Profile avatar
probably.live
Cyber for orgs, threat Intel and research.
284 posts 506 followers 999 following
Prolific Poster
Conversation Starter

Finally: 2025 will be the year of the Linux Desktop.

If you’re familiar with iOS jailbreaking, then you’ve likely heard of the Pangu Team. 1y after the i-SOON leaks, my latest for @nattothoughts.bsky.social examines Pangu’s ties to i-SOON and the links b/w elite vuln researchers and govt-contracted hackers nattothoughts.substack.com/p/the-pangu-...

there is that theory that the rise of the novel was the spark that ignited the global rise of notions of human rights news.harvard.edu/gazette/stor...

This scandal is emerging in Italy but there is reason to pay attention in the US, where the Trump administration now (through an ICE contract we know was agreed under Biden, status currently unknown) very likely has access to this military-grade spyware. www.theguardian.com/technology/2...

It's called checks & balances, but there can't be no balances if there ain't no checks, and nobody writes checks no more.

SCOOP: We have full details of changes Thomas Shedd, a former Tesla engineer, is asking government coders to help the administration with. This includes using login.gov as a fraud surveillance system against Americans, which employees told him is an "illegal task" www.404media.co/things-are-g...

NEW: Spyware maker Paragon Solutions sent us a statement confirming the U.S. government "and its allies" are customers. Paragon told us customers “explicitly prohibit the illicit targeting of journalists and other civil society figures.” Lots of questions remain. techcrunch.com/2025/02/04/s...

As digital privacy advocates have explained for years, every back door you create for yourself is a front door for an attacker. There's no chance code cooked up in a week by Musk acolytes is secure. The question is when, not if, the Treasury will be compromised by hostiles beyond Musk himself.

A few notes: • Signal cannot protect you from an betraying chat partner • Signal cannot protect you from device management spyware • Signal cannot protect you from your own device • Signal cannot protect you from your chat partner's device • Signal offers PRIVACY not ANONYMITY

it’s like russia in the 90s - the oligarchs who make deals and/or good relationships w the security services and vory win … or at least survive

It's really dystopian to see how digitizing everything, which was supposed to keep records safe, is instead being used to quickly purge information. We should have known I guess, but cripes.

Meta says almost 100 journalists and activists were targeted with spyware from Israeli company Paragon Solutions using a zero-click vuln in WhatsApp. If you use an iPhone, enabling Lockdown Mode prevents this from working. www.theguardian.com/technology/2...

when y'all piss me off i go over to the Discover tab and pretend those are my friends

NEW, by me: GPS tracking firm AngelSense exposed the personal information and precise location data of its users to the open internet, security researchers say. AngelSense confirmed it fixed the exposed server, which was unprotected without a password. techcrunch.com/2025/01/30/a...

Was literally talking to the union representing federal air traffic controllers earlier today about how there’s already a major shortage of air traffic controllers and the resignation offers they all just got from OPM could seriously endanger public safety.

Sweden seizes ship suspected of Baltic Sea cable sabotage via (who else) @alexmartin.bsky.social & @therecordmedia.bsky.social

Always do this prior to going through a security checkpoint or interacting with law enforcement

I’ve focused on security for at-risk civil society groups for over a decade now (🙀), including human rights defenders, lawyers, and journalists. I’m available for collaboration, consulting, and presenting, so please get in touch if you’d like to work together!

New: An Israeli private eye is being sought by U.S. authorities over charges that he helped an Exxon lobbyist — the Washington-based DCI Group — steal emails from environmental activists, his lawyer said in a legal filing made public today. www.reuters.com/world/israel...

Great research here! "PlushDaemon" 👀

Silk Road was more than a drug market. Ulbricht was also convicted of conspiracy to traffic false identity documents. Which seems like a big deal, if you’re a party interested in voter ID, human trafficking and immigration.

The last few weeks have really highlighted just how fragile corporate social media is, and just how beholden to political power it is. To build any sort of ground-up power we must continue to invest in decentralized alternatives that are resistant to intervention www.404media.co/decentralize...

This is pretty remarkable. And frankly I was really looking forward to seeing the thorough review of Salt Typhoon. If you were on the CSRB or were familiar with its work and want the public to know where things stood, I'm committed to source protection and my signal is in my bio.

Here we go. Dark times ahead.

sadly not very likely. the big increase in post-2013 censorship was in large part because they got seriously paranoid about the influence of US culture, and, well, all that machinery (largely at the level of the apps themseles) is still in place.

Scary stuff. I have no idea whether any of this also affects users in the EU, as it seems utterly divorced from what I 𝘵𝘩𝘪𝘯𝘬 the GDPR mandates

Incredible reporting from @lorenzofb.bsky.social on how Barcelona became an unlikely hub for spyware startups and exploit makers. Critics say spyware makers on Europe's front door is a problem, given human rights abuses involving spyware deployed against EU citizens. techcrunch.com/2025/01/13/h...

1/ This goes beyond a criticism of the EU Digital Services Act (on the grounds that the US First Amendment should apply worldwide). It argues the EU should not apply its *competition* law to US tech companies on the EU market either. A rejection of the very idea of the EU regulation of its market.

the way these people exploit disasters for geopolitical rivalry and culture warring is disgusting. that Chinese nationalists and the US far right use the opportunity to spread the same misinformation tells you enough about their politics.

The convention must include mandatory dual criminality clauses, respect human rights safeguards, establishing that no cooperation will be provided in cases that could result in violations of fundamental rights.

Zuckerberg crawled to Xi Jinping so abjectly that *Xi*, a man who is surrounded by daily sycophancy, found it weird and basically told him to have some self-respect when he asked him to *name his child*.

vibe check

Great reporting. Full list of apps is available here archive.is/nF4Iz

I wonder if this is the civil liberties "reform" she's talking about. reason.com/2024/04/19/h...