Catalin Cimpanu's Avatar

Catalin Cimpanu

@campuscodi.risky.biz

☆ Cybersecurity reporter ★ Newsletters at Risky Business #infosec #cybersecurity https://risky.biz

12,566
Followers
446
Following
3,873
Posts
30.05.2023
Joined
Posts Following

Latest posts by Catalin Cimpanu @campuscodi.risky.biz

Preview
Top 10 artificial intelligence security actions: A primer - ITSAP.10.049 - Canadian Centre for Cyber Security Our top AI security actions are designed to help organizations of all sizes and sectors strengthen their cyber resilience.

The Canadian Centre for Cybersecurity released some artificial intelligence security actions. In an era of rapid advancements in AI, organizations face new security risks.

Read more below:
www.cyber.gc.ca/en/guidance/...

#cybersecurity
@andyjabbour.bsky.social
@campuscodi.risky.biz

06.03.2026 16:28 👍 1 🔁 1 💬 0 📌 0
Threads thread:

thriller_instinct 3d
Is it okay to bully 40 and 50 year olds who are on social media just for being on it, cuz like why are you here
- 254
Q 3.1K
G 28
746
corporateash 18h
•••
My ICQ UIN is 7231680. That number is burned into my consciousness. I inadvertently learned that you could see private conversations in public chat rooms when using Telnet instead of a browser on GeoCities. I can tell you the difference in audible dial-up handshakes between 1200, 2400, 14.4 kbps modems. I needed a edu email address to join Facebook after my university was admitted. We were here at the beginning. We made social media. You wouldn't be in my Top 8. I have usernames older than you.
852
Q62
G6
72

Threads thread: thriller_instinct 3d Is it okay to bully 40 and 50 year olds who are on social media just for being on it, cuz like why are you here - 254 Q 3.1K G 28 746 corporateash 18h ••• My ICQ UIN is 7231680. That number is burned into my consciousness. I inadvertently learned that you could see private conversations in public chat rooms when using Telnet instead of a browser on GeoCities. I can tell you the difference in audible dial-up handshakes between 1200, 2400, 14.4 kbps modems. I needed a edu email address to join Facebook after my university was admitted. We were here at the beginning. We made social media. You wouldn't be in my Top 8. I have usernames older than you. 852 Q62 G6 72

“I have usernames older than you.”.
Holy shit

06.03.2026 01:05 👍 17653 🔁 3755 💬 665 📌 1017

Mozilla says Claude Opus 4.6 found 100+ bugs in Firefox in two weeks in January, 14 of them high-severity, more than the bugs typically reported in two months (Robert McMillan/Wall Street Journal)

Main Link | Techmeme Permalink

06.03.2026 14:21 👍 14 🔁 2 💬 2 📌 3
Post image

-Iranian hackers are scanning for security cameras to aid missile strikes
-Israel bombs Iran's cyber headquarters
-CISA's CIO leaves
-Authorities take down LeakBase and Tycoon 2FA
-Mexico mandates SIM registration to real IDs

Newsletter: news.risky.biz/risky-bullet...
Podcast: risky.biz/RBNEWS534/

06.03.2026 10:53 👍 10 🔁 5 💬 1 📌 1
Post image

-Taiwan indicts scammers
-Phobos admin pleads guilty
-Malvertising surpasses email for malware delivery
-Malicious Chromium extension steals chatbot history
-Qilin was the 2025 ransomware king
-KodexGlobal accounts for sale
-New BoryptGrab malware
-Dust Specter APT targets Iraq

06.03.2026 10:57 👍 4 🔁 2 💬 1 📌 0

This shit is so pathetic it's hard to put into words.

06.03.2026 12:38 👍 5 🔁 1 💬 0 📌 0
Inside Coruna: Reverse Engineering a Nation-State iOS Exploit Kit | NadSec Deep-dive into Coruna - a nation-state iOS exploit kit reverse-engineered from obfuscated JavaScript. WebKit RCE, PAC bypass, JIT cage escape.

Reverse-engineered Coruna - a nation-state iOS exploit kit - from raw JavaScript. 28 modules + MUCH MORE!
www.nadsec.online/blog/coruna
www.nadsec.online/blog/coruna-...
(technical analysis more interesting, read coruna blog post first, technical analysis looks better on github, link on-site)

06.03.2026 08:20 👍 2 🔁 1 💬 1 📌 1
Post image

-Doppelgänger/RRN network exposed
-90 zero-days exploited last year
-New Cisco SD-WAN and VMware Aria exploitation
-Cisco security updates
-New FreeScout RCE
-Researchers crack Utah's prescription refill AI bot
-MAX app ignores VPN, records real IP
-BlueHat IL postponed

06.03.2026 10:59 👍 2 🔁 0 💬 0 📌 0
Post image

-Taiwan indicts scammers
-Phobos admin pleads guilty
-Malvertising surpasses email for malware delivery
-Malicious Chromium extension steals chatbot history
-Qilin was the 2025 ransomware king
-KodexGlobal accounts for sale
-New BoryptGrab malware
-Dust Specter APT targets Iraq

06.03.2026 10:57 👍 4 🔁 2 💬 1 📌 0
Post image

-YGG torrent portal hacked, data leaked
-Hong Kong cable car service got hacked and is getting extorted
-HungerRush hacked and extorted
-TikTok won't roll out encrypted DMs
-US federal agencies are dumping Anthropic
-Plankey leaves Coast Guard role
-China's new five-year plan focuses on AI

06.03.2026 10:55 👍 2 🔁 0 💬 1 📌 0
Post image

-Iranian hackers are scanning for security cameras to aid missile strikes
-Israel bombs Iran's cyber headquarters
-CISA's CIO leaves
-Authorities take down LeakBase and Tycoon 2FA
-Mexico mandates SIM registration to real IDs

Newsletter: news.risky.biz/risky-bullet...
Podcast: risky.biz/RBNEWS534/

06.03.2026 10:53 👍 10 🔁 5 💬 1 📌 1

Hungary seizes Ukrainian cash reserves in Hungary, in a breach of EU and international law.

06.03.2026 08:29 👍 5 🔁 4 💬 0 📌 0
Preview
ICE detains reporter Estefany Rodríguez in Nashville - Nashville Banner Reporter Estefany Rodríguez, detained by ICE with no arrest warrant, may face deportation. Her attorneys seek immediate review of the legality of her case.

ICE has arrested and detained a Nashville journalist who reported stories critical of ICE. She’s married to a U.S. citizen and has been seeking asylum here after fleeing death threats in Colombia because of her journalism there.

They’ve already sent her to Louisiana.

05.03.2026 23:41 👍 11730 🔁 7138 💬 281 📌 325
Preview
FBI is probing ‘suspicious’ breach into bureau networks Initial reporting tied the incident to the FBI’s wiretap systems, which are used to lawfully surveil suspected criminals and spies.

David DiMolfetta
“Initial reporting tied the incident to the FBI’s wiretap systems, which are used to lawfully surveil suspected criminals and spies.” www.nextgov.com/cybersecurit...

05.03.2026 22:20 👍 2 🔁 4 💬 0 📌 1
Preview
Iran warns people who dare defy internet blackout Iranian authorities were issuing warnings to people connecting to the internet in defiance of a communications blackout that had left the Islamic republic largely cut off from the outside world, witne...

Iranian authorities have threatened to arrest citizens who connect to the internet in defiance to a communications blackout imposed by the state.

Iranian police sent SMS warnings to all citizens earlier this week.

www.france24.com/en/live-news...

05.03.2026 19:48 👍 31 🔁 17 💬 1 📌 0

The Hong Kong cable car service is getting ransomed... sweet! </sarcasm>

hk.on.cc/hk/bkn/cnt/n...

05.03.2026 19:47 👍 1 🔁 2 💬 1 📌 0
Post image

The DomainTools security team has published a comprehensive report on the current 2026 infrastructure of Russian disinformation group Doppelgänger (aka RRN) and their latest operational priorities

They also have a new RSS feed, so update that too

dti.domaintools.com/research/dop...

05.03.2026 18:35 👍 15 🔁 6 💬 0 📌 0
Preview
MuddyWater Exposed: Inside an Iranian APT operation MuddyWater espionage campaign exposed

The Ctrl-Alt-Intel team has dumped the content of misconfigured command and control servers linked to the MuddyWater Iranian APT, aka Static Kitten, Mango Sandstorm, Earth Vetala, Seedworm, and TA450

ctrlaltintel.com/threat%20res...

05.03.2026 18:28 👍 9 🔁 5 💬 0 📌 0
Avira: Deserialize, Delete and Escalate - The Proper Way to Use an AV - Quarkslab's blog Three vulnerabilities in Avira Internet Security, from an arbitrary file delete primitive to two distinct paths to SYSTEM privileges.

Quarkslab has published details on three bugs it found in the Avira antivirus.

The bugs are unfixed because Gen Digital tried to force researchers into some sort of NDA via Bugcrowd.

blog.quarkslab.com/avira-deseri...

05.03.2026 17:59 👍 3 🔁 1 💬 0 📌 0

Some drama on the French torrent scene where hackers breached and leaked YGG data after the portal rolled out a paid mode that limited users to 5 torrents/day

They accused the site of DDoSing rival sites, purging critical accounts, and storing card details for 54,000 users

yggleak.top/fr

05.03.2026 17:35 👍 3 🔁 0 💬 0 📌 0
Preview
Malicious Packagist Packages Disguised as Laravel Utilities ... Malicious Packagist packages disguised as Laravel utilities install an encrypted PHP RAT via Composer dependencies, enabling remote access and C2 call...

Socket Security has found three malicious PHP packages on the Packagist repo that deploy a remote access trojan inside compromised projects

socket.dev/blog/malicio...

05.03.2026 17:02 👍 2 🔁 0 💬 0 📌 0
Preview
All Mexico Cellphone Users Must Register by June 30, 2026 From 2026, Mexico's law requires that all Mexican cellphone numbers, whether on contract or prepay phone plans, are associated to a verified and registered user

All Mexican citizens must register their SIM cards and associate it with a government ID by the end of June.

The new requirement applies to subscription, prepay, and eSIMs alike.

www.mexperience.com/all-mexico-c...

05.03.2026 15:29 👍 1 🔁 2 💬 4 📌 0

Plankey was brought in under the new administration. He was put in a role that seemed to have been created for him (Secretary of the CG), and which didn't really seem to have a purpose beyond inserting a political appointee into the CG. Looks like he's no longer in the admin's good graces...

04.03.2026 04:09 👍 30 🔁 7 💬 0 📌 0
Preview
China's new five-year plan calls for AI throughout its economy, tech breakthroughs China's new five-year policy blueprint laid out its ambitions to ​aggressively adopt artificial intelligence throughout the world's second-biggest economy and dominate emerging technologies such as qu...

The Chinese government has published the country's next five-year plan, which has AI, chips, space, nuclear, and quantum technologies at its center

www.reuters.com/world/asia-p...

05.03.2026 13:23 👍 2 🔁 0 💬 0 📌 1
Preview
Jeff Bezos Gathering Money to Buy Companies Gutted by AI Jeff Bezos and other deep-pocketed investors are circling like vultures as AI-related selloffs create a "massive buying opportunity."

AI is powering a new US robber baron era

futurism.com/future-socie...

05.03.2026 12:56 👍 19 🔁 5 💬 0 📌 0

This is why I dropped them last year... too much focus on AI bullshit... too little actual grammar mistake prompts

They also trashed their web UI, which sometimes required 2-3 interactions with the mouse for what used to be simple keyboard shortcuts. A literal UI/UX seppuku

05.03.2026 10:37 👍 16 🔁 3 💬 1 📌 1
Post image

My oh my... I hope they didn't store all their cyberz and computers in the same building /s

www.politico.com/news/2026/03...

05.03.2026 10:21 👍 27 🔁 5 💬 2 📌 0
Post image

Tycoon 2FA was taken down

Europol: www.europol.europa.eu/media-press/...
Cloudflare: www.cloudflare.com/threat-intel...
Microsoft: blogs.microsoft.com/on-the-issue...
Proofpoint: www.proofpoint.com/us/blog/thre...
Trend Micro: www.trendmicro.com/en_gb/resear...

05.03.2026 10:14 👍 12 🔁 4 💬 0 📌 0
Post image Post image

On Feb 4, Qatar became the 1st state to ratify the UN Convention against Cybercrime. Albeit with some reservations, most notably it doesn't consider itself bound by the provisions of Art. 14, 15, 16. Simply put, it narrowed the scope from 11 to 8 crimes

treaties.un.org/Pages/ViewDe...

05.03.2026 08:05 👍 2 🔁 4 💬 0 📌 0

Microsoft postpones its BlueHat Israel security conference, initially scheduled for next week

www.microsoftrnd.co.il/bluehatil/home

05.03.2026 09:55 👍 6 🔁 0 💬 0 📌 0