@jtk thank you, I appreciate you saying that.
Lorenzo Franceschi-Bicchierai
Posts
-
NEW: As it turns out, sometimes attribution ain’t that hard. -
NEW: As it turns out, sometimes attribution ain’t that hard.NEW: As it turns out, sometimes attribution ain’t that hard.
After Kaspersky researchers revealed that some government is using Memento Labs’ spyware called Dante, I reached out to the spyware maker’s CEO Paolo Lezzi.
He told me: yep, it was our outdated Windows malware.
Lezzi also told me more about the state of Memento Labs, five years after death of Hacking Team.
-
Kaspersky researchers love attribution.Kaspersky researchers love attribution.
https://securelist.com/forumtroll-apt-hacking-team-dante-spyware/117851/
-
In these dark times, let's remember that there were better days.In these dark times, let's remember that there were better days.
Fun times when the NSA was so worried about Furbys, and the recording device embedded in them, that it banned them from its premises.
https://web.archive.org/web/20060826021319/http://www.cnn.com/US/9901/13/nsa.furby.ban.01/
-
SCOOP: Spyware maker NSO Group confirmed to us that the company has been acquired by a U.S. investment group.SCOOP: Spyware maker NSO Group confirmed to us that the company has been acquired by a U.S. investment group.
NSO's spokesperson said "has invested tens of millions of dollars in the company and has acquired controlling ownership," but declined to say who is behind the investment.
Israeli media said it's Hollywood producer and financier Robert Simonds.
https://techcrunch.com/2025/10/10/spyware-maker-nso-group-confirms-acquisition-by-us-investors/
-
NEW: A prominent Italian businessman was reportedly targeted with Paragon spyware, widening the surveillance scandal in Italy, according to local news reports.NEW: A prominent Italian businessman was reportedly targeted with Paragon spyware, widening the surveillance scandal in Italy, according to local news reports.
-
Here's an updated list of all the technology ICE has in its arsenal to mass deport people.Here's an updated list of all the technology ICE has in its arsenal to mass deport people.
We've added new sections on cell-site simulators and cellphone location data.
https://techcrunch.com/2025/10/08/heres-the-tech-powering-ices-deportation-crackdown/
-
NEW: The predominantly English-speaking amorphous hacking group known as Scattered Spider/Lapsus$/etc has launched a website to publicize their victims and extort them.NEW: The predominantly English-speaking amorphous hacking group known as Scattered Spider/Lapsus$/etc has launched a website to publicize their victims and extort them.
This is the first time the group has such a public presence, indicating an escalation in their strategy.
-
NEW: Chinese tech giant Anker offered users of its popular Eufy cameras to upload videos of package and car thefts to train its AI systems in exchange for moneyNEW: Chinese tech giant Anker offered users of its popular Eufy cameras to upload videos of package and car thefts to train its AI systems in exchange for money.
At least a hundred users participated, but the company did not tell us the final numbers of the campaign. Eufy still has a similar initiative that does not offer money but other rewards.
-
NEW: The U.K. government is reportedly once again requesting Apple build a backdoor so government officials can access end-to-end encrypted iCloud backups in the countryNEW: The U.K. government is reportedly once again requesting Apple build a backdoor so government officials can access end-to-end encrypted iCloud backups in the country.
Last time this happened, Apple disabled iCloud's Advanced Data Protection, the opt-in feature that lets users encypt cloud backups.
-
NEW: A cyberattack has forced Japan's beer maker Asahi to suspend operations at its plants in the country since MondayNEW: A cyberattack has forced Japan's beer maker Asahi to suspend operations at its plants in the country since Monday.
For now, the company said it's experiencing a "system failure" but did not confirm "leakage of personal information or customer data to external parties."
https://techcrunch.com/2025/09/30/japans-beer-making-giant-asahi-stops-production-after-cyberattack/
-
Do I have anyone who follows me and works for PWC in cyber?Do I have anyone who follows me and works for PWC in cyber?
-
Me planning my next trip to visit family in Meloni's Italy.Me planning my next trip to visit family in Meloni's Italy.
-
I think the FBI should investigate Microsoft over Outlook, there is no way that the design, UI, and UX don't break several laws.I think the FBI should investigate Microsoft over Outlook, there is no way that the design, UI, and UX don't break several laws.
-
NEW: The U.K.'s National Crime Agency announced an arrest linked to the ransomware attack against Collins Aerospace, which caused delays and disruptions at several European airports over the weekendNEW: The U.K.'s National Crime Agency announced an arrest linked to the ransomware attack against Collins Aerospace, which caused delays and disruptions at several European airports over the weekend.
The unnamed man is out on bail, and the agency said the investigation is “in its early stages and remains ongoing.”
-
NEW: Jaguar Land Rover announced today that it will keep its factories shutdown for yet another week, at least until October 1, due to a cyberattack.NEW: Jaguar Land Rover announced today that it will keep its factories shutdown for yet another week, at least until October 1, due to a cyberattack.
The company has still not committed to a date to resume operations.
https://techcrunch.com/2025/09/23/jaguar-land-rover-to-pause-production-until-next-week-at-least/
-
NEW: European airports are still facing disruptions for the fourth day in a row after the ransomware attack against check-in systems provider Collins Aerospace.NEW: European airports are still facing disruptions for the fourth day in a row after the ransomware attack against check-in systems provider Collins Aerospace.
According to FlightRadar24, airports in Berlin, Brussels, Dublin, and London are seeing the vast majority of flights delayed as of this writing, with delays ranging between 26 minutes and an hour as of 4 p.m. CEST.
-
NEW: EU cybersecurity agency ENISA says the airport disruptions across Europe this weekend were caused by a ransomware attackNEW: EU cybersecurity agency ENISA says the airport disruptions across Europe this weekend were caused by a ransomware attack.
The attack targeted Collins Aerospace and its check-in system called Muse.
-
NEW: Jaguar Land Rover says it will pause production for another week due to a cyberattack, which will make it more than three weeks in total since it disclosed the hack.NEW: Jaguar Land Rover says it will pause production for another week due to a cyberattack, which will make it more than three weeks in total since it disclosed the hack.
British media estimate the company is losing millions of pounds every week because of the shutdown. And suppliers are worried about going into bankruptcy.