Greg Otto
banner
gregotto.bsky.social
Greg Otto
@gregotto.bsky.social
@gregotto from twitter, now on bluesky. Editor-in-Chief at CyberScoop. Host of Safe Mode. Better with words than I am with code.
Pinned
Our reporting at @cyberscoop.bsky.social doesn’t happen without our sources’ insights. If you have information that you would like to share, scan the code below to contact me via signal:
Heads up, spyware watchers: Apple disclosed a zero-day Wednesday that the vendor warned was previously “exploited in an extremely sophisticated attack against specific targeted individuals." cyberscoop.com/apple-zero-d...
Apple discloses first actively exploited zero-day of 2026
The vendor said the memory-corruption defect was exploited to target specific people, but it did not describe the objectives of the attack.
cyberscoop.com
February 12, 2026 at 11:50 PM
Customs and Border Protection personnel — not U.S. troops — used military laser to shoot object near El Paso -- new from @dflawrence.bsky.social over on @defensescoop.bsky.social defensescoop.com/2026/02/11/e...
Customs and Border Protection personnel — not U.S. troops — used military laser to shoot object near El Paso
U.S. Customs and Border Protection personnel shot down an object with a military laser earlier this week near El Paso, Texas, according to multiple sources familiar with the situation.
defensescoop.com
February 11, 2026 at 10:57 PM
Your doctor is legally bound by HIPAA to protect your data. Your AI Doctor isn't. As OpenAI, Google, and Anthropic move into healthcare, a massive legal gray area is opening up. @derekbjohnson.bsky.social has more cyberscoop.com/ai-healthcar...
Your AI doctor doesn't have to follow the same privacy rules as your real one
AI apps are making their way into healthcare. It’s not clear that rigorous data security or privacy practices will be part of the package.
cyberscoop.com
February 11, 2026 at 7:56 PM
Skip the CMMC fluff and join Virtru at 1801 Pennsylvania Ave on Feb 18 for a "Defense Over Pretense" deep dive with C3PAOs from Plante Moran, Sentinel Blue, and FutureFeed. I'll be there!

Ending with a bourbon tasting. 🥃

Register: www.virtru.com/dcmmc-event
DCMMC - Registration Page
Join us at Virtru HQ for the inaugural DCmmc Event on February 18th during DC Cyberweek!
www.virtru.com
February 11, 2026 at 4:54 PM
House Republicans are advancing two major bills this week that would overhaul federal election administration: the SAVE America Act and the MEGA Act. cyberscoop.com/republicans-...
GOP Congress moves to shape election law in Trump’s image
The MEGA Act and SAVE Act would dramatically transform U.S. election laws in a quest to curb election fraud. Audits and experts say improprieties are extremely rare.
cyberscoop.com
February 11, 2026 at 1:30 PM
We apparently can't write stories like this fast enough
cyberscoop.com/ivanti-zero-...
February 10, 2026 at 6:44 PM
Just looked outside and saw it snowing and instantly asked AI “can humans hibernate for months like a bear”
February 6, 2026 at 8:55 PM
Reposted by Greg Otto
Updated this one after a chat with CISA's Nick Andersen.
February 5, 2026 at 7:24 PM
Reposted by Greg Otto
first thing I see in the WaPo delivery bag today 😔
February 5, 2026 at 1:44 PM
Reposted by Greg Otto
Whatever you think of the Washington Post at this moment, here's a chance to support the dedicated, hard-working journalists who were just laid off. If you have the means, your donation is most welcome. If you don't, a kind thought and maybe spreading the word to others is support enough 💙
Donate to Washington Post 2026 layoff fund, organized by Rachel Siegel
On Wednesday, Feb. 4, 2026, The Washington Post laid off hundreds of journalists. We ar… Rachel Siegel needs your support for Washington Post 2026 layoff fund
www.gofundme.com
February 4, 2026 at 3:58 PM
The mania around prediction markets is the most fascinating thing to me outside of what I professionally cover
Crazy story: A bank analyst published a report showing Kalshi users lose money even faster than sports gamblers, so Kalshi first tried to pressure the data provider to change their data and then accused them and the analyst of conspiring to extort them when that doesn’t work.
February 4, 2026 at 3:16 PM
Reposted by Greg Otto
February 3, 2026 at 10:26 PM
February 3, 2026 at 6:51 PM
Meet VECTOR: An unofficial soldier-made AI tool the Army suspended pending a ‘compliance review’ -- great story by @dflawrence.bsky.social defensescoop.com/2026/02/02/a...
Meet VECTOR: An unofficial soldier-made AI tool the Army suspended pending a ‘compliance review’
The Army suspended a soldier-made AI talent management tool called VECTOR, pending a compliance review of the application.
defensescoop.com
February 3, 2026 at 5:04 PM
Lord bring your bounty
February 3, 2026 at 2:28 PM
NEW: In the face of the Trump admin's offensive on the country's electoral process, @derekbjohnson.bsky.social talked to state election officials about CISA's lack of outreach and their own efforts to protect elections cyberscoop.com/cisa-electio...
As feds pull back, states look inward for election security support
Secretaries of State are scrambling to replace cybersecurity services once provided by CISA and other federal agencies.
cyberscoop.com
February 2, 2026 at 11:09 PM
looking for a photo for an election security today and, uh, i guess @patrick.risky.biz is running for office in germany???????????????
February 2, 2026 at 10:52 PM
NEW: @mattkapko.com spoke with researchers at Rapid7 (which released IoCs!!!!) about the notepad++ attack cyberscoop.com/china-espion...
China-based espionage group compromised Notepad++ for six months
The Chinese APT group Lotus Blossom intruded the tool’s internal systems to snoop on a limited set of users’ activities, according to researchers.
cyberscoop.com
February 2, 2026 at 8:50 PM
Just got word that DNI Tulsi Gabbard, AG Pam Bondi, and DHS Sec Kristi Noem have canceled their appearances at the Nat'l Association of Sec. of State conference in DC. Have to imagine its due to this cyberscoop.com/fulton-count...
Lawmakers, election officials blast Trump administration after Fulton County raid
State election officials pressed White House officials for their legal rationale and expressed concern about the impact of similar raids tied to the 2026 elections.
cyberscoop.com
January 30, 2026 at 8:03 PM
Also: Tulsi Gabbard, who was pictured at Wednesday's raid, and Kristi Noem, will be speaking at the conference tomorrow. Sources told @derekbjohnson.bsky.social they were puzzled as to why, particularly, Gabbard would be speaking
January 29, 2026 at 7:50 PM
@derekbjohnson.bsky.social is at the NASS conference today and it sounds like officials are all in agreement that what happened in Fulton County yesterday was ominous cyberscoop.com/fulton-count...
Lawmakers, election officials blast Trump administration after Fulton County raid
State election officials pressed White House officials for their legal rationale and expressed concern about the impact of similar raids tied to the 2026 elections.
cyberscoop.com
January 29, 2026 at 7:44 PM
Reposted by Greg Otto
I know I’m a homer but this was the most quintessentially McQuade story. Perfect idea, perfect execution. Dan was the only person on Earth who could’ve written this.
How Far Did Rocky Go in His Training Run in 'Rocky II'?
Rocky wasn't just a boxer. He was a marathoner.
www.phillymag.com
January 29, 2026 at 12:55 AM
I didn’t know Dan, but knew people that knew Dan, and they loved him as much as I loved reading him. RIP defector.com/dan-mcquade-...
Dan McQuade, 1983–2026 | Defector
Dan McQuade, our friend and colleague, died this week at the age of 43. He is survived by his wife and young son. At the end of 2024, Dan was diagnosed with neuroendocrine cancer. The news of his diag...
defector.com
January 29, 2026 at 1:04 AM
“As we’ve seen now for years, Fortinet and the ‘Fast & Furious’ franchise are apparently competing for the amount of sagas we can fit into one year. It’s unclear who will win.”

cyberscoop.com/ortinet-zero...
Fortinet’s latest zero-day vulnerability carries frustrating familiarities for customers
Fortinet warns CVE-2026-24858 is being actively exploited to bypass FortiCloud SSO authentication and gain privileged access across FortiOS and related products.
cyberscoop.com
January 28, 2026 at 10:34 PM
Looked at this post too fast and double-taked thinking FT had a column on Pig Destroyer
January 28, 2026 at 5:14 PM