Catalin Cimpanu
@campuscodi.risky.biz
📤 11882
📥 403
📝 2846
☆ Cybersecurity reporter ★ Newsletters at Risky Business
#infosec
#cybersecurity
https://risky.biz
Sophos says one of its employees got phished in March but the breach was limited and contained
news.sophos.com/en-us/2025/0...
loading . . .
What happens when a cybersecurity company gets phished?
A Sophos employee was phished, but we countered the threat with an end-to-end defense process
https://news.sophos.com/en-us/2025/09/22/what-happens-when-a-cybersecurity-company-gets-phished/
about 1 hour ago
1
1
0
AttackIQ has published a report on the evolution of the RomCom malware, covering up to v5 of the tool, which others also call SnipBot and SingleCamper. The malware started out as an e-crime MaaS, but is now often used for APT ops against Ukraine and Europe.
www.attackiq.com/2025/09/23/e...
about 1 hour ago
0
2
1
All these reports on the Moldovan disinfo campaigns would have been extremely useful a month ago.... Dear infosec/disinfo research firms, stop publishing crucial info at the very last moment Signed, a bunch of LEO people annoying me in DMs
about 2 hours ago
0
7
0
New DELMIA bugs disclosed after another was exploited in early Sep "Both findings chain together: the unauth account creation gives an attacker credentials, and those credentials are then used to authenticate and abuse the file upload to drop a web shell."
projectdiscovery.io/blog/remote-...
loading . . .
Remote Code Execution in DELMIA Apriso — ProjectDiscovery Blog
Introduction DELMIA Apriso is a manufacturing execution and operations orchestration platform used by large manufacturers, service providers, and critical infrastructure operators. Because the produc...
https://projectdiscovery.io/blog/remote-code-execution-in-delmia-apriso
about 2 hours ago
0
0
0
The Python Software Foundation warns of a phishing campaign targeting PyPI users. The phishing domain is pypi-mirror[.]org, a variation of the main pypi[.]org domain.
blog.pypi.org/posts/2025-0...
loading . . .
Phishing attacks with new domains likely to continue - The Python Package Index Blog
A new phishing campaign targeting PyPI users using similar tactics to previous campaigns.
https://blog.pypi.org/posts/2025-09-23-plenty-of-phish-in-the-sea/
about 2 hours ago
0
3
2
Poland has threatened to hack back any country that cripple its critical infrastructure. Minister of Digital Affairs Krzysztof Gawkowski says the country has the possibilities to respond.
www.portalsamorzadowy.pl/polityka-i-s...
loading . . .
Minister cyfryzacji: Polska nie padła ofiarą sobotniego cyberataku, ale mamy zdolności skutecznego ich odpierania
Jeżeli Polska stałaby się celem ataku, który skutecznie doprowadziłby do przesilenia infrastruktury krytycznej, która wpłynęłaby na każdego obywatela, to my jesteśmy w stanie odpowiedzieć tym samym – ...
https://www.portalsamorzadowy.pl/polityka-i-spoleczenstwo/minister-cyfryzacji-polska-nie-padla-ofiara-sobotniego-cyberataku-ale-mamy-zdolnosci-skutecznego-ich-odpierania,630395.html
about 3 hours ago
0
5
1
Romania's national bank governor warned against the transition to a digital euro without a cash alternative or proper cybersecurity defenses. Mugur Isărescu says that a Russian cyber-attack could block all payments in the country within three days.
hotnews.ro/avertismentu...
loading . . .
Avertismentul lui Mugur Isărescu: „Dacă nu avem sisteme clare de securitate cibernetică, ne termină rușii, ne blochează plățile în trei zile” - HotNews.ro
România nu poate discuta despre o transformare totală de la plata în numerar spre digital în primul rând pentru că populația preferă plațile cash, iar apoi
https://hotnews.ro/avertismentul-lui-mugur-isarescu-daca-nu-avem-sisteme-clare-de-securitate-cibernetica-ne-termina-rusii-ne-blocheaza-platile-in-trei-zile-2071568
about 3 hours ago
0
7
3
GitHub will require a FIDO-based two-factor authentication method to publish updates to npm packages. The company will also deprecate legacy long-lived npm tokens and roll out new ones that last only seven days.
github.blog/security/sup...
loading . . .
Our plan for a more secure npm supply chain
GitHub is strengthening npm's security with stricter authentication, granular tokens, and enhanced trusted publishing.
https://github.blog/security/supply-chain-security/our-plan-for-a-more-secure-npm-supply-chain/
about 5 hours ago
2
68
23
reposted by
Catalin Cimpanu
Techmeme
about 5 hours ago
Larry Ellison is turning into a media magnate, potentially controlling CBS, CNN, TikTok, and more, amid a regulatory environment favorable to Trump allies (New York Times)
Main Link
|
Techmeme Permalink
0
9
7
The press release is here:
www.secretservice.gov/newsroom/rel...
Some images are below:
add a skeleton here at some point
about 8 hours ago
2
14
8
reposted by
Catalin Cimpanu
Selena Larson
about 9 hours ago
Thanks to the ransomware attack, it took ~3 hours to get a checked bag at the Berlin airport. I can’t believe I was forced to gate check then wait for my bag 3x longer than the flight took. 😂
1
17
2
North Korean espionage group Kimsuky used "sex offender notices" to lure victims into running its malware
logpresso.com/ko/blog/2025...
about 8 hours ago
0
5
2
Check Point has a report on this same campaign and group, which they track as Nimbus Manticore
research.checkpoint.com/2025/nimbus-...
add a skeleton here at some point
about 8 hours ago
0
7
5
This research is just a chef's kiss after the SAP CEO said they are preparing to fire thousands because of AI
add a skeleton here at some point
about 9 hours ago
0
14
8
I think it's more than one... They forgot this one:
en.wikipedia.org/wiki/Azerbai...
And prolly others too
add a skeleton here at some point
about 9 hours ago
0
6
4
Talks from the m0leCon 2025 security conference, which took place earlier this month, are available on YouTube
www.youtube.com/playlist?lis...
loading . . .
m0leCon 2025 - YouTube
https://www.youtube.com/playlist?list=PLU9ks7wLkh6BzE-kghg9nbFw0PU-doX8e
about 9 hours ago
0
3
1
reposted by
Catalin Cimpanu
Jake Lazaroff
about 23 hours ago
man — even knowing DHH had questionable politics, some of the links here to his blog posts astonished me. i am not exaggerating at all when i say the dude is an unabashed segregationist.
add a skeleton here at some point
0
21
4
New R̷u̷s̷s̷i̷a̷ US "foreign agents" law just dropped.... yolo!
add a skeleton here at some point
about 21 hours ago
0
21
3
plz don't take my paracetamol away, humerica!
about 21 hours ago
0
18
1
reposted by
Catalin Cimpanu
Bailey McCann
about 21 hours ago
hahahahahahaaha
add a skeleton here at some point
0
118
20
Russia prepares to amp up the persecution of its own citizens The government wants to create a database of people who continue to visit and access the sites of "foreign agents"... aka foreign media who don't parrot the government's lies
news.ru/vlast/v-gosd...
loading . . .
В Госдуме заговорили о создании реестра лиц, поддерживающих иноагентов
В России необходимо создать реестр граждан, которые поддерживают иноагентов, заявил депутат Николай Новичков. По его словам, эта мера должна стать следующим шагом после введения системы предупреждений...
https://news.ru/vlast/v-gosdume-zadumalis-o-sozdanii-reestra-lic-podderzhivayushih-inoagentov
about 21 hours ago
0
8
7
Must be a small website... some of the infosec "tent poles" charge $10k for that
add a skeleton here at some point
about 21 hours ago
0
4
0
MAX, Russia's newly anointed official national messenger, now has 32 million users, per Kommersant
www.kommersant.ru/doc/8058240
loading . . .
В неохватном долгу
Аудитория мессенджера Max растет, но лидером остается WhatsApp
https://www.kommersant.ru/doc/8058240
about 21 hours ago
2
3
1
There is light at the end of the tunnel... hang in there folks!
about 22 hours ago
2
10
2
reposted by
Catalin Cimpanu
Ailyn
1 day ago
"I never thought my personal info would be exposed" say members of the exposing people's personal info app
add a skeleton here at some point
8
1379
480
EU cyber agency says airport software held to ransom by criminals
www.bbc.com/news/article...
loading . . .
EU cyber agency says airport software held to ransom by criminals
Brussels Airport asks airlines to cancel nearly half of their outgoing flights on Monday.
https://www.bbc.com/news/articles/cqjeej85452o
1 day ago
1
5
6
reposted by
Catalin Cimpanu
NY Times Pitchbot
1 day ago
Trump trying to send a DM to Pam Bondi but actually posting it on TruthSocial instead raises new questions about Joe Biden's mental acuity.
45
3553
496
reposted by
Catalin Cimpanu
Russia-Ukraine Daily News
1 day ago
🇷🇺 🇲🇩 Moldovans are facing a flood of disinformation driven by artificial intelligence ahead of a critical parliamentary election, which will determine whether the small country can stay on its path toward the European Union or is pulled back into Moscow’s orbit.
apnews.com/article/mold...
#Russia
loading . . .
Moldova's election faces AI-driven disinformation from Russia
Moldovans are facing a wave of AI-driven disinformation ahead of a crucial parliamentary election on Sunday.
https://apnews.com/article/moldova-election-europe-disinformation-russia-461e9a1c9558ae140c5b7539a5c89fd4
1
10
10
reposted by
Catalin Cimpanu
Universal Hub
25 days ago
Erupting volcano, a mayflower and a ring of turkey feathers are finalists for new state flag
www.universalhub.com/2025/eruptin...
#Massachusetts
44
104
99
reposted by
Catalin Cimpanu
Zack Whittaker
1 day ago
For TechCrunch, I wrote about Unit 221B, a cybersecurity company that's recently made a name for itself by tracking today's top English-speaking hacking groups, including Scattered Spider, and helping to disrupt their operations. Now the company has raised $5 million to focus on the threat.
loading . . .
Unit 221B raises $5 million to help track and disrupt today’s top hacking groups | TechCrunch
The seed funding raise will help Unit 221B expand its threat intelligence platform, which tracks the English-speaking youth hacking phenomenon.
https://techcrunch.com/2025/09/22/unit-221b-raises-5-million-to-help-track-and-disrupt-todays-top-hacking-groups/
1
27
14
The Pentagon wants to shorten the hiring window for cybersecurity talent to only 25 days The department currently averages 70 days for a new hire
cyberscoop.com/dod-cyber-wo...
loading . . .
DOD official: We need to drop the cybersecurity talent hiring window to 25 days
The Department of Defense is seeking to address persistent shortages in its cyber workforce by reducing the time to fill vacant cybersecurity jobs to 25 days.
https://cyberscoop.com/dod-cyber-workforce-hiring-25-days-mark-gorak-fedtalks/
2 days ago
0
4
1
CISA wants more international involvement in cyber vulnerability catalog, official says
www.nextgov.com/cybersecurit...
loading . . .
CISA wants more international involvement in cyber vulnerability catalog, official says
Nick Andersen, the agency’s assistant executive director for cybersecurity, says the CVE project would benefit from a "more holistic look" with international partners.
https://www.nextgov.com/cybersecurity/2025/09/cisa-wants-more-international-involvement-cyber-vulnerability-catalog-official-says/408178/
2 days ago
1
11
6
Security researcher Mehmet Ergene has published the Microsoft Vulnerable Driver Block Lists after Microsoft stopped publishing the list in a browsable web page
github.com/Cyb3r-Monk/M...
loading . . .
GitHub - Cyb3r-Monk/Microsoft-Vulnerable-Driver-Block-Lists: Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups
Microsoft Vulnerable Driver Block Lists in CSV and JSON for SIEM lookups - Cyb3r-Monk/Microsoft-Vulnerable-Driver-Block-Lists
https://github.com/Cyb3r-Monk/Microsoft-Vulnerable-Driver-Block-Lists
2 days ago
1
18
10
reposted by
Catalin Cimpanu
Roman A.
2 days ago
In-depth investigation from the BBC, which infiltrated a disinformation operation to interfere in the Moldovan elections. This operation is coordinated remotely by pro-Russian actors through Telegram.
www.bbc.co.uk/news/article...
loading . . .
How Russian-funded fake news network aims to disrupt European election - BBC investigation
An undercover reporter discovers a network is offering to pay for social media posts undermining Moldova’s ruling party.
https://www.bbc.co.uk/news/articles/c4g5kl0n5d2o
3
38
33
reposted by
Catalin Cimpanu
Conrad Hackett
3 days ago
If you have two followers, you are ahead of half of all Bluesky accounts. If you have 400 followers, you are in the top 1%.
bsky.jazco.dev/stats
54
418
247
reposted by
Catalin Cimpanu
Ruo Shui
7 days ago
add a skeleton here at some point
19
230
111
reposted by
Catalin Cimpanu
Lee West
2 days ago
Wise move, America should do the same. They have already seen the damage that Musk & DOGE have done hacking Tressury > EU to block Big Tech from new financial data sharing system. Germany argues groups such as Apple and Meta are excluded to protect Europe’s ‘digital sovereignty’
loading . . .
EU to block Big Tech from new financial data sharing system
Germany argues groups such as Apple and Meta are excluded to protect Europe’s ‘digital sovereignty’
https://www.ft.com/content/6596876f-c831-482c-878c-78c1499ef543
1
16
5
reposted by
Catalin Cimpanu
Augie Ray
2 days ago
#Twitter/#X
is just a 100% authentic place full of real lifelong Democrats who suddenly realized Charlie Kirk was right, registered as Republicans, and posted so in identical tweets. These are absolutely not foreign bots trying to influence US politics or increase partisan divides in the US.
10
146
63
An Iranian cyber-espionage group is using fake LinkedIn jobs to target employees of EU telcos and defense organizations. According to security firm Prodaft, one of the group's most recent campaigns has infected 34 devices across 11 organizations.
catalyst.prodaft.com/public/repor...
2 days ago
0
12
5
Hackers have stolen $2 million worth of NGP tokens from the New Gold Protocol DeFi platform
www.theblock.co/post/371191/...
loading . . .
NGP protocol on BNB Chain exploited for $2 million, funds moved through Tornado Cash
Onchain security platform Blockaid said the attacker drained the liquidity pool through a price oracle manipulation attack.
https://www.theblock.co/post/371191/ngp-exploited-2-million
2 days ago
0
3
1
LOL
add a skeleton here at some point
2 days ago
0
3
0
LinkedIn will resume training generative AI models on data from EU users after a year-long halt
news.bloomberglaw.com/business-and...
loading . . .
LinkedIn Returns to Training AI Models on EU and UK Users’ Data
LinkedIn Corp. will resume training its generative AI models on information about non-US users after a nearly year-long halt for discussions with data protection regulators about privacy concerns.
https://news.bloomberglaw.com/business-and-practice/linkedin-returns-to-training-ai-models-on-eu-and-uk-users-data
3 days ago
1
4
3
There's been a hostile takeover of the RubyGems package repository, with some rando dude having full control of everything now
old.reddit.com/r/ruby/comme...
3 days ago
2
24
16
A teenage boy suspected of involvement in the 2023 cyberattacks that disrupted the two largest Las Vegas casino companies has surrendered to authorities, according to the Las Vegas Metropolitan Police Department (LVMPD).
www.casino.org/news/teen-su...
loading . . .
Teen Suspect Surrenders in 2023 Las Vegas Casino Cyberattack Case - Casino.org
A teenage boy suspected of involvement in the 2023 cyberattacks that disrupted the two largest Las Vegas casino companies has surrendered to authorities,
https://www.casino.org/news/teen-suspect-surrenders-in-2023-las-vegas-strip-cyberattack-case/
3 days ago
1
13
6
reposted by
Catalin Cimpanu
Tim Onion
3 days ago
Media execs have fallen prey to a propaganda and harassment campaign that has completely divorced them from what people actually want right now. Both their insular information environments (group chats, podcasts) and ambient noise (Twitter reactionaries) have put them in a very stupid bubble.
add a skeleton here at some point
229
9432
2030
reposted by
Catalin Cimpanu
jamelle
3 days ago
genuinely believe that a large number of political, economic and media elites do not realize that nearly half the voting public did not vote for trump
add a skeleton here at some point
257
8297
1572
reposted by
Catalin Cimpanu
Noah Shachtman
3 days ago
At the risk of staying the obvious ... If you sign this, you are in no way a journalist.
add a skeleton here at some point
69
2461
627
reposted by
Catalin Cimpanu
Lee Savage
3 days ago
Someone once said to me that it's best to assume that you have immediately lost control of any photo that you post online. These companies are horrendous and we should all be very careful about what we give to them
www.theguardian.com/technology/2...
loading . . .
Parents outraged as Meta uses photos of schoolgirls in ads targeting man
Exclusive: Instagram pictures of girls as young as 13 were posted to promote Threads site ‘as bait’, campaigner says
https://www.theguardian.com/technology/2025/sep/20/parents-outraged-meta-uses-photos-schoolgirls-ads-man
6
94
62
reposted by
Catalin Cimpanu
andy jabbour
3 days ago
Today, in mind-blowing hypocrisy & stupidity,
@mmasnick.bsky.social
: 'Loomer’s demand perfectly encapsulates the...MAGA approach to foreign influence ops.: destroy the systems that actually work, then demand magic solutions when the problem inevitably resurfaces.' 😑
www.techdirt.com/2025/09/19/h...
loading . . .
How MAGA Killed Foreign Influence Research, But Now Demands Social Media Stop Foreign Influence Campaigns
It’s fascinating how quickly the tune changes when the shoe’s on the other foot. For years, we’ve been treated to endless screaming about how any effort to identify and counter fo…
https://www.techdirt.com/2025/09/19/how-maga-killed-foreign-influence-research-but-now-demands-social-media-stop-foreign-influence-campaigns/
2
66
22
Cyberattack disrupts European airports including Heathrow, Brussels
www.reuters.com/en/cyberatta...
3 days ago
3
24
11
Load more
feeds!
log in