My paper got accepted for a pretty cool panel at #ISA2027 A lot of cyber conflict research focuses on offensive operations, but I think it's as important (and maybe even more challenging) to analyze defensive operations during the war
Oleg Shakirov
@shakirov2036.bsky.social
I study Russian foreign policy, cyber security, arms control
Yandex officially launching its Yandex Security division is the biggest infosec industry story from Russia. As a major infrastructure provider, it's basically following in Google's footsteps & offers a growing set of security solutions iz.ru/2172058/anto...
Агент под укрытием: крупнейший игрок ИТ-рынка вложил 7,5 млрд в противостояние ИИ-угрозам
Почему ключевые технологические компании РФ одновременно начали создавать защиту от нейросетевых решений
iz.ru
Working on what was supposed to be a short post based on a random find & is turning into a pretty cool threat intel story with some practical implications. Stay tuned
Did ShinyHunters get approval under the August 12 memorandum?? www.reuters.com/legal/govern...
Cybercrime feud erupts on dark web as notorious group claims hijack of rival's website
One of the world's best-known cybercrime groups said on Sunday it had hijacked one of its chief rivals' dark web site, bringing what it said was a long-simmering feud out into the open.
reuters.com
My talk on cyber attacks targeting bespoke infrastructure of Russia-Ukraine drone warfare Thx to @cyberwarcon.bsky.social for the chance to speak at one of the best events (new CFP is open!) Note: no affiliation w/ CrowdStike, repping @johnshopkinssais.bsky.social www.youtube.com/watch?v=qddv...
Hacking Drone Warfare
YouTube video by CYBERWARCON
youtube.com
Kaspersky reports on NightEagle's attacks on firms in Russia, an expansion of geography This actor was first exposed in July 2025 by QiAnXin (as APT-Q-95) & Qihoo 360 (as APT-C-78) for attacking China Both CN vendors labeled it a North American APT securelist.com/tr/nighteagl...
NightEagle APT targets Russian organizations
Kaspersky GERT experts have uncovered a new campaign by the NightEagle APT, featuring the GhostContainer backdoor and tools hosted on GitHub. The group is also exploiting vulnerabilities in Active Dir...
securelist.com
China established a new entity, International Alliance Combating Telecom and Cyber Fraud, with 46 founding countries & 34 observers With WAICO founded in July & this new body China is clearly getting more active in coalition building & tech governance www.globaltimes.cn/page/202609/...
GT on the spot: International anti-telecom fraud alliance launched in China, boosting global cooperation against telecom scams
China and other countries on Thursday established an international alliance aimed at combating cross-border telecom and cyber fraud in Lianyungang, East China’s Jiangsu Province, with foreign particip...
globaltimes.cn
1,5 months after the signing of the agreement establishing WAICO, it's text has finally been published—by the Russian Foreign Ministry. AFAIK, it's the 1st official publication of this document Available in EN, RU, CN, FR, SP, AR mid.ru/ru/foreign_p...
I wasn't accepted to a conference with a presentation on militarily significant cyber attacks. But I've just discovered a little noticed but very relevant case illustrating my argument. Alas, I still need to find a place to speak about it
What books on the challenges of cyber defense would you recommend? Not too technical, but also not to geopolitical My picks: The Fifth Domain by Richard Clarke & Robert Knake; You'll See This Message When It Is Too Late by Josephine Wolff; A Vulnerable System by Andrew Stewart
My take on the U.S. plan to authorize private firms to hack cyber criminals. I provide historical context & discuss some issues raised by this policy including lack of shared understanding of how international law applies to cyber conflict (in Russian) www.forbes.ru/mneniya/5671...
forbes.ru
Among the things that puzzle me about last week's memo allowing private companies to engage in offensive cyber ops is that I don't get why the United States need this. It has overwhelming cyber capabilities, whose funding & skill is far beyond anyone 1/4 www.whitehouse.gov/presidential...
Expanding Capabilities to Combat Transnational Cyber-Enabled Crime
MEMORANDUM FOR THE VICE PRESIDENT THE SECRETARY OF STATE THE SECRETARY OF THE TREASURY THE SECRETARY OF WAR THE ATTORNEY GENERAL THE SECRETARY OF COMMERCE
whitehouse.gov
Interesting comments here about blurred lines between gov't & non-gov't threat actors, but I think they overstate Russia as an example whereas this much better applies to China, see i-Soon, Winnti www.nextgov.com/cybersecurit...
The Russian hurdle in Trump’s new offensive cyber program
The White House wants private companies to help take down cybercriminals overseas. But in Russia, the line between criminal hackers and the government is difficult to draw.
nextgov.com
Personnel change in Russian cyber diplomacy. Artur Lyukmanov, Russia's cyber ambassador, has been appointed Ambassador to Egypt & Representative to the Arab League. His successor at the International Information Security Department at the Foreign Ministry hasn't been announced yet
Toy nuke costs only $12.99* *made of eco-friendly plastic
I can't find the text of the agreement establishing the World Artificial Intelligence Cooperation Organization. It was signed nearly two weeks ago but I've seen neither Chinese, nor English version. This is pretty unusual for modern international agreements. Has anyone seen it?
Speaking on Protracted Disruption: Lessons from the Longest Cyber Conflict next week at #CriticalEffectDC by IST. My main argument: cyber attacks can cause societal disruption in many ways, not just through one catastrophic event Find out more here securityandtechnology.org/event/critic...
Critical Effect 2026
Mark your calendars! Presented by ICS Village, in partnership with IST’s UnDisruptable27 project and Akin, the two-day Critical Effect conference is coming back to Washington, DC on June 17 and 18, an...
securityandtechnology.org
RU Consul General in NY said the FBI notified the Consulate General about Denis Obrezko's arrest on June 9 He complained that the U.S. ignored bilateral law enforcement mechanisms Curiously, he didn't mention that Obrezko is wanted in Russia tass.ru/politika/277...
Denis Obrezko, arrested in Thailand last fall at the U.S. request on hacking charges & alleged connection to Void Blizzard, made an appearance in federal court in Boston, @nateraymond.bsky.social reports In Jan, Russia filed a competing extradition request but lost www.reuters.com/legal/govern...
US charges suspected Russian hacker with facilitating cyber campaign
A suspected Russian hacker is now in U.S. custody following his arrest in Thailand last year and has been charged with facilitating a campaign of cyberattacks carried out by a Russia-aligned group t...
reuters.com
AI firms put a lot of effort into creating safety mechanisms to prevent LLMs from generating harmful outputs Malware developers can exploit the same guardrails by hiding payload behind nuclear & bio weapons-linked instructions to trick AI-driven scanners socket.dev/blog/mini-sh...
Russia's new Antifraud bill requires banks to decline transfers if the client's device is infected with malware. To scan for malware the banks would need to provide their clients with a security tool (antivirus?). The implementation is not entirely clear www.interfax.ru/business/109...
Банки будут отказывать клиентам в переводе средств, заметив вредоносное ПО на их устройствах
Банки будут обязаны отказывать гражданам в проведении денежного перевода, если выявят воздействие вредоносного программного обеспечения (ПО) на устройство
interfax.ru
A bit contradictory The German officer: yeah, we can learn from the Ukrainians. But their narrative in this game wasn't consistent, so they lost A Ukrainian participant: but there is no consistent narrative in the real world, that's what you could learn www.ft.com/content/cda1...
U.S. concerns about China's prepositioning in critical systems are somewhat similar to Soviet/Russian fears in the early 90s that the U.S. could change parity through backdoors in imported tech Here's one example from an article by military officer turned scholar Rafael Yusupov
Join me on a little 30-second rabbit hole... 🕳️🐇 There’s something weird about the Chinese Ministry of Foreign Affairs’ statement in response to the Five Eyes security bulletin, as shared below. Have a close read, if you can see it. I myself didn't until I added the statement to my copy. [1/11]
Russia's Supreme Court will consider designating Belarusian Cyber Partisans & Silent Crow extremist organizations—the 1st time extremism legislation might be applied to cyber actors This is likely because of the attack on Aeroflot claimed by both groups www.rbc.ru/rbcfreenews/...
Davis Center's abandoned domain for the Working Group on the Future of U.S.-Russia Relations is now a "Russian dating site." Sweet that the new owner still pays homage to the original project & keeps US-Russia Future in the head
TIL that, in 2002, Kazakhstan & China signed an agreement on the Prevention of Dangerous Military Activities (DMA) Because it's modeled on the 1989 Soviet-U.S. DMA, it includes procedures for ship-to-ship communications Which is very helpful given the geography of their border
Russia and China consider new steps to expand their digital cooperation including on software development and satellite Internet and declare adherence to cyber norms. In this post, I review the relevant sections of the recent joint statement from Beijing fromcyberia.substack.com/p/putin-and-...
Putin and Xi Plan for Co(de)dependence
Russia and China consider expanding their digital cooperation per the joint statement following recent talks in Beijing.
fromcyberia.substack.com