We are investigating unauthorized access to GitHub’s internal repositories. While we currently have no evidence of impact to customer information stored outside of GitHub’s internal repositories (such as our customers’ enterprises, organizations, and repositories), we are closely monitoring our infrastructure for follow-on activity.
North Korean Lazarus Group has weaponized this exact class of Microsoft-signed kernel driver.
It is sitting on MILLIONS of Windows PCs right now.
It gives any local process full control from the deepest level of Windows.
5 lines of code. Zero validation.
Your antivirus can’t stop what runs below the OS.
You pay Google $10/month to store your files. On Google's servers. Where Google can read them.
You pay Dropbox $12/month. On Dropbox's servers. Where Dropbox can read them.
You pay Apple $10/month. On Apple's servers. Where Apple can read them.
Dropbox was breached in 2024. User emails, hashed passwords, API keys, and OAuth tokens were exposed.
There is a tool that syncs your files directly between your own devices. No cloud. No server. No middleman. Ever.
It's called Syncthing. 81,900+ stars on GitHub.
Your files go directly from one device to another. Peer-to-peer. They never touch a third-party server. Not even Syncthing's.
Here's what it does:
→ Syncs files between any number of devices in real-time.
→ Peer-to-peer. No central server. Your files go directly between YOUR devices.
→ TLS encryption with perfect forward secrecy on every connection.
→ Every device authenticated with a strong cryptographic certificate.
→ Works over LAN and internet. No port forwarding needed.
→ Selective folder sharing. Sync different folders with different people.
→ File versioning. Deleted or changed something? Roll it back.
→ Runs on Windows, Mac, Linux, Android, FreeBSD, Solaris, and more.
→ Web dashboard to monitor everything from your browser.
→ No account. No sign-up. Install it. Share a device ID. Done.
Here's the wildest part:
There is no Syncthing server. There is no Syncthing cloud. There is no company storing your data. The protocol is open and documented. There is nothing between your devices except an encrypted tunnel.
Google has shut down 293 products. Dropbox has been breached. iCloud photos have leaked. Every cloud service is one policy change away from scanning everything you store.
Syncthing can never shut down your files. Because your files were never on their servers.
Dropbox Plus: $12/month. $144/year.
Google One 2TB: $10/month. $120/year.
iCloud+ 2TB: $10/month. $120/year.
Syncthing: $0. Unlimited devices. Unlimited storage. Your hardware. Your files. Forever.
349 contributors. 464 releases. 5,000+ forks. Battle-tested since 2013.
Run by the Syncthing Foundation. A Swedish non-profit.
MPL-2.0 licensed. Open protocol. Peer-to-peer. Free forever.
100% Open Source.
Find GPS trackers using the EMR noise they make: if it works, it leaks emissions we can catch! 🚗📌🗺️🦻🔨
More details on:
LinkedIn: https://t.co/q0UwulUHxO
Substack: https://t.co/wsVu3EISZC
Lazarus Group stole $7B in crypto then got caught on camera at some random football match in Russia waving North Korean flags on live TV😂.
Founders, is your lead dev doxxed in there? Might wanna check 👀
A Threat Actor has announced, through text and video in a Telegram group, the launch of BLACKNET-00 — the world’s most advanced and accessible ransomware builder platform.
Featuring a professional dark-themed graphical interface, intuitive tabs, and real-time configuration preview, anyone — even with ZERO programming knowledge — can generate fully functional ransomware with just one click.
High-risk features of the BLACKNET-00 tool include: • AES-256, RSA, and ChaCha20 encryption
• Complete disablement of Windows Defender, Task Manager, and critical system controls
• Advanced persistence + network/USB self-propagation
• C2 server with Tor + DGA support
• Anti-detection (VM, sandbox, delayed execution)
• Exfiltration of passwords, crypto wallets, screenshots, and webcam footage
Announced price: US$ 500.
This platform democratizes ransomware, completely eliminating the technical barrier and dramatically increasing the risk of mass attacks by low-level actors.
Cybersecurity professionals and organizations: immediately raise your alert level and reinforce defenses.
Share to spread awareness.
#CyberSecurity #Ransomware #BLACKNET00 #ThreatIntelligence #InfoSec #Malware #RansomwareAsAService #CyberThreat #ThreatActor
Open Source Intelligence (OSINT): Using Flowsint for Graph-Based Investigations
Flowsint reveals hidden connections between domains, IPs, emails, and criminals.
https://t.co/GKWdIzqQjW
@three_cube
😱 Someone has downloaded a lot of songs 😅 and they say🤣
Backing up Spotify
We backed up Spotify (metadata and music files). It’s distributed in bulk torrents (~300TB), grouped by popularity.
https://t.co/MgWL4JtqHZ
#songs#spotify#torrent