6 months ago, I started working on a way to better map the #ransomware ecosystem and its evolution, including rebrands.🔎
I am really happy to share this handmade cartography, which is based on @orangecyberdef resources, #OSINT and reverse engineering.
➡️ https://t.co/cKK57AM07f
#SearchAndRescue@USCG crews are searching for 36-year-old Vitali Kremez, last seen wearing a black wetsuit and scuba tank while diving near #HollywoodBeach, Florida.
Anyone with information is asked to call Sector Miami at (305) 535-4472.
Cryptocurrency has become a major source of aid for governments amid the Russia-Ukraine war, which has also given threat actors the chance to profit through scams. Crypto account activity related to the war is up, but not all of it is legitimate: https://t.co/bTMwdHVjQQ
Three of the oldest/most venerated Russian-language cybercrime forums (Verified, Mazafaka and Exploit) have been hacked. Maza's partially-redacted database posted online. Many in the forums voiced concern over lack of trust, real-life identity exposures. https://t.co/VUvXwSxiu8
Dark markets is where COVID-19 related misinformation and shortages become threats to public health.
In this new paper we report on hundreds of listings for PPE, medicines, tests, fake medical records, ventilators, guides on scamming, and web domains.
https://t.co/38zsxFPBC6
DarkMarket: world's largest illegal dark web marketplace has been taken offline in an international operation involving 🇩🇪🇦🇺🇩🇰🇲🇩🇺🇦🇬🇧🇺🇸. #DarkMarket had 500 000 users, 2 400 sellers and 320 000 transactions. We supported the takedown with operational analysis and coordination.
ONCE UPON A TIME ON THE DARK WEB…
Police authorities from 9 countries set out on a journey to catch cybercriminals coordinated by @Europol and @Eurojust
179 vendors were arrested.
$6.5m and 500kg of drugs were seized.
Want to know the whole story?
https://t.co/6H4ErdGieP
To all twitter friends interested in #dataprotection & #Brazil:
The #LGPD (🇧🇷 General Data Protection Law) enters in force today!🚀
Administrative #sanctions will enter in force in May 2021 and the #DPA does not exist yet, though.
... because nothing is ever boring in 🇧🇷
I truly believe security awareness training is doomed until we can stop legitimate messages looking like this.
We are training users to fall for phishing then getting on our #infosec high horses about how stupid they are for being phished.
Chip-based payment cards are supposed to make it infeasible for skimmers or malware to clone your card when you pay for something by dipping the chip vs. swiping the stripe. But recent breaches at U.S. merchants suggest much may depend on where you bank. https://t.co/IhjrOxyG6p
Why is the US still such a hotbed of credit/debit card fraud? An NYU analysis of the card data stolen from cybercrime megashop BriansClub (no affiliation) has some very interesting findings and unparalleled ground-truth data https://t.co/OxCdl4YU91
Good, in-depth blog post from a former Maersk IT guy on how they dealt with being clobbered by the global notPetya malware outbreak. Must-read for anyone in charge of securing enterprise networks https://t.co/KoSKUCBmPD
Israel and Iran have recently been engaged in an exchange of attempted and successful cyberattacks, and the purpose of Israel’s relatively small-scale effort at the port was to send a message to Tehran: Don’t target Israeli infrastructure. https://t.co/iNXwVA7oFx
Please promote this opportunity for a technologist in the "global south" to support a local/regional organization that is fighting inequality. #publicInterestTech#job
What would YOU like to see in a BASIC Linux course geared toward people doing OSINT and/or Social Engineering (but really anyone in general)?
RT for reach.