
README_
@README_Security
Followers
823
Following
169
Media
84
Statuses
2K
Infosec starts here. README is a new publication covering the issues, ideas and people shaping the future of cybersecurity. Published by @synack.
Washington, D.C.
Joined May 2021
In the latest edition of the Changelog newsletter, README senior editor Nathaniel Mott examines U.S. and Japanese agencies' warning that Chinese hackers are targeting routers, the latest in the Storm-0558 hack and 40 years of the GNU Project:
readme.synack.com
Welcome to Changelog for 9/28/23, published by Synack!
0
1
2
README has introduced a new series called Commit to bring you the latest #cybersecurity news every Monday and Tuesday. Check out the first Commit here and the second one here then keep an eye out for more next week!.
readme.synack.com
Hello! Welcome to Commit 09_19_2023. README senior editor Nathaniel Mott here with the latest infosec news, starting with ShroudedSnooper and ShadowDragon.
0
2
1
This week in README, @roblemos reported on the ongoing dangers caused by cyberattacks on the medical industry. "Until healthcare facilities are well protected," Lemos wrote, "their systems — and human lives — will continue to be at risk."
readme.synack.com
At least one person has died as what was arguably the direct result of a digital attack on a hospital, but cybercriminals seem unlikely to stop.
0
0
1
In case you missed it, @msbrumfield reported from the Billington Cyber Summit last week, where many of the attendees had both the offensive and defensive possibilities for generative AI on their minds:
readme.synack.com
At this year’s Billington Summit, experts highlighted the risks and benefits that AI poses for national security and the cybersecurity sector.
0
0
1
Costly business email compromise scams are getting an #AI boost. Don’t miss @RobLemos’s breakdown of how AI #technology and deep neural networks are upending the cyberthreat landscape:
readme.synack.com
Deepfakes, stolen email addresses and identity fraud drive continued gains in business email compromise attacks. How can defenders fend them off?
0
0
1
London’s Metropolitan Police Service has suffered a “staggering” security breach involving a third-party supplier that had access to names and pay scales of staff and officers, among other sensitive information, as @guardian reported:
theguardian.com
Incident reported to National Crime Agency as union says possible leak of data could do ‘incalculable damage’
0
0
1
From "spy chips" in weather equipment to a cyberespionage campaign targeting Taiwan, it's been another busy week for #hacking news linked to China. Don't miss the latest installment of @NathanielMott's Changelog #cybersecurity newsletter 🗞️:
readme.synack.com
Welcome to Changelog for 8/27/23, published by Synack! README senior editor Nathaniel Mott here with a quick housekeeping note: This will be the last installment of the newsletter for August.
0
0
2
For more on QR code security, check out @nathanielmott's report from last February, when Coinbase's Super Bowl ad prompted dire warnings about the dangers of scanning these ubiquitous squares:
readme.synack.com
A Super Bowl ad last week from cryptocurrency platform Coinbase featured a bouncing QR code that ruffled feathers in the cybersecurity community. Some experts say the risks of scanning it may have...
0
0
0
@msbrumfield @nathanielmott And, to top it all off, you can also check us out on @LinkedIn. (Don't worry: We'll continue to post on the social platform we all still know as Twitter.)
0
0
1
We've also published @msbrumfield's report on Dark Caracal, a surprisingly inept yet curiously effective cyber mercenary group: And, of course, we recapped the week's news in the most recent Changelog newsletter via @nathanielmott:
readme.synack.com
U.S. cyber board’s Lapsus$ postmortem, CPU vulns and remembering Vim’s creator
1
0
1
🗞️ README has moved to a new site, boasting an updated design and the same committed #cybersecurity coverage you've come to expect! If you've recovered from Hacker Summer Camp, don't miss our reporting on this year's #BHUSA and #DEFCON31 conferences ✍️:
1
2
2
This report follows the claim that the U.S. hacked an earthquake monitoring center in Wuhan in late July, though it's unclear what the Chinese government believes would have motivated that hack, or how it could further U.S. interests.
reuters.com
An earthquake monitoring centre in central China's Wuhan suffered a cyberattack from overseas hackers, local authorities said on Wednesday.
0
0
0
China's state-run news outlet Global Times said today "Chinese authorities will publicly disclose a highly secretive global reconnaissance system of the US government, which poses a serious security threat to China's national security and world peace.".
globaltimes.cn
New progress has been made on an investigation into a cyberattack incident targeting the Wuhan Earthquake Monitoring Center affiliated to the city’s Emergency Management Bureau, after a joint...
1
0
1
The CSRB, meanwhile, was founded in response to the SolarWinds hack of 2020. (Although the group has yet to study that particular campaign ). Its first report was on the expected fallout of the Log4Shell vulnerabilities in Log4j:
bloomberg.com
NTSB-style group lacks the same authority.
0
1
0
The Cyber Safety Review Board today released its second report, "Review Of The Attacks Associated with Lapsus$ And Related Threat Groups," which the Department of Homeland Security-backed group started to study in December 2022:
cisa.gov
1
0
0