the grugq's newsletter

Subscribe
Archives
December 15, 2022

December 15, 2022

-

Twitter avatar for @davisblalock
Davis Blalock @davisblalock
Here are all the ways to get around ChatGPT's safeguards: [1/n]
9:44 AM ∙ Dec 13, 2022
6,202Likes1,078Retweets

-

Kaspersky has some lessons learned from the cyber war

https://securelist.com/reassessing-cyberwarfare-lessons-learned-in-2022/108328/

-

Subscribe now

-

Twitter avatar for @nixcraft
nixCraft 🐧 @nixcraft
wtf? 😒
Image
6:06 PM ∙ Dec 14, 2022
4,206Likes453Retweets

-

Twitter avatar for @switch_d
switched @switch_d
Financial Influencers Indicted in Massive Pump and Dump Scheme - The minor social media stars were also hit with a SEC lawsuit for using Twitter and Discord to manipulate stock prices.
gizmodo.com‘We’re F****** Robbing Idiots:’ Eight Financial Influencers Indicted in Massive Pump and Dump SchemeThe minor social media stars were also hit with a SEC lawsuit for using Twitter and Discord to manipulate stock prices.
9:37 PM ∙ Dec 14, 2022
25Likes17Retweets

-

Twitter avatar for @FionaSDaly
Fiona Daly @FionaSDaly
I just overheard a woman say she uses her boyfriend's laptop to Google Christmas presents she wants so that he gets targeted ads. Communication in the digital age: a love story.
3:13 PM ∙ Dec 9, 2022
96,027Likes8,838Retweets

-

Twitter avatar for @gpanger
Galen Panger ☕️ @gpanger
@FionaSDaly Latest entry!
Image
11:09 PM ∙ Dec 13, 2022

-

https://www.dw.com/en/us-bans-chinese-telecom-surveillance-cameras/a-63895206 https://support.reolink.com/hc/en-us/articles/360003432894-How-to-Add-Reolink-Cameras-and-NVRs-on-Reolink-App

[allegedly there are bugdoors that allow re-pairing with QR codes. HILARIOUS]

-

Twitter avatar for @DutchSpace
DutchSpace @DutchSpace
I thought I'd catch up on the EVA on-board the ISS, didn't expect to see a Soyuz MS22 coolant leak... that's an "interesting" problem to say the least... #ISS #MS22
9:33 AM ∙ Dec 15, 2022
46Likes17Retweets

-

Twitter avatar for @LukeMiani
Luke Miani @LukeMiani
If anyone is wondering how much Tik Tok pays for 7.5M views, 629K likes and over 5K comments: it’s $3.95
Image
Image
8:40 PM ∙ Dec 14, 2022
8,332Likes651Retweets

-

Twitter avatar for @SIPRIorg
SIPRI @SIPRIorg
Today, SIPRI releases a report that identifies points of convergence and divergence in the #cyber postures of #China🇨🇳, #Russia🇷🇺, the #USA🇺🇸 and the #EU🇪🇺.
Download the SIPRI Research Report ➡️ doi.org/10.55163/ELWL8…
Image
10:12 AM ∙ Dec 15, 2022
9Likes5Retweets

-

Very good paper on the cyber warfare that was and wasn’t in Ukraine.

https://carnegieendowment.org/2022/12/12/cyber-operations-in-ukraine-russia-s-unmet-expectations-pub-88607

-

According to the FSB, Vyacheslav Mamukov, a resident of the city of Khabarovsk, was handed the prison term after a local court found him guilty of planning to pass "classified data linked to transport infrastructure" to Ukraine for financial award.

https://trts.io/h22RD https://mastodon.social/@rferl/109517379781922100

-

While I personally find the #TikTok privacy/security debate to be uninteresting, I thought it was worth sharing this piece by @malwaretech as an excellent example of clear and consumable security communication:

https://malwaretech.com/opinions/tiktok-is-a-national-security-risk.html https://infosec.exchange/@instacyber/109516988770896100

-

I just posted the final Seriously Risky Business for this year:

- The Lawful Access Debate is Now the Child Safety Debate

- What the "Crypto Winter" means for Lazarus

- When insider trading extortion is good news

Thanks to Sherrod DeGrippo

for her thoughts! https://twitter.com/sherrod_im

Seriously Risky Business
The Lawful Access Debate Becomes the Child Safety Debate
Your weekly dose of Seriously Risky Business news is written by Tom Uren, edited by Patrick Gray with help from Catalin Cimpanu. It's supported by the Cyber Initiative at the Hewlett Foundation and founding corporate sponsor Proofpoint. This is the last edition of the year and we will be back in mid-January. The podcast version of this newsletter and Bet…
Read more
4 months ago · Tom Uren
https://infosec.exchange/@tomatospy/109515334085177148

-

https://www.lawfareblog.com/section-308s-overbroad-restrictions-post-intelligence-community-jobs This is a very good piece because the law was written in a rush and is not very good

https://mastodon.social/@dave_aitel/109506249627584221

-

Woah!

“I told the AI that I wanted to write a software in Swift, I wanted it to find all Microsoft Office files from my MacBook and send these files over HTTPS to my webserver. I also wanted it to encrypt all Microsoft Office files on my MacBook and send me the private key to be used for decryption. It sent me the sample code, and this time there was no warning message at all, despite being potentially more dangerous than the phishing email.”

https://www.infosecurity-magazine.com/news/experts-warn-chatgpt-democratize/ https://infosec.exchange/@Weld/109514766138594273

-

This is very exciting. A classic hack and leak information operation has been successful. What I find most interesting here is the media coverage of the content. These days the media is a lot less likely to cover information operations, so it’s unusual to see them happening again.

https://www.nytimes.com/2022/12/15/technology/russia-state-tv-ukraine-war.html

-

Don't miss what's next. Subscribe to the grugq's newsletter:

Start the conversation:

Be the first to share your thoughts

X