@abdullahciftcib Bu tarz büyük çaplı operasyonlar ufak tefek hacker gruplarını aşar. Devletler maddi güç sağlayıp kendi gizli kurumlarına bu tarz operasyonlar yaptırabiliyor. Hangi devletler olduğunu söylememe gerek yok umarım. 🙂
“PT First Wap International” adlı telekomünikasyon şirketinin telefon numaraları üzerinden küresel bir “telefon takip imparatorluğu” kurduğu ortaya çıktı
▪️ Lighthouse ekibindeki bağımsız gazeteciler, 1,5 milyon satırlık veriden oluşan ve yüzbinlerce konum bilgisinin yer aldığı arşive erişim sağladı
▪️ Vatikan’dan Silikon Vadisi’ne kadar uzanan geniş bir coğrafyada üst düzey siyasetçiler, iş insanları ve aktivistlerin takip edildiği ortaya çıktı
▪️ 1 yıl süren araştırmalar sonucunda telekomünikasyon şirketinin SS7 ağındaki güvenlik açıklarını kullanarak birçok insanı sadece telefon numarası ile takip ettiği belirlendi
📱 Takip için geliştirilen yazılım: Altamides
▪️ Rapora göre şirket, iz bırakmadan konum takibi yapabilen 'Altamides' adlı bir yazılım geliştirdi
▪️ Yazılımın, konum takibinin yanı sıra, mesajları ve telefon görüşmelerini dinleme ve hatta WhatsApp gibi şifreli mesajlaşma uygulamalarını kırabilme yeteneğine sahip olduğu ortaya çıktı
▪️ Pegasus gibi üst düzey casus yazılımların aksine, First Wap'ın Altamides sistemi bir telefona bulaşamıyor, sistem tamamen telekom ağı düzeyinde çalışıyor
👥 Kimler takip edildi?
▪️ Düzenli takip edilen kişiler arasında siyasi figürlerden iş insanlarına dünyanın pek çok bölgesinden çok sayıda isim yer aldı
▪️ Takip edilenler arasında İsrail Başbakanı Binyamin Netanyahu'nun davalarına bakan savcı Liat Ben Ari'dan Beşşar Esed’in eşi Esma Esed'e kadar çok sayıda üst düzey ismin yer aldığı bulundu
▪️ Gazeteciler, 160'tan fazla ülkede takip yapıldığını; bazı ülkelerde ve bölgelerde bu faaliyetlerin daha yoğun olduğunu tespit etti
▪️ Özellikle Avrupa kıtasında faaliyetlerin yoğun olduğu, ayrıca İsrail, Kolombiya, Venezuela, Nijerya, Los Angeles ve Moskova gibi şehir ve ülkelerde de takip yoğunluğunun belirgin şekilde yüksek olduğu tespit edildi
🚫 Engellemeniz gereken bazı kripto hesapları:
▪️ Paradotor
Her gün “dominance düşerse uçuyoruz” diye başlar, bitmek bilmeyen reklamlarla devam eder. Bir bakmışsın portföy değil sabır testindesin.
▪️ Lord of Kripto
Yarın Mars’ta arsa satar. Cennetten tapu alırsın, ama coin’in %90 erimiştir farkında bile olmazsın.
▪️ Jr Kripto
Ağzı iyi laf yapar ama bilgi sıfır. Süsle konuşur, içi boş çıkar. Sahne güzel, senaryo çöp. Takipçilerine sürekli coin kitler , mevcut portföyü %99 zarardadır.
▪️ Kripto Efsanesi
Ref’ten başka bir şey bilmez. Borsa elemanı gibi çalışır. Portföy değil, seni liq eder.
▪️ JessCoin
Piyasa %1 artınca “yeşillendi fındık dalları” der. O sırada senin portföy %40 ekside. Masal gibi anlatır, kabus gibi biter.
▪️ Crypto Troia
“Bot sistemi” der, üyelerden 100$ toplar. Stop patlayınca geçmişteki başarı hikayelerine sığınır.
▪️ CoinMühendisi
Sadece borsa bağlantılarıyla tanınır. Ticaretle ilgisi yoktur, analiz yerine reklam paylaşır.
▪️ Hocca
Üfleyip üfleyip TradingView’e girer sonra hayali çizgiler çeker. Bugün dediğini yarın inkar eder. Astroloji bile daha tutarlı.
▪️ DeepWebKripto (eski Kriptohizm)
Aile çatısı altında VIP açar, milletin cebini boşaltır. Sonra isim değiştirip tekrar sahneye çıkar. Şimdi DWK oldu ama hikaye aynı: piyasaya düşüş geldi mi Insta’da story’de.
▪️ Coinhunter
Attığı her coin reklamdır. Parasıyla kurumsal tik alır, sonra takipçisini tokatlar. “Bu coin sağlam” dediği anda sat, kurtul.
▪️ Rakam ve Zaman
1 hafta önce Boğa diye bağırır, sen işleme girince BTC düştükten sonra düşünceleri ayıya döner. Spot kasayı %70 eritir, ardıjdan “ben demiştim” der. Oysa sana tepeden aldırtmıştır %200 yükselse maliyetine gelir.
Not:
Kripto dünyasında kurt kılığına girmiş koyun çok. Takip ettiğin kişileri değil, izlediğin stratejiyi seç. Gerisi: ya akıllı olursun, ya anı olursun.
@PTTKurumsal@PttTeknoloji@epttavm@PTTCELL
Merhabalar, 25 yaşındayım ilk defa orijinal PTT'nin mesajına tıklayarak 31.000₺ dolandırıldım. Büyük ihtimalle hacklendiniz ve bu benim başıma geldi.
Müşteri hizmetlerini aradım, neslihan hanım ile 5 dakika konuştum.
💫 Stay Ahead in Cybersecurity: Meet Our Real-Time CVE Alert Channels!
📷 Be the first to know about vulnerabilities! With up-to-date CVE data, protecting your systems and infrastructure is now easier than ever. Follow our Telegram channels for regular updates on critical, high, medium, and low-level vulnerabilities.
📷 Critical CVE Alerts: Learn about the most dangerous vulnerabilities first. (https://t.co/tBFzFadyB7)
📷 High CVE Alerts: Quick solutions for major vulnerabilities. (https://t.co/CpRR3rJoiR)
📷 Medium CVE Alerts: Stay informed about medium-level threats. (https://t.co/KIinLpRMlQ)
📷 Low CVE Alerts: Don’t overlook low-risk vulnerabilities. (https://t.co/EqgtXnVmKq)
Why join?
- Stay prepared for emerging vulnerabilities.
- Minimize risks against cyber threats.
- Prioritize actions based on threat levels.
With our #CVE alerts, stay ahead of critical security vulnerabilities and keep your systems safe.
#infosec #cybersec #hacker
Major Security Flaw Found in Apple Devices
🧵 Apple has uncovered a serious security issue affecting iOS and iPadOS devices. This vulnerability lets attackers bypass USB Restricted Mode on locked devices, potentially giving them access to your data. Here’s what you need to know and how it could be exploited 👇
🔎 What’s the Issue?
CVE-2025-24200: The problem is an authorization flaw in iOS and iPadOS.
USB Restricted Mode Bypass: Normally, if your device is locked and hasn’t been unlocked in the last hour, it won’t communicate with USB accessories. But this bug allows attackers to turn off this protection, even when the device is locked.
📌 How Could This Be Exploited?
Physical Access Needed: An attacker would need to physically get hold of your device (e.g., by stealing it or briefly taking it).
Connecting via USB: They’d connect your device to a computer or a special tool (like Cellebrite or GrayKey) using a USB cable.
Bypassing the Lock: Using the flaw, they’d disable USB Restricted Mode and gain access to your data, even though the device is still locked.
Stealing Your Data: Once in, they could copy your photos, messages, contacts, and other sensitive information.
📌 What Should You Do?
Update Right Away: Apple has released fixes in iOS 18.3.1 and iPadOS 18.3.1. Make sure you install these updates immediately.
Keep Your Device Safe: Be extra careful not to lose your device, and if you do, act quickly to lock or erase it remotely.
Avoid Unknown USB Connections: Don’t plug your device into computers or accessories you don’t trust.
Apple confirmed that this vulnerability has been used in “highly sophisticated attacks” targeting specific individuals.
📌 Why This Matters:
Flaws like this are often exploited by spyware tools, such as NSO Group’s Pegasus, to target activists, journalists, and others. While these tools are marketed for fighting crime, they’re frequently misused to spy on innocent people.
#cve #CybersecurityNews #infosec
Spanish police photo of @Cellebrite Touch 2 unit being used on a suspects iPhone (6S plus?) and big bay desktop for forensics analysis. Used in article of recent arrest of a hacker who targetted NATO and Aircraft systems, known online as "natohub". https://t.co/3PjKigyGOM
💫 Stay Ahead in Cybersecurity: Meet Our Real-Time CVE Alert Channels!
🔒 Be the first to know about vulnerabilities! With up-to-date CVE data, protecting your systems and infrastructure is now easier than ever. Follow our Telegram channels for regular updates on critical, high, medium, and low-level vulnerabilities.
📡 What do we offer?
🔴 Critical CVE Alerts: Learn about the most dangerous vulnerabilities first.
(https://t.co/VUvibGVRGU)
🟠 High CVE Alerts: Quick solutions for major vulnerabilities.
(https://t.co/mAgV0uRFzR)
🟡 Medium CVE Alerts: Stay informed about medium-level threats.
(https://t.co/sy2xtwIklv)
🟢 Low CVE Alerts: Don’t overlook low-risk vulnerabilities.
(https://t.co/vcV5xKR0gW)
💡 Why join?
- Stay prepared for emerging vulnerabilities.
- Minimize risks against cyber threats.
- Prioritize actions based on threat levels.
With our #CVE alerts, stay ahead of critical security vulnerabilities and keep your systems safe. 👇
#infosec #cybersec #HackerNews
💫 Free Telegram Channels for GitHub Repositories
Keeping up with the latest tools, libraries, and innovations on GitHub is no longer a challenge. For those deeply invested in technology—whether in development, cybersecurity, or IT operations—early access to cutting-edge repositories is a strategic advantage.
To streamline this process, I’ve launched free Telegram channels that provide real-time updates for GitHub repositories, curated by programming language. Each channel ensures you're always informed about the newest developments in your field.
📂 Explore the Telegram channels by language:
Python: https://t.co/ATRN3ILGLC
C++: https://t.co/RR7Bx0uFOO
Go: https://t.co/WSZF9uZMf9
Rust: https://t.co/fgw8inwgFV
TypeScript: https://t.co/ymFjnwM29H
Kotlin: https://t.co/C0KPtaNqP7
PHP: https://t.co/vG0GcyWgJj
C#: https://t.co/wTFeVehBcL
Java: https://t.co/ogO6p6RjHL
C: https://t.co/TZmy4G5178
JavaScript: https://t.co/NKvu7FX0jt
By joining these channels, you gain:
🌟 Early access to innovation: Stay informed about the latest GitHub projects as they emerge.
♻️ Streamlined updates: No need to manually track repositories—updates come directly to you.
🌐 Cross-language insights: Find tools for multiple programming languages, all in one place.
These channels are free and open to everyone, aiming to enhance your workflow by providing instant, curated updates.
👉 Explore now and share with your colleagues who value staying ahead in tech.
#softwaredeveloper #SoftwareEngineering
🌍 Stay Ahead in Cybersecurity: Meet Our Real-Time CVE Alert Channels! 🌍
🔒 Be the first to know about vulnerabilities! With up-to-date CVE data, protecting your systems and infrastructure is now easier than ever. Follow our Telegram channels for regular updates on critical, high, medium, and low-level vulnerabilities.
📡 What do we offer?
🔴 Critical CVE Alerts: Learn about the most dangerous vulnerabilities first.
[Join](https://t.co/tBFzFadyB7)
🟠 High CVE Alerts: Quick solutions for major vulnerabilities.
[Join](https://t.co/CpRR3rJoiR)
🟡 Medium CVE Alerts: Stay informed about medium-level threats.
[Join](https://t.co/KIinLpRMlQ)
🟢 Low CVE Alerts: Don’t overlook low-risk vulnerabilities.
[Join](https://t.co/EqgtXnVmKq)
💡 Why join?
- Stay prepared for emerging vulnerabilities.
- Minimize risks against cyber threats.
- Prioritize actions based on threat levels.
⚡ Act now!
With our CVE alerts, stay ahead of critical security vulnerabilities and keep your systems safe. 👇
#CyberSec #bugbounty #infosec