the grugq's newsletter

Archives
March 5, 2026

March 5, 2026

March 5, 2026

https://www.theregister.com/2026/03/02/motorola_grapheneos/


https://www.theregister.com/2026/03/03/cyberwarriors_us_iran_war/


the CIA has infiltrated my family and installed a US backed cousin

— boss (@boss_on_here) July 14, 2021


A 1999 assessment by DoD OGC briefly mentions a draft treaty on information warfare that circulated on the Internet in 1995. Does anyone have any idea what it was or where on the Internet it could have been circulated?

(Source: https://t.co/ZKsJioGRlm) pic.twitter.com/UycssW3OeE

— Oleg Shakirov (@shakirov2036) March 5, 2026

https://nsarchive.gwu.edu/document/21410-document-13


"How can they heal without cigarettes?" is unironically the hardest medical take of the 21st century 🤣

Western doctors charge you $80,000 to tell you to eat kale, Supreme Leader pulls up to the ICU, hands you a pack of Marlboro Reds, and tells your asthma to stop being a bitch… https://t.co/Eb2HmB9dkn

— Ɖros Brousson (@erosbrousson) March 5, 2026


Awesome bit of data that makes intuitive sense.

ā€œFinland cut VAT on haircuts in 2007 to see if cheaper prices would boost demand and jobs. But when the tax fell by €4, many salons lowered prices by only €2 and kept the rest as profit. When VAT rose again, prices jumped by the… pic.twitter.com/SHknO4hWrI

— Simon Kuestenmacher (@simongerman600) March 5, 2026

https://buff.ly/9vkSfvn


A few lines down at the bottom of the article mention that yeah, it’s a Chinese company and they don’t do encryption, and also this is probably sort of bad. pic.twitter.com/QBRB3LqSmq

— Matthew Green (@matthew_d_green) March 4, 2026


The crazy thing is that this is a Chinese firm, which just announced that it’s going to maintain the ability to mine huge amounts of UK and European citizens’ private comms, but the BBC is leading with the ā€œit’s good that they can intercept our dataā€ spin.

— Matthew Green (@matthew_d_green) March 4, 2026


TikTok announces that they’re not going to deploy ā€œcontroversial privacy techā€ that’s actually the same end-to-end encryption most other providers use to protect users’ DMs. https://t.co/INKzu9ku2z

— Matthew Green (@matthew_d_green) March 4, 2026

TikTok says it won't encrypt DMs claiming it puts users at risk

TikTok tells the BBC it won't join rival platforms such as WhatsApp and Messenger in using end-to-end encryption.


šŸ•µļøCall us the 'Headquarters Hunters': together with @pustota, we found the 'mail center' of the GRU 'Africa Corps.' You will – and will not – be surprised where we found it. Full thread below šŸ”½ pic.twitter.com/6g8mqD8XKA

— Mark Krutov (@kromark) March 4, 2026


omg this title, this paper pic.twitter.com/OXL9C4v2nX

— Leah Pierson (@leah_pierson) March 4, 2026


In a ​new paper​, researchers argue that:

ā€œa primary cause of the rise in mental disorders [in youth] is a decline over decades in opportunities for children and teens to play, roam, and engage in other activities independent of direct oversight and control by adults.ā€ pic.twitter.com/ArpX96iwBf

— Steve Magness (@stevemagness) March 3, 2026


pic.twitter.com/a6916FherG

— stucco angel (@stucco_angel) March 2, 2026


The window between vulnerability disclosure and real-world exploitation keeps shrinking.

The Zero Day Clock visualizes how fast attackers are operationalizing new CVEs. What used to take months now often happens in days, or hours.

The future needs to be Secure by Design.…

— Chris Wysopal (@WeldPond) March 4, 2026

Zero Day Clock

The gap between disclosure and exploitation is collapsing to zero.


The FreeBSD decision was the most based one: update your license to say "This software may not be used in California" and call it a day

— Jeremy Shepherd šŸ”»šŸ‡µšŸ‡ø (@jeremy_wokka) March 4, 2026


Chat, all hell has broken loose in the Linux community.

Linux nerds are discussing how they'd implement age verification at the OS level (if need be to comply with laws).

Linux nerds are having a psychiatric meltdown. The nerds are revolting. pic.twitter.com/xDfWs5XlDH

— vx-underground (@vxunderground) March 4, 2026


Lands of Packets

TTL exceeded.
I would like to collect texts from the scene about FX in his memory. A collection of obituaries that will then be posted on https://t.co/1FIwtU55Tb.
If anyone would like to contribute, please contact me.

Mail: joernchen@phenoelit.de
Signal: jrn.07

— joernchen (@joernchen) March 4, 2026

http://phenoelit.de


Read an amazingly clever paper today I have to share:

Imagine sourcecode that *looks* correct…but compiles to different logic!

Unicode has to support left-to-right, and right-to-left languages.

Visual order and logical order can be completely different! pic.twitter.com/b3rQxcZZdK

— LaurieWired (@lauriewired) March 4, 2026


I can't believe that @41414141 is no longer with us. A true hacker I had the honour to meet and learn next to him back in the early 2000s. From the parties, to his hacking mindset, skills... FX changed the community forever. Until we meet again, thank you.https://t.co/Af2saTBj7x

— Anastasios Pingios (@xorlgr) March 3, 2026

https://blog.recurity-labs.com/2026-03-02/Farewell_Felix


Senators Wyden and Brown are requesting an investigation into side-channel and TEMPEST attacks. https://t.co/I7bnPBzPDa

— Matthew Green (@matthew_d_green) March 4, 2026

How Vulnerable Are Computers to an 80-Year-Old Spy Technique? Congress Wants Answers | WIRED

A pair of US lawmakers are calling for an investigation into how easily spies can steal information based on devices’ electromagnetic and acoustic leaks—a spying trick the NSA once codenamed TEMPEST.


The official journal of the Canadian Paediatric Society has just acknowledged that more than 100 of its case reports are fabricated. Incredible reporting from @RetractionWatch: https://t.co/ErcnEw60S6 pic.twitter.com/GVkRGeiqQ8

— David Juurlink (@DavidJuurlink) March 4, 2026

A medical journal says the case reports it has published for 25 years are, in fact, fiction – Retraction Watch

A Canadian journal has issued corrections on 138 case reports it published over the last 25 years to add a disclaimer: The cases described are fictional. Paediatrics & Child Health, the journal…


🚨Recent MuddyWater APT campaign, linked to Iranian intelligence, exposed by Ctrl-Alt-Intel 😬

- 10+ CVEs used
- Custom-developed C2s
- EtherHiding malware
- Sensitive data stolenhttps://t.co/T7ppLU9M8C

Super fun collab-ing with @ice_wzl_cyber to get this published šŸ”„

— Ben (@polygonben) March 4, 2026

MuddyWater Exposed: Inside an Iranian APT operation - Ctrl-Alt-Intel

MuddyWater espionage campaign exposed


Don't miss what's next. Subscribe to the grugq's newsletter:

Add a comment:

Share this email:
Share on Twitter Share on Hacker News Share via email Share on Mastodon Share on Bluesky
Twitter