Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @briankrebs
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @briankrebs
-
Pinned Tweet
Did someone at the U.S. Commerce Dept's NTIA division find a SolarWinds backdoor in Aug. 2020, months before the breach became public? Sure looks that way. WSJ reported in Dec. that NTIA was 1 of many federal agencies hit by 2nd, 3rd or 4th-stage malwarehttps://krebsonsecurity.com/2021/04/did-someone-at-the-commerce-dept-find-a-solarwinds-backdoor-in-aug-2020/ …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
Very curious where this will go. The US government's current response to ransomware is largely the FBI and USSS investigating Russian criminals they can't touch. Just keep building and building cases, hoping the bad guys will forget and vacation in Spain.https://www.wsj.com/articles/ransomware-targeted-by-new-justice-department-task-force-11619014158 …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
Dug up a small oak tree this morning, before remembering today is Earth Day. However, we did give it away to be planted elsewhere. So I think our carbon karma/offsets or whatever are still okay...
Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
Holy name change, Batman: "SolarWinds MSP is becoming N‑able." https://www.n-able.com/becoming-n-able
#solarwinds I guess having a parent company suffer one of the world's worst supply-chain attacks in history is bad for business (MSP says it was not affected) Who's n-amored by the move?Thanks. Twitter will use this to make your timeline better. UndoUndo -
One of the 6 Russian tech firms sanctioned yesterday by White House for allegedly aiding Russian cyberspies -- Positive Technologies -- had advance access to information about vulnerabilities in Microsoft products. MS says it's removed that access for PThttps://apnews.com/article/business-europe-hacking-russia-dd8c331ff30d366ea4f5d828e788c307 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
A joint advisory from the FBI, CISA and NSA seems to confirm my reporting from December that a VMWare flaw (CVE-2020-4006) was used as an attack vector by the Russian SVU attackers involved in SolarWinds https://krebsonsecurity.com/2020/12/vmware-flaw-a-vector-in-solarwinds-breach/ … https://www.fbi.gov/news/pressrel/press-releases/russian-foreign-intelligence-service-exploiting-five-publicly-known-vulnerabilities-to-compromise-us-and-allied-networks …pic.twitter.com/iMyrUddM9Q
Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
This is interesting: FBI sought and obtained a warrant to access compromised Exchange servers in the US for the narrow purpose of causing the malware to uninstallhttps://www.justice.gov/opa/pr/justice-department-announces-court-authorized-effort-disrupt-exploitation-microsoft-exchange …
Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
Recommended for
#cybercrime#history from 2007 to 2013, a period when we started to learn about the Russian Business Network, bulletproof-hosting providers, and fast-flux obfuscation. Amazing work by@briankrebs. Read the full review at: https://icdt.osu.edu/cybercanon pic.twitter.com/334OrkeTH2
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Someone is selling license plate data, email addresses, DoBs, phone numbers, bcrypt hashed passwords and other info on 21M+ users of
@Parkmobile parking app. ParkMobile says it disclosed an incident Mar. 26, but that disclosure didn't say what was takenhttps://krebsonsecurity.com/2021/04/parkmobile-breach-exposes-license-plate-data-mobile-numbers-of-21m-users/ …Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
Most Americans "are never going to run into the Russian SVR. They're going to run into ransomware, business email compromise,"
@CyAlliancePrez says at@CSIS event, making a point about cybercriminals' broad impact on American lives.Thanks. Twitter will use this to make your timeline better. UndoUndo -
Ne'er-do-wells leaked personal data -- including phone numbers -- for some 553 million Facebook users this week. Facebook says the data was collected prior to 2020, before FB blocked such info from being scraped from profiles. Here's what FB users can do.https://krebsonsecurity.com/2021/04/are-you-one-of-the-533m-people-who-got-facebooked/ …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
This was a great read, and solid research: Breaking GitHub private pages for $35,000.https://robertchen.cc/blog/2021/04/03/github-pages-xss …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Get ready for a flood of breach notices. Ransomware thugs now emailing customers of breach victims directly is likely to speed up pace of these disclosures. Here's one Apr. 5 from http://Motherhood.com , almost simultaneous to emails from Clop ransom gang https://krebsonsecurity.com/2021/04/ransom-gangs-emailing-victim-customers-for-leverage/ …pic.twitter.com/7G7QcBQUni
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Clop
#Ransomware gang and possibly others are now emailing victim customers telling them their personal, financial data, etc is going to posted on the darknet unless a ransom is paid. Basically lobbying them to pressure ransomware victims.https://krebsonsecurity.com/2021/04/ransom-gangs-emailing-victim-customers-for-leverage/ …Thanks. Twitter will use this to make your timeline better. UndoUndo -
Good read, via
@newsycombinator Man who thought opening a TXT file is fine thought wrong. On embedding malicious HTML in .txt files on a Mac via a 2019 CVEhttps://www.paulosyibelo.com/2021/04/this-man-thought-opening-txt-file-is.html …Thanks. Twitter will use this to make your timeline better. UndoUndo -
ICYMI, http://twofactorauth.org , a site I've recommended in countless stories, no longer points to the project, which is now at http://2fa.directory . Apparently there was some drama/dispute, and the domain got sold off. https://github.com/2factorauth/twofactorauth/issues/5238 … I have a few stories to update...
Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
It's not DNS There's no way it's DNS It was DNShttps://twitter.com/MSFT365Status/status/1377741574465986567 …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
At long last, KrebsOnSecurity is truly mobile-friendly. I'm sorry it's taken so long. I could list the various delays but eh. It's still a work in progress. We wanted something similar, fast, responsive and easy to read. I hope this ticks all those boxes:https://krebsonsecurity.com/2021/04/new-krebsonsecurity-mobile-friendly-site/ …
Thanks. Twitter will use this to make your timeline better. UndoUndo -
Apparently
#Gartner has me on their short "non-exhaustive list of competitors." I am not sure how I feel about that, but at least my brand isn't the example used in the "not acceptable" graphic. H/T@QuinnyPigpic.twitter.com/2SrjeO2J3g
Thanks. Twitter will use this to make your timeline better. UndoUndo -
briankrebs Retweeted
Per
@briankrebs, WeLeakInfo's payment data was hacked. *141* security companies bought data from WLI, which was shut down by LE in Jan. 2020. What are the legal/ethical considerations around buying#threatintel? W/@troyhunt@TrevorGiffen@HoldSecurityhttps://www.databreachtoday.com/blogs/buying-breached-data-when-ethical-p-3008 …Show this threadThanks. Twitter will use this to make your timeline better. UndoUndo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.