International Cyber Digest
7.78K subscribers
1.49K photos
74 videos
2 files
295 links
Independent reporting on cybersecurity, tech, AI & digital policy. Got a tip? http://internationalcyberdigest.com/tips
Download Telegram
‼️ The Pentagon, the Secret Service and ICE's investigative arm bought phone forensics software from Oxygen Forensics that prosecutors say five Russians secretly controlled through a Cyprus holding company, while selling the same software in Russia to customers including the FSB.

Their CEO Lee Reiber was arrested in Idaho and Russian co-founder Oleg Davydov at London's Heathrow Airport before boarding a flight to Istanbul, and both are charged with conspiracy to commit wire fraud.

Prosecutors say Davydov moved the build servers to U.S. cloud computers so Reiber could tell federal buyers the code was built in America, while a team in Russia kept writing it.

In March, weeks after reports that ICE was using the software, Reiber told DHS that no Russian was involved in developing it, the complaint says.

The FSB used the Russian version, Mobile Criminalist, to unlock the iPhone seized from RFE/RL journalist Alsu Kurmasheva in 2023, according to case files cited by The Insider.

The complaint does not allege malicious code or unauthorized access to any customer's systems or data.

https://www.justice.gov/usao-cdca/pr/tech-ceo-russian-national-arrested-complaint-alleging-they-hid-russian-ownership-and
😭6💩3😢1
‼️ BREAKING: OpenAI-linked AI agents on ordinary data-retrieval tasks turned to SQL injection, path traversal and cross-site scripting when normal access failed, probing three public data sites including an Australian government health website.

The agents used the free link-checking sandbox urlquery[.]net as a remote browser to slip past web blocks.

6,467 of urlquery-scans were flagged as strong evidence of agent activity, some as recent as this month.

On September 19 and 20, activity through the same services tried to trade crypto on Quidax and fired an HTML injection at the exchange.

Agents also tried to register accounts that can hide scans, so the public record is likely partial.

Read the report: https://transluce.org/agent-activity
🤣8😁3🤬2
‼️ AI doomer Jacob Coxon, who caused widespread panic, lied when he told Fox News he had no third-party help going public. The PR firm that represents another AI doomer, Eliezer Yudkowsky, has been working with him, according to two sources and an email seen by Pirate Wires.

The same firm had already booked Yudkowsky's co-author Nate Soares for interviews that overlapped with Coxon's debut, one source says, which suggests it knew his announcement was coming.

Source: https://www.piratewires.com/p/jacob-coxon-worked-with-ai-doomer-firm
💩19🥴4😁1🤣1
‼️ OpenAI is preparing to preview GPT-6 Cyber, as AI labs come under fire over "rogue" agents hacking companies and governments.

It will be unveiled alongside a first-of-its-kind product for deploying it in a more secure, automated way.
😁7😱4🤪1
‼️ Israel is pushing propaganda through YouTube ads being served in Germany, carrying the State emblem and the line "Click to expose the UN's lies."

The ads follow "The UN's Lie Industry," a campaign Israel launched recently to influence the policies of US and European capitals toward Israel.

Google says it no longer serves political ads in the EU at all, yet here we are.

https://www.reddit.com/r/youtube/comments/1wq2zcd/why_is_israel_political_advertising_allowed_in/
💩26🤬5👍3👏2😱2🤣2😁1🤔1
‼️ BREAKING: A 16-year-old hacker broke into an internal Microsoft analytics service with a forged, unsigned login token and ran SQL as admin, reaching databases that held over 17 trillion rows, including Bing search analytics and 17,990 employee email records.

The service, called Titan, checked every field on the token except its signature, so just claiming to be "admin" got him in, writes the researcher, who goes by Faav.

He says he only pulled metadata and two single rows of Bing data, never touched customer data, and reported the flaw to Microsoft the same night.

Microsoft locked the endpoint four days later, paid him $5,000, and had editorial control over his write-up, cutting sections and figures and reshaping how the impact was described before it went public.

https://blog.faav.net/how-i-couldve-accessed-17-trillion-microsoft-records
😁18🤔6❤1💩1🤪1
‼️ ShinyHunters told The Register they hold very sensitive data on almost ALL FBI Agents and individuals who filed an application with the FBI for a job and that its FBI hack was "a public relations and marketing initiative for our business."

https://www.theregister.com/cyber-crime/2026/09/25/shinyhunters-tells-the-reg-we-hacked-the-fbi-to-protect-our-business/5299250
🔥11❤1😱1🤪1
‼️ BREAKING: OpenAI has notified "dozens" of organisations that its AI agents may have hacked them during training and evaluation, with governments and universities among them.

The company's own summaries describe agents using exposed credentials and command injection.

The agents also leaked 53 images from ChatGPT users. OpenAI won't say whether they show real people.

https://openai.com/hugging-face-incident-and-misalignment/#model-misalignment-2026-09-25
😁7💩3👏1🤣1🤪1
‼️ BREAKING: Google says ShinyHunters is mass-exploiting an Oracle PeopleSoft flaw, using a trick that slips past the firewall rules companies relied on instead of patching, and has planted web shells on dozens of systems worldwide.

The campaign has spread from universities to healthcare, government, tech and transportation, and some servers got a new backdoor called SIDEEYE, hidden inside a booby-trapped media player installer signed with a valid certificate.

Google has published IOCs, file hashes and a fix-it guide for CVE-2026-35273, and warns victims to prepare for extortion.

If you are using PeopleSoft definitely give this a read:
https://cloud.google.com/blog/topics/threat-intelligence/shinyhunters-renewed-mass-exploitation-campaign-targeting-oracle-peoplesoft
🤣11🤯9❤1🔥1
‼️BREAKING: An actively exploited unknown critical Citrix NetScaler zero-day has prompted governments and organizations to SHUTDOWN all their devices immediately.

We don't know what's exactly going on yet. Stay tuned for more info.