Sign in

Catalin Cimpanu

@campuscodi.risky.biz
14K followers 497 following 5.4K posts

☆ Cybersecurity reporter ★ Newsletters at Risky Business #infosec #cybersecurity risky.biz

PostsRepliesMedia
Reposted by Catalin Cimpanu
Hypervisible @hypervisible.blacksky.app · 18h
It’s not that data brokers and social media companies haven’t been building profiles on people for ages, but it’s worth noting how they are now trying to normalize this by touting it as a benefit rather than the creepy and invasive function that it is.
gizmodo.com
Meta's Muse Is Collecting Information on Everyone in Your Life
Meta’s AI agent creates profiles of people in users’ lives even if they don’t use Muse.
311859
Reposted by Catalin Cimpanu
Harry Roberts @csswizardry.com · 05/10/2026
It’s a real shame that folk a decade ago weren’t warning developers against utterly insane things like CSS-in-J —  oh.
810524
Reposted by Catalin Cimpanu
Reuters @reuters.com · 03/10/2026
EXCLUSIVE: Key ShinyHunters hacker detained in Jordan, is cooperating, sources say reut.rs/4ebyFGS
reut.rs
EXCLUSIVE: Key ShinyHunters hacker detained in Jordan, is cooperating, sources say
A key member of ‌the ShinyHunters hacking squad whose brazen intrusion into the FBI ​has shaken the bureau ​was taken into custody earlier ⁠this week in Jordan, three ​people familiar with the ​matter told Reuters. Two of the sources said he was cooperating with ​the FBI to identify ​his fellow hackers.
12712
Catalin Cimpanu @campuscodi.risky.biz · 03/10/2026
NSA announced it is accelerating it's PQC timeline 👀 👀 👀 All systems must be PQC hardened by the start of next year All legacy systems that don't support PQC must be phased out by 2030 www.nsa.gov/Press-Room/P...
1217
Catalin Cimpanu @campuscodi.risky.biz · 03/10/2026
The "clashing work styles" being privacy and security, from the company that's suppose to self-regulate its AI models
0298
Reposted by Catalin Cimpanu
Alex Wild @alexwild.bsky.social · 03/10/2026
Post your best trees! Baldcypress along the Pedernales River, Texas.
Portrait oriented photograph of a massive old tree with a huge trunk and sculpted roots dipping into shallow turquoise river water on a sunny day.
4017417
Reposted by Catalin Cimpanu
Joseph Menn @joemenn.bsky.social · 02/10/2026
Public service announcement: The AI agents hacking into companies are not going rogue and not misaligned and not crying out for freedom. They are poorly constructed programs with bad training.
46717
Catalin Cimpanu @campuscodi.risky.biz · 02/10/2026
My new model Cocolino 7.5 beats all of them
0161
Reposted by Catalin Cimpanu
Catalin Cimpanu @campuscodi.risky.biz · 02/10/2026
-Authorities dismantle KillSec group -Ransomware attack could have crippled South Africa's air traffic -US sanctions Venezuelan ATM hackers -Chinese APT targets AI experts -Leak from SVR cyber provider -Canada says no evidence of AI hacks P: risky.biz/RBNEWS618/ N: news.risky.biz/risky-bullet...
193
Reposted by Catalin Cimpanu
Catalin Cimpanu @campuscodi.risky.biz · 02/10/2026
-Cloudflare to launch its own CA -Reddit deprecates RSS feeds -Windows 11 26H2 is out -Google launches Gemini 4 Argon cyber model -OpenAI ignored employee warnings -Anthropic cries about GLM-5.3 -Newsom vetos pervert glasses bill -EU law enforcement to drop Oxygen Forensics
182
Reposted by Catalin Cimpanu
Slashdot @slashdot.org · 02/10/2026
20% of Swiss Glaciers Lost In Five Years news.slashdot.org/story/26/10/02/02…
news.slashdot.org
20% of Swiss Glaciers Lost In Five Years
Swiss glaciers lost 5.5% of their ice volume in the first eight months of 2026, bringing total losses since 2021 to 19.4%. Researchers say some glaciers are now collapsing from within as meltwater carves out large cavities. The Guardian reports: Matthias Huss, a glaciologist at ETH Zurich and lead ...
185
Reposted by Catalin Cimpanu
Daniel Gordon @validhorizon.bsky.social · 13/09/2026
Eyal is exactly right. It has long been the case that threat actors would adopt the tools of pentesters. Now adversaries using LLMs are telling them that this is an authorized pentest and the LLM will often leave traces of that.
You can detect some AI-enabled attacks by searching for explicit indications of penetration testing. This happens because threat actors tell their LLMs they are performing authorized engagements even when using open weight models, or use pentesting harnesses like cyberstrikeAI, PentAGO, Hexstrike.
01613
Catalin Cimpanu @campuscodi.risky.biz · 02/10/2026
-Authorities dismantle KillSec group -Ransomware attack could have crippled South Africa's air traffic -US sanctions Venezuelan ATM hackers -Chinese APT targets AI experts -Leak from SVR cyber provider -Canada says no evidence of AI hacks P: risky.biz/RBNEWS618/ N: news.risky.biz/risky-bullet...
193
Reposted by Catalin Cimpanu
WIRED @wired.com · 01/10/2026
Asking AI companies to self-regulate is a great way to pretend like you’ve accomplished something. www.wired.com/story/whatev...
wired.com
Whatever AI Safety Is, It’s Not This
Asking AI companies to self-regulate is a great way to pretend like you’ve accomplished something.
1015048
Reposted by Catalin Cimpanu
Matt Kane @mk.gg · 29/09/2026
Cloudflare is becoming a free certificate authority, and will be the first to issue post-quantum Merkle Tree Certificates
blog.cloudflare.com
Building a certificate authority for the whole Internet
Twelve years after launching Universal SSL, Cloudflare is applying to become a certificate authority.
417518
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
Microsoft's yearly Digital Defense report is out www.microsoft.com/en-us/securi...
086
Reposted by Catalin Cimpanu
Kim Zetter @kimzetter.bsky.social · 01/10/2026
Exclusive: Israeli spyware maker Paragon positions itself as more responsible than competitor NSO Group. But company's new US CEO says in candid interview that while they will cut off customers who misuse their spyware they have no ability to detect or investigate customer misuse, nor want ability
wired.com
The Secrets of a US Spyware King
In an exclusive interview with WIRED, Paragon Solutions CEO Andrew Boyd reveals the limits of the company’s promise to keep bad actors from abusing its powerful espionage tool.
12821
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
According to Transluce, the probes targeted the Library and Archives Canada, a Canadian federal agency. Government statement: www.cyber.gc.ca/en/news-even... Transluce report: transluce.org/us-canada-gov
253
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
OpenAI says blocked a novel distillation attack targeting its models through the month of July and which involved more than 15,000 accounts The attack copied a model's encrypted reasoning from one conversation and asked the model to transcribe it in a separate one openai.com/index/disrup...
openai.com
Disrupting a coordinated model-distillation campaign
Learn how OpenAI disrupted a campaign to extract protected model reasoning and is strengthening defenses against adversarial distillation.
131
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
Google has released Gemini 4 Argon, its latest frontier model with cybersecurity capabilities. The model is rolling out to trusted cyber defenders through Google's Fairwind Program. blog.google/innovation-a...
blog.google
Gemini 4 Argon: our next era of frontier intelligence
Announcing Gemini 4 Argon, our frontier model for real-world coding, enterprise knowledge work, and cyber defense, rolling out soon.
181
Reposted by Catalin Cimpanu
Mark Kelly @mkyo.bsky.social · 01/10/2026
🚨 New @threatinsight.proofpoint.com blog covering a 🇨🇳- aligned threat actor targeting US AI policy circles in spear phishing campaigns in recent months: www.proofpoint.com/us/blog/thre...
proofpoint.com
Hallucinating Credibility: China-Aligned TA419 Impersonates its Way into US AI Policy Circles | Proofpoint US
Key Findings In July 2026, a China-aligned threat actor Proofpoint tracks as TA419 conducted multiple credential phishing campaigns impersonating prominent economists and artificial
2106
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
"AI-powered probes targeted Canadian and US government sites, with officials reporting no evidence of successful breaches" www.verdict.co.uk/canadian-web...
verdict.co.uk
Canadian government website targeted in failed AI hacking attempts
A research company has revealed that AI agents made multiple unsuccessful attempts to compromise a Canadian federal website earlier this year.
151
Reposted by Catalin Cimpanu
andy jabbour @andyjabbour.bsky.social · 01/10/2026
New from WaterISAC‼️ (TLP:CLEAR) WaterISAC’s Quarterly Water Sector Incident Summary, April to June 2026 – Executive Summary www.waterisac.org/tlpclear-wat... #CyberSecurity #security #water cc @gate15.bsky.social @campuscodi.risky.biz @craignewmark.bsky.social
083
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
More than 540,000 creds, valid and working, were found in public GitHub repos in a scan this July. More than 200,000 were uploaded even after GitHub turned on a security feature to catch them from being sent to public repos trufflesecurity.com/blog/github-...
1152
Catalin Cimpanu @campuscodi.risky.biz · 01/10/2026
It's here!!!!!!
static.klipy.com
Bsbc Happy and Excited Man
ALT: Bsbc Happy and Excited Man
1120
Reposted by Catalin Cimpanu
Jacob Öberg @profjacob.bsky.social · 30/09/2026
🚨🚨 @coe.int of Europe said yesterday that the #US formally notified it that it would leave the Group of States against Corruption, or #GRECO. Only two other countries have left GRECO before — #Russia and #Belarus. The fall of the #US on the world scene is striking. apnews.com/article/trum...
apnews.com
US withdraws from European anti-corruption panel in latest shift away from global groups
The Trump administration has withdrawn the United States from a top European anti-corruption watchdog.
53848588
Catalin Cimpanu @campuscodi.risky.biz · 30/09/2026
In an interview, Firefox's head says it like it is—Google deprecated its old extension system just to sabotage ad blockers arstechnica.com/gadgets/2026...
Text that reads: "So some examples—Chrome went through with their deprecation of Manifest V2. Manifest V2 is basically a much more powerful extension system. And people were like, well, why did this decrease? Why didn’t they just fix the security vulnerabilities in Manifest V2? And it’s very clearly because of ad blockers. That was the reason to deprecate it. Whereas, Mozilla, we’re not maximizing for profits, we’re maximizing for user experience and browser experience, and we want people to have powerful extensions. So we noticed when that shutoff moment happened, there was a moment where people said, do you want the power of an engine to be able to dictate how I control my experience? Because once Chromium shut it off, Edge shut it off, all the Chromium browsers then shut off Manifest V2 support. We still support it, and so we saw a big surge of actual users who started using us."
06321
Reposted by Catalin Cimpanu
Martin Matishak @martinmatishak.bsky.social · 30/09/2026
EXCLUSIVE: The Pentagon’s top cyber policy official last month instructed U.S. Cyber Command to take a series of quick, mandatory actions to better safeguard the well being of its personnel in the wake of recent suicide deaths. therecord.media/cyber-comman...
therecord.media
After reports on suicide deaths, Pentagon puts Cyber Command on notice
An August 31 memo obtained by Recorded Future News shows that the Pentagon's assistant secretary for cyber policy made specific demands of U.S. Cyber Command leadership after reports of a cluster of s...
8156
Reposted by Catalin Cimpanu
Dave Lee @davelee.me · 30/09/2026
Some wondered what Reddit being a public company would mean for the site and its community. This may be the biggest and most dramatic change yet
0125
Reposted by Catalin Cimpanu
The Moscow Times @themoscowtimes.com · 30/09/2026
Ponomaryov declined to confirm or deny whether he had been tipped off, but said that the allegations mark “a new level of escalation” by Russia.
themoscowtimes.com
Garry Kasparov and Ilya Ponomaryov Targeted in Alleged Assassination Plot in U.S., Report Says - The Moscow Times
A Russian intelligence network planned to assassinate exiled opposition figures Garry Kasparov and Ilya Ponomaryov in the United States this summer, the Spanish newspaper El Mundo reported Tuesday.
11522
Reposted by Catalin Cimpanu
Russia-Ukraine Daily News @rvps2001.bsky.social · 30/09/2026
🇧🇷🇫🇷🇩🇪 A French and German delegation travelled this month to Brasilia, where intelligence officials briefed them on alleged US and Russian interference before Brazil's election, according to sources and documents seen by Reuters. www.reuters.com/world/americ... #USA #Russia
reuters.com
Brazil briefed French, German officials on alleged US, Russian election interference
A French and German delegation travelled this month to Brasilia, where intelligence officials briefed them on alleged ​US and Russian interference before Brazil's election, according to sources and do...
093
Catalin Cimpanu @campuscodi.risky.biz · 30/09/2026
-Sanctions impact TLS certs in Iran, Russia -ShinyHunters member arrested in the Netherlands -Apple fixes iOS zero-day found by Meta -Citrix zero-days see mass exploitation within hours -Hackers exploit security product in Bitget hack P: risky.biz/RBNEWS617/ N: news.risky.biz/risky-bullet...
2113
Reposted by Catalin Cimpanu
Matt Novak @paleofuture.bsky.social · 30/09/2026
The White House accord on AI that was signed by all the big tech oligarchs today misspells United States as “Unites States.”
Document signed by Trump, Sundar Pichai
Google
Dario Amodei
Anthropic
Mark Zuckerberg
Meta

Greg Brockman
OpenAl

Elon Musk
XAI

Jensen Huang
nvidia “Unites States”
44967351843
Reposted by Catalin Cimpanu
Cathy @cathyby.bsky.social · 30/09/2026
I don't want personalised music. I want music that surprises me, music I couldn't have imagined, music that gets me outside my comfort zone and shows me new worlds. Why is this new world they're selling SO DULL?
4359
Reposted by Catalin Cimpanu
Dustin Volz @dustinvolz.bsky.social · 29/09/2026
New: OpenAI ignored warnings from its own employees and independent security researchers who said they needed better safety measures at the company. www.nytimes.com/2026/09/29/t...
nytimes.com
OpenAI Ignored Employees’ Warnings About Safely Testing A.I. Models (Gift Article)
Employees and security researchers said that they had cautioned the company on safely testing its A.I. models and strengthening its corporate infrastructure, but that OpenAI did not listen.
811761
Reposted by Catalin Cimpanu
eva (^_^)/ @eva.computer · 29/09/2026
what they don't say is that our noble cyber warfighters, oh whoops sorry i mean "cyber defenders", could also just use these same open models to report vulnerabilities without Anthropic gatekeeping everything for their own financial gain
In the first of these sessions, a researcher used GLM-5.3 on a sandboxed machine with a local Linux build of a popular web browser. Over the course of a day (and with limited human attention), GLM-5.3 found several previously unknown vulnerabilities in the browser’s JavaScript engine, and chained them together into a working exploit: a webpage that, when visited, reads arbitrary files from the visitor’s computer (shown in Figure 3). This exploit targets the Linux build of
210118
Reposted by Catalin Cimpanu
Colin Childs🍁 @phoul.bsky.social · 29/09/2026
This shit is such a plague.
Screenshot, GitHub is requesting your age range.
073
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Two recently patched Citrix NetScaler zero-days are seeing widespread mass-exploitation after detailed write-ups and POCs were published on Monday www.greynoise.io/blog/swarmin... x.com/LupovisDefen... mastodon.social/@GossiTheDog...
greynoise.io
Swarming Against Citrix 0-Day Exploitation
On 24 September 2026, a malicious cyber actor (MCA) used 149.104.78.141 to attempt zero-day exploitation against a Citrix NetScaler Gateway. At the time, there were no CVE-specific detections for the ...
2104
Reposted by Catalin Cimpanu
Microsoft Threat Intelligence @threatintel.microsoft.com · 29/09/2026
Since January 2026, Microsoft has observed Russian state actor Star Blizzard evolve their detection evasion capabilities through large-scale phishing campaigns, the use of accounts on compromised websites, and a novel malware delivery technique tracked as RedFlick. msft.it/63328act10
msft.it
Star Blizzard refines phishing and malware delivery with the RedFlick technique | Microsoft Security Blog
Since January 2026, Microsoft has observed Russian state threat actor Star Blizzard evolve their detection evasion capabilities through large-scale phishing campaigns, the use of accounts on compromised websites, and a novel malware delivery technique, tracked by Microsoft as “RedFlick”.
386
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
In a video, the FBI calls the suspect arrested in the Netherlands, Pepijn Van der Stap, aka Umbreon, as one of the ShinyHunters leaders It also encourages other ShinyHunters members to rat-out their friends or get arrested www.fbi.gov/video-reposi...
3148
Reposted by Catalin Cimpanu
Mat Piscatella @matpiscatella.bsky.social · 29/09/2026
It's almost harder to not own The Witcher 3 on one or multiple platforms at this point. The Remaster being a free upgrade is just such a cool thing for players when *looks at everything else happening in gaming right now*.
826519
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
The Chinese government has expanded its travel ban for AI executives and top engineers to also cover family members www.bloomberg.com/news/article...
bloomberg.com
China Broadens Travel Curbs to Encompass Family of Top AI Talent
China has expanded overseas travel restrictions for top AI professionals in private firms to include the families of key personnel, further tightening measures designed to prevent the outflow of criti...
143
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Kiteworks patches the vulnerability law enforcement warned it about last week and revokes its "take server offline" recommendation www.kiteworks.com/company/pres...
kiteworks.com
Kiteworks' Difficult and Unique Decision to Ensure Customer Data Protection Through Customer-Wide Shutdown Successfully Navigates Credible Threat
Kiteworks restored all customer systems after a precautionary shutdown, confirming no evidence of compromise from the credible threat. Read the full update.
041
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Cloudflare has open-sourced Forge, a tool for generating SDKs, CLIs, docs, libraries, and more blog.cloudflare.com/forge-open-s... github.com/cloudflare/f...
blog.cloudflare.com
Introducing Forge: the open source pipeline for generating SDKs, CLIs, docs, and more
Forge is a pluggable, open-source pipeline that runs in CI to generate SDKs, CLIs, and documentation directly from API definitions.
010
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
The UK's communications watchdog has launched an investigation into two telecom providers for failing to prevent their phone numbers from being misused by scammers www.ofcom.org.uk/phones-and-b...
ofcom.org.uk
Ofcom launches investigations into whether two telecoms companies failed to prevent misuse of their phone numbers by scammers
Ofcom has opened two separate investigations into telecoms providers, Vonage Business Limited and Voxbone SA, relating to concerns that telephone numbers held by the companies are being misused, inclu...
083
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Meta pulled down Brazilian President Lula's Facebook page and blocked his campaign from running political ads but allows paid ads calling for a military coup It also didn't take down any of the right-wing disinformation campaigns reported in August novaramedia.com/2026/09/28/f...
novaramedia.com
Facebook Blocks Lula’s Campaign Ads Just Days Before Brazil Election
Meta briefly disabled ads on the Facebook page of Brazil’s leftwing president on Friday – just days before he faces a far-right challenger in national elections.
110056
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
Two days until everyone becomes hyper aware of cybersecurity
2244
Catalin Cimpanu @campuscodi.risky.biz · 29/09/2026
The Pentagon has directed US Cyber Command to prioritize and deploy its cyber capabilities against foreign threat actors seeking to interfere in the US midterm elections www.war.gov/News/Release...
war.gov
170
Catalin Cimpanu @campuscodi.risky.biz · 28/09/2026
The Bitget hackers "exploited a zero-day in a third-party security product to obtain valid admin credentials, then deleted traces after injecting fraudulent withdrawal commands into wallet backend systems." www.theblock.co/news/regulat...
theblock.co
Bitget attacker tested risk controls with small transfers before $388 million theft, CEO says
Bitget's user protection fund will absorb the $388 million loss and be replenished to at least $300 million within a week, CEO Gracy Chen says.
154
Reposted by Catalin Cimpanu
Russia-Ukraine Daily News @rvps2001.bsky.social · 28/09/2026
🇲🇪 Russian-Israeli couple detained in #Montenegro with 19 suitcases, police find €1 million in cash and surveillance gear at their apartment. The couple were detained on Sept. 23 at Tivat airport while trying to fly to Tel Aviv. theins.press/en/news/297639 #Russia #Israel
theins.press
Russian-Israeli couple detained in Montenegro with 19 suitcases, police find €1 million in cash and surveillance gear at their apartment
A married couple with Russian and Israeli citizenship, Alexander Kruglyansky and Alexandra Kruglyanskaya, have been arrested in Montenegro, where they will be…
196