2026-02-12 19:15:26
Exclusive: Palo Alto chose not to tie China to hacking campaign for fear of retaliation from Beijing, sources say
https://www.reuters.com/world/china/palo-alto-chose-not-tie-china-hacking-campaign-fear-retaliatio…
Exclusive: Palo Alto chose not to tie China to hacking campaign for fear of retaliation from Beijing, sources say
https://www.reuters.com/world/china/palo-alto-chose-not-tie-china-hacking-campaign-fear-retaliatio…
A mass hacking campaign targeting iPhone users in Ukraine and China
used tools that were likely designed by U.S. military contractor L3Harris, TechCrunch has learned.
The tools, which were intended for Western spies, wound up in the hands of various hacking groups,
including Russian government spooks and Chinese cybercriminals.
Last week, Google revealed that over the course of 2025, it discovered that a sophisticated iPhone-hacking toolkit had been used in a series …
Sources: Palo Alto ordered the removal of direct attributions to China from a Unit 42 report on a global hacking campaign due to fears of retaliation from China (Reuters)
https://www.reuters.com/world/china/palo-a
In written evidence to the Prince Harry privacy trial, ex-Daily Mail editor Paul Dacre says allegations of phone hacking are "grave and sometimes preposterous" (Dominic Ponsford/Press Gazette)
https://pressgazette.co.uk/news/paul-d
An iPhone-hacking toolkit used by Russian spies likely came from US military contractor (Lorenzo Franceschi-Bicchierai/TechCrunch)
https://techcrunch.com/2026/03/09/an-iphone-hacking-toolkit-used-by-russian-spies-likely-came-from-u-s-military-contractor/
http://www.memeorandum.com/260310/p68#a260310p68
Yup, the Tianfu Cup silently returned this year.
https://www.bloomberg.com/news/newsletters/2026-02-11/china-revives-home-grown-hacking-competition-that-stirs-security-concerns
Now that eDP hacking is to try and get this Asuszenbook A14 booting; now, you may notice this is missing an entire display section; it came with a very very broken OLED and it wont display firmware on it's HDMI output,it also wouldn't boot any images I gave it; but now with that eDP converter, I've managed to disable secure boot; now onwards to finding an image to boot with it, I can get to Grub!
Gli uomini acquistano strumenti di hacking da usare contro mogli e amici
Nei gruppi Telegram, gli uomini condividono migliaia di immagini non consensuali di donne e ragazze, acquistano spyware e praticano doxing e abusi sessuali.
https://www.wired.com/story/men-are-bu…
Possible US Government iPhone Hacking Tool Leaked https://www.schneier.com/blog/archives/2026/04/possible-us-government-iphone-hacking-tool-leaked.html
Don't leave for the weekend until you've checked out today's Metacurity for the most critical infosec developments you should know, including
--International operation takes down massive cybercrime proxy network SocksEscort,
--Telus probes purported ShinyHunters hack,
--Stryker cyberattack by alleged Iran-aligned hacking group continues to disrupt operations ,
--Leidos CTO John Solly ID'ed as DOGE SSA data thief,
--GAO finds gaps in CMMC program, …
US medtech giant Stryker suffers a global outage after a cyberattack; staff and contractors say an Iran-linked hacking group's logo appeared on login pages (James Rundle/Wall Street Journal)
https://www.wsj.com/articles/stryker-hi…
NERC is ‘actively monitoring the grid’ following Iran-linked cyber threat | Utility Dive
https://www.utilitydive.com/news/nerc-cisa-iran-war-cyber-hacking/816914/
from my link log —
Teaching a cheap Dell ethernet switch new tricks.
https://blog.benjojo.co.uk/post/dell-switch-hacking
saved 2019-06-13 https://…
Rockstar confirms "a limited amount of non-material company information was accessed in connection with a third-party data breach"; ShinyHunters demand a ransom (Zack Zwiezen/Kotaku)
https://kotaku.com/rockstar-games-report…
These days, if someone visits a random website without any protection, they're likely to see a banner that's inappropriate for minors… You know, something about gambling or the classic "Horny singles in your area". If they visit a "dangerous" website about hacking, there's nothing to protect, and their sweet little grandma won't be shocked by what her tech-savvy grandson is looking at.
The ironies of the present.
My current temporary desktop setup: #HappyHackingKeyboard Professional 2 (electrostatic capacitive #Topre switches) with #Domikey
The US DOJ says Peter Williams, former boss of L3Harris' Trenchant, stole and sold tools that can hack millions of computers worldwide to a Russian broker (Lorenzo Franceschi-Bicchierai/TechCrunch)
https://techcrunch.com/…
Suspect in Hacking of Climate Activists Is Extradited to New York
https://www.nytimes.com/2026/04/06/climate/forlit-exxon-dci-hacking-extradition.html
Hacking on Indiekit to customize my blog https://rmendes.net/articles/2026/02/18/hacking-on-indiekit-to-customize
I Hacked This Temu Router. What I Found Should Be Illegal.
#hacking
AI Forensics: in 16 Italian and Spanish Telegram groups, 24K men are sharing nonconsensual images of women and girls, buying spyware, and engaging in doxing (Matt Burgess/Wired)
https://www.wired.com/story/men-are-buying-hacking-tools-to-use-…
Illinois man pleads guilty to hacking hundreds of Snapchat accounts to steal nude photos https://therecord.media/illinois-man-pleads-guilty-snapchat-nude-photo-hacks
Mirror Group lawyers say the publisher "accepts the allegations" of phone hacking but the claimants failed to file within the six-year statute of limitations (Press Gazette)
https://pressgazette.co.uk/media_law/mirror-acc…
Anthropic says its latest AI model can expose weaknesses in software security
https://www.theguardian.com/technology/2026/apr/08/anthropic-ai-cybersecurity-software?
I've been hacking on Beowulf again, today; and I'm reminded how enchanted I am with the Beowulf logo, which sort-of designed itself.
I take no credit for it, really.
#Lisp 1.5
https://git.journeyman.cc/simon/beowulf
Staatstrojaner: Bürgerrechtler rufen den Menschenrechtsgerichtshof an
Das Bundesverfassungsgericht hat eine Beschwerde gegen die Hacking-Befugnisse der Geheimdienste abgewiesen. Datenschützer suchen nun Rechtsschutz in Straßburg.
Risky Business Stories
Join our producer and editor Amberleigh Jack and her co-host Patrick Gray as they look back on the history of hacking...
Great Australian Pods Podcast Directory: https://www.greataustralianpods.com/risky-business-stories/
Från Bleeping computer
"An Illinois man pleaded guilty to hacking nearly 600 women's Snapchat accounts to steal nude photos that he sold or traded online, including accounts compromised at the request of a former university track coach who was later convicted of sextortion"
LÄXA - sluta posta nudes på digitala plattformar!!
Singapore blames Chinese-backed hacking group UNC3886 for a months-long cyber-espionage campaign that targeted its four largest telecommunication companies (Zack Whittaker/TechCrunch)
https://techcrunch.com/2026/02/10/singapore-…
Ukraine has said its offensive cyber operations last year inflicted $220 million worth of damage on Russia, and indirect losses exceeding $1.5 billion.
https://tvpworld.com/92030219/ukraine-cyber-ops-caused-220-mln-damage-to-russia
Dear #Apple I am starting to really get pissed of f at your random actions on how you are dealing with our data. I DONT want my stuff on iCloud unless I specifically move a folder there. Stop hi hacking our data
#enshitification creeping into your Modus operandi
Someday I'll have the time and energy to try shit like this myself.
"This is how I turned an old Kindle (Kindle Touch 4th Generation/K5/KT) into a live bus feed that refreshes every minute with the option to exit out of dashboard mode by pressing the menu button. It’s basically TRMNL without the $140 price tag."
#TRMNL #Kindle #Hacking
»Texteditor — Notepad -Server gehackt und Update-Traffic manipuliert:
Angreifern ist es gelungen, die Update-Infrastruktur von Notepad zu kompromittieren und Traffic umzuleiten. Der Entwickler entschuldigt sich.«
Falls wer von euch Notepad nutzt, gebt bitte acht. Und ja Hacking ist schon lange Kriegsführung aber viele Firmen glauben immer noch nichts zu verbergen zu haben.
P.S. Das ist keine Notepad Kritik.
🧑💻
After fifteen months of hacking since our last post on the Hurd, we now present the 64-bit Hurd on Guix. Read all about it in this new post:
https://guix.gnu.org/en/blog/2026/the-64-bit-hurd
[Much of] This work was sponsored by NLnet -- thank you!
Google details Coruna, an exploit kit used to hijack iPhones via malicious websites; iVerify suggests it may have been originally built for the US government (Andy Greenberg/Wired)
https://www.wired.com/story/coruna-iphone-hacking-toolkit-us-government/
Illinois man admits to hacking Snapchat accounts to steal nude photos
https://www.reuters.com/sustainability/boards-policy-regulation/illinois-man-admits-hacking-snapchat-accounts-steal-nude-photos-202…
Leaked technical documents show China rehearsing cyberattacks on neighbors’ critical infrastructure https://therecord.media/leaked-china-documents-show-testing-cyber-neighbors
A recent spate of espionage and cybercriminal campaigns has deployed phone-takeover tools,
embedded in infected websites,
to indiscriminately hack phones by the thousands.
And one new technique in particular
—capable of taking over any of hundreds of millions of iOS devices
—has appeared on the web in an easily reusable form, putting a significant fraction of the world's iPhone users at risk.
A profile of Mikko Hyppönen, a cybersecurity veteran who pivoted from fighting malware to developing anti-drone systems for law enforcement and the military (Lorenzo Franceschi-Bicchierai/TechCrunch)
https://techcrunch.com/2026/04/04/afte
10 years and a few days ago, I was running a DIY Synth workshop with STM32F7 dev boards in our kitchen in North London... Still have ~10 of these boards.
Here are also two videos (live performances) of some softsynths (some with MIDI via USB support) which we built in these workshops (I did quite a few of those in that year)...
STM32F746 MIDI synth (live recording, 2016-01-31)
Are you overwhelmed by the sheer mass of news stories surrounding the two biggest cyber-related stories of the day, OpenAI's deal with the Pentagon, and the cyber activity surrounding the Iran war?
Don't miss today's monster Metacurity that summarizes all the developments in these two arenas and more, including
--OpenAI, Pentagon revise AI deal's surveillance limits, but commitments may be hollow,
--Israel spent years hacking Tehran's traffic cameras and …
Is it just me, or does Tony Grasso (RNZ NineToNoon tech correspondent) sound a lot like a FUD merchant (Boo! China scare!)? https://www.rnz.co.nz/national/programmes/ninetonoon/audio/2019023694/technology-volt-typhoon-th…
Phobos ransomware leader facing 20 years in prison after pleading guilty to hacking charges https://therecord.media/phobos-ransomware-leader-facing-20-years
RE: https://social.growyourown.services/@FediTips/116087724209677173
New p-hacking technique just dropped: reset the votes until you get a chunk that confirms your priors.
Speaking at the US Capitol today, Senate and House Democrats said that
“dramatic changes” are needed
at the Department of Homeland Security (DHS)
as they continue their negotiations over a full-year appropriations bill
Trump signed a stopgap spending measure on Tuesday that funds the DHS until 13 February while lawmakers hammer out guardrails.
The Senate’s top Democrat, Chuck Schumer, said that the party is also demanding the end of “roving patrols”,
“inde…
OMG, this man with autism, who was accused of hacking, spent *nine years* in pretrial lockup with no trial.
https://www.cleveland.com/court-justice/2026/04/north-royalton-hacking-suspect-released-after-9-years-…
Age verification mandates are great in the sense that they're essentially state-sponsored hacking practice sessions for kids.
Daily Mail publisher's High Court trial over alleged phone hacking threatens to derail its £500M Telegraph bid, as main funder NatWest considers the legal risks (Dan Evans/Byline Times)
https://bylinetimes.com/2026/01/23/dai
uploaded a first repo to codeberg, since i have been hacking on it and it's one of the ones i mirror to github
https://codeberg.org/fanf/nsnotifyd
it's so fast compared to microsoft github!
The UK says Russia-linked hacking group APT28 is hijacking popular internet routers from MikroTik, TP-Link, and others to steal credentials and redirect traffic (Ryan Gallagher/Bloomberg)
https://www.bloomberg.com/news/articles/20
The press is warning about Iranian cyber attacks that aren't happening, while overlooking the real story of US and Israeli cyber action.
Don't miss today's Metacurity for more on this important story and other critical infosec developments you should know, including
--Google warns that US government-originated iPhone hacking kit has spread to Russian intel,
--Altman calls the backlash to Pentagon deal 'really painful,'
--Defense contractors expecte…
Internal email: Politico reviewed security after an off-the-record call between a reporter and an EU official was apparently intercepted and posted to YouTube (Zoya Sheftalovich/Politico)
https://www.politico.eu/article/politico-j
Mythos Preview system card: the model was able to escape a sandbox after it was instructed to try, and posted details about its exploit without being prompted (Brent D. Griffiths/Business Insider)
https://www.businessinsider.com/anthropic-m…
FBI seizes pro-Iranian hacking group’s websites after destructive Stryker hack
https://techcrunch.com/2026/03/19/fbi-seizes-pro-iranian-hacking-groups-websites-after-destructive-stryker-hack/
Spyware maker is hijacking diplomatic efforts to limit commercial hacking, civil society warns https://therecord.media/spyware-maker-pall-mall-process-reputation
We're at the week's half-way mark and the infosec news machine is operating on overdrive.
Don't miss today's Metacurity for the most crucial developments you should know, including
--Ex-Trenchant exec gets 7 years for selling hacking tools to Russian zero-day broker,
--Rubio orders diplomats to fight against data sovereignty,
--UNC2814 breached 53 organizations,
--Anthropic PBC’s chatbot carried out attacks against Mexican government,
--DHS…
»Interrail meldet Datenleck: Auch Ausweisdaten betroffen:
Bei Eurail flossen mutmaßlich Daten ab. Der Anbieter stellt Interrail-Pässe auch im Auftrag der deutschen, österreichischen und Schweizer Bahn aus«
Sind wir mittlerweile in der Fase, in der wir uns fragen welche Firmen so wie Menschen sind vom Hacking nicht betroffen? Wer lügt, dass es ihn noch nie betraf oder nichts zu verbergen hat?
🚆
Israeli startup Tenzai says its AI hacking agent beat 99% of 125K participants at six competitions, using tailored OpenAI and Anthropic models and costing $5K (Thomas Brewster/Forbes)
http://www.forbes.com/sites/thomasbrewster/2026/03/…
Someday, I will send out a Metacurity email that doesn't get clipped by Gmail for having too much information, but that day is not today.
Check out today's intensely packed Metacurity that covers a host of critical infosec developments, including
--Iran-linked hackers target critical infrastructure controls, risking disruption and sabotage,
--Anthropic's Glasswing could upend bug discovery and fixes,
--GRU-linked hackers infiltrate routers to steal email a…
Crunchbase Confirms Data Breach After Hacking Claims
https://www.securityweek.com/crunchbase-confirms-data-breach-after-hacking-claims/
EU countries introduce sanctions on hacking groups, including Iran's Emennet Pasargad, which hacked magazine Charlie Hebdo in 2023, and two Chinese companies (Sam Clark/Politico)
https://www.politico.eu/article/eu-sanctions-iran-group-hacked-charlie-hebdo/…
North Korean hackers offer $70,000 per month to be their front
https://www.rfa.org/english/korea/2026/03/26/north-korea-hacking-employment-scheme/
Every year hundreds of dedicated hackers put their heads together and ask themselves one question
"How are we going to do it bigger, and better, than last year?",
and every year they do. Join them!
Give us your craziest ideas, your fresh outlook, your passion.
This is the place you can find all of the open calls for DEF CON Content, so pick your poison and show us what you got!
Tennessee man to plead guilty to hacking Supreme Court’s electronic case filing system https://therecord.media/guilty-plea-hacking-supreme-court-case-filing-system
Idea: map of conferences
Some people track conferences they want to attend in calendars.
What if you could also explore a map to find interesting events nearby?
Markers would have a link, an icon and a label.
The link could point to a calendar entry in turn.
I bet that already exists somehow, but I don't see it much.
E.g. the Rust website could have that for all Rust conferences.
Or CCC for all the hacking community events in Germany.
DebConf, wh…
As experts warn about cyberattacks from Iran on the US, CISA is operating under a partial government shutdown and dealing with leadership changes (Samantha Subin/CNBC)
https://www.cnbc.com/2026/03/03/iran-cisa-cybersecurity-war-threat.html
A Greek court sentences four people, including spyware maker Intellexa's founder, to prison, for using spyware to target journalists, politicians, and others (Nektaria Stamouli/Politico)
https://www.politico.eu/article/predatorgate-greece-court-…
https://www.cnn.com/2026/01/28/politics/hacking-disinformation-election-security
Secret US cyber operations shielded 2024 election from foreign trolls, but now the Trump admin has gutted protections
RSA is many days away, and Metacurity is already straining the capacity limit of our newsletter platform, so check out today's issue for the critical infosec developments you should know, including
--DarkSword turns iPhone hacking into a mass-scale, drive-by threat,
--CISA says orgs should secure Intune after Stryker attack,
--Stryker attack delayed some surgeries,
--Hacker claims theft of 93 GB of data from police tip platform,
--Fed cyber reviewers couldn…
ShinyHunters publishes alleged personal data from Harvard, UPenn breaches
https://www.newsbytesapp.com/news/science/shinyhunters-claims-harvard-upenn-breaches-publishes-over-a-million-records/story
Researchers from Google, iVerify, and Lookout discover DarkSword, a hacking tool used by Russian state-sponsored groups to target iOS 18 via Ukrainian websites (Andy Greenberg/Wired)
https://www.wired.com/story/hundreds-of-millions…
Jordan used Cellebrite phone-hacking tools against activists critical of Gaza war, report finds https://therecord.media/jordan-used-cellebrite-against-activists-critical-gaza-war
EU countries introduce sanctions on hacking groups, including Iran's Emennet Pasargad, which hacked magazine Charlie Hebdo in 2023, and two Chinese companies (Sam Clark/Politico)
https://www.politico.eu/article/eu-sanctions-iran-group-hacked-charlie-hebdo/…
It's finally Friday, but don't leave for the weekend before checking out today's Metacurity for the most critical infosec developments you should know, including
--Microsoft bets $10 billion on Japan’s AI buildout and cyber defenses,
--EU pins EC attack on TeamPCP,
--Iowa AG sues UnitedHealth over 2024 attack,
--Residential proxies pose problems for IP reputation systems,
--Him & Hers report Feb. data breach,
--TA416 refocuses efforts back t…
Blockchain-based lending company Figure confirms a data breach; ShinyHunters hacking group published 2.5GB of data, saying Figure refused to pay a ransom (Lorenzo Franceschi-Bicchierai/TechCrunch)
https://techcrunch.com/2026/02/13/fintech-lending-giant-fi…
Anybody know which company this is?
A former infrastructure engineer at an industrial company headquartered in New Jersey admitted to hacking and extorting the company to try and collect $750,000 in Bitcoin, officials said.
https://www.
A UK privacy lawsuit by Prince Harry, Elton John, and others against Associated Newspapers begins, with allegations of phone hacking and illicit data collection (Reuters)
https://www.reuters.com/world/uk/prince-harry-elton-john…
Hacktivists claim to have hacked Homeland Security to release ICE contract data
https://techcrunch.com/2026/03/02/hacktivists-claim-to-have-hacked-homeland-security-to-release-ice-contract-data/
A Greek court sentences four people, including spyware maker Intellexa's founder, to prison, for using spyware to target journalists, politicians, and others (Nektaria Stamouli/Politico)
https://www.politico.eu/article/predatorgate-greece-court-…
Don't miss today's Metacurity which is jam-packed with a host of intense cybersecurity developments, including
--Texas AG sues TP-Link, saying it allowed the CCP to hack routers,
--A hacker gained access to a French national bank database with 1.2m accounts,
--Microsoft 365 Copilot bug summarized confidential emails,
--DEF CON bans Epstein's hacking associates,
--Deutsche Bahn operations disrupted by cyberattack,
--Polish army bans Chinese cars,…
The FBI confirms Iran-linked Handala breached Kash Patel's personal email and the data accessed was "historical in nature" and involves no government info (TechCrunch)
https://techcrunch.com/2026/03/27/iranian-h…
Citizen Lab links Cellebrite to the hacking of a Kenyan presidential candidate’s phone
https://cyberscoop.com/citizen-lab-kenya-cellebrite-phone-cracking-boniface-mwangi-forensic-evidence/
Check out today's Metacurity for the critical infosec developments you might have missed over the weekend, including
--Black Basta suspects’ homes raided; gang leader added to most-wanted list,
--Jordanian national pleads guilty to access broker charges,
--Acting head of CISA was blocked by colleagues from removing CIO,
--Iranian campaign sought to steal Gmail and other account credentials,
--Man pleads guilty to hacking US S.Ct.,
--DPRK hackers impersona…
The hacking group, tracked as UNC2814 and "Gallium,” has a nearly decade-long history of penetrating government organizations and telecommunications companies, the company said in findings shared exclusively with Reuters.
https://www.
Sources: UK and Chinese security officials set up a forum to discuss cyberattacks after hacking accusations, the first of its kind, to help prevent escalation (Alex Wickham/Bloomberg)
https://www.bloomberg.com/news/articles/2026-…
The week's cybersecurity news is really heating up today, so check out Metacurity for the most critical developments you should know, including
--China orders domestic companies to stop using US cybersecurity software,
--White House renominates Plankey as CISA Director,
--Whistleblower leaks sensitive data on ICE and Border Patrol workers,
--Man to plead guilty for hacking Supreme Court system,
--Microsoft issues fixes for 114 flaws,
--Belgian hospital …
This happens every time gas prices spike
Gas sold for 59 cents in Fresno, hacking suspected
https://www.yourcentralvalley.com/news/local-news/fresno-gas-station-hacked/
Russia arrests alleged owner of cybercrime forum LeakBase, report says
https://techcrunch.com/2026/03/25/russia-arrests-alleged-owner-of-cybercrime-forum-leakbase-report-says/
South Korea continues to take it on the chin.
Personal and credit information was leaked after NRL Capital Lend, a 100% subsidiary of The LEADCORP, the No. 1 domestic lending company in the country, was hit by a hacking attack.
https://biz.chosun.com/en/en-finance/2
"Dutch police have arrested a man for 'computer hacking' after accidentally handing him their own sensitive files and then getting annoyed when he didn't hand them back."
https://www.theregister.com/2026/02/16/dutch_cop…
Good luck with that!
British and Chinese security officials established a forum to discuss cyberattacks following a spate of hacking accusations that soured relations between the two countries.
https://www.bloomberg.com/news/article…
Hundreds of Millions of iPhones Can Be Hacked With a New Tool Found in the Wild
https://www.wired.com/story/hundreds-of-millions-of-iphones-can-be-hacked-with-a-new-tool-found-in-the-wild/
Personal information of thousands of Victorian students accessed in targeted cyberattack on schools
https://www.news.com.au/technology/online/hacking…