Gate 15
banner
gate15.bsky.social
Gate 15
@gate15.bsky.social
Risk Management: Threat Intel & Analysis, Operations, Preparedness & Critical Infrastructure Security/Cybersecurity & Resilience
Today in the SUN we feature an article from @microsoft.com on a novel side-channel attack on remote language models.

Read more below:
www.microsoft.com/en-us/securi...

#cybersecurity
@andyjabbour.bsky.social
​​Whisper Leak: A novel side-channel attack on remote language models | Microsoft Security Blog
Understand the risks of encrypted AI traffic exposure and explore practical steps users and cloud providers can take to stay secure. Learn more.
www.microsoft.com
November 10, 2025 at 3:49 PM
Reposted by Gate 15
Looks like Manassas City in Virginia was hit with a ransomware attack.

cc @andyjabbour.bsky.social
Manassas city schools closed Monday due to cybersecurity incident
Manassas City Public Schools will be closed on Monday after the school system experienced a cybersecurity incident over the weekend, Superintendent Kevin Newman announced Sunday.
www.insidenova.com
November 9, 2025 at 11:34 PM
Reposted by Gate 15
'Its the same old story, same old song and dance...' - @officialaerosmith.bsky.social, anticipating shitty passwords back in 1974. cc @gate15.bsky.social
November 6, 2025 at 4:36 PM
Reposted by Gate 15
Decrypted: Midnight Ransomware

This blog dives into the technical anatomy of Midnight, its lineage from Babuk, and the critical indicators o

Read more: https://www.gendigital.com/blog/insights/research/midnight-ransomware
November 7, 2025 at 10:54 AM
Today in the SUN we feature an article from Infosecurity Magazine on Google Forecasting a Rise of Cyber-Physical Attacks Targeting Europe in 2026.

Read more below:
www.infosecurity-magazine.com/news/google-...

#cybersecurity
@andyjabbour.bsky.social
Google Forecasts Rise of Cyber-Physical Attacks Targeting Europe
Europe will likely face a combination of heightened cyber-physical attacks and information operations coming from nation-state groups in 2026
www.infosecurity-magazine.com
November 6, 2025 at 3:38 PM
Reposted by Gate 15
SonicWall's investigation into the September security breach that exposed customers' firewall configuration backup files concludes that state-sponsored hackers were behind the attack.
SonicWall says state-sponsored hackers behind security breach in September
SonicWall's investigation into the September security breach that exposed customers' firewall configuration backup files concludes that state-sponsored hackers were behind the attack.
www.bleepingcomputer.com
November 5, 2025 at 5:13 PM
Today in the SUN we feature an article from @theregister.com on M&S pegging their cyberattack cleanup costs at £136M as profits slump.

Read more below:
www.theregister.com/2025/11/05/m...

#cybersecurity
@andyjabbour.bsky.social
M&S pegs cyber cleanup costs at £136M, profits tumble
: Retailer's tech systems aren’t down anymore, but the same can’t be said for its rocky financials
www.theregister.com
November 5, 2025 at 4:41 PM
Reposted by Gate 15
ICYMI, new from @dell.bsky.social & @carolinehaskins.bsky.social in @wired.com: 'Criminals posing as US immigration officers have carried out robberies, kidnappings...sexual assaults in several states, warns an (FBI) bulletin issued last month...' www.wired.com/story/fbi-wa... @gate15.bsky.social
FBI Warns of Criminals Posing as ICE, Urges Agents to ID Themselves
In a bulletin to law enforcement agencies, the FBI said criminal impersonators are exploiting ICE’s image and urged nationwide coordination to distinguish real operations from fakes.
www.wired.com
November 5, 2025 at 1:01 PM
Reposted by Gate 15
DOJ: The US 'sanctioned two entities and eight individuals involved in supporting (North Korea's) illicit schemes to launder funds, including those derived from #cybercrime and information technology (IT) worker fraud.' www.state.gov/releases/off... @gate15.bsky.social @campuscodi.risky.biz
Disrupting Illicit DPRK Bankers and Institutions Laundering Cybercrime and IT Worker Funds - United States Department of State
Today, the United States sanctioned two entities and eight individuals involved in supporting the Democratic People’s Republic of Korea’s (DPRK) illicit schemes to launder funds, including those deriv...
www.state.gov
November 5, 2025 at 1:35 PM
Reposted by Gate 15
Failing to prepare for ransomware's a bitch. 'Marks & Spencer says its April cyberattack will cost around £136 million ($177.2 million) in total.' - via El Reg, @theregister.com www.theregister.com/2025/11/05/m... @gate15.bsky.social #cybersecurity #ransomware
M&S pegs cyber cleanup costs at £136M, profits tumble
: Retailer's tech systems aren’t down anymore, but the same can’t be said for its rocky financials
www.theregister.com
November 5, 2025 at 2:07 PM
Reposted by Gate 15
14 years old. 'Iraqi security forces have arrested a 14-year-old boy accused of running 16 organised online networks that lured children and teenagers into self-harm and suicide through the gaming platform Roblox.' gulfnews.com/world/mena/i... @gate15.bsky.social @campuscodi.risky.biz
Iraq arrests teenager over Roblox-linked suicides of 30 children
14-year-old boy arrested over Roblox-linked suicides
gulfnews.com
November 5, 2025 at 3:08 PM
Reposted by Gate 15
New from DarkOwl: 'Many of the far-right channels identified by DarkOwl remain active on the platform, which has allowed us to collect a substantial amount of data from the communications within the channels selected for this analysis.' www.darkowl.com/blog-content... @gate15.bsky.social #extremism
Threat Assessment in the Digital Age: Analyzing High-Volume Threatening Communication in Far-Right Telegram Channels
This study focuses on high-volume threatening communication within far-right Telegram channels.
www.darkowl.com
November 5, 2025 at 3:28 PM
Our latest edition of the Security Sprint is out now! In this episode, Dave and Andy discuss Cyber Resilience, Critical Infrastructure attacks, and more! Our podcast is available right now, go check it out!

#cybersecurity
@andyjabbour.bsky.social
gate15.global/weekly-secur...
Weekly Security Sprint EP 134. Cyber Resilience, Critical Infrastructure attacks, Alphabet soup, and offboarding concerns | Gate 15
gate15.global
November 4, 2025 at 4:46 PM
Today in the SUN we feature an article from @proofpoint.com on cybercriminals targeting trucking and logistics.

Read more below:
www.proofpoint.com/us/blog/thre...

#cybersecurity
@andyjabbour.bsky.social
Remote access, real cargo: cybercriminals targeting trucking and logistics | Proofpoint US
Key findings  Cybercriminals are compromising trucking and freight companies in elaborate attack chains to steal cargo freight.  Cargo theft is a multi-million-dollar criminal
www.proofpoint.com
November 4, 2025 at 4:44 PM
Reposted by Gate 15
Microsoft Incident Response – Detection and Response Team (DART) uncovered SesameOp, a new backdoor that uses the OpenAI Assistants API for command and control. DART shared the findings with OpenAI, who identified and disabled an API key and associated account. msft.it/63322tGbej
SesameOp: Novel backdoor uses OpenAI Assistants API for command and control | Microsoft Security Blog
Microsoft Incident Response - Detection and Response Team (DART) researchers uncovered a new backdoor that is notable for its novel use of the OpenAI Assistants Application Programming Interface (API) as a mechanism for command-and-control (C2) communications. Instead of relying on more traditional methods, the threat actor behind this backdoor abuses OpenAI as a C2 channel as a way to stealthily communicate and orchestrate malicious activities within the compromised environment. To do this, a component of the backdoor uses the OpenAI Assistants API as a storage or relay mechanism to fetch commands and run tasks for the threat actor.
msft.it
November 3, 2025 at 5:26 PM
Reposted by Gate 15
Curious that DOD won't release the manifesto, but good to see this AAR released. 'The report stated that a manifesto was...deemed classified...and “due to concerns regarding national security,” was not released to the public.' www.fox5vegas.com/2025/11/03/r... @gate15.bsky.social via @fox5vegas.com
Report details police investigation into Cybertruck explosion at Trump International Hotel Las Vegas
The Las Vegas Metropolitan Police Department released its 78-page after-action report on the Cybertruck explosion that took place at the Trump International Hotel in Las Vegas on Jan. 1.
www.fox5vegas.com
November 4, 2025 at 12:10 PM
Reposted by Gate 15
CISA releases Unmanned Aircraft System Detection Technology Guidance www.cisa.gov/resources-to... PDF: www.cisa.gov/sites/defaul... #drones #UAS #security @gate15.bsky.social
November 4, 2025 at 12:28 PM
Today in the SUN we feature an article form @therecordmedia.bsky.social on hackers attacking Britain’s drinking water suppliers.

Read more below:
therecord.media/britain-wate...

#cybersecurity
@andyjabbour.bsky.social
Hackers are attacking Britain’s drinking water suppliers
The U.K.'s water suppliers have reported five cyberattacks since January 2024, according to information reviewed by Recorded Future News. The incidents did not affect the safety of water supplies, but...
therecord.media
November 3, 2025 at 4:32 PM
Reposted by Gate 15
New from @peggylowe.bsky.social & @dmehro.bsky.social in @wired.com: Docs 'exposed in a major hack of the Kansas City (KS) Police Department (reveal) dramatic details of the misconduct that put officers on it, from incompetence to domestic violence' www.wired.com/story/hack-e... @gate15.bsky.social
Hack Exposes Kansas City’s Secret Police Misconduct List
A major breach of the Kansas City, Kansas, Police Department reveals, for the first time, a list of alleged officer misconduct including dishonesty, sexual harassment, excessive force, and false arres...
www.wired.com
November 3, 2025 at 12:16 PM
Reposted by Gate 15
November 3, 2025 at 12:22 PM
Today in the SUN we feature an article from Cyble on the surge of hacktivist attacks on critical infrastructure.

Read more below:
cyble.com/blog/hacktiv...

#cybersecurity
@andyjabbour.bsky.social
Hacktivist Attacks On Critical Infrastructure Surge In Q3 2025
Hacktivist attacks on industrial control systems nearly doubled in Q3 2025, with Russia-aligned groups targeting critical sectors across Europe and beyond.
cyble.com
October 31, 2025 at 3:50 PM