Danny Moore

@moore.bsky.social

Cyber-warfare | PhD from KCL | Author of 'Offensive Cyber Operations' | Security @ Meta

Chatting about this with friends earlier, but I miss the mid 2010s when all of cyber sec was on a flawed but functional Twitter. What I loved most about it was that we intersectdd with journalists, academics, policy makers, lawyers, band anyone else who had skin in the game.

My hot take is that it isn't a lack of strategy, Israel has many viable, ambitious strategies. It's a constant failure of political will, unity, and patience to enact a strategy.

Post nicht verfügbar.

Interesting! In my book, Offensive Cyber Operations, I talk a lot about the convergence of tactical offensive cyber and electronic warfare. The resources, approach and desired outcomes are deeply connected. The UK's move is in line with trends seen elsewhere. Will dive more into it all later.

Post nicht verfügbar.

The most interesting bit here is that the best Western gov cyber outfits overhauled their operational approach after the mid-10s to focus more on avoiding detection. The era of the "factory ops" was too risky with the rise of threat intel. Harder to reliably spot 2025's Regin, Careto, Flame, etc

Lorenzo Franceschi-Bicchierai@lorenzofb.bsky.social · last yr.

NEW: More than a decade ago, Kaspersky discovered a mysterious "elite" hacking group it called Careto (aka “The Mask”), which then vanished and only resurfaced last year. We can now reveal that the researchers who investigated it were confident that the Spanish government was behind it.

NEW: Hundreds of victims are surfacing across the world from zero-day cyberattacks on SAP, in a campaign that one leading cyber expert is comparing to the vast Chinese government-linked Salt Typhoon and Volt Typhoon breaches. cyberscoop.com/sap-cyberatt...

SAP cyberattack widens, drawing Salt Typhoon and Volt Typhoon comparisons

Hundreds of victims are surfacing across the world from zero-day cyberattacks on Europe’s biggest software manufacturer and company.

cyberscoop.com

Drama over at X/xAI. Whatever you ask Grok, it pivots to “white genocide” in South Africa. The last panel is what Grok claims was a “verbatim” system prompt that caused the behavior. Jury out. It’s now fixed but they haven’t yet bothered explaining. This, not those AGI fantastical scenarios.

BildBildBildBild

New from 404 Media: the Signal clone the Trump administration uses was just hacked. TeleMessage makes a modified version of Signal that archives messages for government agencies, Waltz used it. A hacker got some users' messages, group chats. Hugely significant breach www.404media.co/the-signal-c...

The Signal Clone the Trump Admin Uses Was Hacked

TeleMessage, a company that makes a modified version of Signal that archives messages for government agencies, was hacked.

404media.co

I was there. It was meant literally. “JD Work — now on the US NSC — shocked some by warning that the US would take lethal action against malicious actors in commercial cyber operations. Participants who heard [it said] they were unsure if it was meant literally or figuratively”

The Record@therecordmedia.bsky.social · last yr.

The Pall Mall Process — a diplomatic initiative designed to reform the commercial spyware and hacking market — has added more nations as it confronts an industry that is more complex than ever. https://therecord.media/pall-mall-process-commercial-spyware-hacking-paris-diplomacy

Why is the headline on all X outage stories about Musk blaming Ukraine for the DDoS? Why aren't media outlets putting the emphasis on the security lapse that allowed script kiddies (or whoever) to launch the attack against X as well as the lack of any evidence that the traffic came from Ukraine IPs?

Great coverage by @kimzetter.bsky.social. In this ecosystem we need to be doubly suspicious of major claims even if published by reputable sources. Considering the denials it's hard to pin down the truth. That said if things continue we may still see a gradual derisking of Russia by the US.

Kim Zetter@kimzetter.bsky.social · last yr.

Two stories published Friday reporting that Trump admin had ordered US Cyber Command and CISA to "stand down" on their work to detect/counter Russian cyber threats. But new info has come out to contradict them. I dug into what we know and don't know. www.zetter-zeroday.com/did-trump-ad...