Cyber Corgi's Avatar

Cyber Corgi

@konakoffee

I post a lot of cyber, defense, and Intel stuff, and you should be impressed because I do that without opposable thumbs.

94
Followers
118
Following
272
Posts
15.11.2024
Joined
Posts Following

Latest posts by Cyber Corgi @konakoffee

Preview
The “Insta-Wellness” Scams - Negative PID Instagram has become one of the most influential marketplaces for wellness culture. What began as a space for sharing fitness routines, mental health

The "Insta-Wellness" scams
negativepid.blog/the...

#Instagram #wellness #scams #onlineScams #fraud #internetFraud #identityTheft #onlineIdentity #romanceScams #financialScams #socialMedia #accounts #negativepid

09.03.2026 06:28 👍 1 🔁 1 💬 0 📌 0
image of sans internet stormcenter logo with stormcast flair

image of sans internet stormcenter logo with stormcast flair

SANS Stormcast Monday, March 9th, 2026: YARA-X Update; IP Camera Targeting; Node.js Upgrades; nginx UI Vuln
https://isc.sans.edu/podcastdetail/9840

09.03.2026 06:50 👍 1 🔁 1 💬 0 📌 0
Graph from NetBlocks showing network connectivity in Iran from 24 February 2026 to 9 March 2026. The y-axis represents normalized connectivity, ranging from 0% to 100%, and the x-axis represents the dates. The green line representing Iran's connectivity is high through the initial time period, with a sharp drop on the morning of 28 February. The continued drop in connectivity aligns with a nation-scale internet blackout imposed by authorities after joint military strikes by the US and Israel. The minimum and current connectivity levels are indicated as 1% and 1%, respectively. The chart has a dark background with a red horizontal arrow labeled 'SHUTDOWN' indicating the disruption period, and the NetBlocks logo in the lower left corner with the Mapping Internet Freedom slogan.

Graph from NetBlocks showing network connectivity in Iran from 24 February 2026 to 9 March 2026. The y-axis represents normalized connectivity, ranging from 0% to 100%, and the x-axis represents the dates. The green line representing Iran's connectivity is high through the initial time period, with a sharp drop on the morning of 28 February. The continued drop in connectivity aligns with a nation-scale internet blackout imposed by authorities after joint military strikes by the US and Israel. The minimum and current connectivity levels are indicated as 1% and 1%, respectively. The chart has a dark background with a red horizontal arrow labeled 'SHUTDOWN' indicating the disruption period, and the NetBlocks logo in the lower left corner with the Mapping Internet Freedom slogan.

⚠️ Update: #Iran's internet blackout has entered its tenth day with connectivity at 1% of ordinary levels after the 216th hour.

As regional hostilities intensify, some 90 million Iranians are silenced and cut off from the global internet under a state-imposed shutdown.

09.03.2026 07:28 👍 18 🔁 16 💬 0 📌 3
Preview
Kremlin hackers attempting to compromise Signal, WhatsApp accounts globally Russian state hackers are carrying out a global campaign to compromise Signal and WhatsApp accounts belonging to government officials and military personnel, Dutch intelligence warned Monday.

Russian state hackers are carrying out a global campaign to compromise Signal and WhatsApp accounts belonging to government officials and military personnel, Dutch intelligence warned Monday.

09.03.2026 10:25 👍 84 🔁 40 💬 3 📌 4
Preview
The Incendiary Bomb Never Seen in Israel Before - bellingcat The Israeli Air Force (IAF) has dropped 5,000 bombs on Iran since the United States and Israel launched an attack last week, according to a statement by the IAF on March 4. Bellingcat has monitored we...

Israeli Air Force images posted on March 3 show a bomb not previously seen in Israeli service, reportedly from jets involved in strikes on Iran. Experts say the bombs appear to have an incendiary component and may be meant to destroy chemical or biological agents.
www.bellingcat.com/news/2026/03...

09.03.2026 10:46 👍 193 🔁 80 💬 3 📌 3
Post image

-White House releases new Cyber Strategy
-New Trump EO prioritizes fight against scams and cybercrime
-Chinese hackers breach FBI wiretap network
-Romania's largest meat exporter enters insolvency after ransomware attack

Podcast: risky.biz/RBNEWS535/
Newsletter: news.risky.biz/risky-bullet...

09.03.2026 10:57 👍 13 🔁 6 💬 1 📌 1

Iran's Fars News Agency confirmed that the country's military intentionally targeted AWS data centers in the region to see if they played a role in supporting the US military's attacks.

Strikes hit AWS data centers in Bahrain and the UAE, and a Microsoft data center

t.me/farsna/41529...

08.03.2026 14:38 👍 13 🔁 10 💬 0 📌 0
Preview
How Trump’s War in Iran Has Echoes of Putin and Ukraine

"both pro- and anti-Kremlin bloggers from Russia started referring to Mr. Trump’s plan as “Tehran in three days.” It was a reference to “Kyiv in three days,” the ironic shorthand used to describe the Kremlin’s hubris in believing that Ukraine would quickly crumble."

www.nytimes.com/2026/03/08/u...

08.03.2026 16:05 👍 7 🔁 4 💬 0 📌 0
Preview
APT36: A Nightmare of Vibeware Pakistan-based threat actor APT36, also known as Transparent Tribe, has pivoted from off-the-shelf malware to vibeware, an AI-driven development model.

Pakistan's main APT group has switched from off-the-shelf low quality malware tools to vibe-coded custom malware

businessinsights.bitdefender.com/apt36-nightm...

08.03.2026 17:17 👍 20 🔁 7 💬 1 📌 3

It is true that Proton is located in Switzerland and responded to a legal request from the Swiss authorities. But it is also true that most people do not know what an MLAT is and there is a widespread misunderstanding that using Proton will protect your account from US govt requests.

08.03.2026 16:56 👍 360 🔁 106 💬 14 📌 5
Inside Coruna: Reverse Engineering a Nation-State iOS Exploit Kit | NadSec Deep-dive into Coruna - a nation-state iOS exploit kit reverse-engineered from obfuscated JavaScript. WebKit RCE, PAC bypass, JIT cage escape.

Reverse-engineered Coruna - a nation-state iOS exploit kit - from raw JavaScript. 28 modules + MUCH MORE!
www.nadsec.online/blog/coruna
www.nadsec.online/blog/coruna-...
(technical analysis more interesting, read coruna blog post first, technical analysis looks better on github, link on-site)

06.03.2026 08:20 👍 4 🔁 3 💬 1 📌 3
Preview
From a Sophisticated Browser-Extension Supply-Chain Compromise to a VibeCoded Twist: A Chrome Extension as the Initial Access Vector for a Broader Malware Chain Independent technical analysis of a Chrome extension compromise, fake update chain, and Windows-stage malware activity.

"A formerly legitimate Featured Chrome extension (ShotBird) was turned into a remote-controlled malware channel after an apparent ownership transfer"

Curious if this is another case of an extension being sold on ExtensionHub again? A place to watch...

monxresearch-sec.github.io/shotbird-ext...

08.03.2026 18:36 👍 14 🔁 12 💬 0 📌 0
Preview
U.S. Military Warns Civilians in Iran to Stay Home Amid Continuing Airstrikes

U.S. Central Command today warned civilians in Iran to stay indoors as airstrikes against Iranian weapons systems continue. How likely it is that civilians will get that warning in a country without internet, however, is unclear www.nytimes.com/2026/03/08/u...

08.03.2026 18:43 👍 85 🔁 27 💬 6 📌 4
Post image

This map feels like a metaphor for how we live our lives. We carefully step around conflicts (that are in no way inevitable in the first place) and carry on with our banalities. I’m not saying we shouldn’t but it does feel representative of our condition.

07.03.2026 20:00 👍 138 🔁 46 💬 3 📌 3
Preview
Video Shows US Tomahawk Missile Strike Next to Girls’ School in Iran - bellingcat New video footage shows a US Tomahawk missile hitting an Islamic Revolutionary Guard Corps (IRGC) facility in Minab, Iran, on Feb 28, showing for the first time that the US struck the area. The footag...

Read our analysis of the video showing a US Tomahawk missile strike next to Girls’ School in Iran on February 28 here: www.bellingcat.com/news/2026/03...

08.03.2026 19:14 👍 1074 🔁 473 💬 13 📌 51
Graph from NetBlocks showing network connectivity in Iran from 24 February 2026 to 8 March 2026. The y-axis represents normalized connectivity, ranging from 0% to 100%, and the x-axis represents the dates. The green line representing Iran's connectivity is high through the initial time period, with a sharp drop on the morning of 28 February. The continued drop in connectivity aligns with a nation-scale internet blackout imposed by authorities after joint military strikes by the US and Israel. The minimum and current connectivity levels are indicated as 1% and 1%, respectively. The chart has a dark background with a red horizontal arrow labeled 'SHUTDOWN' indicating the disruption period, and the NetBlocks logo in the lower left corner with the Mapping Internet Freedom slogan.

Graph from NetBlocks showing network connectivity in Iran from 24 February 2026 to 8 March 2026. The y-axis represents normalized connectivity, ranging from 0% to 100%, and the x-axis represents the dates. The green line representing Iran's connectivity is high through the initial time period, with a sharp drop on the morning of 28 February. The continued drop in connectivity aligns with a nation-scale internet blackout imposed by authorities after joint military strikes by the US and Israel. The minimum and current connectivity levels are indicated as 1% and 1%, respectively. The chart has a dark background with a red horizontal arrow labeled 'SHUTDOWN' indicating the disruption period, and the NetBlocks logo in the lower left corner with the Mapping Internet Freedom slogan.

200 hours.

08.03.2026 15:27 👍 50 🔁 32 💬 0 📌 6
Preview
Leader of federal cyber defense programs resigns from CISA | Federal News Network Shelly Hartsook led CISA efforts to improve cybersecurity capacity governmentwide. Her departure continues a steady string of resignations at the cyber agency.

As @jdoubledaywfed.bsky.social first reported federalnewsnetwork.com/cybersecurit... Shelly Hartsook, the head of CISA's capacity building branch, is leaving the government today, per three sources.

CB provides centralized cyber services to other agencies, including CDM, VDP, and protective DNS.

06.03.2026 23:04 👍 10 🔁 8 💬 1 📌 1
Post image

There have been some very bad developments today.

07.03.2026 01:03 👍 7339 🔁 2804 💬 755 📌 292
Preview
Proton Mail Helped FBI Unmask Anonymous ‘Stop Cop City’ Protester A court record reviewed by 404 Media shows privacy-focused email provider Proton Mail handed over payment data related to a Stop Cop City email account to the Swiss government, which handed it to the…

A court record reviewed by 404 Media shows privacy-focused email provider Proton Mail handed over payment data related to a Stop Cop City email account to the Swiss government, which handed it to the FBI.
www.404media.co/proton-mail-...

06.03.2026 23:25 👍 177 🔁 68 💬 11 📌 8
Post image

Sony are testing out 'dynamic pricing' on PlayStation Store, where it varies the pricing per customer. When you log in some prices go up. Crazy, this one will need regulation.

07.03.2026 15:58 👍 129 🔁 37 💬 13 📌 7
Post image

😂

07.03.2026 21:27 👍 4 🔁 1 💬 0 📌 0

The White House finally released its 7-page cybersecurity strategy. It includes "Americans re-elected President Trump," "President Trump's leadership" and "President Trump's actions," the last of those four times. It does not mention the leaderless Cybersecurity and Infrastructure Security Agency.

06.03.2026 21:42 👍 22 🔁 10 💬 5 📌 3
Preview
Exclusive | China Suspected in Breach of FBI Surveillance Network The FBI said it has addressed ‘suspicious activities’ on its networks.

News: U.S. investigators believe Chinese hackers are behind a cyber intrusion on an internal FBI computer network that holds information related to some domestic surveillance orders, in what would be the latest Chinese compromise of wiretap systems www.wsj.com/politics/nat...

06.03.2026 22:42 👍 59 🔁 34 💬 6 📌 11

This is what happens when you prioritize loyalty and sycophancy over competency.

06.03.2026 16:41 👍 0 🔁 0 💬 0 📌 0
Preview
Gulf allies complain US didn't notify them of Iran attacks and ignored their warnings, sources say Officials say Iran’s retaliatory attacks in the Middle East over strikes from Israel and the U.S. have left some of America’s partners in the Gulf frustrated over a lack of notice or adequate defense.

"Since the start of the war, Iran has fired at least 380 missiles and over 1,480 drones targeting the five Arab Gulf countries, according to an AP tally based on official statements."

apnews.com/article/iran...

06.03.2026 16:15 👍 0 🔁 0 💬 0 📌 0
Post image

The DomainTools security team has published a comprehensive report on the current 2026 infrastructure of Russian disinformation group Doppelgänger (aka RRN) and their latest operational priorities

They also have a new RSS feed, so update that too

dti.domaintools.com/research/dop...

05.03.2026 18:35 👍 15 🔁 6 💬 0 📌 0
Preview
Iran warns people who dare defy internet blackout Iranian authorities were issuing warnings to people connecting to the internet in defiance of a communications blackout that had left the Islamic republic largely cut off from the outside world, witne...

Iranian authorities have threatened to arrest citizens who connect to the internet in defiance to a communications blackout imposed by the state.

Iranian police sent SMS warnings to all citizens earlier this week.

www.france24.com/en/live-news...

05.03.2026 19:48 👍 31 🔁 17 💬 1 📌 0
Preview
FBI investigating ‘suspicious’ cyber activities on critical surveillance network | CNN Politics The FBI identified a suspected cybersecurity breach on a sensitive network used to manage wiretaps and intelligence surveillance warrants, and officials working to determine the seriousness of the inc...

"The recent possible breach comes amid what some current and former officials say has been a diminishing of the FBI’s cybersecurity response capabilities..." www.cnn.com/2026/03/05/p...

05.03.2026 20:02 👍 11 🔁 3 💬 0 📌 0

You may look at a problem and think "Aha! The solution is to run my own email server." Now you have two problems, Google is marking all of your email as spam, an unknown number of threat actors using your server to spread malware because you forgot to patch something, and a small pile of subpoenas.

05.03.2026 21:56 👍 266 🔁 46 💬 22 📌 8
Preview
Proton Mail Helped FBI Unmask Anonymous ‘Stop Cop City’ Protester A court record reviewed by 404 Media shows privacy-focused email provider Proton Mail handed over payment data related to a Stop Cop City email account to the Swiss government, which handed it to the ...

SCOOP: Proton Mail provided Swiss authorities with payment data that the FBI then used to determine who was allegedly behind an anonymous account affiliated with the Stop Cop City movement in Atlanta, according to a court record reviewed by 404 Media.

05.03.2026 20:41 👍 2861 🔁 1551 💬 90 📌 383