the grugq's newsletter

Subscribe
Archives
May 1, 2025

May 1, 2025

May 1, 2025

Happy May Day

Technical Analysis of EquationDrug(Maybe) Bootkit
It was found that this Bootkit can be directly loaded and called remotely by the FUZZBUNCH tool of the Equation Group.https://t.co/wLjyrcuul2 https://t.co/0PPg9tdOEV pic.twitter.com/ovhzA4IU7b

— blackorbird (@blackorbird) April 30, 2025


Moral of the story:
Use canary tokens! It just fucking works!https://t.co/Dgu1BUZOSz

— Hamid Kashfi (@hkashfi) April 30, 2025


Areas in Greenland lose connection after outage in Spain.

Telecom company Tusass (owned by the Greenlandic government) has lost connection to equipment in Spain. The company is investigating a possible link to a power outage.

Several remote areas in Greenland (Qaanaaq and all…

— Orla Joelsen (@OJoelsen) April 29, 2025


“The list of French organizations attacked by APT28 military hackers includes ministerial entities, local governments, and administrations…aerospace entities, research organizations, think-tanks, and entities in the economic and financial sector.” https://t.co/pl3yZRX9Lp

— Michael Weiss (@michaeldweiss) April 30, 2025


Russian cyber operations: attack automation, espionage against the defense sector, and new tactics. Analysis for the Second Half of 2024 from CERT-UA.

Read and download report 👉 https://t.co/yh5QPH9oJQ pic.twitter.com/HSNKMpybWC

— SSSCIP Ukraine (@SSSCIP) April 30, 2025

https://www.cip.gov.ua/en/news/russian-cyber-operations-attack-automation-espionage-against-defense-sector-and-new-tactics-analysis-for-the-second-half-of-2024


Chris Krebs kicked off CBP’s Global Entry program | CNN Politics

Chris Krebs’, President Donald Trump’s former director of the Cybersecurity and Infrastructure Security Agency, membership in Global Entry has been revoked. Krebs, who has repeatedly attested to the security of the 2020 election, told CNN he finds it hard to believe this isn’t another act of retribution from the administration.


Electrospaces.net: How US defense secretary Hegseth circumvents the official DoD communications equipment

A weblog about Signals Intelligence, Communications Security and top level telecommunications equipment


Incredible. After being pressed for a source for a claim, o3 claims it personally overheard someone say it at a conference in 2018: https://t.co/ErIoCj5yWX

— Nabeel S. Qureshi (@nabeelqu) April 30, 2025


A rare thing when the @DefenceHQ release a thing about secure by default and how they are doing it https://t.co/Z88L8GedZT

Well done. 👍

— Daniel Cuthbert (@dcuthbert) May 1, 2025


Don't miss what's next. Subscribe to the grugq's newsletter:
X