Our latest collab with Electronic Frontier Foundation (@EFF) just dropped for @DEFCON 34! 🔥 Proceeds support #EFF's mission to defend digital privacy and online freedom! ✊ #DEFCON#BadgeLife https://t.co/TkItWVD4LI
The history of Microsoft security can be summarized as an endless cycle of reducing one attack surface and accidentally creating another.
Microsoft taketh and Microsoft giveth.
Three years of #BadgeLife. Same mission. Privacy Badger. NSA Eagle. And now…the fist is raised.⚡We return to @defcon 34 with our 2026 @EFF tribute badge. Follow us on Eventbrite for our June drop. https://t.co/sYW0MU1Jbj
Here's my update to the broader community about the ongoing incident investigation. I want to give you the rundown of the situation directly.
A Vercel employee got compromised via the breach of an AI platform customer called https://t.co/7PY6gGtzgI that he was using. The details are being fully investigated.
Through a series of maneuvers that escalated from our colleague’s compromised Vercel Google Workspace account, the attacker got further access to Vercel environments.
Vercel stores all customer environment variables fully encrypted at rest. We have numerous defense-in-depth mechanisms to protect core systems and customer data. We do have a capability however to designate environment variables as “non-sensitive”. Unfortunately, the attacker got further access through their enumeration.
We believe the attacking group to be highly sophisticated and, I strongly suspect, significantly accelerated by AI. They moved with surprising velocity and in-depth understanding of Vercel.
At the moment, we believe the number of customers with security impact to be quite limited. We’ve reached out with utmost priority to the ones we have concerns about. All of our focus right now is on investigation, communication to customers, enhancement of security measures, and sanitization of our environments. We’ve deployed extensive protection measures and monitoring. We’ve analyzed our supply chain, ensuring Next.js, Turbopack, and our many open source projects remain safe for our community.
The recommendation for all Vercel customers is to follow the Security Bulletin closely (https://t.co/BLVnic9fJC). My advice to everyone is to follow the best practices of security response: secret rotation, monitoring access to your Vercel environments and linked services, and ensuring the proper use of the sensitive env variables feature.
In response to this, and to aid in the improvement of all of our customers’ security postures, we’ve already rolled out new capabilities in the dashboard, including an overview page of environment variables, and a better user interface for sensitive env var creation and management. As always, I’m totally open to your feedback.
We’re working with elite cybersecurity firms, industry peers, and law enforcement. We’ve reached out to Context to assist in understanding the full scale of the incident, in an effort to protect other organizations and the broader internet. I also want to thank the Google Mandiant team for their active engagement and assistance.
It’s my mission to turn this attack into the most formidable security response imaginable. It’s always been a top priority for me. Vercel employs some of the most dedicated security researchers and security-minded engineers in the world. I commit to keeping you updated and rolling out extensive improvements and defenses so you, our customers and community, can have the peace of mind that Vercel always has your back.
British hacker Tyler Buchanan, 24, from Dundee faces up to 22 years in jail after admitting he was behind major cyber attacks on US companies, including the M&S and Co-op hacks.
The Scattered Spider gang member used text phishing to steal login credentials from at least a dozen firms, including telecoms, IT suppliers, cloud providers and crypto companies.
He attempted to steal at least £5.9 million in virtual currency between 2021 and 2023.
A device seized from his home contained victim data and crypto login details.
Buchanan was arrested in Spain in 2025 while heading to Italy and has been in US federal custody since April.
Sentencing is set for August 21, 2026.
(EXCLUSIVE) New investigation: Who runs Cl0p ransomware?
Months of reporting, cross-referencing forum records, dossiers, and confidential sources identifies the group's operators, developers, access brokers, and infrastructure.
https://t.co/CrZtt1veAJ
#Ransomware#Cl0p #ThreatIntel #osint #clop #security #research
someone built a device that DETECTS when FEDS is SPYING on your phone nearby
its called rayhunter, made by the EFF, and it costs $20
you buy a cheap mobile hotspot from amazon, flash it with their open source software, and carry it in your pocket
feds use devices called stingrays that pretend to be real cell towers so your phone connects to them instead, once connected they can track your EXACT location, grab your phone identity, and potentially intercept your calls and messages
counter-surveillance equipment used to cost THOUSANDS of $ and required serious technical knowledge
now its $20 and fits in your pocket
A Rey of Mistakes ☀️
The story of a 16 year old ransomware operator, 30+ aliases, and a trail of OPSEC failures that led straight back to him.
Full investigation 👇
https://t.co/OrjGorw9b8
@dulls 🤡
Interview of TierOne admin. "This is a business ... We strive to be a welcoming space, especially for ransomware-related discussions."
https://t.co/0njnU1DN4l
the watchers: how openai, the US government, and persona have been secretly running an identity surveillance system since nov 2023.
https://t.co/Zz04WDF8Lz
researched by @vmfunc, @MDLcsgo, @DziurwaF
The #defconsingapore Call Demo Labs is now OPEN. If you've got a presentation or open source project to share with the #defcon community, the time is now. Deadline is Feb 15, 2026.
https://t.co/eXu26Ly4QX