
jon greig
@jgreigj
Followers
3K
Following
529K
Media
400
Statuses
28K
@TheRecord_Media cybersecurity reporter. formerly @zdnet @cambodiadaily @haitiantimes_ — send tips to [email protected] or signal: jgreig.51
New York, NY
Joined November 2012
SCOOP: Hackers breached CISA's systems last month through Ivanti vulnerabilities, forcing the agency to take its IP Gateway and Chemical Security Assessment Tool (CSAT) offline. The agency wouldn't say who was behind the attack or if data was stolen.
4
72
179
RT @CyberScamWatch: CAMBODIA: Police raid property in Borey Highland, Sen Sok District, Phnom Penh. 24 Chinese and 4 Japanese arrested. Amo….
0
12
0
RT @0x534c: #ToolShell #Warlock 🚨 KQLWizard intel update: Storm-2603 exploited CVE-2025-53770 on 4 internet-facing SharePoint servers on 22….
0
27
0
RT @TheRecord_Media: California’s privacy agency on Thursday greenlit controversial new rules dictating how to regulate AI used by the priv….
therecord.media
The new regulations have been controversial because the California Privacy Protection Agency (CPPA) overhauled them to be significantly weaker than the originally-proposed rules.
0
1
0
RT @UjlakiMarci: 🟥 CVE-2025-41240, CVSS: 10.0 (#Critical, #Highest). Bitnami Helm charts, #VMware. Vulnerability allows unauthenticated….
0
8
0
RT @Comparitech: ‼️Town of North Providence 🇺🇸confirms data breach of 1.8K people following a cyber attack in May '25. #Ransomware gang Me….
0
1
0
RT @Shadowserver: Thanks to a scan conducted by @leak_ix, we have shared SharePoint IPs confirmed vulnerable to CVE-2025-53770, CVE-2025-5….
0
19
0
RT @HunterMapping: 🚨Alert🚨 :CVE-2025-2775&CVE-2025-2776&CVE-2025-2777 : Three Unauthenticated XML External Entity (XXE) Vulnerabilities in….
0
24
0
RT @a_greenberg: Basic web bugs exposed virtually all user data held by Airportr, a premium luggage pickup service used by 10 airlines. Dat….
wired.com
Security flaws in Airportr, a door-to-door luggage checking service used by 10 airlines, let hackers access user data and even gain privileges that would have let them redirect or steal luggage.
0
21
0
RT @TheRecord_Media: Trump's nominee to lead @CISAgov got a mostly warm reception from the Senate panel tasked with advancing his nominatio….
therecord.media
Plankey pledged to ask Department of Homeland Security (DHS) Secretary Kristi Noem for more funding if he arrives at CISA and determines a larger budget is needed to effectively steer the agency.
0
1
0
Microsoft said the Chinese hackers are using the Warlock ransomware as part of the #ToolShell campaign.
therecord.media
Netherlands-based cybersecurity firm Eye Security told Reuters and Bloomberg that hackers have successfully breached at least 400 governments and businesses around the world.
1
0
1
RT @GreyNoiseIO: A vulnerability in a Signal-based enterprise messaging app could expose plaintext usernames and passwords via an unauthent….
0
5
0
RT @CyversAlerts: 🚨ALERT🚨Our system has detected multiple suspicious transactions with an estimated loss of more than $12M involving @_WOO_….
0
15
0
RT @CISACyber: ⚠️ @CISAgov issued six NEW public #ICS advisories. These advisories provide info about current security issues, vulnerabilit….
0
13
0
RT @TheRecord_Media: China-linked hackers are now deploying a relatively new strain of ransomware in attacks that exploit Microsoft SharePo….
therecord.media
Netherlands-based cybersecurity firm Eye Security told Reuters and Bloomberg that hackers have successfully breached at least 400 governments and businesses around the world.
0
6
0
RT @GreyNoiseIO: An unexpected cluster of malicious IPs in a remote U.S. town led GreyNoise researchers to uncover a 500+ device botnet. Fu….
greynoise.io
A spike in botnet traffic from a single utility in a rural part of New Mexico led to the discovery of a global botnet. Explore how human-led, AI-powered analysis exposed compromised devices, uncove...
0
18
0
RT @S0ufi4n3: Exploit module for Microsoft SharePoint ToolPane Unauthenticated RCE (CVE-2025-53770 and CVE-2025-53771). .
github.com
Overview This (draft) pull request adds an exploit module for the recent unauthenticated RCE exploit chain affecting Microsoft SharePoint Server via CVE-2025-53770 and CVE-2025-53771 (which are pat...
0
3
0
RT @TheRecord_Media: The FBI released alerts about subgroups of the hacking collective known as 'the Com,' warning of cryptocurrency theft,….
therecord.media
The agency released three bulletins about the group — which is composed primarily of English-speaking minors who focus on attacks like ransomware, swatting and DDoS.
0
7
0