The Banshee Queen ๐Ÿ‘‘'s Avatar

The Banshee Queen ๐Ÿ‘‘

@cyberoverdrive

#threatintel @Recorded Future | Formerly @PwC GTI | Malware & infrastructure analysis with a side of cyberpunk. ๐ŸŒƒ๐ŸŒŒ She/her, support ๐Ÿณ๏ธโ€๐ŸŒˆ๐Ÿณ๏ธโ€โšง๏ธโœจ

872
Followers
274
Following
109
Posts
19.11.2024
Joined
Posts Following

Latest posts by The Banshee Queen ๐Ÿ‘‘ @cyberoverdrive

Sabotage as a service. Iran is recruiting spies and potential saboteurs through Telegram, and Russia is doing the same. Both services pay ordinary people for specific tasks, because maintaining classical agent networks is too expensive and too easy to dismantle. inews.co.uk/news/iran-hi...

11.03.2026 08:33 ๐Ÿ‘ 22 ๐Ÿ” 15 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 0
Preview
Italian prosecutors confirm journalist was hacked with Paragon spyware | TechCrunch Italian authorities are making progress in their investigation into a wide-ranging spyware scandal in Italy involving Paragon spyware. But the mystery of who hacked two Italian journalists with Parago...

More spyware fallout in Italy ๐Ÿ‡ฎ๐Ÿ‡น following WhatsApp & Apple notifications & @citizenlab.ca investigations

Prosecutors' team confirms journalist @fcancellato.bsky.social's phone hacked with Paragon spyware

@lorenzofb.bsky.social with details; stay tuned for more
techcrunch.com/2026/03/05/i...

05.03.2026 22:51 ๐Ÿ‘ 27 ๐Ÿ” 23 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 1
BBC Verify live page graphic showing (left) the USS Gerald R Ford aircraft carrier, seen by satellite, from Sentinel-2, Copernicus, on 27 February; (right) a map of the Middle East with Crete, Israel and Iran marked, as well as the location of the Ford.

BBC Verify live page graphic showing (left) the USS Gerald R Ford aircraft carrier, seen by satellite, from Sentinel-2, Copernicus, on 27 February; (right) a map of the Middle East with Crete, Israel and Iran marked, as well as the location of the Ford.

THREAD
A long first week of the Iran conflict and a team effort by BBC Verify to supply news outlets.

Here's my contribution explained with how-to examples.

First, 24 hours' wait, we finally saw the USS Gerald R Ford after it left Crete. My piece with Barbara Metzler:
www.bbc.co.uk/news/live/cx...

10.03.2026 14:35 ๐Ÿ‘ 75 ๐Ÿ” 19 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 1

@pivotcon.bsky.social gets better every year...congratulations to all the speakers! ๐ŸŽ‰

10.03.2026 17:27 ๐Ÿ‘ 7 ๐Ÿ” 3 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

On the one hand, this is massively dystopian, foretelling an end to all of our livelihoods. But on the other (more important) hand, I could not have invented a better anecdote to illustrate my bookโ€™s thesis.

10.03.2026 14:47 ๐Ÿ‘ 65 ๐Ÿ” 19 ๐Ÿ’ฌ 4 ๐Ÿ“Œ 0
Preview
Sednit reloaded: Back in the trenches ESET researchers document how the Sednit APT group has reemerged with a modern toolkit centered on two paired implants โ€“ BeardShell and Covenant.

#ESETresearch has analyzed the resurgence of Sednit โ€“ one of the most longโ€‘running Russiaโ€‘aligned APT groups โ€“ now using a modern toolkit built around paired implants, BeardShell and Covenant, each using a different cloud provider for resilience. www.welivesecurity.com/en/eset-rese... 1/5

10.03.2026 14:28 ๐Ÿ‘ 6 ๐Ÿ” 7 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 0

Thread, on those RU attacks targeting Signal, as reported by the Dutch intel services

english.aivd.nl/latest/news/...

09.03.2026 19:18 ๐Ÿ‘ 18 ๐Ÿ” 6 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Post image Post image

BREAKING: powerful iPhone hacking tools used by Chinese criminals originated from US defense giant L3 Harris.

Their zero-click exploits went to Russian spies too.

Unbelievable harm to our collective security.

Scoop: @lorenzofb.bsky.social, here's why it matters 1/
techcrunch.com/2026/03/09/a...

10.03.2026 04:15 ๐Ÿ‘ 263 ๐Ÿ” 130 ๐Ÿ’ฌ 4 ๐Ÿ“Œ 16
Preview
The mystery of a globetrotting iPhone-hacking toolkit Tools used in a series of hacking campaigns by hackers in Russia, Ukraine, and China may have originated inside U.S. government contractor L3Harris, TechCrunch has learned.

A mass hacking campaign targeting iPhone users in Ukraine & China used tools that were likely designed by U.S. military contractor L3Harris. Intended for Western spies, the tools "wound up in the hands of various hacking groups, including Russian govt spooks & Chinese cybercriminals."

10.03.2026 07:28 ๐Ÿ‘ 38 ๐Ÿ” 24 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 1

move slow and repair things

06.03.2026 12:06 ๐Ÿ‘ 3746 ๐Ÿ” 1214 ๐Ÿ’ฌ 5 ๐Ÿ“Œ 0
Preview
Video Shows US Tomahawk Missile Strike Next to Girlsโ€™ School in Iran - bellingcat New video footage shows a US Tomahawk missile hitting an Islamic Revolutionary Guard Corps (IRGC) facility in Minab, Iran, on Feb 28, showing for the first time that the US struck the area. The footag...

New from Bellingcat - Video Shows US Tomahawk Missile Strike Next to Girlsโ€™ School in Iran
www.bellingcat.com/news/2026/03...

08.03.2026 19:09 ๐Ÿ‘ 351 ๐Ÿ” 152 ๐Ÿ’ฌ 5 ๐Ÿ“Œ 14
Inside Coruna: Reverse Engineering a Nation-State iOS Exploit Kit | NadSec Deep-dive into Coruna - a nation-state iOS exploit kit reverse-engineered from obfuscated JavaScript. WebKit RCE, PAC bypass, JIT cage escape.

Reverse-engineered Coruna - a nation-state iOS exploit kit - from raw JavaScript. 28 modules + MUCH MORE!
www.nadsec.online/blog/coruna
www.nadsec.online/blog/coruna-...
(technical analysis more interesting, read coruna blog post first, technical analysis looks better on github, link on-site)

06.03.2026 08:20 ๐Ÿ‘ 4 ๐Ÿ” 3 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 3
Preview
They Came to Spy on America. They Stayed to Coach Little League. In the wake of the Cold War, some Soviet bloc spies decided their fake American lives werenโ€™t so bad.

NEW, from me: A secret chapter of Cold War history, told here for the first time. A deep cover Soviet Bloc spy living in America as the Berlin Wall fell. The shocking moves by a European intel chief. And the incredible CI chess games by FBI and CIA counterspies.

www.politico.com/news/magazin...

08.03.2026 15:42 ๐Ÿ‘ 56 ๐Ÿ” 14 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 2

"Just after starting on Cars 2, I was told by a superior that I would be uninvited from all weekly art department meetings because Lasseter 'has a hard time controlling himself' around young women... It was clear that the institution was working hard to protect him, at the expense of women like me."

08.03.2026 11:23 ๐Ÿ‘ 1808 ๐Ÿ” 691 ๐Ÿ’ฌ 16 ๐Ÿ“Œ 28

I expect we'll see a lot of this coming from the US administration

08.03.2026 16:20 ๐Ÿ‘ 312 ๐Ÿ” 127 ๐Ÿ’ฌ 10 ๐Ÿ“Œ 2

Iran's Fars News Agency confirmed that the country's military intentionally targeted AWS data centers in the region to see if they played a role in supporting the US military's attacks.

Strikes hit AWS data centers in Bahrain and the UAE, and a Microsoft data center

t.me/farsna/41529...

08.03.2026 14:38 ๐Ÿ‘ 13 ๐Ÿ” 10 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

Starting to see Nordic countries detaining and boarding more shadow fleet ships. There has been a hard to understand hesitancy to do this www.dn.se/direkt/2026-...

07.03.2026 11:47 ๐Ÿ‘ 163 ๐Ÿ” 44 ๐Ÿ’ฌ 5 ๐Ÿ“Œ 3

Yes. And we have to talk about this now, because talking about it is the first step to making it seem like a callous crime rather than a surprising emergency.

07.03.2026 02:43 ๐Ÿ‘ 3764 ๐Ÿ” 1263 ๐Ÿ’ฌ 69 ๐Ÿ“Œ 23
Preview
From Ukraine to Iran, Hacking Security Cameras Is Now Part of Warโ€™s โ€˜Playbookโ€™ New research shows hundreds of attempts by apparent Iranian state hackers to hijack consumer-grade cameras, timed to missile and drone strikes. Israel, Russia, and Ukraine have also adopted this trick...

Hacking internet-connected civilian security cameras for recon has become a standard operating procedure of modern warfare. First for Russia and Ukraine, now for Israel and Iran.

Your insecure internet-of-things surveillance system is now their targeting system.

www.wired.com/story/from-u...

06.03.2026 14:16 ๐Ÿ‘ 200 ๐Ÿ” 108 ๐Ÿ’ฌ 3 ๐Ÿ“Œ 10
Preview
The Most Chilling Detail in the U.S. Attack on an Iranian Naval Ship The Iranian warship was taking part in an international exercise with many other countriesโ€”including the United States.

That Iranian Navy ship we torpedoed had no ammunition on board because that was a requirement to participate in the MILAN 2026 exercise (organized by the Indian Navy).

The US Navy knew this because IT ALSO PARTICIPATED IN THE EXERCISE. What a national embarrassment.
newrepublic.com/post/207429/...

06.03.2026 16:40 ๐Ÿ‘ 851 ๐Ÿ” 356 ๐Ÿ’ฌ 55 ๐Ÿ“Œ 39
Post image

Fascinating on the critical minerals consumed in US weapons in the past week and the time it will take to replenish those. Gallium is a particular concern.
foreignpolicy.com/2026/03/05/i...

06.03.2026 16:56 ๐Ÿ‘ 114 ๐Ÿ” 40 ๐Ÿ’ฌ 9 ๐Ÿ“Œ 2
Preview
Israel says it knocked out Iranโ€™s cyber warfare headquarters But itโ€™s unclear if the strike has fully taken out Iranโ€™s ability to launch cyberattacks as the Middle East war expands.

I absolutely beg people not to take the IDFโ€™s word that it hit IRGC-CEC HQ as a datapoint that is detailed or reliable enough to support any assessments about a meaningful reduction in Iranโ€™s cyber capacity.

Neither the IRGC nor the MOIS has their actual CNO operators centralized in tidy locations.

06.03.2026 07:12 ๐Ÿ‘ 20 ๐Ÿ” 3 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 0
Preview
Earth Is Warming Faster Than Previously Estimated, New Study Shows Researchers found the first statistically significant evidence that global warming is accelerating.

"Planetary warming has significantly accelerated over the past 10 years, with temperatures rising at a higher rate since 2015 than in any previous decade on record, a new study showed." www.bloomberg.com/news/article...

06.03.2026 14:35 ๐Ÿ‘ 9 ๐Ÿ” 4 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 1

NSO Group has been sanctioned by the US because of abuses connected to its Pegasus spyware

Of course it's furiously lobbying to get off of those lists, in order to open up the lucrative ๐Ÿ‡บ๐Ÿ‡ธ defence and intelligence contract opportunities

@vaspanagiotopoulos.com describes those efforts in detail ๐Ÿ‘‡

04.03.2026 15:05 ๐Ÿ‘ 13 ๐Ÿ” 11 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0

No "stupid rules of engagement" -- like, you know, the Geneva Convention.

It's clear where the ๐Ÿ‡บ๐Ÿ‡ธ stands on international law.

Question for Canadians ๐Ÿ‡จ๐Ÿ‡ฆ: what's our position?

02.03.2026 14:43 ๐Ÿ‘ 18 ๐Ÿ” 5 ๐Ÿ’ฌ 0 ๐Ÿ“Œ 0
Preview
Reframing misinformation as informational-systemic risk in the age of societal volatility | HKS Misinformation Review When a bank run, a pandemic, or an election spirals out of control, the spark is often informational. In 2023, rumors online helped accelerate the collapse of Silicon Valley Bank. During COVID-19, fal...

The danger of misinformation lies "...in its capacity to undermine...confidence in science, the legitimacy of elections, and shared historical narratives...[S]ystemic risk analysis...helps clarify why misinformation should be understood as a structural condition..." See following link ๐Ÿ‘‡๐Ÿผ

02.03.2026 06:27 ๐Ÿ‘ 70 ๐Ÿ” 20 ๐Ÿ’ฌ 2 ๐Ÿ“Œ 1
Preview
Meta wonโ€™t let morality get in the way of a product launch What a great time to add facial recognition to everything!

โ€œJust because you are outside of your home doesnโ€™t mean you have consented to having a random bozo collect your face and your name, the latter of which can enable them to search for your digital presence or even home address. The act of existing in public should not carry those risks.โ€

01.03.2026 14:19 ๐Ÿ‘ 756 ๐Ÿ” 298 ๐Ÿ’ฌ 23 ๐Ÿ“Œ 26

Those 100 or so children that were killed in an Israeli airstrike in Iran. They all had names. They had parents, siblings and perhaps pets. They had best friends. They had dreams, frustrations and anxieties. They had moments of utter happiness. And each of them was someone else's everything.

01.03.2026 06:24 ๐Ÿ‘ 52 ๐Ÿ” 18 ๐Ÿ’ฌ 1 ๐Ÿ“Œ 1

if people are using classified information to place bets, then theoretically others can analyze betting behavior to find signals that reveal classified information.

01.03.2026 03:28 ๐Ÿ‘ 3450 ๐Ÿ” 940 ๐Ÿ’ฌ 44 ๐Ÿ“Œ 35
Preview
Exclusive: US orders diplomats to fight data sovereignty initiatives An internal diplomatic cable said such efforts could interfere with AI-related services.

Scoop: Rubio has ordered US diplomats to fight data sovereignty initiatives worldwide

www.reuters.com/sustainabili...

25.02.2026 11:15 ๐Ÿ‘ 45 ๐Ÿ” 46 ๐Ÿ’ฌ 9 ๐Ÿ“Œ 24