/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

Rey Bango

@reybango
8 posts
2021-12-11
URGENT: if you're using log4j in your applications for logging, you need to update it. There's a remote code execution bug in it. GitHub labeled the vulnerability as “critical severity” https://www.vice.com/... via @vice
2021-12-11 View on X
LunaSec Blog

A vulnerability in the Apache log4j Java logging library allows for remote code execution, impacting Steam, iCloud, Minecraft, and other services

A few hours ago, a -day exploit in the popular Java logging library, log4j, was tweeted along with a POC posted on GitHub that results …

2021-02-22
New malware found on 30,000 Macs has security pros stumped “...and yet again shows the macOS malware is becoming ever more pervasive and commonplace, despite Apple's best efforts.” As @hackerfantastic says, “All computers are broken”. https://arstechnica.com/...
2021-02-22 View on X
Ars Technica

Researchers discover macOS malware dubbed “Silver Sparrow” on at least 30K Macs, which includes a native M1 version and leverages the Installer JavaScript API

and this one is dangerous Matthew Humphries / PCMag : Silver Sparrow Malware Discovered on 30K Infected Macs Joe Rice-Jones / KnowTechie : Mysterious malware was found on nearly 30...

2020-10-23
Cyberattacks against machine learning systems are more common than you think - Microsoft Security https://www.microsoft.com/...
2020-10-23 View on X
VentureBeat

Microsoft, IBM, Nvidia, and others released an open framework to help security analysts detect, counter, and remediate threats against machine learning systems

Kyle Wiggers / VentureBeat :

2020-08-30
“When I was running the service, I didn't really care because I didn't know my customers and I didn't know much about what they were doing with it” I feel like this is how most cybercriminals think. They're only hurting big corps or rich people. 🙄 https://krebsonsecurity.com/ ...
2020-08-30 View on X
Krebs on Security

Story of Vietnamese hacker “Hieupc”, who was earning $125K/month running a bustling identity theft service, and was recently released from prison

At the height of his cybercriminal career, the hacker known as “Hieupc” was earning $125,000 a month running a bustling identity theft service … Tweets: @reybango , @briankrebs , @...

2020-08-25
“The attempts by Mintegral to conceal the nature of the data being captured, both through anti-tampering controls and a custom proprietary encoding technique, are reminiscent of similar functionality reported by researchers that analyzed the Tik Tok app.” @snyksec https://twitter.com/...
2020-08-25 View on X
Forbes

Security research firm Snyk alleges that Chinese ad network Mintegral committed ad click fraud via its SDK across billions of installs of 1,200+ iOS apps

A Chinese ad network named Mintegral is accused of spying on user activity and committing ad fraud in more than 1,200 apps with 300 million installs per month since July 2019.

2020-06-19
Many threat hunters will use automated tools to download malware and analyze them in a VM. Bad actors are trying to make it more difficult by using CAPTCHAS: “To evade detection, hackers are requiring targets to complete CAPTCHAs” https://arstechnica.com/... via @dangoodin001
2020-06-19 View on X
Ars Technica

Microsoft discloses a new attack by Chimborazo, a group that is distributing a malicious Excel document on a site requiring CAPTCHA to evade automated detection

Dan Goodin / Ars Technica :

2020-05-15
The team at @MsftSecIntel is open-sourcing new COVID-19 threat intelligence “This COVID-specific threat intelligence feed represents a start at sharing some of Microsoft's COVID-related IOCs.” https://www.microsoft.com/...
2020-05-15 View on X
CyberScoop

Microsoft opens up its threat intelligence data, including file hash indicators used in email scams, to wider security community via GitHub during the pandemic

Microsoft is making the threat intelligence it's collected on coronavirus-related hacking campaigns public, the company announced Thursday.

2020-05-08
@sal19 @dnvolz @Techmeme Kudos to Facebook for this. @stevetex ^^
2020-05-08 View on X
CNBC

Facebook will begin to open most of its offices on July 6 but says most employees will be given the choice to continue to work from home through the end of 2020

Salvador Rodriguez / CNBC :