Finally! The English version of "Attribution of Advanced Persistent Threats" is available for Kindle! Hardcover will follow soon.
With updated and additional content as compared to the German version from two years ago.
Preorder hardcover or buy eBook: https://t.co/pkfqwdAxjI
Espionage Campaign Targeted Stock Exchange Executive for Five Months: The attackers took multiple steps to try and conceal their activity. Read more: https://t.co/sp9VjHjwX0
The mystery of Satoshi Nakamoto, the pseudonymous inventor of Bitcoin, has remained unsolved for 17 years. Not anymore. Read my 18-month investigation to find out who Satoshi really is. https://t.co/fPtaK6YHJC
Forest Blizzard, a threat actor linked to the Russian military, has been compromising insecure small-office and home internet equipment like routers to conduct DNS hijacking and adversary-in-the-middle attacks https://t.co/612214XwVg
#ESETresearch is hiring! Passionate about geopolitics, cyberespionage and cyber threat intelligence? We have a new opening for a strategic threat intelligence analyst at our Montréal office. Come join the team!
https://t.co/YGp5axfYpL
📣#PIVOTcon26 Agenda is here 🤟 We are thrilled to announce the lineup for this year's speaker lineup.
2⃣days and 19 talks from leading #ThreatResearch experts.
The agenda link is in the first comment👇, and the talks and speakers are in the thread.🧵
#CTI#ThreatResearch
1/15
‼️At the end of last year, there was a series of coordinated attacks in Polish cyberspace.
📌Today, our team is publishing a report describing the technical analysis of these events. We show the scheme of operation and the tools used by the attackers.
➡️https://t.co/A7EuPsL12h
@ESET Research: Sandworm behind cyberattack on Poland’s power grid in late 2025
The attack involved data-wiping malware that ESET researchers have now analyzed and named DynoWiper.
https://t.co/kn9sA38kpm
A cyberattack targeting Poland's energy infrastructure in December used wiper malware that would have erased grid computers and rendered them inoperable had it not been thwarted, researchers at @ESET told me. https://t.co/h0wFRyvO6C
#PIVOTcon26 registration is now OPEN 🤟📷 #ThreatResearch#ThreatIntel 📷https://t.co/O5LJfr5JlT
Please read carefully the whole 🧵 for the rules about invite -> registration (1/6)🌐
Missed among the cacophony of the most recent US-China trade spat is Taipei's rejection of Washington's proposal that 50% of semiconductors be produced in the U.S. This is a big deal and signals that de-coupling is just not going to happen. In this short video, I explain why!
I also want to use this opportunity to flag to friends and clients in Australia that I will be in Sydney (October 27-28) and Melbourne (Oct 29-30) at the end of the month! If you'd like to attend one of the events BCA will put together, please reach out to our local team or just ping me directly!
Nothing but love for a blog post with summary conclusions of competing hypotheses.
Transparency around how we weigh the diagnostic value of specific evidence lays the foundation for better collective understanding in the long-term.
IMHO, the loss of Twitter/X as a platform where virtually everyone in infosec who was publicly active online had a presence has really been deleterious to a lot of info sharing. It's also no doubt prevented a lot of useful discussions and interactions from happening.
Microsoft Threat Intelligence has uncovered a cyberespionage campaign by the Russian state actor we track as Secret Blizzard that has been targeting embassies located in Moscow using an adversary-in-the-middle (AiTM) position to deploy their custom #ApolloShadow malware.
https://t.co/n10NihobGX
#ApolloShadow #MSTIC #MIRAGE
#PublicAttribution of cyber activities is #China’s latest technique for pressuring #Taiwan and shaping the international dialogue around #cybersecurity. Ben Read digs into the details on Binding Hook: https://t.co/pJChBkIyu0
State of Statecraft (SOS) is a new security and intelligence conference purposed to bring together observers of espionage, sabotage, influence, and other unique forms of covert statecraft to share their work with a community hyper-focused on tackling state-sponsored ops.
Scoop: US intelligence officer offered top secret documents to the German #BND and asked for German citizenship - because he was frustrated with the #Trump government. BND informed the Americans and he was arrested. Story with @manuelbewarder@schmitt_jrg https://t.co/F40JNtNGCC
Microsoft and CrowdStrike are teaming up to create alignment across our threat actor taxonomies, mapping where knowledge of these actors align to enable security professionals to connect insights faster and make decisions with greater confidence. https://t.co/gJtSQDGgzH