Sarah Powazek
@powa-sec.bsky.social
📤 141
📥 119
📝 92
Director of Public Interest Cybersecurity @CLTCBerkeley. Views my own. Deputy Director @DistrictCon
pinned post!
🛑 Stop talking about states like they are helpless with cybersecurity. State govts are already taking the lead w/ innovative cyber volunteering programs. Read more in our piece for
@aspendigital.bsky.social
@cltcberkeley.bsky.social
#Take9
#CyberCivilDefense
www.aspendigital.org/blog/states-...
loading . . .
States Are Leading on Cyber Volunteering
States and communities are leading on expanding cyber volunteering programs, but we can do more to support this burgeoning cyber safety net.
https://www.aspendigital.org/blog/states-leading-cyber-volunteering/
3 months ago
1
2
3
reposted by
Sarah Powazek
DistrictCon
about 16 hours ago
We sold out of our GA tickets in 15 seconds 🤯 For students: Thanks to our community sponsors, our DistrictCon Scholars' Program application is open! For anyone else passionate about DisCo: Volunteer with us! You can also join our waitlist on Eventbrite! All info here:
www.districtcon.org/tickets
loading . . .
DistrictCon Tickets — DistrictCon
https://www.districtcon.org/tickets
0
3
4
reposted by
Sarah Powazek
Rebecca Williams
13 days ago
Your boy has plans, I have plans too.
add a skeleton here at some point
0
36
6
reposted by
Sarah Powazek
Tech Policy Press
13 days ago
Former FTC chair Lina Khan was just named to NYC Mayor-elect Zohran Mamdani's transition team—just one sign that his new administration will take tech matters seriously, writes Rebecca Williams. She offers a tech agenda for the new mayor to advance his campaign goals:
loading . . .
Mayor-Elect Mamdani Can Build a Tech Agenda for New York and a Model for the Country | TechPolicy.Press
By resisting surveillance, extraction, and exploitation, Mamdani can show how technology truly serves the people, writes Rebecca Williams.
https://www.techpolicy.press/mayor-elect-mamdani-can-build-a-tech-agenda-for-new-york-and-a-model-for-the-country/
0
203
48
reposted by
Sarah Powazek
Craig Newmark
13 days ago
The future of cybersecurity is local. Learn more about how state-led Cyber Volunteers are stepping up to defend communities from cyber attacks, and how CLTC is growing these programs
#CyberCivilDefense
#Take9
www.govtech.com/security/cyb...
loading . . .
Cybersecurity Experts Seek to Build Volunteer Defense Force
As state and local agencies worry about cybersecurity budget cuts and increased attacks, public officials and researchers try to build a network to boost digital defenses. Leaders of the effort discus...
https://www.govtech.com/security/cybersecurity-experts-seek-to-build-volunteer-defense-force
4
113
38
reposted by
Sarah Powazek
Rebecca Williams
20 days ago
please please please send me your best undergraduate for next season's Privacy & Data Governance internship:
www.aclu.org/careers/inte...
loading . . .
Careers at ACLU
Join our team! We’re looking for committed, passionate people for open roles at the ACLU.
https://www.aclu.org/careers/internships/apply/?job=8226966002&type=internships
0
5
3
reposted by
Sarah Powazek
Lawfare
21 days ago
On Lawfare Daily, Justin Sherman sat down with
@powa-sec.bsky.social
and Michael Razeeq to discuss the cyber threats facing states, resources states have to address cybersecurity problems, and how state cyber corps and volunteer programs fits into the picture.
www.lawfaremedia.org/article/lawf...
loading . . .
1
10
3
The future of cybersecurity is local! Thanks to Justin for having me and Michael Razeeq on the
@lawfaremedia.org
podcast to talk about cyber volunteering and state cyber corps programs.
#CyberCivilDefense
#Take9
add a skeleton here at some point
21 days ago
1
4
0
reposted by
Sarah Powazek
Electronic Frontier Foundation
28 days ago
On Global Encryption Day, our
#OptOutOctober
tip is to check out Signal: an encrypted messaging app that actually keeps your conversations private.
www.eff.org/deeplinks/20...
2
83
18
reposted by
Sarah Powazek
Electronic Frontier Foundation
about 1 month ago
Happy Amazon Prime Day! Amazon collects mountains of data about how you use the service, but there is a setting you can change to make it harder for the company to use that data to sell you more things.
#OptOutOctober
www.eff.org/deeplinks/2...
31
951
499
Excellent compilation and analysis from
@cybersecuritydive.bsky.social
@ericjgeller.com
that awareness training is not effective. Let's continue shifting the blame away from organizations and towards the products they use, and local leaders who can help.
#CommunityCybersecurity
#CyberCivilDefense
add a skeleton here at some point
29 days ago
0
1
0
reposted by
Sarah Powazek
Shira Ovide
about 2 months ago
Amazon's Ring is adding facial recognition to its home doorbells and security cameras for the first time. To identify people you know, it needs to run everyone's face in sight through facial recognition.
wapo.st/4mR2v5l
loading . . .
Analysis | Amazon’s Ring plans to scan everyone’s face at the door
For the first time, the company is putting facial recognition into its home security doorbells and video cameras.
https://wapo.st/4mR2v5l
16
43
50
reposted by
Sarah Powazek
Craig Newmark
about 2 months ago
The Consortium of Cybersecurity Clinics is experiencing unprecedented growth! Read more about their impact and accomplishments and just how significant a leap forward this past year has been for
#CyberCivilDefense
.
cybersecurityclinics.org/blog/growth-...
#Take9
#CybersecurityAwarenessMonth
loading . . .
Growth and Impact: Clinics Reach New Heights – Consortium of Cybersecurity Clinics
https://cybersecurityclinics.org/blog/growth-and-impact-clinics-reach-new-heights/
0
6
2
reposted by
Sarah Powazek
Yael Grauer
about 2 months ago
Here's a CR article on our findings.
www.consumerreports.org/money/scams-...
loading . . .
Texting and Messaging Scam Attempts Have Increased by 50 Percent, a Consumer Reports Survey Finds - Consumer Reports
Texting and messaging scam attempts have increased by 50 percent, according to Consumer Reports' 2025 Cyber Readiness Report
https://www.consumerreports.org/money/scams-fraud/texting-and-messaging-scam-attempts-increased-by-50-percent-a1001405682/
1
2
2
The Consortium of Cybersecurity Clinics is experiencing unprecedented growth! Read more about their impact and accomplishments and just how significant a leap forward this past year has been for
#CyberCivilDefense
#Take9
#CybersecurityAwarenessMonth
cybersecurityclinics.org/blog/growth-...
loading . . .
Growth and Impact: Clinics Reach New Heights – Consortium of Cybersecurity Clinics
https://cybersecurityclinics.org/blog/growth-and-impact-clinics-reach-new-heights/
about 2 months ago
0
0
0
🍎 📚 💻 What does K12 cybersecurity have to do with bug bounty? Nearly every school in the country uses one of a handful of technologies. By making these products more secure, we can better protect schools, students, and teachers at scale.
about 2 months ago
1
1
0
reposted by
Sarah Powazek
Eric Geller
about 2 months ago
"We’re a little bit more on our own": State and local cybersecurity officials band together as the Trump administration turns its back on them. Nice story by
@maggiemiller.bsky.social
:
subscriber.politicopro.com/article/2025...
loading . . .
POLITICO Pro: States send out the ‘bat signal’ for help responding to cyber threats amid federal cuts
The collective frustration over the federal government’s cuts to key cyber programs and agencies is being turned into action.
https://subscriber.politicopro.com/article/2025/09/states-cyber-response-federal-cuts-00582295
1
9
6
Incredible and timely research about vulnerabilities in Tile tracking tags from
@mikespecter.com
and his team at Georgia Tech
add a skeleton here at some point
about 2 months ago
1
1
0
reposted by
Sarah Powazek
Michael A. Specter 👻
about 2 months ago
Today, my research group @ Georgia Tech released a paper on vulnerabilities in Tile --- the second largest device finding network after Apple's AirTags. You can read about it in Wired, reporting by
@kimzetter.bsky.social
!
www.wired.com/story/tile-t...
1
61
36
The
#CyberResilienceCorps
in action! Give a listen to the latest NPR Piece on
@projectfranklin.bsky.social
#CyberCivilDefense
#Take9
add a skeleton here at some point
about 2 months ago
0
1
0
The cyber community is facing a world that's changing fast, from shifting government priorities to the rapid rise of AI. Explore the speaker list for
@aspendigital.bsky.social
2025
#AspenCyber
Summit on Nov 18 where leaders gather to create a safer world
www.aspencybersummit.org
#take9
loading . . .
Aspen Cyber Summit
The Aspen Cyber Summit is the nation’s premier annual technology and cybersecurity policy gathering.
https://www.aspencybersummit.org
2 months ago
0
1
0
Very cool
#MITRE
project mapping inter-dependencies of critical infrastructure:
www.esri.com/about/newsro...
loading . . .
US Water, Power, and Emergency Systems Are Vulnerable; Advanced Maps Show Where
MITRE is building a national mapping system to reveal where America's critical infrastructure connections create dangerous vulnerabilities.
https://www.esri.com/about/newsroom/blog/mitre-maps-americas-hidden-infrastructure-vulnerabilities
2 months ago
0
0
0
reposted by
Sarah Powazek
DistrictCon
2 months ago
And.... we've sold out of Early Birds in 60 seconds... 🤯 THANK YOU to everyone who purchased tickets! Fret not though, our General Admission tickets go on sale in November! If you have any questions, please reach out to
[email protected]
0
8
1
Tickets are up!
add a skeleton here at some point
2 months ago
0
1
0
The UNLV Cyber Clinic is doing great things!
#CyberCivilDefense
@cyberclinics.bsky.social
www.fox5vegas.com/2025/07/09/u...
loading . . .
UNLV clinic helping small businesses with free cybersecurity measures
UNLV’s Cyber Clinic is a student and volunteer run organization that provides free cybersecurity services to small businesses in the Las Vegas Valley.
https://www.fox5vegas.com/2025/07/09/unlv-clinic-helping-small-businesses-with-free-cybersecurity-measures/
2 months ago
0
0
1
reposted by
Sarah Powazek
Joe Tidy BBC News
2 months ago
Exclusive: Children hacking their own schools for 'fun', watchdog warns. "What starts out as a dare can lead to children taking part in damaging attacks on organisations." Comes amid a spate of high profile cyber-attacks in which teenage hackers are implicated
www.bbc.co.uk/news/article...
loading . . .
Most school hacks carried out by their own pupils, watchdog says
The Information Commissioner's Office says schools face an
https://www.bbc.co.uk/news/articles/c203pedz58go
2
10
10
reposted by
Sarah Powazek
kate brennan
2 months ago
Lofty claims to “innovation” should not put people at risk and AI firms should not be given a get-out-of-jail free card. We wrote for
@techpolicypress.bsky.social
how weak regulation is just as bad as none at all, and today we can see the fruits of this develop:
www.techpolicy.press/the-storm-cl...
loading . . .
The Storm Clouds Looming Past the State Moratorium: Weak Regulation is as Bad as None | TechPolicy.Press
Blind trust in the benevolence of AI firms is not an option, write AI Now Institute's Kate Brennan, Sarah Myers West, and Amba Kak.
https://www.techpolicy.press/the-storm-clouds-looming-past-the-state-moratorium-weak-regulation-is-as-bad-as-none/
0
3
2
reposted by
Sarah Powazek
kate brennan
2 months ago
5/ Shockingly, people can apply to the sandbox before they even have an incorporated business. This means that a firm with no clear understanding of its product risks can effectively claim that the benefits of their hypothetical product outweigh the risks and receive immunity.
1
1
1
reposted by
Sarah Powazek
Cyber Statecraft Initiative
2 months ago
🚨 New Issue Brief 🚨 Building on last year’s report and dataset on proliferation across the global spyware market, Mythical Beasts: Diving into the Depths of the Global Spyware Market explores how the spyware market is growing and evolving:
www.atlanticcouncil.org/in-depth-res...
loading . . .
Mythical Beasts: Diving into the depths of the global spyware market
The second edition of the Mythical Beasts project assess how the global spyware market has developed and changed over the past year.
https://www.atlanticcouncil.org/in-depth-research-reports/issue-brief/mythical-beasts-diving-into-the-depths-of-the-global-spyware-market/
1
1
1
reposted by
Sarah Powazek
Brian Merchant
2 months ago
The paper is 'Against the Uncritical Adoption of AI Technologies in Academia' and it's worth reading in full. It’s a great resource for educators, administrators and anyone concerned about AI in the classroom. And a great resource for those educators already eager to stand up to AI-happy admins.
loading . . .
Against the Uncritical Adoption of 'AI' Technologies in Academia
Under the banner of progress, products have been uncritically adopted or even imposed on users — in past centuries with tobacco and combustion engines, and in the 21st with social media. For these col...
https://zenodo.org/records/17065099
3
102
40
Pushing the responsibility of harms to the end users didn't work for cybersecurity, and it won't work for AI
add a skeleton here at some point
2 months ago
0
2
1
reposted by
Sarah Powazek
Kevin Collier
3 months ago
Also, we have data now showing that being in a data breach really does increase your chance of being a victim of identity theft, even if you never slip up and leak or accidentally authorize something you shouldn't.
add a skeleton here at some point
0
44
17
reposted by
Sarah Powazek
Jason Koebler
3 months ago
Flock seeks to add data from private car dashcams to its massive surveillance network. At minimum it seems like data from random cars driving around is going to be added to their system
www.404media.co/flock-wants-...
loading . . .
Flock Wants to Partner With Consumer Dashcam Company That Takes ‘Trillions of Images’ a Month
That dashcam in your car could soon integrate with Flock, the surveillance company providing license plate data to DHS and local police.
https://www.404media.co/flock-wants-to-partner-with-consumer-dashcam-company-that-takes-trillions-of-images-a-month/
11
122
65
Mark your calendars for
#DistrictCon
drop dates!
add a skeleton here at some point
3 months ago
0
1
0
reposted by
Sarah Powazek
jon greig
3 months ago
A cyberattack took down systems, websites and phone lines used by the state government of Nevada after an incident on Sunday morning The attack took place one day after hackers targeted state systems in Maryland
therecord.media/nevada-state...
loading . . .
Nevada state websites, phone lines knocked offline by cyberattack
The governor added that the state is working with local, tribal and federal partners to restore services, and is “using temporary routing and operational workarounds to maintain public access where it...
https://therecord.media/nevada-state-websites-phones-cyberattack-disruption
0
4
2
reposted by
Sarah Powazek
Aspen Digital
3 months ago
The states are leading expansion of
#CyberVolunteering
. How can we help them double down on this cyber safety net?
@cltcberkeley.bsky.social
's Grace Menna and
@powa-sec.bsky.social
share their expertise on what's needed most. Read their insights:
www.aspendigital.org/blog/states-...
#AspenCyber
0
2
2
reposted by
Sarah Powazek
Jason Koebler
3 months ago
the tldr of our second year anniversary post is that things are going well. the business model of "try our absolute best to do good journalism and ask people to pay for it" is working. people are willing to support this type of work and it has allowed us to become more ambitious about what we do
1
149
12
🛑 Stop talking about states like they are helpless with cybersecurity. State govts are already taking the lead w/ innovative cyber volunteering programs. Read more in our piece for
@aspendigital.bsky.social
@cltcberkeley.bsky.social
#Take9
#CyberCivilDefense
www.aspendigital.org/blog/states-...
loading . . .
States Are Leading on Cyber Volunteering
States and communities are leading on expanding cyber volunteering programs, but we can do more to support this burgeoning cyber safety net.
https://www.aspendigital.org/blog/states-leading-cyber-volunteering/
3 months ago
1
2
3
reposted by
Sarah Powazek
Andrew Couts
3 months ago
🚨Journalism job alert🚨 We're hiring an investigative reporter to join my team at
@wired.com
. We're looking for someone who has both traditional and non-traditional reporting skills (coding/data work/OSINT, etc). Fit the bill? Come work with me!
condenast.wd5.myworkdayjobs.com/CondeCareers...
loading . . .
Senior Writer, Investigations
WIRED is where a better future is imagined. For three decades, we have been the indispensable guide to a world in constant transformation. We cover humanity’s biggest challenges, from climate change t...
https://condenast.wd5.myworkdayjobs.com/CondeCareers/job/1-World-Trade-Center-New-York-NY/Senior-Writer--Investigations_R-21120-2
13
514
345
reposted by
Sarah Powazek
evacide
3 months ago
I talked to 404 Media about devices for tracking and spying on your partner being sold on TikTok. This is not stalkerware, but these are devices for tech-enabled abuse and I think we should be talking about tech-enabled abuse more broadly.
www.404media.co/tiktok-shop-...
loading . . .
TikTok Shop Sells Viral GPS Trackers Marketed to Stalkers
"If your girl says she’s just out with friends every night, you’d better slap one of these on her car."
https://www.404media.co/tiktok-shop-sells-viral-gps-trackers-marketed-to-stalkers/
15
539
248
reposted by
Sarah Powazek
Jason Koebler
3 months ago
TikTok did the absolute bare minimum when
@rosiejt62.bsky.social
reached out to them - they deleted the several videos we sent them but of course left the product up as well as dozens of other videos also marketing it for abuse. Not clear they have much of any system in place to stop this at scale
0
68
7
reposted by
Sarah Powazek
Eric Geller
3 months ago
Nice story from
@colinwood.me
about how states are trying to fill the void left by CISA's multifaceted reduction in cybersecurity support. (With a link to a scoop from yours truly. 😃)
statescoop.com/cisa-state-l...
1
43
10
reposted by
Sarah Powazek
Craig Newmark
3 months ago
The Cyber Resilience Corps has been presenting at BSidesLV and DEF CON and publishing research. New work from
@cltcberkeley.bsky.social
Nonresident Fellow Michael Razeeq on the role of low-cost MSPs and MSSPs in community cyber defense:
#CyberCivilDefense
#Take9
cltc.berkeley.edu/publication/...
loading . . .
A Path to Long-Term Cyber Resilience for Under-Resourced Organizations - CLTC
Across the United States, state, local, tribal, and territorial governments (“SLTTs”), small- and medium-sized businesses (“SMBs”), and nonprofits are frequently targeted in cyber attacks, leading to ...
https://cltc.berkeley.edu/publication/a-path-to-long-term-cyber-resilience-for-under-resourced-organizations/
1
9
4
What an amazing experience to present at
#DEFCON33
Main Stage on Cyber Volunteering. Thank you to my co-speakers Adrien Ogee, Jake Braun, and Jonathan Farley.
#CyberCivilDefense
#Take9
3 months ago
0
0
0
reposted by
Sarah Powazek
UC Berkeley Center for Long-Term Cybersecurity
3 months ago
CLTC's
@powa-sec.bsky.social
was the latest guest on CyberWire, where she discussed the Cyber Resilience Corps' proposed nationwide roadmap to scale cyber defense for community organizations. 🎧 Listen to the episode:
thecyberwire.com/podcasts/dai...
#CyberCivilDefense
#Take9
loading . . .
Chasing Silicon shadows.
Two Chinese nationals are arrested for allegedly exporting sensitive Nvidia AI chips. A critical security flaw has been discovered in Microsoft’s new NLWeb protocol. Vulnerabilities in Dell laptop firmware could let attackers bypass Windows logins and install malware. Trend Micro warns of an actively exploited remote code execution flaw in its endpoint security platform. Google confirms a data breach involving one of its Salesforce databases. A lack of MFA leaves a Canadian city on the hook for ransomware recovery costs. Nvidia’s CSO denies the need for backdoors or kill switches in the company’s GPUs. CISA flags multiple critical vulnerabilities in Tigo Energy’s Cloud Connect Advanced (CCA) platform. DHS grants funding cuts off the MS-ISAC. Helicopter parenting officially hits the footwear aisle.
https://thecyberwire.com/podcasts/daily-podcast/2365/notes
1
3
2
Can't wait!
add a skeleton here at some point
3 months ago
0
0
0
reposted by
Sarah Powazek
jon greig
3 months ago
The office of Pennsylvania's attorney general is warning state residents that its email and phone lines are down as a result of a cyberattack Experts traced the breach back to the CitrixBleed 2 bug
therecord.media/pennsylvania...
loading . . .
Pennsylvania attorney general says cyberattack knocked phone, email systems offline
The office of Pennsylvania Attorney General Dave Sunday experienced multiple days of outages related to a cyberattack. He called it "a frustrating situation."
https://therecord.media/pennsylvania-attorney-general-office-cyberattack
0
1
1
Requiring the end-user to have technical expertise doesn't work for cybersecurity, and it won't work for AI.
add a skeleton here at some point
4 months ago
1
2
0
reposted by
Sarah Powazek
Greg Otto
4 months ago
MN Gov Tim Walz has activated the state's national guard in response to a cyberattack on St. Paul
mn.gov/governor/new...
2
58
14
reposted by
Sarah Powazek
Joseph Cox
4 months ago
New from 404 Media: a second data breach at Tea has exposed more than a million direct messages between users that we obtained. Discussions of abortions, cheating. The other data was older. This is as recent as *last week*. Hard to overstate how sensitive this data is
www.404media.co/a-second-tea...
loading . . .
A Second Tea Breach Reveals Users’ DMs About Abortions and Cheating
The more than one million messages obtained by 404 Media are as recent as last week, discuss incredibly sensitive topics, and make it trivial to unmask some anonymous Tea users.
https://www.404media.co/a-second-tea-breach-reveals-users-dms-about-abortions-and-cheating/
5
227
140
reposted by
Sarah Powazek
Matt Burgess (WIRED)
4 months ago
Today US senator Margaret Wood Hassan has written to Elon Musk—citing WIRED's investigation below—demanding answers about why Starlink is still being used in huge scam compounds in Southeast Asia Letter from Hassan here:
www.hassan.senate.gov/imo/media/do...
add a skeleton here at some point
10
567
205
Load more
feeds!
log in