the grugq's newsletter

Subscribe
Archives
May 4, 2025

May 4, 2025

May 4, 2025

May the fourth be with you!

Never deleting this app https://t.co/9CbRC1KdHq pic.twitter.com/JJclOKgfs7

— Michael Bond (@HelloMrBond) May 3, 2025


Footage released by Ukraine's GUR confirms a Ukrainian naval drone shot down a Russian Su-30 fighter jet using a modified R-73 air-to-air missile. This is the first destruction of a combat aircraft by a naval drone in the world. pic.twitter.com/SyiX5KMqYb

— NOELREPORTS 🇪🇺 🇺🇦 (@NOELreports) May 3, 2025


Updates on Google Wallet's ZK system.

I've reached out to abhi shelat at Google and got the confirmation that the system described in the below paper was indeed deployed in Google Wallet.

- Standard proposals and open source code are to be released.
- The system makes the… https://t.co/motvW6sr7V pic.twitter.com/MAeyHUGwie

— Wei Dai (@_weidai) May 2, 2025


Micah Lee is spending his weekend poking through the TeleMessage Signal app source code. So far it looks like they use hard-coded credentials. I’m sure it’s going to produce exciting results in the future. https://t.co/OQaAyEC9LQ

— Matthew Green is on BlueSky (@matthew_d_green) May 3, 2025


"We can just make them look like fools," Riot's anti-cheat lead @deteccphilippe told me.

I spoke to him about how video game hackers are trying to get around these measures, and what is the present and future of anti-cheat.

Full story: https://t.co/XY6fiqrRjo

— Lorenzo Franceschi-Bicchierai (@lorenzofb) May 3, 2025


Hooo boy, I have some thoughts…

Cybersecurity is an engineering problem and if you don’t believe me, read the Anderson report, 1972, long before we had proper adversarial shenanigans going on. https://t.co/aZx5IYpEFO https://t.co/GPSX2rFdQB

— Heather Adkins - Ꜻ - Spes consilium non est (@argvee) May 3, 2025

In speaking with @stewartbaker at @RSAConference, @0xAlexei said CSRB was distinctive from NTSB as there is an attacker dynamic. Yes. But there is also an engineering conversation here that matters, and while on CSRB I pushed hard for us to look at the things that would eliminate…

— Heather Adkins - Ꜻ - Spes consilium non est (@argvee) May 3, 2025


#SpyNews - week 18 (April 27-May 3):
A summary of 77 espionage-related stories from week 18 coming from 🇮🇩🇹🇼🇨🇳🇮🇱🇺🇸🇫🇷🇮🇳🇸🇦🇺🇦🇷🇺🇮🇷🇦🇺🇵🇰🇱🇻🇧🇾🇵🇭🇻🇳🇹🇭🇲🇾🇸🇾🇦🇿🇧🇬🇰🇬🇩🇪🇬🇧🇧🇪🇹🇷🇵🇸🇬🇪🇳🇵🇬🇷🇰🇷🇰🇭🇦🇪🇭🇰🇱🇧🇮🇪🇮🇹🇱🇾🇦🇫🇰🇵🇾🇪 https://t.co/ZxuWxfLAj6#OSINT #HUMINT #SIGINT #espionage #spy

— Spy Collection (@SpyCollection1) May 4, 2025
Don't miss what's next. Subscribe to the grugq's newsletter:
X