‼️ BREAKING: A 16-year-old is suspected of running the KillSec ransomware group, Europol says.
Police seized KillSec's leak site, securing at least 110TB of data. Three suspects were provisionally arrested and eight properties searched in Greece, Romania, Spain and the UK.
The group is linked to ~1,000 suspected attacks worldwide.
https://www.europol.europa.eu/media-press/newsroom/news/teenager-suspected-of-leading-killsec-ransomware-group-law-enforcement-seizes-servers-and-leak-site
Police seized KillSec's leak site, securing at least 110TB of data. Three suspects were provisionally arrested and eight properties searched in Greece, Romania, Spain and the UK.
The group is linked to ~1,000 suspected attacks worldwide.
https://www.europol.europa.eu/media-press/newsroom/news/teenager-suspected-of-leading-killsec-ransomware-group-law-enforcement-seizes-servers-and-leak-site
😭24🤯4😁3🙏2❤1
‼️ Amnesty International has linked the 2021 Pegasus hacks of Spain's defence and interior ministers to Morocco.
A Spanish court order names the Apple account that compromised Margarita Robles' and Fernando Grande-Marlaska's phones with zero-click iMessage exploits during that year's diplomatic crisis with Rabat. It was also used against an exiled Moroccan journalist and a French pro-Sahrawi activist. NSO's own documents show every client gets its own attack accounts.
Amnesty says Morocco's DGST also selected almost 13,000 numbers as potential Pegasus targets and planted spyware on phones sold to activists in shops.
Morocco's intelligence service, the DGST, aimed Pegasus at civil society from the start, Amnesty International has found.
Of 103 people Amnesty identified among numbers entered into the DGST's system from September to December 2017, 65 were human rights defenders, journalists, lawyers or academics. Just 25 were politicians or officials.
NSO says Pegasus is licensed "for the sole purpose of preventing and investigating terror and serious crime."
https://securitylab.amnesty.org/latest/2026/10/we-start-with-the-verdict-inside-moroccos-surveillance-machine/
A Spanish court order names the Apple account that compromised Margarita Robles' and Fernando Grande-Marlaska's phones with zero-click iMessage exploits during that year's diplomatic crisis with Rabat. It was also used against an exiled Moroccan journalist and a French pro-Sahrawi activist. NSO's own documents show every client gets its own attack accounts.
Amnesty says Morocco's DGST also selected almost 13,000 numbers as potential Pegasus targets and planted spyware on phones sold to activists in shops.
Morocco's intelligence service, the DGST, aimed Pegasus at civil society from the start, Amnesty International has found.
Of 103 people Amnesty identified among numbers entered into the DGST's system from September to December 2017, 65 were human rights defenders, journalists, lawyers or academics. Just 25 were politicians or officials.
NSO says Pegasus is licensed "for the sole purpose of preventing and investigating terror and serious crime."
https://securitylab.amnesty.org/latest/2026/10/we-start-with-the-verdict-inside-moroccos-surveillance-machine/
🤯6😁4❤3
❗️ 404 Media's "leaked video" on police beating Apple's 72-hour iPhone inactivity reboot shows a capability Magnet Forensics has openly advertised for more than a year and a half.
No leak required: the phone-cracking firm markets the tool in question that disables the reboot timer and keeps seized iPhones easier to crack, with police praising it on its product page.
Its own blog even lists the evidence iOS auto-deletes, from cached locations to recently deleted photos and iMessages, and says it can preserve iPhone data "indefinitely."
https://www.magnetforensics.com/blog/the-importance-of-preservation-for-ios-devices/
No leak required: the phone-cracking firm markets the tool in question that disables the reboot timer and keeps seized iPhones easier to crack, with police praising it on its product page.
Its own blog even lists the evidence iOS auto-deletes, from cached locations to recently deleted photos and iMessages, and says it can preserve iPhone data "indefinitely."
https://www.magnetforensics.com/blog/the-importance-of-preservation-for-ios-devices/
🔥8😱8😭3
❗️ A threat actor breached a Polish invoicing platform used by more than 600,000 businesses called Fakturownia, by exploiting a vulnerability which led to access to its servers.
Potentially exposing password hashes, bank account details, authentication and integration tokens, and invoices issued before 2023.
The attacker claims to have taken 6 TB of invoices.
https://zaufanatrzeciastrona.pl/post/nowe-wlamanie-fingerprinta-ofiara-firma-fakturowniapl/
Potentially exposing password hashes, bank account details, authentication and integration tokens, and invoices issued before 2023.
The attacker claims to have taken 6 TB of invoices.
https://zaufanatrzeciastrona.pl/post/nowe-wlamanie-fingerprinta-ofiara-firma-fakturowniapl/
😁8❤1🔥1
❗️ An Airbnb host used an AI-generated photo of an overflowing toilet to demand $1,700 in damages from a guest.
The image carries Google's invisible SynthID watermark, flagged by Gemini's own checker.
The guest says they never even used toilet paper during the stay.
https://www.reddit.com/r/isthisAI/comments/1wt6sb0/photo_of_a_toilet_airbnb_sent_in_justification/
The image carries Google's invisible SynthID watermark, flagged by Gemini's own checker.
The guest says they never even used toilet paper during the stay.
https://www.reddit.com/r/isthisAI/comments/1wt6sb0/photo_of_a_toilet_airbnb_sent_in_justification/
🤣41💩7🤬1
Google launched one of its AI chips into orbit for the first time today, and says data centers in space will only work if Starship flies about 1,800 times in 10 years.
A Planet Labs-built satellite carried the Google TPU up on a SpaceX rocket, the first hardware test for Project Suncatcher, its plan for data centers in space.
A Planet Labs-built satellite carried the Google TPU up on a SpaceX rocket, the first hardware test for Project Suncatcher, its plan for data centers in space.
🔥13💩5😁3👏1🤣1
❗️ Meet the 25-year-old Dutch national arrested in Manchester who is allegedly the negotiator for ransomware group KillSec.
Turns out he used to be fat and has since lost some weight.
US prosecutors name him as Fouad E., alias "Archduke", who allegedly phoned a victim as KillSec's representative and now faces extradition to Puerto Rico and up to 10 years in prison.
KillSec's suspected leader, arrested in Spain, is 16. 🤯
Turns out he used to be fat and has since lost some weight.
US prosecutors name him as Fouad E., alias "Archduke", who allegedly phoned a victim as KillSec's representative and now faces extradition to Puerto Rico and up to 10 years in prison.
KillSec's suspected leader, arrested in Spain, is 16. 🤯
😁17🔥2🤣2💩1
The alleged KillSec ransomware negotiator has a day job, and it's startup CEO.
His bio says he has dedicated his career to helping businesses across Oman and the Gulf "embrace digital transformation".
He allegedly phoned one victim as KillSec's representative, which is certainly a transformation.
The bio promises AI-driven solutions that help companies overcome challenges and unlock new opportunities, and unlocking things is famously where ransomware groups make their money.
It closes by inviting everyone to build the future together, and his own now includes possible extradition to Puerto Rico and up to 10 years in prison.
His bio says he has dedicated his career to helping businesses across Oman and the Gulf "embrace digital transformation".
He allegedly phoned one victim as KillSec's representative, which is certainly a transformation.
The bio promises AI-driven solutions that help companies overcome challenges and unlock new opportunities, and unlocking things is famously where ransomware groups make their money.
It closes by inviting everyone to build the future together, and his own now includes possible extradition to Puerto Rico and up to 10 years in prison.
🤣29😭3💩2
‼️ BREAKING: Microsoft's official X account with over 13 million followers was hijacked to boost a fake Clippy account tied to a crypto scam.
Microsoft wrote an apology threatening legal action, then deleted that post too.
The account followed and reposted the impersonator and swapped its profile picture for Clippy.
Microsoft wrote an apology threatening legal action, then deleted that post too.
The account followed and reposted the impersonator and swapped its profile picture for Clippy.
🤣49❤4🔥2😱2
🚨 BREAKING: Finland's cyber agency reports several intrusions through the Citrix NetScaler zero-days.
NCSC-FI has contacted the owners of hundreds of NetScaler instances in Finland and warns that patching alone will not remove an attacker who is already inside.
CVE-2026-88771 allows command execution without authentication.
https://www.kyberturvallisuuskeskus.fi/en/alerts/critical-vulnerabilities-citrix-netscaler-adc-and-netscaler-gateway-products-several-intrusions-finland
NCSC-FI has contacted the owners of hundreds of NetScaler instances in Finland and warns that patching alone will not remove an attacker who is already inside.
CVE-2026-88771 allows command execution without authentication.
https://www.kyberturvallisuuskeskus.fi/en/alerts/critical-vulnerabilities-citrix-netscaler-adc-and-netscaler-gateway-products-several-intrusions-finland
🔥6🤔2👏1