans have built a schema around AI chat bots and do not expect their AI chat bot prompts to show up in a social media style Discover feed — it's not how other tools function...
2025-06-14 View on X
TechCrunch

The public feed of the Meta AI app is filled with private and sensitive information, suggesting users might not be aware they are sharing their chats publicly

here's how to protect your privacy Samantha Subin / CNBC : Here's how to keep Meta AI from sharing your prompts on Facebook, Instagram Richi Jennings / Security Boulevard : Meta AI...

2025-06-13
If a user's expectations about how a tool functions don't match reality, you've got yourself a huge user experience and security problem.  Humans have built a schema around AI chat bots and do not expect their AI chat bot prompts to show up in a social media style Discover feed — it's not how other tools function...
2025-06-13 View on X
TechCrunch

The public feed of the Meta AI app is filled with private and sensitive information, suggesting users might not be aware they are sharing their chats publicly

It sounds like the start of a 21st century horror film: Your browser history has been public all along, and you had no idea.

2025-04-02
Wow. Not only was Signal in use here but now we're seeing *Gmail personal accounts* in use for official sensitive government business. This opens up risk for potential: insider threat, password and MFA weakness, phishing, and physical security. Enough to make my head spin.
2025-04-02 View on X
Washington Post

Sources and docs: White House National Security Advisor Michael Waltz and other NSC members have conducted government business via their personal Gmail accounts

Trump's national security adviser is trying to manage his way out of a crisis.  But new revelations about his team's operational security are piling up in the inbox.

2024-07-27
Whoa — a North Korean attacker attempted to hack KnowBe4 and gain access through their employment process. I talked about my employment based social engineering attacks in @DarknetDiaries in case you want to hear more about that attack vector below! https://blog.knowbe4.com/...
2024-07-27 View on X
Ars Technica

US-based security vendor KnowBe4 says it unwittingly hired a North Korean hacker who then unsuccessfully attempted to load malware into the company's network

KnowBe4, which provides security awareness training, was fooled by stolen ID.  —  KnowBe4, a US-based security vendor …

2024-07-21
Once again, the attacker turns out to be a young person. A young person who jumps on a call with Service Desk pretending to be one of your employees to gain access to an enterprise account and costs the org 100 million.
2024-07-21 View on X
404 Media

The UK and US announce the arrest of a 17-year-old boy from Walsall, UK, suspected of being connected to the ransomware attack against MGM Resorts in 2023

Joseph Cox / 404 Media :

2024-07-20
Once again, the attacker turns out to be a young person. A young person who jumps on a call with Service Desk pretending to be one of your employees to gain access to an enterprise account and costs the org 100 million.
2024-07-20 View on X
404 Media

The UK and US announce the arrest of a 17-year-old boy from Walsall, UK, suspected of being connected to the ransomware attack against MGM Resorts in 2023

On Friday U.K. police announced, in a joint operation with the country's National Crime Agency (NCA) and the U.S. FBI …

2024-07-08
Now I don't need to independently edit the voice I want to voice clone out of a noisy environment before cloning it — I can just isolate the voice and then clone it easily. Voice cloning is only going to get easier for hacking, folks.
2024-07-08 View on X
VentureBeat

ElevenLabs launches Voice Isolator, a freemium AI tool for removing background noise from audio files for film, podcast, and interview post production

I can just isolate the voice and then clone it easily. Voice cloning is only going to get easier for hacking, folks. @elevenlabsio : We plan to make Voice Isolator available via AP...

2024-07-07
Now I don't need to independently edit the voice I want to voice clone out of a noisy environment before cloning it — I can just isolate the voice and then clone it easily. Voice cloning is only going to get easier for hacking, folks.
2024-07-07 View on X
VentureBeat

ElevenLabs launches Voice Isolator, a freemium AI tool for removing background noise from audio files for film, podcast, and interview post production

ElevenLabs, the AI voice startup known for its voice cloning, text-to-speech and speech-to-speech models, has just added another tool to its product portfolio: an AI Voice Isolator...

2024-07-06
Now I don't need to independently edit the voice I want to voice clone out of a noisy environment before cloning it — I can just isolate the voice and then clone it easily. Voice cloning is only going to get easier for hacking, folks.
2024-07-06 View on X
VentureBeat

ElevenLabs launches Voice Isolator, a freemium AI tool for removing background noise from audio files for film, podcast, and interview post production

ElevenLabs, the AI voice startup known for its voice cloning, text-to-speech and speech-to-speech models, has just added another tool to its product portfolio: an AI Voice Isolator...

2024-02-16
Today the FTC proposed new protections to combat AI impersonation of *individuals* themselves, rather than just organizations, companies, celebrities, politicians, brands, etc. This could also impact the way AI tools are held accountable for the way their tools are used in...
2024-02-16 View on X
Bloomberg

The FTC proposes new rules that would make companies liable if they “know or have reason to know” their AI tech is being used to harmfully impersonate consumers

The US Federal Trade Commission moved to put new rules into place around impersonation, citing the rising threat …

2024-02-09
Whoa the FCC has recognized the risk of AI voice cloning in robocalls & scam calls! Video demo below. - New FCC fines, more than $23,000 PER CALL - Now gives call receiver right to take legal action and potentially recover up to $1,500 in damages per call https://apnews.com/...
2024-02-09 View on X
CNN

The FCC outlaws scam robocalls featuring fake, AI-created voices, giving state AGs more legal tools to pursue illegal robocallers that use such voices

Brian Fung / CNN :

2024-01-24
Whoa! Passkey launch for Twitter today (for US users). Remember, if you choose to use a passkey, secure your iCloud/AppleID. Your passkey here is tied to your iCloud so if your iCloud account has a reused password, no MFA, etc then your accounts tied to iCloud/Apple ID are...
2024-01-24 View on X
TechCrunch

X adds support for passkeys for US-based iOS users; the announcement comes shortly after the hack of the US SEC's X account

X, formerly Twitter, today announced support for passkeys, a new and more secure login method than traditional passwords, which will become an option for U.S. users on iOS devices.

2024-01-10
@SECGov A vulnerability on Twitter is that many high profile accounts must add a phone number to become “verified” (even if they choose to hide their checkmark). Then, if you don't go and remove your phone number after the verification process, you're at risk for SIM swap account... [image]
2024-01-10 View on X
CNBC

X confirms the @SECGov account was compromised and says “the compromise was not due to any breach of X's systems” and that the account didn't have 2FA enabled

- X said late Tuesday it has completed a preliminary probe into the compromised account of the U.S. Securities … Source: @safety .

@Chris_Yeung98 1. Enable MFA that matches your threat model: app based or FIDO solution 2. Don't tie phone number to Twitter account to prevent SIM swap risk (if you must temporarily add phone number for verification, remove it as soon as possible) 3. If you use a 3rd party social media...
2024-01-10 View on X
CNBC

X confirms the @SECGov account was compromised and says “the compromise was not due to any breach of X's systems” and that the account didn't have 2FA enabled

- X said late Tuesday it has completed a preliminary probe into the compromised account of the U.S. Securities … Source: @safety .

The @SECGov account claims it was hacked. The compromised account's tweet impacted the cryptocurrency market. Like I said during the @Mandiant Twitter account takeover 5 days ago: there are many ways this attack could have happened including bribe or compromise of internal...
2024-01-10 View on X
CoinDesk

An X post from US SEC Chair Gary Gensler says that the @SECGov's “twitter account was compromised”, and that the agency has not approved spot bitcoin ETFs

The X account of the U.S. Securities and Exchange Commission, which is deciding whether to approve bitcoin ETFs, “was compromised,” the regulator told CoinDesk.