International Cyber Digest
7.04K subscribers
1.29K photos
68 videos
2 files
243 links
Independent reporting on cybersecurity, tech, AI & digital policy. Got a tip? http://internationalcyberdigest.com/tips
Download Telegram
This is a big one:

🚨‼️ BREAKING: The source code of Swedish e-government services from CGI's "E-plattform" has been leaked.

A threat actor sent us samples.

Our initial analysis shows the breached repositories originate from an internal CGI GitLab instance. The leak exposes architecture, microservices, and configurations for Sweden's digital public infrastructure.

Leaked files:
▪️ Database passwords
▪️ Email/SMTP passwords
▪️ Keystore/truststore passwords & key passwords
▪️ SHS credentials / keystore details
▪️ Signe portal credentials/config
▪️ Embedded Git credentials
▪️ CGI staff data

Key components exposed:
▪️ Mina Engagemang: Frontend and backend code (me-portals) for citizen-facing apps and case management.
▪️ Signe & e-ID: E-signature portal configs, SAML/OpenSAML metadata (keyservice), and signing workflow templates.
▪️ Företrädarregister: Authorization registry services (foreg) governing who can legally represent organizations.
▪️ SHS Integration: Routing and config files (eintegration3) for secure inter-agency data exchange.

The leaked repos contain .git/config files with embedded credentials, severely elevating the risk of lateral movement or further supply chain compromise.

A major exposure of the trust anchors and identity routing powering Sweden's digital state.

This breach was done by threat actor "bytetobreach".
2👍2🤡1
❗️This is sick: ShinyHunters have allegedly exfiltrated 1 PETABYTE of data from a single breach victim.

They're using a modified version of Google Threat Intelligence tool "Aura Inspector" to mass scan public-facing Experience Cloud sites, extracting data upon finding vulnerable instances.

Due to the countless Salesforce breaches that have occurred, the company has published a guide on how to harden against these attacks.

https://x.com/IntCyberDigest/status/2032224340133970428?s=20
👍1💩1
Sweden's biggest newspaper has now reported on our story. This is expected to be front-page news in Sweden tomorrow and will likely cause political turmoil.

We informed CERT-SE, who mailed us back saying they were already on it.
👍1💩1
WTF?

Edit: Probably a VPN (duh). But the question remains: why pick one based in the Netherlands?
👍2🔥2💩1
🇷🇺‼️ Major opsec fail:

A Russian spy was caught after using Google Translate to coordinate the murders of political enemies with foreign assassins.

He was arrested in Colombia.

The FBI read the clear-text translations of his murder-for-hire plot in real time.
👏1💩1
❗️ Great OSINT investigation by KeyserSoze1337 into ransomware group operator Rey, aka Saif Khader.

Who is known to be associated with Hellcat and ShinyHunters.

His first breach? Age 11. Running two phishing GoDaddy cPanel servers? Age 14.

https://justpaste.it/reyboom
💩1
❗️Someone made a 3D-printable Tesla nag reduction tool.

It fools FSD/Autopilot by presenting the cabin camera with an image of you paying attention.

Please don’t use this on public roads, and check Tesla ToS (you might get banned for using devices like this).

Here are the printable files:

https://drive.google.com/drive/mobile/folders/1julg4PJyyB7hdMRvK8nE-pnbmfA2UacL?usp=sharing&fbclid=IwdGRjcAQhxJpleHRuA2FlbQIxMQBzcnRjBmFwcF9pZAo2NjI4NTY4Mzc5AAEeep4W5WPqah2pQFlFpKk49_ODd8bHdtRiPzoSSB4Mg0ChyXJGlyFuMRjKznI_aem_SrvAJLgsyB5Ss8JnvVv6Cw
👍21💩1
❗️🇺🇦 It's happening: Ukraine has started deploying humanoid AI robot soldiers on the frontlines

US company Foundation delivered two Phantom MK-1 robots for frontline reconnaissance last month, and is now preparing robots for potential combat scenarios for the Pentagon.

They're also in "very close contact" with the DHS about deploying the robots along the US-Mexico border.

Source: https://time.com/article/2026/03/09/ai-robots-soldiers-war/
💩1
❗️ Internal messages from Meta show employees discussing how 7.5 million child sexual abuse material reports annually disappeared after making FB Messenger end-to-end encrypted.

Meta simultaneously spent over $2 billion lobbying politicians, 4,433 grants totaling approximately $2.0 billion.

$0 of which went to child safety.

Instead, they invested millions into lobbying for app-store/OS-level age checks through the App Store Accountability Act, making sure they're not liable for age verification of children.

It seems as if Meta doesn't care about child safety or predators targeting our children. It is only concerned with making more money. They're going to lose a lot of money once a major part of their users can't be targeted by advertisers anymore.

Now the US is facing a major problem with age verification. Not only is legislation heavily influenced by big tech, but:
- Politicians are scared to be seen as ineffective and want to be reelected
- Conservatives push for it to prevent 18+ content
- Progressives push for it to stop predators from accessing children

Creating a Frankenstein set of laws...
👍21🤬1💩1
❗️One of the godfathers of AI Andrej Karpathy shortly released research showing which jobs are most exposed to AI.

He deleted it afterwards, but a backup was found.

The brutal pattern: if you work behind a screen, AI is coming for you. If you work with your hands, you’re fine.

Higher education = more exposed.
Higher salary = more exposed.

143 million jobs analyzed. $3.7 trillion in wages exposed.

Every job in the US economy was scored for AI exposure from 0–10.

Some examples:
Bookkeepers: 9/10
Lawyers: 9/10
Software devs: 8/10

Roofers: 0/10
Carpenters: 2/10
Janitors: 1/10

Link: https://github.com/mariodian/jobs/
😭2👍1💩1
Well.. well.. well...

Would you look at that...

You can't make this stuff up. 😂
Please open Telegram to view this post
VIEW IN TELEGRAM
😁2💩2
‼️ China's biggest cybersecurity company, Qihoo 360 (461M users), just leaked their own wildcard SSL private key inside the public installer for their new AI assistant "360 Security Claw."

The private key for *.myclaw.360.cn was bundled directly in the download package under /namiclaw/components/OpenClaw/openclaw.7z/credentials. The cert is valid until April 2027.

Attackers can now impersonate their servers, intercept user traffic, and forge login pages.

Fun fact: the founder promised the product would "never leak passwords."
💩1
🚨 CVE-2026-3909 - Chromium/Edge vulnerability actively exploited in the wild.

Visit a website, get pwned. It's that simple. Patch immediately.
👍1💩1