Andrea
banner
andreadata.bsky.social
Andrea
@andreadata.bsky.social
#InfoSec | DORA | Privacy and Ethics| Recovering Big 4 consultant | Galway, Ireland via London & SA | Navigating late-stage capitalism with cats 😻
Reposted by Andrea
New by me - although Citrix say there is no evidence of exploitation of CitrixBleed 2 vulnerability, they are wrong - it has been under active exploitation since mid June by an IP associated to a ransomware group, with multiple IP addresses now involved.

doublepulsar.com/citrixbleed-...
CitrixBleed 2 exploitation started mid-June — how to spot it
CitrixBleed 2 — CVE-2025–5777 — has been under active exploitation to hijack Netscaler sessions, bypassing MFA, globally for a month.
doublepulsar.com
July 8, 2025 at 2:46 PM
Reposted by Andrea
We apologize for the length of this post, but we felt it was important to share the full details with you.
April 17, 2025 at 8:20 PM
This
It’s a recalibration of economic control.

Oligarchs don’t live paycheck to paycheck. They have the capital to buy market dips and recoup faster, acquiring more assets at fire sale prices along the way.

When the dust finally settles, they will own more.

The rest of us will own less. A lot less.
April 7, 2025 at 5:02 PM
Reposted by Andrea
Chinese hacking is becoming bigger, better and stealthier

@euben.bsky.social and I on the beat

economist.com/china/2025/0...
Chinese hacking is becoming bigger, better and stealthier
Experts say it is the main shift in the cyber-threat landscape in a decade
economist.com
March 26, 2025 at 1:10 PM
Reposted by Andrea
Hi, I'm the guy who used to oversee the federal government's agency IT telecommunications contracts. This is extremely bad. There is absolutely no need for this. Not only is it a huge security exposure, but the simplest explanation for this is that it is meant to be a security exposure.
Elon Musk’s Starlink Expands Across White House Complex
Trump administration officials said the company donated the internet service, saying the gift had been vetted by the lawyer overseeing ethics issues in the White House Counsel’s Office.
www.nytimes.com
March 18, 2025 at 2:53 AM
Reposted by Andrea
They're called public records for a reason. Starting today, WIRED will *stop paywalling* articles that are primarily based on public records obtained through the Freedom of Information Act, becoming the first publication to partner with @freedom.press to offer this for our new coverage.
Wired is dropping paywalls for FOIA-based reporting. Others should follow
As the administration does its best to hide public records from the public, Wired magazine is stepping up to help stem the secrecy
freedom.press
March 18, 2025 at 1:11 PM
Reposted by Andrea
Thousands of people are ditching Tesla. Here’s one of them with a message you can see from space.

Location: Black Rock Sands, Wales, UK

Led By Donkeys is 100% funded by small donations.
March 17, 2025 at 6:15 PM
Toddler golf 🏆
lol
March 17, 2025 at 10:28 AM
Reposted by Andrea
Pokemon Go sale to a Saudi Arabian company owned by govt comes with six separate corporate announcement blogs, not one of them directly addressing what happens to 100 million people's location data, AR mapping capabilities, or the AI maps they have been training:

www.404media.co/saudi-arabia...
Saudi Arabia Buys Pokémon Go, and Probably All of Your Location Data
A company founded by the Saudi Arabian Public Investment Fund just bought the most popular AR video game of all time.
www.404media.co
March 12, 2025 at 4:45 PM
Reposted by Andrea
Privacy isn’t about hiding—it’s about trust and control over our own information. In her #SXSW 2025 Keynote, Signal President, @meredithmeredith.bsky.social breaks down why our privacy matters.
March 8, 2025 at 7:08 PM
👀
Garantex, a major Russian cashout point for dirty cryptocurrency of all kinds in recent years, is currently down with a law enforcement seizure notice.
March 6, 2025 at 6:08 PM
Reposted by Andrea
You can't just stop tracking "Russian cyber threats." Most threat actor groups aren't attributed with high confidence to any particular nation.

Imagine being an analyst tracking a group only to fear for your job as you get enough data for attribution...
www.theguardian.com/us-news/2025...
March 1, 2025 at 8:47 PM
All monitoring of cyber attacks from Russia has been stopped. This is bad #cybersecurity
March 1, 2025 at 8:51 PM
Reposted by Andrea
Me: everything on my computer works great. I'm very happy with my system exactly as it is.

Tech companies: But what if ... it was different
February 27, 2025 at 1:31 PM
Reposted by Andrea
NEW YORK (AP) — Roberta Flack, Grammy-winning singer known for 'Killing Me Softly With His Song' and other intimate hits, dies at 88.
February 24, 2025 at 3:25 PM
Reposted by Andrea
Time to evict AirBnB from your life, if you have't already.
Airbnb’s co-founder is joining Elon Musk’s DOGE
Gebbia, a close friend of Musk, has praised DOGE’s work and defended it against criticisms on social media
www.independent.co.uk
February 16, 2025 at 1:27 AM
Reposted by Andrea
February 16, 2025 at 8:52 AM
So security is not really their thing🙃
February 15, 2025 at 11:34 AM
Sorry what, which grifter are you??
February 15, 2025 at 11:31 AM
Reposted by Andrea
🧵"So this is how liberty dies..."

Trump’s first 3 weeks have been a relentless flood of actions. It's incredibly hard to keep up.

I’ve gone through 69 actions & mapped out the pattern - showing how they fall within 5 broad domains consistent with authoritarian states 1/9
February 13, 2025 at 11:38 AM
If there was ever any doubt about their intentions and the dystopian inevitability of what lies ahead, this confirms what we all feared. www.wired.com/story/elon-m...
Former Palantir and Elon Musk Associates Are Taking Over Key Government IT Roles
The chief information officers of at least three major government agencies have been replaced by Silicon Valley executives, including from Palantir and Elon Musk's SpaceX.
www.wired.com
February 13, 2025 at 1:28 PM
Privilege in cybersecurity terms is entirely different 👀
2. A memo distributed by NSA leadership to its staff says that on February 10, all NSA websites and internal network pages that contain banned words will be deleted.

This is the list of 27 banned words distributed to NSA staff:
February 10, 2025 at 6:45 PM
Reposted by Andrea
2. A memo distributed by NSA leadership to its staff says that on February 10, all NSA websites and internal network pages that contain banned words will be deleted.

This is the list of 27 banned words distributed to NSA staff:
February 10, 2025 at 2:20 PM
Reposted by Andrea
Oh my god, they just unintentionally wrecked a ton of red team playbooks at the NSA popular.info/p/the-nsas-b...
February 10, 2025 at 2:43 PM
Reposted by Andrea
⚡️ The historic moment of Estonia leaving the Russian-fed power grid.

On February 8, Lithuania, Latvia and Estonia left Russia and Belarus energy system. By the end of the day today, they will have joined the European grid.
February 9, 2025 at 9:37 AM