Trending
Sharon Buys's Avatar

Sharon Buys

@sharonbuys

Strategic Threat Intelligence Fox-IT - tweets/opinions expressed are my own || also IR/geopolitics, lifting weights, Taylor Swift and F1 (MV1) enthusiast ✨

793
Followers
310
Following
17
Posts
12.11.2024
Joined
Posts Following

Latest posts by Sharon Buys @sharonbuys

Preview
A US Treasury Threat Intelligence Analysis Designates DOGE Staff as ‘Insider Threat’ An internal email reviewed by WIRED calls DOGE staff's access to federal payments systems “the single biggest insider threat risk the Bureau of the Fiscal Service has ever faced.”

"Continued access to any payment systems by DOGE members, even 'read only,' likely poses the single greatest insider threat risk the Bureau of the Fiscal Service has ever faced."

That's from a Treasury Department threat intelligence warning.

Another great @WIRED.com scoop:

07.02.2025 23:00 👍 41 🔁 16 💬 1 📌 1
Preview
Trump says dismantling the USAID will save money. Experts say it’s a ‘great gift’ for China | CNN President Trump is racing to shut down the agency, declaring it a waste of money and run by “lunatics.” But experts warn this is plays into the hands of the very country he considers to be the biggest...

Trump says dismantling USAID will save money. Experts say it’s a ‘great gift’ for China

07.02.2025 16:31 👍 444 🔁 121 💬 79 📌 13

If the CSBR is not allowed to finalize the Salt Typhoon investigation, the public and international cybersecurity community will miss out on a thorough review of one of the worst cyber-espionage campaigns by a foreign adversary in recent history…

There is no war in Ba Sing Se.

22.01.2025 01:11 👍 2 🔁 1 💬 0 📌 0
Preview
RedNote Recruited US Influencers to Promote App Amid TikTok Ban Uncertainty A marketing campaign brief obtained by WIRED reveals how the Chinese app is trying to capitalize on its sudden international popularity.

Even as Trump pauses the TikTok ban in the US, it looks like RedNote is still at the top of the App Store's downloads.

Now, the Chinese company has recruited US influencers to promote it.

21.01.2025 21:30 👍 101 🔁 23 💬 12 📌 1
Video thumbnail

Um. What did I just watch?

20.01.2025 20:09 👍 25768 🔁 5588 💬 4620 📌 1913
Justice Department and FBI Conduct International Operation to Delete Malware Used by China-Backed Hackers The Justice Department and FBI today announced a multi-month law enforcement operation that, alongside international partners, deleted “PlugX” malware from thousands of infected computers worldwide. A...

🚨 🇨🇳 “…deleted PlugX malware from approximately 4,258 U.S.-based computers and networks.”

“…hackers sponsored by the People’s Republic of China, known to the private sector as ‘Mustang Panda’ and ‘Twill Typhoon’…”

Source: www.justice.gov/opa/pr/justi...

Affidavit: www.justice.gov/opa/media/13...

14.01.2025 16:44 👍 3 🔁 2 💬 1 📌 0
Preview
Suspected Russian hackers target Ukrainian defense enterprises in new espionage campaign Ukraine’s military computer emergency response team said the group sent phishing emails disguised as invitations to a legitimate defense conference that took place in Kyiv last week.

🇷🇺 🇺🇦 “Suspected Russian hackers [UAC-0185] have been targeting Ukrainian military and defense enterprises in a new espionage campaign…”

“…sent phishing emails disguised as invitations to a legitimate defense conference…”

(via @therecordmedia.bsky.social)

h/t: therecord.media/suspected-ru...

09.12.2024 20:14 👍 0 🔁 1 💬 0 📌 0
Preview
China bans exports of gallium, germanium, antimony to US The ban on exports of 'dual-use items' related to these and superhard materials takes effect from Tuesday.

Buckle up, folks.

FAFO is coming fast.

China bans export of critical minerals to US as trade tensions escalate - www.reuters.com/markets/comm...

04.12.2024 05:31 👍 7519 🔁 2536 💬 415 📌 247
Preview
FBI, CISA say Chinese hackers are still lurking in US telecom systems In a call with reporters, senior officials at the Cybersecurity and Infrastructure Security Agency (CISA) and the FBI said the agencies have been investigating the incident since late spring, and have...

Volgens de CISA en FBI heeft 🇨🇳 - Salt Typhoon - waarschijnlijk nog steeds toegang tot Amerikaanse telecomnetwerken.

“We cannot say with certainty that the adversary has been evicted, because we’re still understanding the scope”

therecord.media/fbi-cisa-chi...

03.12.2024 21:32 👍 1 🔁 0 💬 0 📌 0

National Assembly member and SNU constitutional law scholar Cho Kuk is making a statement to the press using strong words—the president needs to stand down the declaration IMMEDIATELY, to ignore this is tantamount to a military rebellion, the declaration ITSELF was illegal and he must answer for it

03.12.2024 16:20 👍 1481 🔁 244 💬 1 📌 10
Post image

BREAKING: South Korea's parliament votes 190-0 to lift martial law

03.12.2024 16:07 👍 644 🔁 176 💬 9 📌 67

The South Korean military occupied the National Assembly. MPs are being prevented from entering Parliament by police. All political associations, gatherings, demonstrations, and other political activities are banned. South Korea is currently a dictatorship.

03.12.2024 15:46 👍 653 🔁 236 💬 57 📌 58
Preview
A Chinese national, charged with fraud by the SEC, just sent Donald Trump $18 million Chinese Crypto entrepreneur Justin Sun paid $6.2 million for a banana — sold by Sotheby's as conceptual art — and then ate it last Friday.

Chinese Crypto fraudster Justin Sun purchased $30 million in crypto tokens from Trump's World Liberty Financial. Sun said his company, TRON, was committed to "making America great again." Move could be detrimental to the environment. #opcanary 🧵

popular.info/p/a-chinese-...

03.12.2024 13:29 👍 255 🔁 100 💬 14 📌 5
Preview
Hay’at Tahrir al-Sham (HTS) | Terrorism Backgrounders | CSIS TNT Terrorism Backgrounder

For those interested in the Syrian rebel group that has captured Aleppo. “Today, HTS can be thought of as a relatively localized Syrian terrorist organization, which retains a Salafi-jihadist ideology despite its public split from al-Qaeda in 2017” www.csis.org/programs/for...

30.11.2024 11:36 👍 291 🔁 123 💬 10 📌 22
Post image

If there’s no precedent of a 1-place pen being used for this situation before, then it feels very odd & unusual to apply this to Max Verstappen.

The document reads as if it’s arguing against a penalty too. Very odd.

30.11.2024 22:34 👍 50 🔁 10 💬 5 📌 2
Charles Lister
@Charles Lister
NEW - it now looks feasible that #Syria's opposition will control all/most of #Aleppo & #Hama provinces within the next 24hrs.
Quite literally an earthquake within ~14yrs of #Syria's crisis. #Assad looking more vulnerable than ever - an absolute collapse.
9:19 AM • 11/30/24 • 46K Views

Charles Lister @Charles Lister NEW - it now looks feasible that #Syria's opposition will control all/most of #Aleppo & #Hama provinces within the next 24hrs. Quite literally an earthquake within ~14yrs of #Syria's crisis. #Assad looking more vulnerable than ever - an absolute collapse. 9:19 AM • 11/30/24 • 46K Views

Hassan I. Hassan
@hxhassan
VERY conceivable the rebels will be in Tartus, Latakia, Homs & Hama within the week.
Russia strikes won't stop them without heavy Hezbollah + Iran ground forces.
Assad elite forces defend Damascus.
Eyes on Turkey & Israel. Will Turkey go all in? Will Israel strike Iran buildups?
Hassan I. Hassan
@hxhassan • 1h
The total collapse continues. The rebels are taking areas as fast they can drive.
The regime won't have the breathing space to even think about mobilizing f...
9:54 AM • 11/30/24 • 32K Views

Hassan I. Hassan @hxhassan VERY conceivable the rebels will be in Tartus, Latakia, Homs & Hama within the week. Russia strikes won't stop them without heavy Hezbollah + Iran ground forces. Assad elite forces defend Damascus. Eyes on Turkey & Israel. Will Turkey go all in? Will Israel strike Iran buildups? Hassan I. Hassan @hxhassan • 1h The total collapse continues. The rebels are taking areas as fast they can drive. The regime won't have the breathing space to even think about mobilizing f... 9:54 AM • 11/30/24 • 32K Views

Charles Lister (
@Charles_Lister
Well placed sources say #Assad remains in #Moscow, while much of his family & close allies are also abroad - in #Russia & the #UAE.
That adds a stunning extra angle to the collapse of northern #Syria.
10:32 AM • 11/30/24 • 42K Views

Charles Lister ( @Charles_Lister Well placed sources say #Assad remains in #Moscow, while much of his family & close allies are also abroad - in #Russia & the #UAE. That adds a stunning extra angle to the collapse of northern #Syria. 10:32 AM • 11/30/24 • 42K Views

Ragip Soylu @
@ragipsoylu
BREAKING — Syrian rebel forces reached Hama, currently clashes being reported near the airport
Ragip Soylu
@ragipsoylu • 45m
NEW: Syrian rebels attacked Hama military airport with kamikaze drones, Sham Network reports
Hamah Military Airport
10:36 AM • 11/30/24 • 12K Views

Ragip Soylu @ @ragipsoylu BREAKING — Syrian rebel forces reached Hama, currently clashes being reported near the airport Ragip Soylu @ragipsoylu • 45m NEW: Syrian rebels attacked Hama military airport with kamikaze drones, Sham Network reports Hamah Military Airport 10:36 AM • 11/30/24 • 12K Views

⚠️ In Syria:

Opposition forces are reportedly advancing south from Aleppo toward Hama (which is about halfway to Damascus).

Assad remains in Moscow, with his family and close allies also reportedly abroad.

The Syrian analysts I follow are all quite stunned at how quickly things are moving.

30.11.2024 17:04 👍 582 🔁 154 💬 29 📌 16

It’s amateur hour in The Hague, so we get a far-right minister dreaming of an individual Dutch trade deal with the US. He clearly is unaware of the fact that trade is a European Union competence. It has to be, because you can’t have a Single Market without a unified trade regime.

29.11.2024 11:04 👍 67 🔁 23 💬 6 📌 1
Preview
‘Sophisticated UK spy ring’ allegedly passed secrets to Russia for three years Court told Bulgarian nationals surveilled targets including a journalist linked to Russian dissident Alexei Navalny A “sophisticated” UK-based spy ring passed secrets to Russia for nearly three years and gathered information on targets across Europe, a…

‘Sophisticated UK spy ring’ allegedly passed secrets to Russia for three years

28.11.2024 18:56 👍 85 🔁 40 💬 2 📌 3
Preview
Russian spying ring ‘planned honeytrap to bait journalists’ Two Bulgarian men have pleaded guilty to spying for Russians in the UK

A Russian spy ring was tasked with kidnapping and/or murdering my two colleagues, Christo Grozev and Roman Dobrokhotov, a UK court has now heard. www.thetimes.com/uk/crime/art...

29.11.2024 00:17 👍 1809 🔁 699 💬 40 📌 34
Preview
North Korean hackers have stolen billions in crypto by posing as VCs, recruiters and IT workers | TechCrunch Security researchers say North Korean hackers have infiltrated hundreds of organizations with the goal of taking money and stealing data to further the regime's nuclear weapons program.

New, by me: Security researchers say North Korean hackers, posing as VCs, recruiters, and remote IT workers, have infiltrated "hundreds of organizations" and stolen billions of crypto in recent years to fund the regime's nuke program.

My dispatch from Cyberwarcon: techcrunch.com/2024/11/28/n...

28.11.2024 14:02 👍 161 🔁 69 💬 6 📌 14
Preview
Privacy-experts slaan alarm over te open karakter van Bluesky Met Bluesky lijkt er een volwaardig alternatief voor X te zijn ontstaan. Het netwerk groeit onstuimig en het enthousiasme onder gebruikers is groot. Maar met de groei komen ook de vragen, bijvoorbeeld...

Ik wil het feestje hier niet bederven, maar Bluesky heeft toch echt wel een probleempje. Nee, niet dat er alleen maar gelijkgestemden zitten. Wel dat ze slordig omgaat met de privacy van gebruikers. Experts die ik sprak zijn unaniem: Bluesky moet zijn huiswerk doen www.volkskrant.nl/tech/privacy...

28.11.2024 16:42 👍 290 🔁 116 💬 36 📌 18
Preview
Opvallend veel Russische schepen voor Nederlandse kust: ‘Onvoldoende gevoel van urgentie’ Veiligheidsexperts noemen dit zorgelijk, omdat de Noordzee vol kritieke infrastructuur ligt, zoals pijpleidingen, stroomkabels en datakabels.

Alsof de Nederlandse politiek die urgentie begrijpt. We hebben in dit land iemand in het Torentje zitten die vakkundig gesouffleerd wordt door de lange arm van Poetin. Door Wilders welteverstaan, de echte premier van Nederland.
fd.nl/politiek/153...

25.11.2024 18:46 👍 374 🔁 100 💬 17 📌 1
Preview
Steve Witkoff, Trump’s Middle East Envoy, Has Ties to Oil-Rich Nations Steve Witkoff’s involvement with two sovereign wealth funds as he bought and then sold Manhattan’s Park Lane Hotel demonstrates the potential conflicts his new role will present.

Trump’s Middle East Envoy Has Prior Ties to Oil-Rich Nations There. Steve Witkoff’s involvement with Abu Dhabi’s sovereign wealth fund & Qatar Investment Authority as he bought and sold Manhattan’s Park Lane Hotel demonstrates potential conflicts his new role presents, by @ericliptonnyt.bsky.social

25.11.2024 22:06 👍 48 🔁 36 💬 7 📌 1
A transcription of the radio messages between Riccardo Adami and Carlos Sainz before the second round of stops at the F1 Las Vegas GP.

A transcription of the radio messages between Riccardo Adami and Carlos Sainz before the second round of stops at the F1 Las Vegas GP.

Got around to listening to Sainz and Adami's messages before the second stops.

RA asks CS to let Leclerc by into turn 14 on lap 26 — he doesn't.

Sainz says he'll let him by into turn 5 on lap 27 — he doesn't.

Eventually he does into turn 14 on lap 27.

And people wonder why CL lost it...

25.11.2024 20:18 👍 46 🔁 16 💬 4 📌 1
Post image

Max Verstappen won the drivers' championship with two races to spare in one of the most competitive grids ever while driving a car that had this kind of pace advantage.

Zero doubt about it, 2024 was a legacy-defining championship season by Verstappen.

24.11.2024 11:58 👍 105 🔁 14 💬 5 📌 2

This article deserves more attention! 👇🏽👇🏽👇🏽

In early 2022 Russia’s APT28 (GRU unit 26165) managed to breach an U.S. organization through its enterprise WiFi network after compromising a dual-home device of another organization within WiFi range in a nearby building.

23.11.2024 17:52 👍 2 🔁 0 💬 0 📌 0
Preview
The Nearest Neighbor Attack: How A Russian APT Weaponized Nearby Wi-Fi Networks for Covert Access In early February 2022, notably just ahead of the Russian invasion of Ukraine, Volexity made a discovery that led to one of the most fascinating and complex incident investigations Volexity had ever w...

@volexity.com’s latest blog post describes in detail how a Russian APT used a new attack technique, the “Nearest Neighbor Attack”, to leverage Wi-Fi networks in close proximity to the intended target while the attacker was halfway around the world. 
 
Read more here: www.volexity.com/blog/2024/11...

22.11.2024 14:58 👍 81 🔁 41 💬 2 📌 13

and yet he was not the one rbr dropped in the middle of the season…

yuki (or lawson!) to rbr and colapinto to vcarb please 🙏🏽

23.11.2024 16:46 👍 1 🔁 0 💬 0 📌 0
Preview
Hackers breach US firm over Wi-Fi from Russia in 'Nearest Neighbor Attack' Russian state hackers APT28 (Fancy Bear/Forest Blizzard/Sofacy) breached a U.S. company through its enterprise WiFi network while being thousands of miles away, by leveraging a novel technique called ...

Russian state hackers APT28 (Fancy Bear/Forest Blizzard/Sofacy) breached a U.S. company through its enterprise WiFi network while being thousands of miles away, by leveraging a novel technique called "nearest neighbor attack."

www.bleepingcomputer.com/news/securit...

22.11.2024 20:35 👍 16 🔁 7 💬 0 📌 0