the grugq's newsletter

Subscribe
Archives
August 31, 2022

August 31, 2022

Here it is, a ransomware group has claimed credit for Montenegro. Drum roll please… Cuba Ransomware Group! Notable for not being the Russian government.

Twitter avatar for @vxunderground
vx-underground @vxunderground
Cuba ransomware group has taken credit for conducting cyber attacks against Montenegro's government and/or critical infrastructure. This contradicts Montenegro's alert that the Russian Federation was conducting the attack... or Cuba ransomware group is state sponsored.
Image
12:42 PM ∙ Aug 30, 2022
130Likes61Retweets

-

The Info Op is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Two senior officials in the Ministry of Economic Affairs are suspected of espionage, the Office for the Protection of the Constitution is involved.

Espionage! Exciting! German counter espionage is investigating two officials who work for the ministry in charge of gas, oil, and Nord Stream 2. They’re suspected of spying for Russia.

https://www.zeit.de/2022/36/russland-spionage-bmwi-robert-habeck-verfassungsschutz/komplettansicht

-

A great article on AI image creation.

https://simonwillison.net/2022/Aug/29/stable-diffusion/

-

Twitter avatar for @niubi
Bill Bishop @niubi
Solomon Islands to ban U.S. navy ships from ports, U.S. embassy says - Reuters
theglobeandmail.comSolomon Islands to ban U.S. navy ships from ports, U.S. embassy saysU.S. embassy says Solomon Islands, which has a security pact with China, will no longer allow U.S. navy ships to enter its ports
12:49 PM ∙ Aug 30, 2022
44Likes34Retweets

-

Twitter avatar for @Liv_Agar
ً @Liv_Agar
Thinking about this scene from au service de la France between French and American intelligence
Twitter avatar for @NoahShachtman
Noah Shachtman @NoahShachtman
EXCLUSIVE: Trump bragged he had 'intelligence' about Macron's sex life
https://t.co/rgqHWDBkyo
4:07 AM ∙ Aug 30, 2022
29,107Likes4,028Retweets

-

Operation Fortitude goes Ukraine!

Twitter avatar for @John_Hudson
John Hudson @John_Hudson
Scoop: Ukraine has developed a fleet of wooden decoys resembling U.S. rocket systems that have tricked Russian forces into wasting expensive long-range cruise missiles on dummy targets, per sources and photographs of the replicas reviewed by The Post.
washingtonpost.comUkraine lures Russian missiles with decoys of U.S. rocket systemUkraine’s military has fooled Russia into firing expensive missiles at decoy HIMARs, the long-range artillery systems supplied by the United States.
6:04 AM ∙ Aug 30, 2022
11,458Likes1,853Retweets

-

Twitter avatar for @RussianMemesLtd
Russian Memes United @RussianMemesLtd
me trying to crack my own password I set 3 days ago
Image
3:02 PM ∙ Aug 30, 2022
3,287Likes156Retweets

-

Twitter avatar for @cpartisans
Belarusian Cyber-Partisans @cpartisans
🧵1/3🔥For the 1st time in human history a #hacktivist collective obtained passport info of the ALL country's citizens. Now we're offering you an opportunity to become a part of this history 😎. Get a unique digital version of #lukashenka passport as #NFT opensea.io/collection/cpa…
Image
3:42 PM ∙ Aug 30, 2022
594Likes196Retweets

Unfortunately it has been deleted.

-

Twitter avatar for @hogster
Russell Hogg @hogster
If you enjoyed Gladiator and want to know more about the history of the time then this podcast is for you. Bret Devereaux (@BretDevereaux) and Ed Watts are on great form discussing battle tactics, Commodus, the Matriarchy, ostriches, Nazis . . .
pod.linkSubject to ChangeA lot of history episodes and a lot of film episodes. A few other subjects in between!
7:37 PM ∙ Aug 30, 2022
24Likes8Retweets

-

Twitter avatar for @WarintheFuture
Mick Ryan, AM @WarintheFuture
The situation with the Ukrainian #offensive in the south remains unclear. That said, we know enough about both sides - and from the history of such operations - to propose a few areas that are likely to determine success or failure in the coming weeks. 1/23 🧵 (Art: Rado Javor)
Image
2:27 AM ∙ Aug 31, 2022
5,906Likes1,042Retweets

-

Twitter avatar for @Bing_Chris
Chris Bing @Bing_Chris
Just saw a guy throw a burner phone off a metro station platform and then immediately move to a second device. Normal activity near the White House after 9pm
1:20 AM ∙ Aug 31, 2022
29,667Likes2,127Retweets

-

Twitter avatar for @jkass99
Joe Kassabian @jkass99
He couldn't take living without her
Image
Image
3:16 AM ∙ Aug 31, 2022
547Likes98Retweets

-

Twitter avatar for @runasand
Runa Sandvik @runasand
If you want to see which books I've read for my journalist and spy project, check out this list on @goodreads.
goodreads.comrunasand’s ‘journalist-spy’ books on Goodreads (8 books)runasand has 8 books on their journalist-spy shelf: Operation Mincemeat: How a Dead Man and a Bizarre Plan Fooled the Nazis and Assured an Allied Victory...
9:09 PM ∙ Aug 30, 2022
19Likes4Retweets

-

Twitter avatar for @web3isgreat
web3 is going just great @web3isgreat
Russian authorities arrest journalist who donated $16 to dissident group via crypto August 29, 2022 web3isgoinggreat.com/?id=russian-au…
Russian authorities arrest journalist who donated $16 to dissident group via crypto  Although people commonly argue that privately donating to dissidents is a compelling use case for cryptocurrency, reality has shown us some of the major flaws with it. According to the Associated Press, Russian authorities charged the independent journalist Andrei Zayakin with funding an extremist group after he donated 1,000 rubles (around $16) to an organization created by Russian opposition leader Alexei Navalny. He was reportedly arrested on August 28 and charged the following day, and faces up to eight years imprisonment if convicted. In April, Reuters reported that Binance supplied the Putin regime with information on those who donated to Navalny, but the AP have not suggested that that was how authorities decided to target Zayakin.
2:25 AM ∙ Aug 31, 2022
311Likes70Retweets
Twitter avatar for @SilvermanJacob
JacobSilverman.shill @SilvermanJacob
According to this thread, a DeFi developer entered a single incorrect command (‘solana program close’), which bricked their entire project and lost $661k in stablecoins. Immutable! medium.com/@OptiFi/optifi…
Twitter avatar for @OptifiLabs
OptiFi @OptifiLabs
OptiFi's program has been closed by mistakes we made. TL;DR 1. We accidentally closed the OptiFi mainnet program and it's not recoverable 2. 661k USDC is locked in the PDAs, luckily 95% of the fund is from our team member 3. We will compensate for all users’ funds
10:46 AM ∙ Aug 30, 2022
608Likes134Retweets

-

Twitter avatar for @chrismohney
Chris Mohney @chrismohney
why does fred flintstone need so much poison https://t.co/MMMRatTpPA
Twitter avatar for @HannaBarberaCap
Hanna-Barbera ScreenCaps @HannaBarberaCap
https://t.co/JzW1qk4BL5
8:13 PM ∙ Aug 29, 2022
52,158Likes4,727Retweets

-

From the battlefields of Ukraine to the top of Everest, there is nowhere the DJI Mavic can’t go (and transmit data back to china)

-

People have argued that SMS based authentication is terrible. Turns out it’s actively harmful.

A recent spate of SMS phishing attacks from one cybercriminal group has spawned a flurry of breach disclosures from affected companies, which are all struggling to combat the same lingering security threat: The ability of scammers to interact directly with employees through their mobile devices.

[emphasis added]

https://krebsonsecurity.com/2022/08/how-1-time-passcodes-became-a-corporate-liability/

-

Twitter avatar for @JimmyJazz1968
Gore Vidal Sassoon @JimmyJazz1968
Image
Image
Image
5:35 AM ∙ Aug 30, 2022
10,006Likes1,041Retweets

-

When the personal computer went from being a “bicycle for the mind” to a surveilled shopping mall.

https://schmud.de/posts/2022-08-23-the-consumer-computer.html

-

Twitter avatar for @drunkrhin0
Rami (drunkrhin0) @drunkrhin0
Want to learn about Active Directory security? Start with these blogs 👇
A thread 🧵 (1/8)
11:30 PM ∙ Aug 30, 2022
2,300Likes665Retweets

-

Twitter avatar for @lefticus
Jason Turner @lefticus
I've decided to give away over 130 HOURS of C++ material. FOR FREE! Check it out! 👀 youtube.com/c/lefticus1
youtube.comCᐩᐩ Weekly With Jason TurnerMaking C++ Fun and Accessible.
8:51 PM ∙ Aug 30, 2022
452Likes82Retweets

-

Great presentation on SAMl and XML shenanigans.

Twitter avatar for @snyff
Louis Nyffenegger @snyff
My @Ruxmon slides can be found here:
docs.google.comSAML - Ruxmon Sept 2022SAML An Introduction to SAML and its security Security Assertion Markup Language
8:37 AM ∙ Aug 28, 2022
143Likes47Retweets

-

Twitter avatar for @RayRedacted
Ray [REDACTED] @RayRedacted
No matter how you feel about classified material, can we at least agree that these documents should never be in the same room as carpet this gaudy ?
Image
5:54 AM ∙ Aug 31, 2022
110Likes12Retweets

-

Twitter avatar for @androgynyfiend
isaac 🎇 @androgynyfiend
Twitter avatar for @notgwendalupe
pop culture moments @notgwendalupe
In your opinion what song cover completely overshadowed the original version
10:50 PM ∙ Aug 29, 2022
62,457Likes16,917Retweets

-

Twitter avatar for @jschauma
Jan Schaumann @jschauma
45 domains, including e.g., ubuntu.com, are fine with anybody anywhere sending mail on their behalf by explicitly ending their policy in "+all". Although I suspect Ubuntu misunderstood the include mechanism:
Image
1:01 AM ∙ Aug 31, 2022
103Likes20Retweets

The Info Op is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.

Don't miss what's next. Subscribe to the grugq's newsletter:
X