KLUWE PLANS UNICORN HUGS TO CURE CANCER
SPACEX PLANS MOON FACTORIES POWERED BY HUMANOID ROBOTS
Tim Starks
@timstarks.bsky.social
Senior reporter, CyberScoop, covering spyware, cyber policy and more. Russia-sanctioned. Former Washington Post, POLITICO, CQ Roll Call. @timstarks.02 on Signal. tim.starks@cyberscoop.com. Mastodon timstarks@infosec.exchange, X timstarks, Threads tstarks2.
KLUWE PLANS UNICORN HUGS TO CURE CANCER
SPACEX PLANS MOON FACTORIES POWERED BY HUMANOID ROBOTS
The Trump administration EO on AI tried to strike the balance between responsible use, security and mutual benefit, all with an eye toward not making it regulatory in nature, National Cyber Director Sean Cairncross said Tuesday. More by @timstarks.bsky.social: cyberscoop.com/trump-ai-exe...
EXCLUSIVE: Years after regulators moved to push Chinese telecom carriers out of the US market, they never fully left. A bipartisan House investigation first seen by Nextgov/FCW found three major providers retained various ties in the US: www.nextgov.com/cybersecurit...
Chinese telecom firms kept footholds in US networks despite federal crackdowns, House probe finds
China Mobile, China Telecom and China Unicom retained equipment, data center space and network ties after FCC restrictions, including a China Mobile-linked network that appeared in routes to Salt Typh...
nextgov.com
The five senators said the administration has alternated between being too passive and overstepping, and China stands to benefit as a result. Read more by @timstarks.bsky.social: cyberscoop.com/trump-ai-pol...
Then @mattkapko.com has an exclusive look at how Oligo Security uncovered evidence of TeamPCP's long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools. cyberscoop.com/teampcp-long...
Open-source software’s archenemy TeamPCP goes back further than anyone thought
Oligo Security uncovered evidence of a long operational history, including multiple previous attacks it traced to the same attacker infrastructure and tools.
cyberscoop.com
Interesting one from @derekbjohnson.bsky.social with exclusive info cyberscoop.com/ai-chatbots-...
AI is getting better at election facts, but voters shouldn’t rely on it
As voters turn to AI chatbots for the 2026 midterm elections, new research shows that while factual errors have dropped, incomplete answers remain a key risk.
cyberscoop.com
With identity protection services for millions of victims of the 2015 Office of Personnel Management breach set to expire, a group of lawmakers is making a push to extend them forever. Read more by @timstarks.bsky.social: cyberscoop.com/opm-breach-l...
Today, August 4, 2026, is the setting of Ray Bradbury’s short story “There Will Come Soft Rains” about a fully automated house continuing on after the family who lived there and the world around it died in a nuclear blast.
@timstarks.bsky.social has a good story about the reaction to these comments: cyberscoop.com/trump-blames...
Trump blames Minnesota for cyberattacks on water sector, drawing pushback from cyber world
Trump blamed Minnesota for recent water cyberattacks, rejecting U.S. intelligence attributing the strikes to Iran. Experts and Gov. Tim Walz pushed back.
cyberscoop.com
Q: Can you rule out that Iran is behind the water attacks? TRUMP: I don't think so. I think that Minnesota is behind it. You know who is behind it? Minnesota. Because they're grossly incompetent. I don't think there was an Iranian cyberattack. I think Minnesota ought to get its act together.
If the Oates be Hall, sailor's good call If the Oates be Joyce Carol, sailors in peril
CISA published a guidebook for federal agencies Thursday to aid them on managing security risks with open-source software, touching on topics like patching and open-source AI models. Read more from @timstarks.bsky.social: cyberscoop.com/cisa-open-so...
Read my July 18 story for the original reporting that the New York Times didn’t link to... www.motherjones.com/politics/202...
Assault, misogyny, verbal threats: Records detail new allegations against Rep. Max Miller
Police reports and filings in a bitter custody dispute raise new questions about the conduct of an Ohio Republican as he campaigns for a third term.
motherjones.com
GOP House member--and fmr Trump advance man--allegedly -threw boiling water on his then-wife -held a gun to her head -broke his daughter's collarbone. She's 2 -abused abuse a fmr Trump WHer too When a reporter asked him about it , he threatened to block their # www.nytimes.com/2026/07/28/u...
Durov did not directly comment on the charges. Shortly after they were made public, however, Telegram’s account on the social media site X posted an old image of him raising his middle finger. www.nytimes.com/2026/07/29/w...
Russia Charges Telegram’s Founder Pavel Durov With Facilitating Terrorism
The case against Pavel Durov reflected an ongoing fight over one of the world’s most popular messaging and media apps, which is widely used in the country.
nytimes.com
Brad Blakestad, director of the National Quantum Coordination Office, also said encryption and measuring progress would pose challenges. Read more by @timstarks.bsky.social: cyberscoop.com/white-house-...
I’ve resurrected my substack to have a go at the new wave of AI fuelled cyber security hysteria don’t @ me open.substack.com/pub/ciaranma...
From Frenzy to Freakout
AI and the New Wave of Cyber FUD
open.substack.com
Sense check for people working in cybersecurity in operations roles in the trenches: I’m not finding or seeing cyber incidents off the back of Generative AI still. Are you? Not ones you’ve read about online - I mean ones you’ve actually dealt with.
So remember last week when we said we hadn’t see TA488/Laundry Bear/Void since Feb? Well... We kinda lied Day before the release, we found em throwing a half click against Outlook to install one of the coolest implants we’ve ever examined: OWAReaper www.proofpoint.com/us/blog/thre...
Cleaning Out Inboxes: TA488 Comes for Outlook with Another Half-Click Exploit | Proofpoint US
Threat Research would like to thank the Proofpoint Cloudmark Authority team for their collaboration. Key Findings On 22 July 2026, one day prior to Proofpoint’s recent joint release
proofpoint.com
Interesting piece by @maggiemiller.bsky.social on how some Republicans are trying to change the mood music around CISA - an agency the Trump administration has dramatically cut and left without a senate-confirmed leader for 18 months. www.politico.com/news/2026/07...
Republicans shunned the nation’s cyber agency. They’re now trying to save it.
Concerns about powerful artificial intelligence with hacking capabilities and the security of the upcoming midterm elections have shifted the opinions of some influential Trump allies.
politico.com
US weighing phone ban for some American troops in the Middle East, @reuters.com reports: www.reuters.com/business/med...
EXCLUSIVE: US military may require some troops in Mideast to surrender cell phones, sources say
The top U.S. commander for the Middle East has warned troops that cellphone videos shared online can help Iran target American bases, and sources told Reuters some deployed personnel could soon be or...
reuters.com
I'm thrilled to have this resource out today - it represents months of research and analysis and creative data visualization work by my amazing colleagues. Please share widely, and let us know if you have any questions or think we've missed anything!
Everyone seems to be talking about OpenAI this or Mythos that. But in many, many cases, it's still the old ways of doing cyber-attacks which work best... Article by me on the new @talosintelligence.com Incident Response Trends report www.infosecurity-magazine.com/news/phishin...
Phishing Dominates as Initial Entry Method for Cyber-Attacks
Analysis of real-life incident response cases by Cisco Talos warns that phishing remains a powerful method of initial compromise
infosecurity-magazine.com
New research shows the vulnpocalypse is just a metric ton of bugs and not a lot of actual action cyberscoop.com/ai-assisted-...
AI-assisted security tools are finding more bugs, but the threat level has not changed
Analysis from vulnerability intelligence firm VulnCheck shows AI-discovered flaws aren't being exploited any faster than traditional ones.
cyberscoop.com
I'm probably going to get yelled at in my DMs for this article but such is life -- Google’s solution to hacker name confusion? Yet another naming system cyberscoop.com/google-threa...
Google's solution to hacker name confusion? Yet another naming system
Google Threat Intelligence is overhauling how it names hackers, merging Mandiant and TAG into a unified two-word threat tracking system.
cyberscoop.com
youtube.com/watch?v=bC5LaHUnQMA
Eddie Murphy's Couch
YouTube video by Marcus Thomas
youtube.com
WELKER: Is America backing away from a larger attack bc our stockpile has been depleted? WALTZ: We have to take a step back. A lot of our stockpiles were depleted because of Biden WELKER: But you acknowledge they're depleted? WALTZ: No. And the people leaking this nonsense deserve to be in jail
New, by me: The Justice Department is prosecuting an American for allegedly providing U.S. border agents with a "duress" passcode that wiped the contents of his phone when they entered it. We've confirmed the phone was running GrapheneOS. Bypass for ad-blockers: web.archive.org/web/20260724...
US accuses American of allegedly wiping his phone using a 'duress' password during border search | TechCrunch
A U.S. citizen has asked a court to throw out the government's claim that he gave over a passcode to border authorities that wiped his phone's data, opening up fresh questions about a person's constit...
techcrunch.com
ICYMI late Friday, grabbed some insights from industry (both interviews and public comments) on cyber incident reporting law.
The administration set a target date of September for CISA to finalize the rule, but where the agency is headed remains a mystery to some. via @timstarks.bsky.social Read more: cyberscoop.com/cisa-circia-...
In a letter first reported by @timstarks.bsky.social Sen. Wyden urges feds to discard older, insecure, public-facing VPNs after waves of cyberattacks targeting the legacy technology cyberscoop.com/wyden-calls-...
Sen. Wyden urges feds to discard older, insecure, public-facing VPNs
Sen. Ron Wyden urges CISA, OMB, and NIST to purge legacy VPNs across federal agencies and enforce zero-trust procurement standards.
cyberscoop.com
The Government Accountability Office looked at 117 rules across 37 agencies and found 70% had reporting requirements that were overlapping. via @timstarks.bsky.social Read more: cyberscoop.com/gao-report-d...
First there was an executive order then there were export controls, where is the Trump's administration line on AI regulation? 🔍 @cyberscoop.bsky.social's @derekbjohnson.bsky.social spoke to cybersecurity experts and former government officials to learn more. 📰 ➡️ cyberscoop.com/trump-admin-...
NEW: Research from DTEX shows that North Korea’s IT worker scheme funds Russia’s war effort cyberscoop.com/north-korea-...
North Korea's IT worker scheme funds Russia's war effort
DTEX researchers found a series of transactions in a payment wallet showing North Korean IT worker salaries flowing into sanctioned entities that support the regime’s military programs.
cyberscoop.com