Podcasts about ddos

Cyber attack disrupting service by overloading the provider of the service

  • 1,502PODCASTS
  • 4,194EPISODES
  • 46mAVG DURATION
  • 5WEEKLY NEW EPISODES
  • Jun 23, 2026LATEST
ddos

POPULARITY

20192020202120222023202420252026

Categories



Best podcasts about ddos

Show all podcasts related to ddos

Latest podcast episodes about ddos

The Tech Blog Writer Podcast
The API Security Crisis Exposed By Akamai's State Of The Internet Report

The Tech Blog Writer Podcast

Play Episode Listen Later Jun 23, 2026 31:55


How prepared are businesses for a new wave of attacks targeting the apps, APIs, and AI systems now powering digital growth? In this episode, I speak with Richard Meeus from Akamai Technologies about the latest findings from Akamai's State of the Internet report, with a focus on apps, APIs, and DDoS activity across EMEA. Richard explains why APIs have become such an attractive target for attackers, especially as AI adoption accelerates. We discuss the sharp rise in API abuse, the growing use of automation to industrialize attacks, and why many organizations still lack visibility into the APIs exposing sensitive data. We also examine the rise in layer 7 DDoS attacks, how attackers are combining multiple techniques to distract defenders, and why sectors such as retail and manufacturing are facing growing pressure. Richard also shares his view on the geopolitical forces shaping DDoS activity and why hacktivist groups continue to use these attacks as a public statement. Another major theme is the security risk around AI chatbots. As more organizations deploy chatbots to improve customer service, Richard explains how overly helpful AI systems can expose data, respond to prompt injection attempts, or create new blind spots if the right controls are missing. But this conversation is not all about risk. Richard also explains why AI can help defenders strengthen visibility, improve testing, analyze logs faster, and support more proactive security strategies. So, as businesses race to adopt AI and modern digital services, are they paying enough attention to the APIs and infrastructure sitting underneath it all? Share your thoughts.

Choses à Savoir TECH
« HTTP/2 Bomb », le hack ultime qui effraie tout internet ?

Choses à Savoir TECH

Play Episode Listen Later Jun 22, 2026 2:33


Les attaques par déni de service, ou DDoS, font partie des méthodes les plus connues de la cybersécurité offensive. Leur principe est simple : envoyer tellement de requêtes vers un site ou un service en ligne que ses serveurs finissent par saturer. Résultat, la page ne répond plus, l'application tombe, et les utilisateurs légitimes ne peuvent plus accéder au service.Traditionnellement, ce type d'attaque nécessite un botnet, c'est-à-dire un vaste réseau de machines compromises : ordinateurs, routeurs, caméras connectées ou objets mal protégés. Mais des chercheurs de la société californienne Calif viennent de documenter une méthode beaucoup plus inquiétante : une attaque DDoS capable de fonctionner depuis un seul ordinateur. Cette technique, baptisée « HTTP/2 Bomb », doit être présentée lors de la conférence Real World AI Security, organisée à Stanford du 23 au 25 juin. Les chercheurs expliquent avoir utilisé Codex, l'IA d'OpenAI, pour les aider à détecter cette faille.Le cœur du problème vient de HTTP/2, une version moderne du protocole qui permet à un navigateur et à un serveur web de communiquer. HTTP/2 a été conçu pour accélérer les sites, notamment grâce à la compression des en-têtes et à l'envoi de plusieurs requêtes sur une même connexion. Mais ces optimisations peuvent être détournées. L'attaque exploite notamment HPACK, le système chargé de compresser certaines informations échangées entre le client et le serveur. En manipulant ce mécanisme, un attaquant peut forcer le serveur à reconstruire en mémoire de très grandes quantités de données pour un trafic en apparence limité. La seconde étape consiste à empêcher cette mémoire d'être libérée rapidement, en jouant sur les mécanismes de contrôle du flux.Selon Calif, un simple ordinateur connecté à 100 Mbps peut ainsi épuiser des dizaines de gigaoctets de mémoire vive en quelques secondes. Lors des tests, un serveur Envoy est tombé en une dizaine de secondes, Apache a saturé 32 Go de mémoire en 18 secondes, tandis que nginx et Microsoft IIS ont cédé en moins d'une minute. La menace est sérieuse, mais pas universelle. Tous les serveurs ne sont pas vulnérables, et certains correctifs existent déjà. En attendant, les experts recommandent de limiter strictement les en-têtes, de passer par des CDN ou proxys inverses, et de désactiver HTTP/2 lorsque c'est possible. Hébergé par Acast. Visitez acast.com/privacy pour plus d'informations.

ScanNetSecurity 最新セキュリティ情報
神姫バスのウェブサイトに DDoS 攻撃

ScanNetSecurity 最新セキュリティ情報

Play Episode Listen Later Jun 17, 2026 0:07


神姫バス株式会社は6月15日、同社ウェブサイトでの接続障害について発表した。

David Bombal
#583: Shadow AI: What every network engineer must know

David Bombal

Play Episode Listen Later Jun 16, 2026 31:05


Big thank you to Radware for sponsoring this video In this interview, David Bombal sits down with Randy Wood, Head of North American Business at Radware, to break down the massive shift occurring in enterprise cybersecurity. They discuss why the rise of Agentic AI is a "1994 internet moment times a thousand," creating an environment where autonomous AI agents are rapidly outgrowing traditional security guardrails. Randy explains the critical connection between AI and API security, revealing how undiscovered "Shadow AI" tools and thousands of hidden enterprise API vulnerabilities leave organizations completely exposed to highly sophisticated, AI-driven DDoS attacks and flawless localized phishing campaigns. Learn how network engineers and security professionals can protect confidential data by pivoting from rigid rules to analyzing behavioral intent before execution, ensuring your network is ready for an autonomous tech stack. Visit radware.com for more deep-dive technical resources. // Randy Wood's SOCIAL // LinkedIn: / rwoodiii // Website REFERENCE // https://www.radware.com/ // David's SOCIAL // Discord: discord.com/invite/usKSyzb Twitter: www.twitter.com/davidbombal Instagram: www.instagram.com/davidbombal LinkedIn: www.linkedin.com/in/davidbombal Facebook: www.facebook.com/davidbombal.co TikTok: tiktok.com/@davidbombal YouTube: / @davidbombal Spotify: open.spotify.com/show/3f6k6gE... SoundCloud: / davidbombal Apple Podcast: podcasts.apple.com/us/podcast... // MY STUFF // https://www.amazon.com/shop/davidbombal // SPONSORS // Interested in sponsoring my videos? Reach out to my team here: sponsors@davidbombal.com // MENU // 0:00 - Coming Up 0:31 - Intro 01:21 - The Reality of AI Today 03:50 - Customer's Concerns About AI 07:12 - Deployment of AI Agents in Enterprise 08:08 - AI Used to Attack Enterprise 09:01 - AI as a Problem and a Solution 13:43 - Agentic Security with Radware 16:51 - Lack of Architecture and Policy 18:06 - The Impact of Claude Mythos 20:03 - How Do Attackers use AI? 22:25 - API Vulnerability and Security 24:38 - Most Common Attacks 26:13 - The Future of AI 28:00 - Advice for the Youth 30:33 - Where to Learn More Please note that links listed may be affiliate links and provide me with a small percentage/kickback should you use them to purchase any of the items listed or recommended. Thank you for supporting me and this channel! Disclaimer: This video is for educational purposes only. #ai #api #mythos

Packet Pushers - Full Podcast Feed
NB579: Datadog Unleashes Autonomous Agents; SpaceX Launches IPO

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Jun 15, 2026 50:49


Take a Network Break! Our Red Alert covers critical vulnerabilities in Ivanti Sentry, including OS command injection and authentication bypass, for which patches are now available. On the news front, we dig into Arista's new 1.6Tbps rack-scale portfolio for AI infrastructure and Nokia's Deepfield Genome Shield, designed to proactively stop DDoS from residential proxy botnets. We... Read more »

Packet Pushers - Network Break
NB579: Datadog Unleashes Autonomous Agents; SpaceX Launches IPO

Packet Pushers - Network Break

Play Episode Listen Later Jun 15, 2026 50:49


Take a Network Break! Our Red Alert covers critical vulnerabilities in Ivanti Sentry, including OS command injection and authentication bypass, for which patches are now available. On the news front, we dig into Arista's new 1.6Tbps rack-scale portfolio for AI infrastructure and Nokia's Deepfield Genome Shield, designed to proactively stop DDoS from residential proxy botnets. We... Read more »

Packet Pushers - Fat Pipe
NB579: Datadog Unleashes Autonomous Agents; SpaceX Launches IPO

Packet Pushers - Fat Pipe

Play Episode Listen Later Jun 15, 2026 50:49


Take a Network Break! Our Red Alert covers critical vulnerabilities in Ivanti Sentry, including OS command injection and authentication bypass, for which patches are now available. On the news front, we dig into Arista's new 1.6Tbps rack-scale portfolio for AI infrastructure and Nokia's Deepfield Genome Shield, designed to proactively stop DDoS from residential proxy botnets. We... Read more »

Vintage Anime Club Podcast
Episode 234 - Interrupted Transformation (Digimon Adventure Movies 1 & 2)

Vintage Anime Club Podcast

Play Episode Listen Later Jun 12, 2026 99:04


After a brief break, we're back on our isekai bandwagon with some digital monsters! That's right, we're covering the two Mamoru Hosoda Digimon Adventure movies, though they are more like short films than feature length movies. Join Dennis, Garrett, Ed, and Karen for Digimon Adventure Movie 1: Prologue & Digimon Adventure Movie 2: Our War Game. Talking points include the inevitable Summer Wars comparison, kaiju battles set to Bolero, the whistle system, silly kid arguments, breaking one of the unbreakable anime rules, and the power of a DDoS attack.  0:00:00 - Intro & The Watchlist 0:13:31 - Some Anime News 0:24:35 - Production Notes & Our Digimon History 0:38:18 - Bolero: The AMV (Digimon Adventure Movie 1) 0:49:07 - Our Summer Wars Game (Digimon Adventure Movie 2) 1:10:43 - Voices, Final Thoughts, & Kanpai You can support the show by donating to our Ko-Fi through the link below or purchasing Digimon The Movies 1-3 Collection on Blu-ray through our Amazon affiliate link: https://amzn.to/4v4zKqp Dennis: @ichnob | Ed: @ippennokuinashi | Garrett: @blkriku | Karen: @ryacosplay  Linktr.ee | Ko-Fi | RSS

KuppingerCole Analysts
Is Your CDN Secure? CDN vs. DDoS Mitigation Unpacked with Qrator Labs

KuppingerCole Analysts

Play Episode Listen Later Jun 12, 2026 16:51


Speed and security are no longer separate concerns. In this videocast, Osman Celik sits down with Andrey Leskin, CTO of Qrator Labs, to break down what Content Delivery Networks really are in 2026 and why they've become a critical piece of modern security infrastructure, not just a performance tool. Key Topics: ✅ What CDNs are and why they're no longer optional for competitive organizations✅ How CDN and DDoS mitigation differ — and where they overlap✅ Cache busting, HTTP floods, Slowloris and other real-world attack vectors✅ Why "security-first CDN" is fundamentally different from "CDN with security bolted on"✅ What CISOs and infrastructure leaders should look for when evaluating CDN solutions✅ How to measure CDN value from day one: round trip time and time to render A CDN without security is just a bigger target — find out why building security in from the ground up changes everything.

KuppingerCole Analysts Videos
Is Your CDN Secure? CDN vs. DDoS Mitigation Unpacked with Qrator Labs

KuppingerCole Analysts Videos

Play Episode Listen Later Jun 12, 2026 16:51


Speed and security are no longer separate concerns. In this videocast, Osman Celik sits down with Andrey Leskin, CTO of Qrator Labs, to break down what Content Delivery Networks really are in 2026 and why they've become a critical piece of modern security infrastructure, not just a performance tool. Key Topics: ✅ What CDNs are and why they're no longer optional for competitive organizations✅ How CDN and DDoS mitigation differ — and where they overlap✅ Cache busting, HTTP floods, Slowloris and other real-world attack vectors✅ Why "security-first CDN" is fundamentally different from "CDN with security bolted on"✅ What CISOs and infrastructure leaders should look for when evaluating CDN solutions✅ How to measure CDN value from day one: round trip time and time to render A CDN without security is just a bigger target — find out why building security in from the ground up changes everything.

AWS Morning Brief
OpenAI on Bedrock and Other Strange Bedfellows

AWS Morning Brief

Play Episode Listen Later Jun 8, 2026 7:25


AWS Morning Brief for the week of June 8th, with Corey Quinn. Links:AWS Interconnect - multicloud now offers a free 500 Mbps tierOracle Database@AWS is now available in twenty AWS RegionsAmazon Cognito now supports multi-Region replicationAmazon EKS and Amazon EKS Distro now supports Kubernetes version 1.36Amazon SES now supports tenant-level suppression listsAWS Compute Optimizer now supports 32-day lookback for EBS volume and ECS service rightsizing recommendationsAWS Cost and Usage Report 2.0 now supports Athena and Redshift integrationAmazon ElastiCache for Valkey now supports durabilityUnderstanding how backups work in Amazon AuroraOpenAI models and Codex on Amazon Bedrock are now generally availableHow Bedrock Streaming optimizes its AWS costsFrom Monolith to Multi-Account: Pinterest's AWS Organization Transformation JourneyGain visibility into DDoS attacks with flow logs in AWS Shield AdvancedIdentify unused AWS KMS keys and prevent accidental key deletionsCVE-2026-10591 - Kiro IDE Insufficient File Write Restrictions to Execution-Sensitive PathsCVE-2026-10584 - HTTPS Fallback to HTTP in Graph Explorer

Hacker And The Fed
A Single Email Took Down a Major Food Supplier

Hacker And The Fed

Play Episode Listen Later Jun 4, 2026 45:27


Chris and Hector break down a phishing attack that exposed employee data at a major food supplier, Microsoft's escalating fight with a security researcher publishing zero days, and the eye watering cost of enterprise AI adoption. They also discuss insider trading on prediction markets, the takedown of a massive DDoS botnet, and why basic security failures continue to create outsized consequences. Join our Patreon for weekly bonus episodes: ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://www.patreon.com/c/hackerandthefed⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠ Send HATF your questions at ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠questions@hackerandthefed.com

Cyberhelden
Cyberhelden 75 - DigiD, residential proxies en AI die aanvallen niet magisch maakt

Cyberhelden

Play Episode Listen Later Jun 4, 2026 47:28


Ronald, Marco en Jelle zijn terug met DigiD, device-code-phishing, residential proxies en de vraag of AI cyberaanvallers echt onhoudbaar maakt. Eerst kort: Marco repareert tijdens een nachtwacht Home Assistant-data met Claude, Jelle bouwt met AI een lesdashboard, en Ronald rijdt in Kaapstad een fox hunt met antennes op de auto. Daarna DigiD. Staatssecretaris Willemijn Aerdts blokkeert de Amerikaanse overname van Solvinity door Kyndryl. Ronald legt uit waarom dit via de Wet ongewenste zeggenschap telecommunicatie loopt, waarom dat juridisch anders is dan VIFO, en waarom Nederland hiermee feitelijk zegt: Amerikaanse jurisdictie en CLOUD Act-risico's zijn voor DigiD te groot. Marco bespreekt RSI, recursive self-improvement, als nieuwe AI-hypeterm. Het idee: AI die zijn eigen training verbetert. De nuchtere conclusie blijft: losse stappen automatiseren lukt steeds beter, maar richting houden, controleren of iets klopt en echt autonoom onderzoek doen blijft lastig. Jelle pakt Kali365: phishing via Microsoft 365 device-code-flows. Het slachtoffer logt in op de echte Microsoft-site, maar autoriseert het apparaat van de aanvaller. Domeinchecken is dus niet genoeg als de context rond de login vergiftigd is. Het eerste hoofdverhaal: ASocks en residential proxies. Politie en NCSC verstoren een botnet met minstens 17 miljoen besmette apparaten, aangestuurd via ongeveer 200 servers in Nederland. Marco vat het scherp samen: het botnet is de infrastructuur, de residential proxy is het product. Aanvallers kopen verkeer vanaf normale thuisverbindingen in plaats van herkenbare datacenters of Tor-exitnodes. Daardoor lijken phishing, credential stuffing, DDoS en brute-force-pogingen op gewoon verkeer van echte gebruikers. Open vraag: zijn de apparaten echt opgeschoond, of vooral de aansturing geraakt? Jelle sluit af met Lennart Maschmeyers paper Deception and Detection. Maschmeyer stelt dat AI aanval en verdediging helpt, maar verdedigers structureel meer kunnen winnen: verdediging draait veel om detectie en patroonherkenning, aanval verderop in de kill chain om misleiding, context en gecontroleerde effecten. De drie zijn kritisch op zijn dwell-time-argument, maar herkennen de kern: je wilt geen autonome agent die in een vijandelijk netwerk creatief gaat improviseren. Tegelijk maakt AI aanvallers wel sneller als copiloot, codegenerator, parser van scanoutput en phishinghulp. Vooral lagere en middelmatige actoren kunnen daarmee sneller opschalen. *Bronnen* DigiD / Solvinity - NOS: https://nos.nl/artikel/2615885-staatssecretaris-verbiedt-amerikaanse-overname-solvinity-bedrijf-achter-digid - Wet OZT: https://wetten.overheid.nl/BWBR0045423 - Wet VIFO: https://wetten.overheid.nl/BWBR0046686 RSI - TechCrunch: https://techcrunch.com/2026/05/28/rsi-is-the-new-agi-and-its-just-as-hard-to-pin-down/ Kali365 - FBI IC3: https://www.ic3.gov/PSA/2026/PSA260521 - BleepingComputer: https://www.bleepingcomputer.com/news/security/fbi-warns-of-kali365-phishing-service-targeting-microsoft-365-accounts/ ASocks / residential proxies - Politie: https://www.politie.nl/nieuws/2026/mei/28/06-politie-en-ncsc-halen-groot-botnetwerk-offline.html - NCSC expertblog: https://www.ncsc.nl/expertblogs/residential-proxies-en-hun-grote-impact-op-de-digitale-veiligheid-in-nederland - NCSC nieuws: https://www.ncsc.nl/nieuws/gezamenlijke-actie-politie-en-ncsc-legt-groot-botnetwerk-plat - Security.nl: https://www.security.nl/posting/938396/Proxy-botnet+van+17+miljoen+apparaten+na+actie+politie+en+NCSC+offline?channel=rss Maschmeyer / AI - CV Maschmeyer: https://www.lennartmaschmeyer.com/CV_Lennart_Maschmeyer.pdf - Paper: https://doi.org/10.1162/isec.a.398 - M-Trends 2025: https://cloud.google.com/security/resources/m-trends

Breach FM - der Infosec Podcast
Flurfunk - KimWolf-Botnet, Portraitbox-Breach, GitHub-Supply-Chain & Anbieterkonzentration

Breach FM - der Infosec Podcast

Play Episode Listen Later Jun 2, 2026 69:15


Jacob Butler, 23, online bekannt als "Dort", wurde in Ottawa verhaftet. Ihm wird vorgeworfen, das DDoS-for-Hire-Botnet KimWolf mit über einer Million kompromittierten Geräten betrieben zu haben. Angriffe bis 30 Terabit/s dokumentiert, darunter auf das US Department of Defense Information Network. Brian Krebs hatte ihn im Februar öffentlich identifiziert, woraufhin Butler ihn mit DDoS, Doxing und Swatting anging. Ich nutze das als Aufhänger für eine Diskussion mit Max über IoT-Botnet-Verantwortung und wo die Grenze zwischen Provider-Pflicht und Konsumentenverantwortung liegt.Dann der Portraitbox-Breach – von dem ich selbst betroffen war. Angreifer erlangten am 16./17. Mai Zugriff auf den Paderborner Fotodienstleister, luden Daten herunter und löschten sie. Betroffen: Fotos, Namen, E-Mail-Adressen, Bestellhistorien – darunter massenhaft Kita- und Schulfotos von Kindern. Zahlungsdaten nicht betroffen. Die Benachrichtigungspflicht liegt strukturell bei den Fotografen. Die ZAC NRW ermittelt.GitHub hat einen Breach gemeldet: Ein Mitarbeiter installierte eine kompromittierte Version der NX-Konsole VS Code Extension – Teil der TeamPCP-Kampagne, über die wir in den letzten Wochen mehrfach berichtet haben. Betroffen: rund 3.800 interne GitHub-Repositories. Keine Kunden-Repos kompromittiert, aber wer Zugriff auf interne Engineering-Repos hat, hat deutlich mehr als nur Code. Das führt Max und mich zu einer längeren Debatte über Anbieterkonzentration: Es ist nicht gesund, Produktivität, Entwicklung und Security beim gleichen Anbieter zu konsolidieren – und das sage ich mit vollem Bewusstsein meiner eigenen Befangenheit.Zum Abschluss: CISA hat eine externe Nominierungsmöglichkeit für den KEV-Katalog eingeführt. Meine These: Das "Known Exploited"-Flag wird für Patch-Priorisierung zunehmend irrelevant – wenn die Zeit von Vulnerability zu Exploit bei unter 30 Minuten liegt, muss man ohnehin von sofortiger Ausnutzung ausgehen.KimWolf-Botnet-Festnahme (KrebsOnSecurity)https://krebsonsecurity.com/2026/05/alleged-kimwolf-botmaster-dort-arrested-charged-in-u-s-and-canada/KimWolf-Botnet-Festnahme (DOJ)https://www.justice.gov/usao-ak/pr/canadian-man-arrested-international-authorities-charged-administrating-kimwolf-ddosPortraitbox-Breach (heise online)https://www.heise.de/news/Sicherheitsvorfall-bei-Fotoanbieter-Wird-Portraitbox-erpresst-11304453.htmlGitHub Breach / NX-Konsole Supply Chain (TeamPCP)https://github.blog/security/supply-chain-security/security-incident-nx-console-extension/CISA KEV Nomination Processhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog

Cyber Security Today
AI Vulnerability Explosion, Kim Wolf Botnet Arrest, Ghost CMS Hack, Iran Cyber Espionage

Cyber Security Today

Play Episode Listen Later May 25, 2026 13:14


Is AI about to trigger a cybersecurity vulnerability explosion? In this episode of Cybersecurity Today, David Shipley examines what some researchers are calling the early signs of a "vulnerability apocalypse" as Anthropic's Claude-powered Project Glasswing identifies thousands of potential software flaws at machine speed. The episode breaks down the real numbers behind the hype: over 10,000 candidate vulnerabilities flagged, 1,726 confirmed high or critical findings, 97 patched issues, and the growing concern that AI-driven bug hunting could overwhelm already stretched security teams. One example: a critical WolfSSL certificate forgery vulnerability (CVE-2026-5194, CVSS 9.1). Also in this episode: Canadian authorities arrest Ottawa suspect Jacob Butler, also known as "Dort," allegedly linked to the Kim Wolf botnet operation blamed for nearly 30 terabits-per-second distributed denial-of-service (DDoS) attacks and more than 25,000 incidents. We also cover active exploitation of a Ghost CMS SQL injection vulnerability (CVE-2026-26980), with attackers reportedly compromising hundreds of websites using ClickFix malware lures, including high-profile targets. And finally, an Iran-linked cyber espionage campaign dubbed "Screening Serpents" uses highly personalised fake recruitment approaches to target aerospace, defence, and telecom professionals with new remote access malware. If you work in cybersecurity, infrastructure, or IT leadership, this is one to watch. 00:00 Vunpocalypse Headlines 00:28 AI Finds Vulnerabilities 01:32 False Positives and Costs 02:39 WolfSSL Critical CVE 03:51 Patch Volume Pressure 04:28 Kim Wolf Botnet Arrest 05:13 Botnet Scale and Swatting 06:48 International Takedowns 07:41 Ghost CMS Mass Exploits 09:07 ClickFix Infection Chain 10:25 How to Remediate Ghost 10:39 Iran Spear Phishing Ops 12:51 Closing and Sign Off #Cybersecurity #CyberSecurityToday #AIsecurity #GhostCMS #DDoS #CyberEspionage #Anthropic #ClaudeAI #IranCyberThreat #InfoSec

The Lunduke Journal of Technology
System76 Built Replacement of Ubuntu Infra in Response to Islamic Terrorist Attacks

The Lunduke Journal of Technology

Play Episode Listen Later May 23, 2026 14:22


Following the recent multi-day outage of Ubuntu servers, due to DDoS attacks from Islamic Terrorists, Linux hardware maker System76 has rolled their own infrastructure.50% Off Yearly, & Massively Discounted Lifetime Subs Through May 31:https://lunduke.substack.com/p/50-off-yearly-and-massively-discountedMore from The Lunduke Journal:https://lunduke.com/ This is a public episode. If you'd like to discuss this with other subscribers or get access to bonus episodes, visit lunduke.substack.com/subscribe

XY Mag
Ces vêtements conçus pour rendre invisible face aux IA de surveillance

XY Mag

Play Episode Listen Later May 23, 2026 9:27


La mode adversariale pour se cacher de quoi ? Par Régis BAUDOUIN « Vous n’êtes plus un humain. Pour l’œil électronique qui vous regarde, vous êtes un zèbre, une girafe ou un simple pixel vide. » En ce mois de mai 2026, alors que la Vidéosurveillance Algorithmique (VSA) s’installe définitivement dans nos espaces publics après des années d’expérimentations, une contre-attaque insolite est née dans les ateliers de la Fashion Tech. C’est l’émergence de la mode adversariale. Des designers de mode et des chercheurs en sécurité informatique s’allient pour créer des collections de vêtements d’un nouveau genre : la mode adversariale ou mode furtive. Leur but ? Saturation, confusion et invisibilité face aux caméras intelligentes de l’État. XY Magazine décrypte la tech qui se cache derrière ces textiles rebelles. Qu’est-ce qu’une attaque adversariale ? Pour comprendre comment un simple sweat-shirt peut paralyser une IA de surveillance à plusieurs millions d’euros, il faut plonger dans le moteur de la vision par ordinateur. Les caméras intelligentes actuelles utilisent des réseaux de neurones convolutifs (comme les célèbres modèles YOLO — You Only Look Once). Contrairement à l’œil humain qui appréhende une forme dans sa globalité, une IA segmente une image en milliers de couches mathématiques. Elle cherche des motifs géométriques spécifiques, des contrastes et des textures pour en déduire, avec un certain pourcentage de confiance : « Ceci est une silhouette humaine. ». L’intelligence artificielle ne reconnait pas elle se base sur un modèle statistique de probabilité. C'est ici qu'intervient l'attaque adversariale via la mode furtive. En imprimant sur le tissu des motifs graphiques hyper-spécifiques — générés par des algorithmes miroirs —, les designers exploitent les failles mathématiques des réseaux de neurones. Ces motifs, baptisés “patches adversariaux”, saturent les capacités d’analyse de l’IA. C’est l’équivalent d’une attaque par déni de service (DDoS) mais appliquée à la reconnaissance visuelle. Concrètement, le motif envoie une information contradictoire si violente à l’algorithme que celui-ci “bugge” : soit il ne détecte plus du tout la silhouette (qui devient invisible pour le système), soit il la catégorise à tort comme un animal ou un objet inanimé. Le cadre vert de détection automatique de la caméra se déplace sur le motif texturé, laissant le porteur du vêtement totalement hors du radar. Source https://www.capable.design/collections/all Avec ce motif de Capable design, à 82% la caméra vous identifie comme une pomme. L’omniprésence vertigineuse de l’œil algorithmique Le déploiement de la surveillance automatisée depuis les jeux Olympique de Paris. On a atteint une échelle qui défie l’entendement sociologique. En 2026, l’œil algorithmique est partout, avec plus d’un milliard de caméras IA actives sur le globe. La France s’est transformée en un véritable panoptique numérique : on y dénombre 100 000 caméras publiques et près de 2 millions de capteurs privés surveillant commerces et transports. Cette numérisation de la place publique transforme nos déplacements physiques en flux de données constants. Le marché de la vidéosurveillance, estimé à 6,8 milliards de dollars en 2025, devrait d’ailleurs exploser pour atteindre les 11 milliards d’ici 2030. Face à cette marchandisation de la silhouette humaine, le vêtement cesse d’être une surface passive pour devenir un bouclier de protection visuelle. C’est le point de vue des militants pour une mode furtive. Déjouer le tracking des citoyens, pouvoir sortir sans être reconnu au départ c’est l’objectif des scientifiques qui travaillent sur ces images de brouillage. Mais aussi cela fait le jeu de ceux qui doivent se cacher par nécessité. Le vêtement comme “bruit mathématique” et bug sémantique Pour contrer cette détection, des designers collaborent avec des data-scientists pour exploiter les failles des réseaux neuronaux via l’usage d’images “adversariales” (adversarial noise). Le principe est fascinant : l’IA ne “voit” pas un humain, elle calcule des contrastes et des probabilités. En injectant un bruit visuel spécifique dans la trame du tissu, on force la machine à commettre une erreur de classification. Il existe ici une distinction technique cruciale que les marques de pointe commencent à maîtriser. Là où des projets comme AdvHat ciblent spécifiquement les modèles biométriques pour empêcher l’identification d’un individu précis, des collectifs comme Cap_able s’attaquent à la détection d’objets. Ci-dessous un simple sticker sur un bonnet et la caméra ne sait plus ce qu’elle filme. Source https://ailb-web.ing.unimore.it/icpr/media/slides/10934.pdf Les vêtements utilisent des configurations visuelles capables de semer le doute dans un algorithme pour qu’il ne reconnaisse plus la catégorie “personne”. En portant ces motifs, vous perturbez des modèles standards comme YOLOv8 ou OpenFace. Pour l’œil humain, vous êtes élégamment vêtu ; pour le serveur, vous n’êtes qu’une erreur de segmentation ou un amas de pixels sans signification biologique. Votre vie privée est protégée. Mais les algorithmes s’adaptent. Pour un humain, vous portez des vêtements de mauvais gout et étranges. Pour l’IA vous êtes une erreur. Résister par le design paramétrique : le paradoxe du leurre Cette nouvelle esthétique de la résistance s’appuie sur le design paramétrique, utilisant des variables mathématiques pour définir des textures optimisées. Des marques comme Cap_able ou le projet HyperFace d’Adam Harvey créent des motifs qui ne se contentent pas de masquer le porteur, mais saturent les capacités de calcul des caméras. Source https://adam.harvey.studio/hyperface/ La stratégie la plus efficace consiste à multiplier les “faux visages” sur un seul vêtement pour créer une sur-saturation algorithmique. En obligeant le système à détecter des dizaines d’humains là où il n’y en a qu’un, on crée une confusion systémique. C’est le paradoxe ultime de notre ère : utiliser les outils de conception informatique les plus sophistiqués pour saboter les systèmes de surveillance de pointe. Le textile arme politique L’essor de cette mode anti-IA n’est pas qu’une prouesse technique, c’est le symptôme d’un climat politique de plus en plus coercitif. Aux États-Unis, le retour d’une administration Trump et le durcissement des politiques migratoires ont agi comme un catalyseur. L’utilisation par l’ICE (police de l’immigration) d’outils mobiles de reconnaissance faciale a transformé le besoin d’anonymat en une urgence de sécurité personnelle. Depuis cette bascule politique, les ventes de vêtements “furtifs” ont doublé chez les principaux revendeurs spécialisés. Même si le marché reste marginal. La peur de l’identification automatisée n’est plus l’apanage des activistes de la vie privée. Elle devient une préoccupation citoyenne générale pour ceux qui refusent que leur visage devienne un identifiant à distance, consultable en temps réel par les autorités. Entre friction et réalité technique : les limites de l’invisibilité Soyons lucides : ces textiles ne sont pas des capes d’invisibilité totales, mais des outils de “friction” visant à réduire la probabilité de détection. L’efficacité varie selon l’angle de vue, la densité de la foule et la sophistication des logiciels propriétaires. Cependant, la panoplie du citoyen furtif s’est considérablement diversifiée : L’identification biométrique : La collection « Faception » d’Urban Privacy utilise des mailles noir et blanc pour briser la symétrie faciale calculée par les algorithmes. T shirt qui trompe les caméras La surveillance nocturne : La ligne « Urbanghost » propose des matériaux spécifiques conçus pour éblouir ou tromper les caméras à infrarouges. source https://urban-privacy.com/products/anti-paparazzi-triangle-scarf-bio-premium-unisex-trianglescarf-for-protection-against-unwanted-photos-more-privacy L’analyse de la démarche (gait analysis) : L’usage de coupes amples (baggy cuts) permet de masquer les estimateurs biomécaniques des articulations, empêchant l’IA de reconnaître un individu à sa démarche. Les leurres lumineux : Des accessoires LED intégrés dégradent la qualité des capteurs dans les zones à faible luminosité. La résistance s’organise. La puissance de calcul des algorithmes et les contres mesures parviennent à déjouer ces tentatives d’invisibilité. Conclusion : Vers une esthétique de la vie privée Le vêtement redevient un espace de liberté individuelle et un rempart contre l’intrusion. Dans un futur saturé de capteurs, l’innovation textile nous permet de négocier notre visibilité face au pouvoir froid des serveurs. La question n’est plus de savoir si nous serons vus, mais si nous serons lisibles. Dans ce monde de surveillance totale, le “bon goût” de demain ne sera peut-être plus défini par notre capacité à nous montrer, mais par notre élégance à rester obstinément indéchiffrables pour les machines. La mode furtive ou adversariale va se développer.The post Ces vêtements conçus pour rendre invisible face aux IA de surveillance first appeared on XY Magazine.

2.5 Admins
2.5 Admins 300: IPvWot?

2.5 Admins

Play Episode Listen Later May 21, 2026 28:24


Why a proposal for an alternative to IPv6 is unlikely to be viable, Microsoft really doesn’t want you to run Exchange Server on-prem, Google will finally stop being a proper search engine, setting up an email server for internal use, and mitigating DDoS attacks without Cloudflare. Plugs Support us on patreon and get an ad-free RSS feed with some early episodes Tuning ZFS for Databases Webinar: May 27th at 11am EDT: Database Performance on ZFS with Tom Lawrence News/discussion Veteran network architect proposes IPv8 – to improve IPv4, not leapfrog v6 Exchange Server zero-day vulnerability can be triggered by opening a malicious email Google Search as you know it is over Free consulting We were asked about setting up an email server for internal use, and mitigating DDoS attacks without Cloudflare. See our contact page for ways to get in touch.

Late Night Linux All Episodes
2.5 Admins 300: IPvWot?

Late Night Linux All Episodes

Play Episode Listen Later May 21, 2026 28:24


Why a proposal for an alternative to IPv6 is unlikely to be viable, Microsoft really doesn’t want you to run Exchange Server on-prem, Google will finally stop being a proper search engine, setting up an email server for internal use, and mitigating DDoS attacks without Cloudflare. Plugs Support us on patreon and get an ad-free RSS feed with some early episodes Tuning ZFS for Databases Webinar: May 27th at 11am EDT: Database Performance on ZFS with Tom Lawrence News/discussion Veteran network architect proposes IPv8 – to improve IPv4, not leapfrog v6 Exchange Server zero-day vulnerability can be triggered by opening a malicious email Google Search as you know it is over Free consulting We were asked about setting up an email server for internal use, and mitigating DDoS attacks without Cloudflare. See our contact page for ways to get in touch.

euroradiofm
Алена Прыходзька, Павел Лібер. DDoS-атакі ці ігнор выбарцаў: ад чаго залежаў вынік выбараў у КР

euroradiofm

Play Episode Listen Later May 21, 2026 47:14


Выбары ў Каардынацыйную раду скончыліся. Прагаласавала ўсяго 2113 чалавек. Цяпер хтосьці называе гэтыя выбары правальнымі, хтосьці — скандальнымі, а для некага яны былі вельмі цяжкімі. І ў дадзеным выпадку я не пра кандыдатаў і спісы, якія бралі ўдзел у выбарчым працэсе, а пра тых, хто гэтыя выбары тэхнічна і арганізацыйна забяспечваў — Выбарчую камісію і арганізатараў пляцоўкі для электроннага галасавання. Бо, па словах Паўла Лібера, у выглядзе DDoS-атак на платформу прыйшло больш як 24 мільярды (!) запытаў і 68 Tb трафіка. Што стала асноўнай прычынай праблем падчас галасавання і наколькі нечаканым стаў узровень атак на платформу для галасавання на выбарах у Каардынацыйную раду? Ці сапраўды падрыхтоўка да выбараў пачалася запозна, і ці была магчымасць пашырыць спіс дакументаў, па якіх людзі маглі галасаваць? Як праходзіла верыфікацыя галасоў і ці існуе пагроза зліву базы галасавання? На гэтыя ды іншыя пытанні ў эфіры Еўрарадыё адказваюць кіраўніца Выбарчай камісіі на выбарах у Каардынацыйную раду Алена Прыходзька і распрацоўшчык праграмы для галасавання Павел Лібер

Adversary Universe Podcast
Adversaries Follow the Money: The CrowdStrike 2026 Financial Services Threat Landscape Report

Adversary Universe Podcast

Play Episode Listen Later May 18, 2026 30:52


The CrowdStrike 2026 Financial Services Threat Landscape report is now live! Adam and Cristian are here to break down the trends and techniques affecting an industry that has become a major target for adversaries. Financial services is the fourth most-targeted industry as of Q1 2026 and accounts for 12% of all observed adversary activity. eCrime adversaries target the industry for financial gain. MUTANT SPIDER, the most active eCrime threat in the past 12 months, is tied to several intrusions in which they sell access to ransomware groups. The Democratic People's Republic of Korea set its sights on cryptocurrency and fintech entities to steal funds for its military programs. While financial gain may seem the obvious goal in targeting financial services, it's not the only one. Nation-state adversaries in China, Iran, and Russia launched operations against the sector for intelligence collection. Hacktivists conducted DDoS campaigns and data breach operations, primarily driven by ideological conflicts. Even if you don't work in the financial services sector, you most likely work with it — consumer banks, credit card companies, insurers, payment processors, and related businesses are all part of everyday business and personal life. Tune in to hear which adversaries are targeting them and why, which regions are in the crosshairs, and how companies should defend themselves. And stick around to hear about Adam's foray into ice cream cakes.

CISSP Cyber Training Podcast - CISSP Training Program
CCT 350: Investigation Types Made Simple - CISSP Training (Replay)

CISSP Cyber Training Podcast - CISSP Training Program

Play Episode Listen Later May 18, 2026 44:49 Transcription Available


Send us Fan MailDefault passwords are the kind of problem everyone “knows” about and yet they still open doors for attackers every day. We start with a quick reality check on router security and why factory settings, legacy gear, and unmanaged IoT and OT devices can turn a simple misconfiguration into redirect attacks, man-in-the-middle exposure, DDoS headaches, or silent monitoring. If you're studying for the CISSP or defending a real network, you'll walk away with a clearer sense of what to fix first and how to roll changes out without creating change-management chaos.Then we shift into CISSP Domain 1.6: understanding requirements for investigation types. We break down administrative, criminal, civil, and regulatory investigations and why the burden of proof changes everything. We talk through why HR and legal need to be involved early, when law enforcement is (and is not) helpful, and how sloppy evidence handling can get key artifacts thrown out. We also cover e-discovery and legal holds, using the Electronic Discovery Reference Model (EDRM) to make the process easier to remember and apply.To close, we get practical about evidence: admissibility, chain of custody, and the forensics basics that protect data integrity, including media, memory, network, software, and embedded device analysis, plus the value of write blockers and disciplined documentation. If you want to pass the CISSP and operate like a calm, credible security professional during an incident, this is the mindset. Subscribe for weekly CISSP-focused training, share this with a teammate, and leave a review with the investigation topic you want us to tackle next.Gain exclusive access to 360 FREE CISSP Practice Questions at FreeCISSPQuestions.com and have them delivered directly to your inbox!  Don't miss this valuable opportunity to strengthen your CISSP exam preparation and boost your chances of certification success. Join now and start your journey toward CISSP mastery today!

Camada 8
#76 - Como a Academia Melhora os Provedores de Internet com Pedro Botelho

Camada 8

Play Episode Listen Later May 13, 2026 52:59


No episódio de maio do Camada 8, convidamos Pedro de Botelho Marcos, professor Drº. na FURG (Universidade Federal do Rio Grande), para uma conversa sobre como a pesquisa aplicada em redes e medições da Internet pode ajudar a resolver problemas reais da operação e aproximar academia e mercado.O professor Pedro fala sobre como a aproximação com a comunidade de operadores de rede ajudou a direcionar suas pesquisas para problemas reais, especialmente em medições da Internet, interconexão e peering, IXs, engenharia de tráfego, segurança no roteamento (RPKI e ASPA) e mitigação de DDoS. Ele também comenta sobre ferramentas e plataformas usadas para medições da Internet, como RIPE Atlas, looking glasses, além de compartilhar experiências no desenvolvimento de soluções por meio da colaboração entre academia e mercado, e muito mais.Dê o play e confira agora mesmo o novo episódio do quadro Roteamento de Ideias do Camada 8!Participantes:Antonio Marcos Moreiras (Host) - Gerente de projetos e desenvolvimento no NIC.br https://www.linkedin.com/in/moreirasEduardo Barasal Morales (Host) - Coordenador da área de formação de sistemas autônomos do Ceptro.br no NIC.br https://www.linkedin.com/in/eduardo-barasal-moralesPedro de Botelho Marcos (Convidado) - Professor Drº. na FURG (Universidade Federal do Rio Grande) https://www.linkedin.com/in/pedrobmarcos/Links citados:Semana de Infraestrutura da Internet no Brasil: https://semanainfra.nic.br/Live Intra Rede: https://intrarede.nic.br/Curso BCOP Presencial: https://cursoseventos.nic.br/curso/curso-bcop/Curso BCOP EaD: https://cursoseventos.nic.br/curso/curso-bcop-ead/Programa Acelera NET: https://cursoseventos.nic.br/curso/programa-acelera-net/RIPE Atlas: https://atlas.ripe.net/IX.br - Looking Glass: https://lg.ix.br/Alice - Looking Glass: https://github.com/alice-lg/alice-lgSemana de Capacitação 11 - Looking Glass: https://www.youtube.com/live/kAlyyVD1Bv8?si=bSqGmCbnFbVRFPutPEERING Testbed: https://peering.ee.columbia.edu/Agenda de cursos do Ceptro|NIC.br: https://ceptro.br/cursos-eventosRedes Sociais:https://www.youtube.com/nicbrvideos/https://x.com/comuNICbr/https://www.telegram.me/nicbr/https://www.linkedin.com/company/nic-br/https://www.instagram.com/nicbr/https://www.facebook.com/nic.br/https://www.flickr.com/NICbr/Contato:Equipe Ceptro.brcursosceptro@nic.brDireção e áudio:Equipe Ceptro.brEquipe de Comunicação do NIC.brEdição completa por Rádiofobia Podcast e Multimídia: https://radiofobia.com.br/Veja também:https://nic.br/https://ceptro.br/

euroradiofm
Выбары ў КР — сарваныя? Эфір з Прыходзька і Ліберам

euroradiofm

Play Episode Listen Later May 12, 2026 37:41


11 траўня беларусы мусілі пачаць галасаваць на выбарах у Каардынацыйную раду 4-га склікання. Але гэтага пакуль не адбылося. Спачатку — праз дадатковую праверку кампаніі-верыфікатара Sumsub, якую напярэдадні абвінавацілі нібыта ў супрацы з расійскімі спецслужбамі. Затым — праз масіраваную DDoS-атаку, якая вядзецца ад вечара панядзелка і не дае магчымасці прагаласаваць. Колькі можа каштаваць такая атака, ці ёсць шанец яе адбіць, якія рызыкі нясуць выбарцы, якой будзе сёлетняя яўка на выбарах у протапарламент у выгнанні? Размаўляем пра гэта з кіраўніцай ЦВК Аленай Прыходзька і распрацоўшчыкам праграмы для галасавання Паўлам Ліберам.

Crazy Wisdom
Episode #546: Beyond Postgres and Node.js: What Happens When Your Database Runs Your Code

Crazy Wisdom

Play Episode Listen Later May 11, 2026 56:42


In this episode of the Crazy Wisdom Podcast, host Stewart Alsop sits down with Tyler Cloutier, founder of Clockwork Labs and creator of SpaceTimeDB. They explore how SpaceTimeDB functions as more than just a database—it's essentially a distributed operating system that merges server logic with data storage, enabling real-time applications and time-travel capabilities. The conversation ranges from the technical architecture of databases and operating systems to the philosophy of distributed systems, touching on everything from Unix and Linux to how SpaceTimeDB could revolutionize AI-generated software deployment. Tyler explains how their system reduces the complexity of building real-time applications, makes deployment simpler for both humans and AI agents, and why games like their MMORPG BitCraft Online drove them to create this new infrastructure. They also discuss the future of the internet, the role of bots in gaming, and how SpaceTimeDB fits into the broader landscape of cloud computing alongside tools like Cloudflare, Vercel, and Docker. For more information, visit spacetimedb.com or check out Clockwork Labs on GitHub and Twitter.Timestamps00:00 Stewart introduces Tyler Cloutier, founder of Clockwork Labs, discussing the origin of SpaceTimeDB's name inspired by Einstein's theory and its time travel capabilities that store all operations indefinitely05:00 Tyler explains SpaceTimeDB as more of an operating system than a database, using tables instead of file systems while running code in a sandboxed environment with full atomic properties10:00 Discussion of how SpaceTimeDB replaces both Node.js and Postgres by merging web server and database functionality, eliminating separate deployment concerns15:00 Tyler explains JavaScript execution through Chrome's V8 engine and JIT compiling, leading to Node.js creation for server-side JavaScript development20:00 Explanation of stateless web servers versus stateful game servers, and why games require in-memory state management for real-time performance25:00 Tyler introduces reducers and real-time subscriptions, questioning why more applications aren't real-time when state changes should update immediately30:00 Discussion of Facebook as essentially a text-based MMO, comparing social media architecture to game server requirements and the need for unified systems35:00 Tyler explains ACID properties in databases: atomic, consistent, isolated, and durable, using game item trading examples40:00 Comparing SpaceTimeDB to smart contract systems without cryptocurrency or global consensus, positioning it as a smart database with centralized trust45:00 Tyler reveals SpaceTimeDB uses 43% fewer tokens than Postgres for AI-generated applications, making it valuable for vibe coding platforms50:00 Conversation shifts to bots in games and proof-of-human concepts, with Tyler proposing biometric systems and discussing potential in-person gaming applications55:00 Closing discussion about tracking AI-driven traffic through UTM parameters and finding SpaceTimeDB at spacetimedb.comKey Insights1. SpaceTimeDB is fundamentally a database that runs application code directly inside it, combining what traditionally required separate systems like Postgres and Node.js. Users compile their application logic into WebAssembly or JavaScript and upload it to run within the database itself. This architecture provides high performance because the entire server backend operates inside the database environment. The system also features time travel capabilities, storing every operation and change to data persistently and indefinitely, allowing users to set application state back to any earlier point in time. This makes SpaceTimeDB more accurately described as an operating system rather than just a database, where the abstraction is that everything is a table rather than a file.2. The inspiration for SpaceTimeDB came from building BitCraft Online, an MMORPG where all players exist in a single persistent world and rebuild civilization together. Traditional MMO backends required complex custom solutions to handle real-time state, with game servers storing state in memory and periodically writing to databases. This complexity existed because games cannot afford the latency of constantly delegating to distant databases like traditional web applications can. SpaceTimeDB solved this by making the database fast enough to handle real-time requirements directly, eliminating the need for separate game servers. This same performance advantage that benefits games also applies to web applications, which is why SpaceTimeDB evolved from a game-specific tool to a general-purpose platform.3. SpaceTimeDB functions as a distributed operating system where each database acts like a process in an actor model system, similar to Erlang or Scala Akka. Databases can send messages to other databases and be spawned across a cluster for horizontal scaling. This represents an overlay operating system running on top of Linux rather than competing with it, providing a distributed abstraction across many machines while Linux handles device drivers and hardware support. The vision is for the cloud to function as a single enormous computer running one operating system, where developers simply publish their programs without managing separate services, deployment, routing, networking, or persistence infrastructure.4. The real-time capabilities of SpaceTimeDB address a fundamental limitation in how most web applications work today. Traditional web servers are stateless, delegating all state to databases and accepting network round-trip latency for each request, which is why users often must refresh pages to see updates. SpaceTimeDB allows queries to be subscribed to, maintaining open connections that stream changes whenever query results update. This makes applications like Discord, Facebook, or banking systems naturally real-time without requiring page refreshes. The historical accident that more things are not real-time represents a problem SpaceTimeDB solves by unifying the web world with the game world's real-time requirements.5. SpaceTimeDB implements ACID properties—Atomic, Consistent, Isolated, and Durable—ensuring database operations are reliable and safe. Atomic means operations either fully happen or not at all, preventing issues like item duplication in games when trading between players. Consistent means declared invariants like unique usernames are always enforced. Isolated means concurrent operations do not interfere with each other. Durable means changes persist even if computers restart, with varying levels from in-memory on one machine to disk storage across multiple geographic locations. These properties are managed through reducers, functions inspired by React Redux that fold changes into application state incrementally.6. For AI and large language models, SpaceTimeDB offers significant advantages in building and deploying applications. Testing showed that creating applications with SpaceTimeDB uses 43% fewer tokens compared to Postgres implementations, costs less, has fewer bugs, and is easier to extend. This matters because the primary cost for vibe coding platforms is tokens. As more software gets written in the next twelve months than ever before, there is insufficient focus on infrastructure required to run all this AI-generated software. SpaceTimeDB positions itself as ideal for LLMs to target because of its simplified deployment model where developers just publish code and the system handles everything behind the scenes.7. SpaceTimeDB can be understood as a smart contract system without cryptocurrency or global decentralized consensus. Like blockchain smart contracts, it executes code with atomic, consistent, isolated, and durable properties, but avoids the expense and slowness of requiring all computers worldwide to agree on everything. Instead, it offers centralized trust where users trust Clockwork Labs not to modify deployed contracts, rather than the trustless but extremely costly blockchain approach. This makes it functionally similar to Cloudflare's durable objects but with full relational database capabilities. The system exists before the networking layer where Cloudflare operates, handling deployment, server, and database functions while Cloudflare could provide DDoS protection in front of it.

Cyber Security Today
QR Phishing Explodes, Ubuntu Under Attack, CISA Warns Critical Infrastructure Prepare for Isolation

Cyber Security Today

Play Episode Listen Later May 6, 2026 19:36


QR-code phishing is no longer a niche attack. Microsoft says QR phishing attacks jumped from 7.6 million in January to 18.7 million in March 2026 — a 146% increase in just three months. In this episode of Cybersecurity Today, David Shipley explains why QR-based attacks are bypassing traditional corporate defences and why security teams need to rethink phishing awareness immediately. We also cover a critical new Apache HTTP Server vulnerability with both denial-of-service and potential remote code execution impacts, a sustained DDoS and extortion campaign targeting Ubuntu developer Canonical, and a remarkable case in Taiwan where a university student allegedly used software-defined radio gear to trigger emergency braking on four high-speed trains. Finally, CISA's new "CI Fortify" guidance urges critical infrastructure operators to prepare for scenarios where they may need to disconnect from the internet and continue operating manually during a geopolitical cyber crisis. Cybersecurity Today would like to thank Material Security for supporting this podcast.  Material security provides. faster, more complete detection and response for email, identity, and data threats inside Google Workspace and Microsoft 365.  Contact them at  material[dot]security  Stories include: • Microsoft reports QR phishing attacks surged 146% in Q1 2026 • Apache HTTP Server CVE-2026-23918 urgent patch warning • Ubuntu developer Canonical hit by ongoing DDoS and extortion campaign • Taiwanese student allegedly halts high-speed trains with fake emergency radio signal • CISA tells critical infrastructure operators to prepare for isolation and manual operations Chapters: 00:00 Intro 01:02 QR phishing explodes in Q1 2026 06:15 Critical Apache HTTP Server flaw patched 09:15 Ubuntu maintainer Canonical hit by extortion DDoS attack 14:25 Taiwanese student wirelessly halts high-speed trains 20:32 CISA warns critical infrastructure to prepare for isolation 26:10 Closing thoughts

All TWiT.tv Shows (MP3)
Untitled Linux Show 253: Patch Out the Fun

All TWiT.tv Shows (MP3)

Play Episode Listen Later May 3, 2026 95:16 Transcription Available


Ubuntu has announced their AI future, and it's ... not actually terrible. CopyFail has us all patching, though thankfully it's not an "Internet-melter". There's a DDoS on FOSS infrastructure, a new directory in your home folder, and finally good news on the HDMI 2.1 front. For tips we talk toofan for typing practice, why copy and paste needs "shift", and a quicker primer on getting the most out of bash history. You can find the show notes at https://bit.ly/4cZ2jOj and enjoy! Host: Jonathan Bennett Co-Hosts: Rob Campbell and Ken McDonald Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: bitwarden.com/twit

All TWiT.tv Shows (Video LO)
Untitled Linux Show 253: Patch Out the Fun

All TWiT.tv Shows (Video LO)

Play Episode Listen Later May 3, 2026 95:16 Transcription Available


Ubuntu has announced their AI future, and it's ... not actually terrible. CopyFail has us all patching, though thankfully it's not an "Internet-melter". There's a DDoS on FOSS infrastructure, a new directory in your home folder, and finally good news on the HDMI 2.1 front. For tips we talk toofan for typing practice, why copy and paste needs "shift", and a quicker primer on getting the most out of bash history. You can find the show notes at https://bit.ly/4cZ2jOj and enjoy! Host: Jonathan Bennett Co-Hosts: Rob Campbell and Ken McDonald Download or subscribe to Untitled Linux Show at https://twit.tv/shows/untitled-linux-show Join Club TWiT for Ad-Free Podcasts! Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit Club TWiT members can discuss this episode and leave feedback in the Club TWiT Discord. Sponsor: bitwarden.com/twit

The NeoLiberal Round
We Are Raising Funds to Help Ramon With Surgery

The NeoLiberal Round

Play Episode Listen Later May 2, 2026 6:57


Ramon Henry needs our help so that he can complete a life-saving procedure to prevent a brain bleed (aneurism). He has had two aneurism stemming from a damaged blood vessel and we are raising funds to acquire the material needed from the USA so that the surgeons can repair the damaged blood vessel and he can return home and continue his work as an IT Tech genius.Ramon is the IT VP at The Neoliberal and has helped us with setting up out Websites and domains and runs our IT services. He is currently in the hospital in Jamaica awaiting surgery.We have set up a GoFundMe Page where we are raiding US$10,000.00 ($1.5 Million Jamaican Dollars). We need more than that but the immediate need is $10,000.00 USD and we have already raised $2500 USD towards the amount needed. In this episode we share our need and also provide the excerpt of a Podcast episode where Ramon discussed how to prevent DDOS attack and how to enhance our cyber security.You can donate to the fund at: https://gofund.me/8365e9eb5Email us at info@theneoliberal.com and renaldocmckenzie@gmail.comCall us at 445-260-9198Visit us at https://theneoliberal.com and https://renaldocmckenzie.com or https://store.theneoliberal.comFollow us on Twitter: theneoliberalco or Facebook: theneoliberalcorporation.This is a production of Renaldo McKenzie and The Neoliberal Corporation.

The Journal.
The College Student Who Defeated the World's Biggest Cyberweapon

The Journal.

Play Episode Listen Later May 1, 2026 37:24


Last year, a massive cyberweapon terrorized the internet. It launched thousands of DDoS attacks, threatening tens of millions of people around the world. The weapon came to be known as Kimwolf. WSJ's Robert McMillan reports that cybersecurity experts were stumped. Kimwolf's attacks seemed to be launched from millions of internet-connected devices like TV boxes, cameras and picture frames. Eventually, the experts got help from an unlikely ally: a 22-year-old college senior named Benjamin Brundage. Jessica Mendoza talks to Ben about how he might have saved the internet. To check if your network is secretly connected to a residential proxy network, here are a few tips. Further Listening: - Cybersecurity Braces for AI ‘Bugmaggedon' - ‘Hack Me If You Can' from The Journal Sign up for WSJ's free What's News newsletter. Learn more about your ad choices. Visit megaphone.fm/adchoices

The CyberWire
Think before you deploy the agent.

The CyberWire

Play Episode Listen Later May 1, 2026 30:21


Five Eyes agencies issue agentic AI guidance. A federal database leaks Social Security numbers. A stealthy worm poisons open source packages. OT firms are sidelined from frontier cyber models. The FBI warns of a surge in cyber-enabled cargo theft. Officials flag likely election interference as security programs face cuts. Researchers uncover a covert Python backdoor. Ubuntu's site takes Iranian-linked DDoS fire. Cyber pros are sentenced in a ransomware case. Our guest is Andrew Carr, Global Head of Threat Management at Booz Allen, discussing how AI is accelerating cyberattacks. OpenAI joins the invitation-only club. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On today's Industry Voices we are joined by ⁠Andrew Carr⁠, Global Head of Threat Management at ⁠Booz Allen Hamilton⁠, discussing how AI is accelerating cyberattacks and reshaping cybersecurity defenses. If you enjoyed this conversation be sure to check out the full interview here. Selected Reading Careful Adoption of Agentic AI Services (CISA)  Careful adoption of agentic AI services (Cyber.gov.au) Medicare portal exposed health providers' Social Security numbers (The Washington Post) Open-source registries hit by 'Mini Shai-Hulud' supply chain attacks (Developer) OT Cybersecurity Frozen Out by Frontier Labs (OTToday) FBI Warns of Surge in Hacker-Enabled Cargo Theft (SecurityWeek) Breach Roundup: US Cyber Command Flags Election Threats (Gov Infosecurity) Sophisticated Deep#Door Backdoor Enables Espionage, Disruption (SecurityWeek) Pro-Iran group turns Ubuntu DDoS into shakedown (The Register) Two Americans Who Attacked Multiple U.S. Victims Using ALPHV BlackCat Ransomware Sentenced to Prison (United States Department of Justice) OpenAI locks GPT-5.5-Cyber behind velvet rope (The Register) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Risky Business
Risky Business #834 -- Vercel gets owned, Mozilla dumps hundreds of Mythos bugs

Risky Business

Play Episode Listen Later Apr 22, 2026 60:33


On this week's show, Patrick Gray and James Wilson are joined by special guest The Grugq. They discuss the week's cybersecurity news, including: Vercel got owned, and there's a few infostealer and compromised employee dots to connect Mozilla used Mythos to find 271 bugs, which feels like a sign of the bug-pocalypse Speaking of the bug-pocalypse, is that why NIST is noping out of enriching a bunch of bugs? The NSA is using Mythos even though the government did that whole Anthropic blacklisting thing And DDos attacks hit a couple of smaller-player socials This week's episode is sponsored by Permiso. Ian Ahl chats to Pat about the subtle signals Permiso uses to detect ShinyHunters-style activity in cloud and on-prem environments. This episode is also available on Youtube. Show notes Vercel April 2026 Security incident Vercel breach linked to infostealer infection at Context.ai Vercel confirms breach as hackers claim to be selling stolen data Matt Johansen: “This is not a good look” | X NIST limits vulnerability analysis as CVE backlog swells | Cybersecurity Dive CISA Cyber on X Ransomware attack continues to disrupt healthcare in London nearly two years later | The Record from Recorded Future News Lawmakers ponder terrorism designations, homicide charges over hospital ransomware attacks | CyberScoop In defeat for Trump, House extends electronic spying program for just 10 days | The Record from Recorded Future News Crypto infrastructure company blames $290 million theft on North Korean hackers | The Record from Recorded Future News US-sanctioned currency exchange says $15 million heist done by "unfriendly states" - Ars Technica Hackers are abusing unpatched Windows security flaws to hack into organizations | TechCrunch Mozilla Used Anthropic's Mythos to Find and Fix 271 Bugs in Firefox | WIRED NSA using Anthropic's Mythos despite Defense Department blacklist Beyond the breach: inside a cargo theft actor's post-compromise playbook | Proofpoint US Beware scam messages offering ships safe transit through Hormuz Strait, says security firm | The Straits Times New Jersey men given lengthy sentences for running North Korean laptop farms | The Record from Recorded Future News Turns Out We're Not Alone - Volodymyr Styran US joins nearly two dozen other countries in striking back against DDoS-for-hire platforms | Cybersecurity Dive Bluesky blames app outage on ‘sophisticated' DDoS attack | The Record from Recorded Future News Mastodon says its flagship server was hit by a DDoS attack | TechCrunch An IT expert explained under what conditions using a VPN can cause a smartphone to explode

Cyber Security Headlines
Vercel breach, ZionSiphon targets water infrastructure, Bluesky DDoS

Cyber Security Headlines

Play Episode Listen Later Apr 21, 2026 7:39


Vercel confirms breach, stolen data for sale ZionSiphon targets water infrastructure Bluesky blames outage on DDoS Get the show notes here: https://cisoseries.com/cybersecurity-news-vercel-breach-zionsiphon-targets-water-infrastructure-bluesky-ddos/ Huge thanks to our sponsor, ThreatLocker ThreatLocker is extending Zero Trust beyond endpoint control. With their recent releaseof Zero Trust Network Access and Zero Trust Cloud Access, access isn't based on credentials alone, it requires the right user, the right device, and the right conditions. Because as we've seen in recent large-scale CRM breaches, stolen credentials and misconfigurations can expose massive amounts of data. With ThreatLocker, nothing is exposed, and access is limited to exactly what's needed. Learn more and start your free trial today at ThreatLocker.com/CISO.

Cybercrime Magazine Podcast
Cybercrime News For Apr. 20, 2026. Europol Operation Targets 75,000+ DDoS Users. WCYB Digital Radio.

Cybercrime Magazine Podcast

Play Episode Listen Later Apr 20, 2026 2:24


The Cybercrime Magazine Podcast brings you daily cybercrime news on WCYB Digital Radio, the first and only 7x24x365 internet radio station devoted to cybersecurity. Stay updated on the latest cyberattacks, hacks, data breaches, and more with our host. Don't miss an episode, airing every half-hour on WCYB Digital Radio and daily on our podcast. Listen to today's news at https://soundcloud.com/cybercrimemagazine/sets/cybercrime-daily-news. Brought to you by our Partner, Evolution Equity Partners, an international venture capital investor partnering with exceptional entrepreneurs to develop market leading cyber-security and enterprise software companies. Learn more at https://evolutionequity.com

Ozone Nightmare
The Decentralization Myth

Ozone Nightmare

Play Episode Listen Later Apr 20, 2026 5:01


Today on the 5: You may have seen something about Bluesky having an outage last week due to a reported DDoS attack. This led many to criticize the problem of having a service that isn't decentralized. While those critiques are valid, the idea of decentralization is itself a myth in the world we currently live in.

The CyberWire
Temporary fix for Section 702.

The CyberWire

Play Episode Listen Later Apr 17, 2026 35:35


The House extends Section 702, for now. Mythos raises fresh cyber risk concerns. CISA warns of reduced capacity. ZionSiphon targets Israeli water systems. Operation PowerOFF hits DDoS-for-hire networks. CISA flags an actively exploited ActiveMQ flaw. WordPress plugin supply chain attacks spread. China tests deep-sea cable-cutting tech. Our guest is Arvind Nithrakashyap, CTO and Co-Founder of Rubrik, discussing AI as the next frontier. Tim Starks from CyberScoop takes us Inside the FBI's recent router takedown. A DraftKings data dealer meets his downfall.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, ⁠Daily Briefing⁠, and you'll never miss a beat. And be sure to follow CyberWire Daily on ⁠LinkedIn⁠. Industry Voices On today's Industry Voices segment, we are joined by ⁠Arvind Nithrakashyap⁠, CTO and Co-Founder of ⁠Rubrik⁠, discussing AI as the next frontier. If you enjoyed this conversation, check out the full interview here.  CyberWire Guest Today we have ⁠Tim Starks⁠ from ⁠CyberScoop⁠ discussing Inside the FBI's router takedown that cut off APT28's ‘tremendous access'.  Selected Reading ⁠House extends surveillance powers for 10 days⁠ (NPR) ⁠White House Works to Give US Agencies Anthropic Mythos AI⁠ (Bloomberg) ⁠Lawmakers Gathered Quietly to Talk About AI. Angst and Fears of ‘Destruction' Followed⁠ (SecurityWeek) ⁠How Anthropic Discovered Mythos AI Was Too Dangerous For Release⁠ (Bloomberg) ⁠CISA Warns of 'Detrimental Capacity Impacts' Amid Shutdown⁠ (BankInfo Security) ⁠New ZionSiphon Malware Discovered Targeting Israeli Water Systems⁠ (Hackread) ⁠Europol-supported global operation targets over 75 000 users engaged in DDoS attacks⁠ (Europol) ⁠CISA flags Apache ActiveMQ flaw as actively exploited in attacks⁠ (Bleeping Computer) ⁠30+ WordPress plugins bought on Flippa and backdoored in supply chain attack⁠ (TNW) ⁠New undersea cable cutter risks Internet's backbone⁠ (Ars Technica) ⁠Man gets 30 months for selling thousands of hacked DraftKings accounts⁠ (Bleeping Computer) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our ⁠brief listener survey⁠. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at ⁠sponsor.thecyberwire.com⁠. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

The CyberWire
Hackers ignore the ceasefire.

The CyberWire

Play Episode Listen Later Apr 9, 2026 28:24


Iran-linked hackers signal cyberattacks will continue despite the cease-fire. Microsoft restores access after suspending open-source developer accounts. John Deere settles its right-to-repair fight. A suspected Adobe Reader zero-day surfaces. Palo Alto Networks and SonicWall patch high-severity flaws. New macOS malware targets crypto wallets. A threat cluster abuses live chat to bypass MFA. CISA orders urgent Ivanti patching. Researchers track a stealthy DDoS-for-hire botnet. Our guest is Edgard Capdevielle, CEO of Nozomi Networks, sharing insights on threats posed by nation-states and AI on OT security. macOS has a 49 day time limit.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest On today's Industry Voices, we are joined by Edgard Capdevielle, CEO of Nozomi Networks, sharing insights on threats posed by nation-states and AI on OT security. If you enjoyed this conversation, check out the full interview here. Selected Reading Shaky Ceasefire Unlikely to Stop Cyberattacks From Iran-Linked Hackers for Long (SecurityWeek) Microsoft suspends dev accounts for high-profile open source projects (Bleeping Computer) John Deere to Pay $99 Million in Monumental Right-to-Repair Settlement (The Drive) Adobe Reader Zero-Day Exploited for Months: Researcher (SecurityWeek) Palo Alto Networks, SonicWall Patch High-Severity Vulnerabilities (SecurityWeek) New macOS Malware notnullOSX Targets Crypto Wallets Over $10K (Hackread) Google Warns of New Threat Group Targeting BPOs and Helpdesks (Infosecurity Magazine) Masjesu Rising: The Commercial IoT Botnet Built for Stealth, DDoS, and IoT Evasion (Trellix) CISA orders feds to patch exploited Ivanti EPMM flaw by Sunday (Bleeping Computer) We Found a Ticking Time Bomb in macOS TCP Networking - It Detonates After Exactly 49 Days (Photon Blog) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Cyber Security Today
Electric Vehicles and EV Security - Steve Visconti CEO of Xiid Corporation with David Shipley

Cyber Security Today

Play Episode Listen Later Apr 3, 2026 26:38


EV Charging Infrastructure Security: How Hackers Could Disrupt Chargers, Networks, and the Grid Cybersecurity Today  would like to thank Meter for their support in bringing you this podcast. Meter delivers a complete networking stack, wired, wireless and cellular in one integrated solution that's built for performance and scale.  You can find them at Meter.com/cst In this holiday weekend edition of Cybersecurity Today, Jim Love introduces David Shipley's interview with Steve Visconti, CEO of Xiid Corporation, about cybersecurity risks in electric vehicle (EV) charging infrastructure. Visconti explains Xiid's software-based security layer for IP networks, aimed at critical infrastructure across enterprise, public sector, and DOD environments, and its growing focus on OT/IoT such as EV charging systems. The discussion highlights how EV chargers connect vehicles, homes, back-office billing/control systems, cloud services, and potentially vehicle-to-grid power flows, creating large-scale attack surfaces that could enable disruption, DDoS activity, or broader grid instability. Visconti argues for "unreachability" architectures that close ports and remove static exposure while allowing only registered users and machine-to-machine access. The interview also touches on concerns about vulnerabilities leading to fires, supply-chain risks, and policy debates such as government-accessible vehicle kill switches. 00:00 Holiday Weekend Intro 01:46 Meet Steve Visconti 04:16 EV Charging Symposium 06:40 Vehicle to Grid Risks 09:16 Fires and Attack Vectors 12:14 Making Chargers Unreachable 14:37 Car as the Threat 19:05 Awareness and DDoS Reality 23:09 Government Kill Switch Debate 24:49 Wrap Up and Sponsor Thanks

Gestalt IT Rundown
AI Urgency and AI Fatigue AT RSA Conference 2026 | Tech Field Day News Rundown: April 1, 2026

Gestalt IT Rundown

Play Episode Listen Later Apr 1, 2026 38:50


On this episode of the Tech Field Day News Rundown, the future of tech gets bigger, faster, and more secure. Tom Hollingsworth and Alastair Cooke discuss Starcloud raising $170 million to build orbital data centers in space, Cisco's new tools to secure AI agents announced at RSA Conference 2026, and record-breaking cloud spending driven by AI across AWS, Azure, and Google Cloud. They also cover a cyberattack involving Iran-linked hackers targeting a U.S. official's personal email, SAP's plan to acquire Reltio to improve enterprise data for AI, and an international operation that shut down several massive IoT botnets used for global DDoS attacks. From space computing to AI security and cloud growth, this episode covers the biggest enterprise tech and cybersecurity stories you need to know.Time Stamps: 0:00 - Cold Open0:41 - Welcome to the Tech Field Day News Rundown 1:20 - Starcloud Raises $170M to Launch Data Centers in Space6:17 - Cisco's New Security Shield: Protecting AI Agents from Hackers at RSA 20269:52 - Cloud Spending Hits Record $110 Billion as AI Boom Accelerates12:32 - Iran-Linked Hackers Breach FBI Director's Personal Email, Leak Photos and Emails16:06 - SAP Acquires Reltio to Strengthen Agentic AI and Enterprise Data Strategy19:17 - Authorities Take Down World's Largest IoT Botnets Behind Record DDoS Attacks23:48 - AI Urgency and AI Fatigue AT RSA Conference 202635:13 - The Weeks Ahead: Upcoming Tech Field Day Events37:22 - Thanks for Watching the Tech Field Day News Rundown Follow our hosts ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Tom Hollingsworth⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Alastair Cooke⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, and ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Stephen Foskett⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠. Follow Tech Field Day ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠on LinkedIn⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, on ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠X/Twitter⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, on ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Bluesky⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠, and on ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Mastodon⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠.

Torsion Talk Podcast
6 Cybersecurity Threats Every Garage Door & Home Service Business Must Know Right Now

Torsion Talk Podcast

Play Episode Listen Later Mar 31, 2026 23:41


In this episode of Torsion Talk, Ryan Lucia breaks down six of the biggest cybersecurity threats hitting garage door and home service businesses right now. From Google Business Profile hijacking and phishing emails to SIM swapping, ransomware, shared passwords, and DDoS attacks, this episode is a must-listen for contractors who want to protect their leads, customer data, phone numbers, and business systems before it's too late.Ryan explains why small businesses are prime targets for hackers and scammers, especially in the home service space where owners and teams often run everything from their phones without dedicated IT support. He walks through real-world scenarios that are happening right now, including stolen Google Business Profiles, compromised lead inboxes, phishing attacks disguised as banks or vendors, and even situations where customers think they are calling your company but are actually routed somewhere else.This episode also covers one of the most overlooked risks in modern business: weak password habits, shared logins, former employees retaining access, and the dangers of relying on text-message verification instead of stronger authentication tools. Ryan breaks down how SIM swapping works, why it can be devastating for a business owner, and what simple steps you can take immediately to protect your accounts.More importantly, Ryan gives practical guidance on what to do next. He explains why every business should be using authenticator apps, password managers, user-specific logins, access audits, software updates, offline backups, and basic phishing education for their staff. He also shares a real example involving a compromised phone that led to a fake garage door service call, proving just how sophisticated these attacks have become.If you own a garage door company, HVAC business, plumbing company, electrical company, or any home service business, this episode could save you from major financial loss, downtime, and stress. Cybersecurity is no longer optional. Your business is a tech company whether you like it or not, and protecting it starts with awareness, better habits, and action today.Find Ryan at:⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://garagedooru.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://aaronoverheaddoors.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://markinuity.com/⁠Check out our sponsors!Sommer USA - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠http://sommer-usa.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Surewinder - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://surewinder.com⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠Stealth Hardware - ⁠⁠⁠⁠⁠⁠⁠⁠⁠⁠https://quietmydoor.com/⁠

Federal Tech Podcast: Listen and learn how successful companies get federal contracts

In the 1990's, the World Wide Web was so popular that it was facetiously called the Worldwide Wait. Centralized servers handled a small workload but bogged down as volumes increased. As a result, Content Delivery Services sprang up to distribute the workload worldwide. By 2001, large news organizations could manage unpredictable increases in traffic. The past decade saw a drastic increase in traffic and threats to it. During the interview, Omeed Nosarti describes how companies like Fastly began offering proprietary methods to deliver content faster. Nasrati highlights Fastly's proprietary technologies, such as Smart Parse, which reduces false positives in web application firewalls (WAFs), and its network architecture optimized for low latency and high cache hit ratios. Included in this conversation is the appearance of many remote points on many federal networks. These can function by increasing the attack surface and including the possibility of attacking the Application Programming Interface (API). Nasrati also mentions Fastly's API security features, including schema enforcement and discovery, and its significant ROI in terms of infrastructure and human capital costs. Nasrati emphasizes the importance of real-time traffic analysis and the evolving nature of DDoS attacks. Connect to John Gilroy on LinkedIn   https://www.linkedin.com/in/john-gilroy/ Want to listen to other episodes? www.Federaltechpodcast.com

The CyberWire
Millions of devices still up for grabs.

The CyberWire

Play Episode Listen Later Mar 20, 2026 34:14


Feds take down major IoT botnets. The FBI seizes hacktivist infrastructure. A data breach hits Kaplan, while a hacker claims access to millions of law enforcement tips. Fake Zoom calls deliver malware. A crypto “security” tool turns out to be spyware. A critical AI framework flaw gets exploited in hours. An insider extortion case ends in conviction. And a streaming scam pulls in over $10 million. A look back at ten years of Cyberwire podcasts. Intern Kevin gets ready for RSAC. A cyberattack leaves breathalyzers offline.  Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. Celebrating CyberWire Daily Maria Varmazis leads a conversation with Peter Kilpe and Dave Bittner reflecting on the origins of the CyberWire Daily podcast as part of the 10th anniversary series, sharing behind-the-scenes insights and how it all got started. CyberWire Guest Today we are joined by Intern Kevin—also known as Kevin Magee—as he gets ready for RSA Conference 2026 next week. Selected Reading Feds disrupt IoT botnets behind record-breaking DDoS attacks (The Register) FBI seizes Handala data leak site after Stryker cyberattack (Bleeping Computer) Kaplan North America Reports Data Breach Impacting Nearly 195,000 Individuals (Beyond Machines) Hacker says they compromised millions of confidential police tips held by US company (Reuters) Fake interactive Zoom call leads to malicious ScreenConnect download | news (SC Media) Crypto Scam "ShieldGuard" Dismantled After Malware Discovery (Infosecurity Magazine) Hackers Exploit Critical Langflow Bug in Just 20 Hours (Infosecurity Magazine) Ex-data analyst stole company data in $2.5M extortion scheme (Bleeping Computer) Musician admits to $10M streaming royalty fraud using AI bots (Bleeping Computer) Cyberattack leaves Maine drivers with breathalyzer test systems unable to start vehicles (WGME) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Cyber Security Today
Fake Claude Code Installs, Arpa Phishing, Iranian and Russian Teams Mount Cyber Retaliation

Cyber Security Today

Play Episode Listen Later Mar 11, 2026 15:48


Fake Claude Code Installs, Arpa Phishing, Zombie ZIP Malware Evasion, and Iran/Israel Cyber Retaliation This episode covers four major security stories: the "InstaFix" campaign using Google sponsored ads and cloned Claude Code install pages to trick developers into pasting terminal commands that deploy the TeraStealer credential-stealing malware; a phishing technique abusing the special-use .arpa domain and IPv6 reverse DNS to evade email and domain-based defenses, using attacker-controlled DNS zones, traffic distribution systems, and lures like surveys and account notices; the "Zombie ZIP" technique that manipulates ZIP headers to bypass AV/EDR scanning, tied to CVE-2026-0866 and demonstrated to evade most VirusTotal engines; and a surge in pro-Iranian and pro-Russian hacktivist retaliation targeting Israel and regional entities with DDoS, defacements, breach claims, and disinformation, alongside Israel's humorous counter-psychological video response. Cybersecurity Today  would like to thank Meter for their support in bringing you this podcast. Meter delivers a complete networking stack, wired, wireless and cellular in one integrated solution that's built for performance and scale.  You can find them at Meter.com/cst 00:00 Sponsor Message Meter 00:19 Headlines And Intro 00:51 Fake Claude Install Scam 04:25 Arpa Domain Phishing 08:30 Zombie Zip Malware Trick 10:57 Cyber Retaliation Surge 13:44 Israel's PSYOP Video 14:25 Wrap Up And Sponsor

Cyber Security Today
Cybersecurity Today Month in Review: World In Turmoil

Cyber Security Today

Play Episode Listen Later Mar 7, 2026 72:30


Cybersecurity Today Month in Review: Iran Conflict Cyber Spillover, IoT Cameras, AI Hacking Tools, and Resilience Planning In this weekend month-in-review episode, host Jim Love and panelists David Shipley, Laura Payne, Neil Bisson, and Chris "CJ" Johnson discuss cyber and infrastructure impacts tied to the US/Israel–Iran conflict, including reported compromise of traffic camera networks for targeting, Iran's defensive internet shutdown, propaganda via a hacked prayer app, and GPS/AIS spoofing that misdirected ships in the Strait of Hormuz, raising oil and helium supply-chain concerns. They warn of potential Iranian retaliation via DDoS, ransomware, and critical infrastructure attacks (especially water/OT), amplified by insecure IoT and camera vulnerabilities (e.g., Hikvision). The group critiques weakened government cyber capabilities (including CISA turmoil and CVE program risk), highlights AI-enabled attack automation (CyberStrike AI) shrinking time-to-exploit, and stresses practical resilience planning, including protecting AI API keys after an $82,000 billing incident and noting a law-enforcement takedown of LeakBase. Cybersecurity Today  would like to thank Meter for their support in bringing you this podcast. Meter delivers a complete networking stack, wired, wireless and cellular in one integrated solution that's built for performance and scale.  You can find them at Meter.com/cst 00:00 Sponsor Message Meter 00:18 Meet the Panel 01:41 MSPs and Security Assumptions 03:36 War and Cyber Spillover 06:52 Iran Internet Shutdown Explained 08:27 GPS Spoofing in Strait 10:32 Retaliation Risks to West 17:02 IoT Cameras as Targets 18:56 What IT Providers Should Do 22:03 Who Should Worry Most 26:18 Regulation and IoT Standards 28:58 Supply Chain and State Actors 31:36 CISA and CVE Turmoil 35:53 Ring Backlash and Big Tech 37:43 OpenAI Alerts and Privacy 39:25 AI Cultural Blind Spots 40:05 Therapy Duty to Report 41:17 Licensing AI Advice 42:16 Data Centers Under Fire 43:59 Continuity Without Claude 45:05 Power Grid Reality Check 46:47 MSPs and AI Dependence 49:58 Hype Versus Security Markets 51:02 CyberStrike AI Tooling 56:37 Nation State Plausible Deniability 59:58 Exploit Speed and Software Debt 01:03:37 Practical Tips and Wrap Up

Citadel Dispatch
CD193: FIPS - FIXING THE INTERNET

Citadel Dispatch

Play Episode Listen Later Mar 6, 2026 57:48 Transcription Available


FIPS is an open source mesh networking project that enables devices to connect directly to each other without relying on any central servers or infrastructure. Today's internet depends on companies and governments that can monitor, censor, or shut down communication at will. FIPS solves this by giving every node a cryptographic identity and encrypting all traffic automatically, so no one in the middle can see or block what you're doing. Nodes discover each other and route messages through the mesh on their own, and regular apps like browsers and SSH clients work on top of it without any special setup.Arjen on Nostr: https://primal.net/p/npub1hw6amg8p24ne08c9gdq8hhpqx0t0pwanpae9z25crn7m9uy7yarse465grJonathan on Nostr: https://primal.net/p/npub19wavu4f7l6l43h24jyskn7fvzy37kcfp67aqjtmv2qgy4lp34nhsda8p6k FIPS Repo: https://gitworkshop.dev/npub1y0gja7r4re0wyelmvdqa03qmjs62rwvcd8szzt4nf4t2hd43969qj000ly/relay.ngit.dev/fips Tollgate: https://tollgate.meSovereign Engineering: https://sovereignengineering.io/ EPISODE: 193BLOCK: 939631PRICE: 1465 sats per dollar(02:03) Introducing FIPS and the goal of a middleman free internet(04:16) Why static IPs fail for hosting and how FIPS reframes identity(05:51) Decoupling transport and routing: protocol-agnostic design(06:50) Peer discovery across Wi‑Fi, Bluetooth, and local broadcast(07:43) Future global routing ideas and decentralized discovery(09:05) Local mesh handshakes, Noise encryption, and Bloom filters(11:02) Community meshes, resilience, and mixed transports(11:42) Starlink and bridging meshes over the wider internet(13:21) Use case: protest resilience and reconnecting to the world(14:08) Origins: conferences, Sovereign Engineering, and NoDNS(16:04) From NoDNS to FIPS: faster updates, remaining gaps(17:10) Economics: sats for peering and incentive-aware routing(18:00) Abuse, DDoS surfaces, and defenses via npubs and rate limits(19:45) Learning from mesh hype cycles and bootstrapping adoption(22:32) Lowering app friction: make existing apps work over FIPS(25:12) DNS trick: IPv6 mapping and transparent transport(27:08) Backwards compatibility as a must-have for scale(28:08) Rethinking data flow with Nostr streams and local hosting(30:12) Offline-to-online spectrum and graceful reconciliation(31:10) Status update: early servers, testers, and bandwidth limits(32:20) Physical constraints: MTU, Bluetooth, LoRa(36:00) Reality checks: pitfalls, past meshes, and expectations(38:12) New primitives: Nostr, Blossom, eCash; Jonathan's role(40:37) Identity concerns, key rotation, and operational practices(46:10) Hosting sensitive services: hot keys(48:09) Self-hosting privately, Tor comparisons, and latency(49:37) Observation, Tollgate incentives, and community privacy(50:40) Tollgate legal concerns and community norms(53:21) Call to action, testing FIPS, and packaging plans(55:10) Closing thoughtsmore info on the show: https://citadeldispatch.comlearn more about me: https://odell.xyz

The CyberWire
The basics broke telecom.

The CyberWire

Play Episode Listen Later Feb 23, 2026 31:28


A senior FBI cyber official warns Salt Typhoon remains an ongoing threat. Data protection authorities issue a joint statement raising serious concerns about AI image creation. A Japanese semiconductor equipment maker confirms a ransomware attack. New number formats seek to reduce AI overhead. A low-skilled Russian-speaking threat actor compromised more than 600 Fortinet FortiGate firewalls. Spanish authorities have arrested four alleged members of Anonymous. CISA tags a pair of Roundcube Webmail flaws. Cybersecurity stocks fell sharply on news of a new security feature in Claude AI. Monday business breakdown. Brandon Karpf, friend of the show discussing sovereignty in space and cyber. Digital disruption drains drumsticks. Remember to leave us a 5-star rating and review in your favorite podcast app. Miss an episode? Sign-up for our daily intelligence roundup, Daily Briefing, and you'll never miss a beat. And be sure to follow CyberWire Daily on LinkedIn. CyberWire Guest Today Dave sits down with Brandon Karpf, friend of the show, and Maria Varmazis, host of T-Minus, as they are discussing sovereignty in space and cyber. Selected Reading FBI: Threats from Salt Typhoon are ‘still very much ongoing' (CyberScoop) Joint Statement on AI-Generated Imagery and the Protection of Privacy (International Enforcement Cooperation Working Group (IEWG)) Japanese chip-testing toolmaker Advantest suffers ransomware attack (Help Net Security) AI's Math Tricks Don't Work for Scientific Computing (IEEE) Russian Cyber Threat Actor Uses GenAI to Compromise Fortinet Firewalls (Infosecurity Magazine) Suspected Anonymous members cuffed in Spain over DDoS attack (The Register) CISA: Recently patched RoundCube flaws now exploited in attacks (Bleeping Computer) Anthropic Unveils 'Claude Code Security,' Sending Cyber Stocks Lower (Bloomberg) RSAC Innovation Sandbox finalists secure $5 million each. (N2K Pro Business Briefing) Cyber attack takes major chicken processor Hazeldenes offline leaving businesses without meat (ABC News) Share your feedback. What do you think about CyberWire Daily? Please take a few minutes to share your thoughts with us by completing our brief listener survey. Thank you for helping us continue to improve our show. Want to hear your company in the show? N2K CyberWire helps you reach the industry's most influential leaders and operators, while building visibility, authority, and connectivity across the cybersecurity community. Learn more at sponsor.thecyberwire.com. The CyberWire is a production of N2K Networks, your source for strategic workforce intelligence. © N2K Networks, Inc. Learn more about your ad choices. Visit megaphone.fm/adchoices

Packet Pushers - Full Podcast Feed
HS124: Administration DDoS on AI Regulation

Packet Pushers - Full Podcast Feed

Play Episode Listen Later Feb 10, 2026 43:37


The recent U.S. Executive Order 14365, Ensuring a National Policy Framework for Artificial Intelligence, is the administration's latest attempt to prevent the enforcement of most of the AI laws passed in individual US states. Because it is only an executive order (EO), it cannot directly nullify, supersede, forestall, or put a pause on state-level laws.... Read more »

X22 Report
Criminal Syndicate Is Being Exposed In Each State, [DS] Countered Again, Think Emissaries – Ep. 3802

X22 Report

Play Episode Listen Later Dec 22, 2025 84:01


Watch The X22 Report On Video No videos found (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:17532056201798502,size:[0, 0],id:"ld-9437-3289"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="https://cdn2.decide.dev/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs");pt> Click On Picture To See Larger PictureThe [CB][WEF] is struggling, Trump and team has designated the offshore wind projects as a national security risk. They have been paused. The people are still struggling with the [CB] system, soon the people will get their buying power back. The [CB] will try to stop Trump’s new economic system, it will fail. The [DS] is feeling the pain every step of the way. The criminal syndicate money laundering system is being exposed is the blue states. The people are waking up to the real system that has been hidden from them. The [DS] continues to tax the people for the money laundering system. Trump is continually countering the [DS], he is using Emissaries to negotiate the peace deals. The [DS] is blind to the conversation. Economy Trump Administration Announces Change to Offshore Wind Construction  President Donald Trump's Department of the Interior is pausing offshore wind project construction due to “national security risks.” “Due to national security concerns identified by the Department of War, Interior is PAUSING leases for 5 expensive, unreliable, heavily subsidized offshore wind farms!” Interior Secretary Doug Burgum wrote on X. “ONE natural gas pipeline supplies as much energy as these 5 projects COMBINED,” Burgum added. “POTUS is bringing common sense back to energy policy & putting security FIRST!” Leases with Vineyard Wind1, Revolution Wind, CVOW, Sunrise Wind, and Empire Wind will be paused. Source: dailysignal.com https://twitter.com/elonmusk/status/2002605302932517339?s=20 Gas is About to Get Expensive . . . A gallon of gas costs about twice as much in California as it does pretty much anywhere else in the United States. The reason why, of course, is that California makes it cost about twice as much – by reducing supply and by adding costs, chiefly for “environmental” reasons. This includes a new requirement – going into effect very soon (Dec. 31) that all gas stations must either replace single-walled underground storage tanks or permanently close them – no matter whether the tanks are actually leaking and no matter how much it costs to replace them. It is estimated that about 473 gas stations in California are going to close – because the owners cannot afford the mandatory underground storage tank upgrade costs or the $5,000 per day fines for non-compliance. At the same time, the state's regulatory bureaucracy has essentially shut down supply by denying 97 percent of permits for new refineries to supply the extra-special (and extra-expensive) gasoline formulations that all gas stations in California are required to sell. If this hypothetical scenario ends up becoming the actual scenario it could result in the collapse of California as a state. Source:  ericpetersautos.com  https://twitter.com/KobeissiLetter/status/2003104230945464505?s=20  As a % of total employment, multiple jobholders rose to 5.8%, nearly matching the 2 previous highs seen over the last 25 years. At the same time, Americans working primary full-time and secondary part-time jobs jumped to 5.3 million, the 2nd-highest in history. As a % of employment, this metric now stands at 3.4%, the 2nd-highest since 2000. The cost of living crisis is real.   (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:18510697282300316,size:[0, 0],id:"ld-8599-9832"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="https://cdn2.decide.dev/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs"); https://twitter.com/KobeissiLetter/status/2003109247232655382?s=20 Political/Rights Teary-Eyed Bus Driver Speaks Out After Getting FIRED for Posting a ‘Racially Insensitive' Sign on School Bus Window In Response to Unruly Spanish-Speaking Kid – DOJ to Launch Investigation (VIDEO) An elderly bus driver terminated earlier this year for posting a so-called ‘racially insensitive' sign toward a Spanish-speaking kid has broken her silence and the DOJ is launching an investigation. The note on the window read, “Out of respect to English-only students, there will be no speaking Spanish on this bus.” Crawford, who had served the school district as a bus driver for more than 30 years, was promptly suspended and later lost her job posting the note.  https://twitter.com/_johnnymaga/status/2002937980013650119?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2002937980013650119%7Ctwgr%5E9387ff3c86f279c9837393510bf08034917fc6bd%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Fteary-eyed-bus-driver-speaks-after-getting-fired%2F https://twitter.com/AAGDhillon/status/2002952621032677759?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2002952621032677759%7Ctwgr%5E9387ff3c86f279c9837393510bf08034917fc6bd%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Fteary-eyed-bus-driver-speaks-after-getting-fired%2F Source: thegatewaypundit.com https://twitter.com/EndWokeness/status/2002782448191693130?s=20 https://twitter.com/C_3C_3/status/2002906389560414648?s=20 SEATTLE https://twitter.com/KeenanPeachy/status/2002902633439445012?s=20 https://twitter.com/PressSec/status/2003099681778499980?s=20 https://twitter.com/FBIDirectorKash/status/2002822669507379549?s=20   This is part of a year long effort FBI has undertaken with state and local law enforcement all across the country to crack down on child abusers and take them off the street. That work has seen historic results. -6,000 children located or reduced – up 22% from 2024 -Nearly 2,000 child predators arrested – up 10% -300+ human traffickers arrested – up 15% Lives being saved. We're not letting up. DOGE Geopolitical https://twitter.com/elonmusk/status/2002602838149697684?s=20 https://twitter.com/AlboMP/status/2002974532475490578?s=20 https://twitter.com/visegrad24/status/2003101218076545039?s=20 Cyberattack disrupts France’s postal service, banking during Christmas rush A suspected cyberattack has knocked France's national postal service and its banking arm offline during the busy Christmas season The postal service, called La Poste, said in a statement that a distributed denial of service incident, or DDoS, “rendered its online services inaccessible.” It said the incident had no impact on customer data, but disrupted package and mail delivery. There was no immediate claim of responsibility.   France and other European allies of Ukraine allege that Russia is waging “hybrid warfare” against them, using sabotage, assassinations, cyberattacks, disinformation and other hostile acts that are often hard to quickly trace back to Moscow. Source:  tribdem.com  War/Peace Kushner and Witkoff Reportedly Draft $112B Plan to Turn Gaza Into ‘Smart City' With Beach Resorts, High-Speed Rail, and AI Grids — U.S. Pushes Back on Claims It Would Foot $60B    Project Sunrise,” envisions a decade-long, $112.1 billion redevelopment effort featuring beachside luxury resorts, high-speed rail, and AI-optimized infrastructure. The draft proposal was developed by a team led by Jared Kushner, President Trump's son-in-law, and U.S. special envoy Steve Witkoff, along with senior White House aide Josh Gruenbaum and other administration officials. The plan is being presented to prospective donor governments via a 32-slide PowerPoint labeled “sensitive but unclassified,” U.S. officials told the Journal. According to the presentation, Project Sunrise would convert Gaza's devastated landscape into a modern coastal metropolis. New Rafah (Credit: Wall Street Journal) Smart City (Credit: Wall Street Journal) However, the proposal does not specify which governments or private entities would ultimately finance the project, nor does it detail where Gaza's roughly two million displaced residents would live during reconstruction, according to WSJ. The draft estimates total costs at $112.1 billion over 10 years, including humanitarian relief, infrastructure rebuilding, and public-sector payrolls. https://twitter.com/StateDept_NEA/status/2002545412729942278?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2002545412729942278%7Ctwgr%5Ef3310cb42b34b4ad502fd5957962a1d8fbe38397%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Fkushner-witkoff-reportedly-draft-112b-plan-turn-gaza%2F The proposal also assumes that Gaza could begin to self-fund portions of the development in later years, eventually paying down debt as economic activity expands. Source: thegatewaypundit.com https://twitter.com/disclosetv/status/2003088356876677484?s=20 Macron Seeks New Talks With Putin, Forcing ‘Alternative’ Path To Stalled US Negotiations Suddenly French President Emmanuel Macron is deciding to revive his diplomacy with Moscow and is     Macron wants to step in to force France’s say in any future outcome or settlement, rather than wait on the diplomatic sidelines. Arming Kiev to the teeth has done nothing but prolong the needless killing, and perhaps at least some European capitals are beginning to realize this. Source: zerohedge.com https://twitter.com/BRICSinfo/status/2003114957060137421?s=20   to be killed in a bombing this year.” Russian General Killed By Car Bomb In Moscow, Marks 3rd Top Officer Assassinated In A Year This adds to a growing list of high profile assassinations related to the Ukraine war. To review: —Darya Dugina was killed in a car bombing in 2022 which was likely meant for her father, prominent political thinker and often dubbed “Putin ally” Aleksandr Dugin. —Gen Igor Kirillov died in December 2024 outside of his residence when a bomb planted in a nearby scooter detonated. —Gen Yaroslav Moskalik, who served as deputy head of the Main Operations Directorate of the General Staff of the Russian Armed Forces, was killed in a car bomb attack last April. A “homemade” explosive device detonated under his Volkswagen Golf in a residential neighborhood. Throughout the course of the war there’s been a string of these high profile assassinations on Russian soil involving car and even cafe bombs. America’s CIA or Britain’s MI6 has long been suspected of being involved in these targeted killings, or at least assisting in such brazen Ukrainian-linked operations, but ultimately little has been uncovered or proven in terms of a potential Western hidden hand in this ongoing ‘dirty war’. Source: zerohedge.com https://twitter.com/LeadingReport/status/2002809124674035943?s=20  Medical/False Flags [DS] Agenda DOJ Charges California Food Stamp Official for Sending Benefits to Dead People – Then Spending Them Federal prosecutors have charged a longtime California welfare worker with carrying out a multi-year fraud scheme involving food assistance benefits and dead people. The U.S. Department of Justice announced the arrest of former Madera County benefits eligibility worker Leticia Mariscal, 55, of Madera. Prosecutors alleged that Mariscal stole tens of thousands of dollars in CalFresh benefits by exploiting her access to county databases. CalFresh is California's version of the Supplemental Nutrition Assistance Program. According to the Justice Department, the alleged scheme took place between December 2020 and April 2025. https://twitter.com/FBISacramento/status/1999625371268886611?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1999625371268886611%7Ctwgr%5Ee26f93739a10984d47aeb35b0088270daeb01aef%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Fdoj-charges-california-food-stamp-official-sending-benefits%2F Source: thegatewaypundit.com https://twitter.com/KevinKileyCA/status/2002791344566411594?s=20   “high-risk.” This means they exhibit serious “waste, fraud, abuse, or mismanagement,” costing taxpayers billions. The number has doubled during Newsom’s tenure. I bet you California fraud is 10 times worse than Minnesota. https://twitter.com/EricLDaugh/status/2002457150904238280?s=20   taxpayer dollars, per NYP. A HUD audit found that at least 221 deceased people received grants. MORE FRAUD! Expose it all! (VIDEO) Thomas Massie and Ro Khanna Announce Plans to Bring Inherent Contempt Charges Against Attorney General Pam Bondi Over Epstein Files – “We're Building a Bipartisan Coalition”  Reps. Thomas Massie (R-KY) and Ro Khanna (D-CA), the authors of the Epstein Files Transparency Act, signed into law by President Trump last month, announced their intention to bring charges for inherent contempt against Attorney General Pam Bondi.  Under the rarely used congressional power, “the House or Senate has its Sergeant-At-Arms, or deputy, take a person into custody for proceedings to be held in Congress,” according to the National Constitution Center. However, it is unclear how effective this would be in the face of legal challenges and the executive branch's power. This is the latest in an escalating saga of threats, with Massie and Khanna claiming the DOJ has not complied fully with the law due to redactions in the files and not releasing every document available. Deputy Attorney General Todd Blanche appeared on NBC's Meet the Press this morning, where he dared Massie and Khanna to “bring it on,” maintaining that the DOJ is simply following the law and taking the necessary time to make redactions before releasing all of the files. Blanche told NBC's Kristen Welker that ensuring victim information is redacted “very much Trumps some deadline in the statute,” and he dared Khanna and Massie to file Articles of Impeachment. “We are complying with the statute, we will continue to comply with the statute, and if by complying with the statute, we don't produce everything on Friday, we produce things next week, and the week after, that's still compliance with the statute,” Blanche added. Source: thegatewaypundit.com Trump is ‘bored, tired and running on fumes’ — and he’s given up the fight: analyst A year into his second term, Donald Trump has undergone a major change in “tactics” as he deflects questions about his policies — and it’s an indication that he is now “just running on fumes,” an analyst wrote Monday. Salon's Amanda Marcotte pointed out that the president has developed an over-reliance on deflecting questions while claiming he is not up to speed on the topic or person he is being asked about, and that often begins with, “I don't know…” That is a change from his previous deflections, where he promised everything would sort itself out in “two weeks.”  Source: rawstory.com President Trump's Plan https://twitter.com/amuse/status/2002836773236306381?s=20   polygraph which they claim he failed to justify keeping their activities secret from Trump’s team. Scott isn’t blocking Plankey because he’s unqualified, he’s blocking him until Trump restores a Coast Guard shipbuilding contract for one of his major political donors Brian D'Isernia – he’s the CEO of Eastern Shipbuilding Group. Scott's hold has blocked Plankey from being included in the bipartisan nominations package the Senate GOP leadership is advancing before year-end. Because the Senate is winding down for the session, that procedural blockage likely means Plankey's nomination will expire unless resubmitted in the next Congress. Career staff at CISA repeatedly denied Acting Director Madhu Gottumukkala access to intelligence programs and urged him not to ask questions. After arranging an illegal polygraph, they used a claimed failure to freeze him out and leak to reporters. DHS acting security chief Michael Boyajian suspended at least six officials for misleading leadership and blocking classified access needed to run the agency. Trump to replace nearly 30 career diplomats in ambassadorial positions with ‘America First' allies The U.S. chiefs of mission in at least 29 countries were informed last week that their tenures would end in January 2026; all of them had taken up their posts in the Biden administration The Trump administration is recalling nearly 30 career diplomats from ambassadorial and other senior embassy posts as it moves to reshape the U.S. diplomatic posture abroad with personnel deemed fully supportive of President Donald Trump's “America First” priorities. All of them had taken up their posts in the Joe Biden administration but had survived an initial purge in the early months of Mr. Trump's second term that targeted mainly political appointees. That changed on Wednesday (December 17, 2025) when they began to receive notices from officials in Washington about their imminent departures.  How Trump shifted America's policy in a week Ambassadors serve at the pleasure of the President, although they typically remain at their posts for three to four years. Those affected by the shake-up are not losing their foreign service jobs but will be returning to Washington for other assignments should they wish to take them, the officials said. Africa is the continent most affected by the removals, with ambassadors from 13 countries being removed: Burundi, Cameroon, Cape Verde, Gabon, Ivory Coast, Madagascar, Mauritius, Niger, Nigeria, Rwanda, Senegal, Somalia and Uganda. Second is Asia, with ambassadorial changes coming to six countries: Fiji, Laos, the Marshall Islands, Papua New Guinea, the Philippines and Vietnam affected. Four countries in Europe (Armenia, Macedonia, Montenegro and Slovakia) are affected; as are two each in the Middle East (Algeria and Egypt); South and Central Asia (Nepal and Sri Lanka); and the Western Hemisphere (Guatemala and Suriname). Source: thehindu.com  Denmark Furious After Trump Names Special Envoy To Greenland Following Landry’s appointment, Rasmussen told Reuters in an emailed statement, “The appointment confirms the continued American interest in Greenland. However, we insist that everyone—including the U.S.—must show respect for the territorial integrity of the Kingdom of Denmark.” This prompted Denmark to summon the U.S. ambassador. Danish officials also summoned the U.S. ambassador in August after a report that at least three people with connections to Trump carried out covert influence operations in Greenland. Source: zerohedge.com Deep State Apoplectic with Trump's Use of Emissaries to Deliver Results President Trump is ducking and weaving through some of the deepest Machiavellian constructs, while maintaining forward progress. To put context to it, these creeps have had four years to strategize how to control Trump and manipulate policy with their retention of all sorts of government agencies in alignment with the status quo.  Yet, remarkably President Trump is dancing through their deep state minefield while keeping dozens of plates spinning on sticks.  The use of non-traditional emissaries is really making them angry.  , the use of emissaries outside the govt framework of traditional policy was going to be a key facet in any America-First agenda. The Deep State does not like President Trump's use of emissaries to conduct foreign policy.  In fact, they oppose it strongly; they hate it. The “emissary” is the person who carries the word of President Trump to any person identified by President Trump.  The emissary is very much like a tape recording of President Trump in human form.  The emissary travels to a location, meets a particular person or group, and then recites the opinion of the President.  The words spoken by the emissary, are the words of President Trump. The IC cannot inject themselves into this dynamic; that is why it is so valuable. The emissary then hears the response from the intended person or group, repeats it back to them to ensure he/she will return with clarity of intent as expressed, and then returns to the office of the presidency and repeats the reply for the President.  The emissary recites back exactly what he was /is told. This process is critical when you understand how thoroughly compromised the full Executive Branch is.  More importantly, this process becomes even more critical when you accept the Intelligence Community will lie to the office of the President to retain their power and position. (read more) Source: theconservativetreehouse.com https://twitter.com/TheStormRedux/status/2002736237996646560?s=20   signature on the absentee ballot he didn't even ask for. It was clearly forged. @GaSecofState please explain how this is a “clerical error.” https://twitter.com/CynicalPublius/status/2002795573490143432?s=20   3. The Congress of the United States shall determine the type and nature of documents that qualify as valid proof of citizenship for purposes of voting in federal elections. 4. Any federal, state or local official who knowingly allows any person to vote in federal elections without such proof of citizenship being validly presented shall be subject to such criminal penalties as the Congress of the United States may prescribe. 5. In the event of any conflict between this Amendment and Article 1, Section 4, the terms of this Amendment shall control. (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:13499335648425062,size:[0, 0],id:"ld-7164-1323"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="//cdn2.customads.co/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs");

X22 Report
[DS] Wants War, Russia Accepts Trumps Peace Deal, Trump's Message & Direction Are Clear – Ep. 3800

X22 Report

Play Episode Listen Later Dec 19, 2025 80:29


Watch The X22 Report On Video No videos found (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:17532056201798502,size:[0, 0],id:"ld-9437-3289"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="https://cdn2.decide.dev/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs");pt> Click On Picture To See Larger PictureThe Tren De Aragua gang tried to insert malwar into the ATM system to steal millions. Was this the first stage of the [CB] trying to hurt the economy? Trump’s economy is accelerating, the job numbers don’t reflect it because of the manipulation calculation and the jobs that he is removing from Gov. Trump is winning against the [CB]. The [DS] agenda is failing. The D party is on the wrong side of history and everyday that passes the people are waking up to this fact. The only way out is a war and this is why the [DS] is continually pushing back on Trump’s peace plan. Putin has agreed to it, [DS] is fighting it. Trump’s message is clear, we are taking back the country and in the end the D’s and the [DS] will cease to exist. Economy (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:18510697282300316,size:[0, 0],id:"ld-8599-9832"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="https://cdn2.decide.dev/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs"); Tren De Aragua Members and Leaders Indicted in Multi-Million Dollar ATM Jackpotting Scheme  December 18, 2025 – United States Attorney Lesley A. Woods announced that a federal grand jury in the District of Nebraska has returned two indictments charging 54 individuals for their roles in a large conspiracy to deploy malware and steal millions of dollars from ATMs in the United States, a crime commonly referred to as “ATM jackpotting.” An indictment returned on December 9, 2025, charges 22 defendants with offenses corresponding to their role in the conspiracy, including conspiracy to provide material support to terrorists, conspiracy to commit bank fraud, conspiracy to commit bank burglary and fraud and related activity in connection with computers, and conspiracy to commit money laundering. The indictment also alleges that Tren de Aragua (“TdA”) has used jackpotting to steal millions of dollars in the United States and then transferred the proceeds among its members and associates to conceal the illegally obtained cash.   Source: .justice.gov  https://twitter.com/DC_Draino/status/2001781948465746206?s=20 https://twitter.com/profstonge/status/2001993417291960468?s=20   Political/Rights Soros DA Ignores ICE Detainer, Releases El Salvadorian Illegal Who Allegedly Commits Murder the Next Day  Marvin Morales-Ortez, 23, an illegal from El Salvador, was released from custody after the Fairfax County Commonwealth's Attorney's Office, led by Soros-backed Attorney Steve Descano, dropped a case against him for charges of allegedly brandishing a gun and assaulting and injuring someone. Fox News' Bill Melugin notes he was released back onto the streets after an ICE detainer was ignored. The next day, it is alleged he is responsible for the murder of a man found dead in a home in Reston, Va., according to the Fairfax County Police Department. Before the latest incident, Morales-Ortez already had a lengthy criminal record. WJLA News reports, “court records indicate that since 2020, Morales-Ortez had been charged with at least seven crimes in Fairfax County.” Per WJLA: Source: thegatewaypundit.com BREAKING: Milwaukee Judge Hannah Dugan Found GUILTY of Obstruction For Helping Illegal Alien Evade ICE Agents – Faces 5 Years in Prison Milwaukee Judge Hannah Dugan on  evening was found guilty of obstruction for helping an illegal alien evade ICE agents. Dugan was acquitted of count 1 – the misdemeanor but she was found guilty on count 2 – the felony obstruction. She is facing five years in prison. AP reported: Source: thegatewaypundit.com https://twitter.com/FBIDirectorKash/status/2001976516876681590?s=20 https://twitter.com/Brooketaylortv/status/2001867929940574469?s=20   help crack this case since there was no clear image of the shooter entering the building. The suspected shooter was found dead six days after he opened fire at Brown University and killed two students and critically wounded nine. The shooter has been identified as 48-year-old Claudio Neves-Valente. He was a Brown University student and a Portuguese national. https://twitter.com/JohnDePetroshow/status/2002000197124075699?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2002000197124075699%7Ctwgr%5E4fa4b47b64971deb3c6bff71f8f137f50b1c8efc%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Frevealed-here-is-how-homeless-man-blew-brown%2F https://twitter.com/libsoftiktok/status/2001937671115923906?s=20   TARGETED https://twitter.com/nicksortor/status/2001808961906016366?s=20 https://twitter.com/AutismCapital/status/2001865134214647920?s=20  the apartment building in Brookline, Massachusetts, where MIT professor Nuno F. Gomes Loureiro lived and was fatally shot has security cameras. Surveillance footage from the building was used in the investigation, including video showing the suspect entering the premises   authorities have not publicly released the security camera footage from the Brookline apartment building where MIT professor Nuno F. Gomes Loureiro was shot.   https://twitter.com/ColonelTowner/status/2001995157093200088?s=20   his actual storage unit never gets unlocked, and he's found dead in the one next door. I noticed last night that the DOJ AAG was very careful to say he was found dead. Then the following news reports all said he committed suicide. Those are not the same thing. Someone needs to ask about the possibility of him being murdered after his mission was completed. Keep your eyes and ears open No Leads, No Leads, No Leads finally a lead from a homeless man and reddit So the shooter lived in Miami, flew to Providence, waited for Ella, knew her schedule, then drove to Massachusetts, to shoot the professor that he knew in Portugal, then drove back to his storage unit that was in New Hampshire  . He had a foreign phone that couldn’t be pinged and tracked.  So what was the motive https://twitter.com/nicksortor/status/2001878709385728416?s=20   including the NYC ISIS truck ramming terrorist. Our ENTIRE immigration system needs to be SCRAPPED and REBUILT at this point. ENOUGH! https://twitter.com/MarioNawfal/status/2001724267906691531?s=20   Texas and Arizona. Total spending on border construction: $8 billion so far. The full plan: 1,418 miles of “Primary Smart Wall,” 536 miles of waterborne barriers, and 708 miles of secondary barriers. Funded through Trump’s “One Big Beautiful Bill Act” passed in July – $46.5 billion allocated specifically for border wall completion through 2029. The “Smart Wall” isn’t just rebranded concrete. It’s steel bollards combined with patrol roads, cameras, lighting, advanced detection sensors, and in some locations waterborne or secondary barriers. CBP calls it an integrated border security system – not just a physical barrier but surveillance infrastructure covering gaps where terrain makes construction impractical. Here’s the funding story: Biden canceled wall contracts when he took office in 2021. The appropriated money – FY2021 funds – never expired. Trump returned in January 2025 and immediately restarted construction using those leftover billions. Then Congress passed his budget package allocating $46.5 billion more for multi-year construction. DHS Secretary Kristi Noem issued nine waivers since October to fast-track construction by bypassing environmental review requirements. The contracts are moving – $4.5 billion awarded in September, $3.3 billion now, with more queued through 2029. The system includes 536 miles where physical barriers won’t be built due to terrain – those sections get detection technology instead. Another 549 miles will add tech to barriers Biden left incomplete. Trump built 455 miles in his first term, mostly replacing existing fencing. This time the scale is bigger and the tech integration is real. Whether it achieves the enforcement outcomes CBP Commissioner Rodney Scott is promising remains to be seen, but the construction is happening and the funding is locked in.  https://twitter.com/EndWokeness/status/2001837612487840164?s=20 Import IsIamists. Disarm Australians. What could possibly go wrong? https://twitter.com/Patri0tContr0l/status/2001745373052936625?s=20 https://twitter.com/ShadowofEzra/status/2001719516422676556?s=20 DOGE Geopolitical Tren De Aragua Members and Leaders Indicted in Multi-Million Dollar ATM Jackpotting Scheme  December 18, 2025 – United States Attorney Lesley A. Woods announced that a federal grand jury in the District of Nebraska has returned two indictments charging 54 individuals for their roles in a large conspiracy to deploy malware and steal millions of dollars from ATMs in the United States, a crime commonly referred to as “ATM jackpotting.” An indictment returned on December 9, 2025, charges 22 defendants with offenses corresponding to their role in the conspiracy, including conspiracy to provide material support to terrorists, conspiracy to commit bank fraud, conspiracy to commit bank burglary and fraud and related activity in connection with computers, and conspiracy to commit money laundering. The indictment also alleges that Tren de Aragua (“TdA”) has used jackpotting to steal millions of dollars in the United States and then transferred the proceeds among its members and associates to conceal the illegally obtained cash. One of the individuals named in the Indictment is Jimena Romina Araya Navarro, an alleged Tren De Aragua leader and Venezuelan entertainer who was sanctioned by the U.S. Department of the Treasury's Office of Foreign Assets Control (OFAC).  OFAC's press release alleged that Araya Navarro reportedly helped the notorious head of TdA, Hector Rusthenford Guerrero Flores (a.k.a. “Niño Guerrero”) escape from the Tocorón prison in Venezuela in 2012, and others in this network have laundered money for TdA leaders.  Jimena Romina Araya Navarro was indicted by the grand jury for the District of Nebraska for material support to Tren De Aragua for factual allegations stemming from TdA's nationwide ATM jackpotting scheme that included burglaries of many ATMs located in Nebraska. Jimena Romina Araya Navarro has been publicly photographed at parties and social events with the alleged head of TdA Nino Guerrero. Source: .justice.gov  https://twitter.com/BasilTheGreat/status/2001917147963101255?s=20 https://twitter.com/elonmusk/status/2002018167611408489?s=20 Foreign Office has been hacked – ministers ‘fairly confident’ individual data not at risk Foreign Office data has been compromised by hackers, a minister has confirmed to Sky News, but he said the government is “fairly confident” that no individual data has been accessed. Trade minister Sir Chris Bryant told Sky’s Mornings with Jones and Melbourne that the government first became aware of the hack in October, and was now “on top of it”. Sky News understands that the data stolen was on systems operated on the Home Office’s behalf by the Foreign Office, which detected the breach. The Sun reported last night that a Chinese groups of hackers known as Storm 1949 targeted Foreign Office servers and had accessed information relating to visa details, with “thousands” of confidential documents and data stolen. But the minister told Sky News that it is “not entirely clear” who is responsible for the hack, and he could share “remarkably little detail”. Source: skynews.com Denmark blames Russia for destructive cyberattack on water utility Danish intelligence officials blamed Russia for orchestrating cyberattacks against Denmark’s critical infrastructure, as part of Moscow’s hybrid attacks against Western nations. In a Thursday statement, the Danish Defence Intelligence Service (DDIS) identified two groups operating on behalf of the Russian state: Z-Pentest, linked to the destructive water-utility attack, and NoName057(16), flagged as responsible for the DDoS assaults ahead of November’s local elections in Denmark before the 2025 elections. Source: bleepingnews.com War/Peace https://twitter.com/WallStreetMav/status/2001727675950383572?s=20 https://twitter.com/MyLordBebo/status/2001987088586354804?s=20 https://twitter.com/MyLordBebo/status/2001987615856476213?s=20 https://twitter.com/MarioNawfal/status/2001804678045274293?s=20   holding Russia financially accountable for the destruction. Zelensky: “Basically, as of today, now Ukraine must close this problem and have the money, that’s number one. About the prospects, the most right form is reparation loan, so that we all understand, so that Russia understands that it’s guilty and that it will have to pay reparations.” This push ties into the crunch EU summit over a $105B package funded partly by profits from frozen Russian assets, even as legal concerns and U.S. warnings hover. Zelensky says it's moral, fair, and the pressure tool needed to make Putin back down. https://twitter.com/clashreport/status/2001953679491109013?s=20 https://twitter.com/aleksbrz11/status/2001656372220301547?s=20 https://twitter.com/philippilk/status/2001918505957134742?s=20 https://twitter.com/MarioNawfal/status/2001973600405049683?s=20 ”  some offers and they invited us to certain compromises.’ And with that in Anchorage, back in Anchorage, I said that this would be difficult decisions for us. But we agree to the compromises that are being proposed to us. So it’s incorrect to say that we are refusing something.””So that’s completely incorrect. So the ball is totally on the side of our Western opponents, of the head of the Kiev regime and its European sponsors. https://twitter.com/CynicalPublius/status/2001773196727713853?s=20   other EU countries rattling their sabers and demanding that their native populations gear up to fight Russia in a war that would rival WWI in terms of exterminating a generation of young European men, is it possible that this is part of a New World Order scheme to eliminate native Europeans in favor of their migrant replacements? After all, that would be the ultimate expression of the guilt-ridden, cultural suicide Western Europe has been hellbent on achieving for the past thirty years. Conspiracy theory? YES. Reflective of current sentiments? YES. Take it for what it is worth. Medical/False Flags https://twitter.com/Rasmussen_Poll/status/2001457867614798265?s=20 [DS] Agenda https://twitter.com/GuntherEagleman/status/2001766583757394263?s=20 https://twitter.com/JoeLang51440671/status/2001871246141567421?s=20 Trump HUD Hunts Down Fraud in Colorado: 221 Dead People Were Getting Housing  That’s right. 221 dead people, out of almost 3,000 people in Colorado who were improperly receiving benefits from HUD. The Department of Housing and Urban Development (HUD) is investigating whether Colorado providers helped nearly 3,000 people swindle taxpayer money from Uncle Sam, The Post has learned. The investigation comes after an internal HUD audit found that benefits were granted to 221 dead people, while another 87 were otherwise ineligible. The department also said that another 2,519 beneficiaries will need to undergo additional verification. Here’s the question: Were these just mistakes, the results of bad record-keeping, or deliberate fraud? Not that either is exactly a comfortable finding; when the answer is either criminality or gross incompetence, the taxpayers take a bath either way. And HUD is calling this apparent fraud. Source: redstate.com https://twitter.com/elonmusk/status/2002067526977720452?s=20 https://twitter.com/EricLDaugh/status/2002054582202200131?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2002054582202200131%7Ctwgr%5E9511fa92be723c1b11f9bd872529227569dc1dd9%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fwww.thegatewaypundit.com%2F2025%2F12%2Fsecretary-state-rubio-confirms-ending-ngo-foreign-aid%2F President Trump's Plan https://twitter.com/FBIDirectorKash/status/2001794199046287594?s=20  the American people. These will be changes that you may not have read about in the media over this last year – but they're just as important for the new FBI. December 18: The FBI reporting structure. When Deputy Bongino and I arrived, FBI leadership was constructed to have all 50+ field offices report to one office in Washington D.C. This created inefficiencies and bureaucracy through no fault of the agents working hard in the field. When we got here, we sent personnel out to the field and then broke down the reporting structure giving a team of Operations Directors regional authority over each office. This allowed us to much more effectively manage each field office and get them the resources they need to do the job and protect the American people. The results speak for themselves: 100% increase in violent crime arrests, 35% increase in espionage arrests, 31% increase in fentanyl seizures, 500% increase in NVE arrests, and more. Making FBI leadership more responsive to the field allowed for the field to be more responsive to the American people – who we work for. https://twitter.com/KanekoaTheGreat/status/2001754813034533328?s=20 https://twitter.com/Rasmussen_Poll/status/2001699622553592254?s=20 https://twitter.com/Peoples_Pundit/status/2001817750952440044?s=20 https://twitter.com/EricLDaugh/status/2001837345113542864?s=20 https://twitter.com/KariLake/status/2001723271771726246?s=20  the center is not officially renamed solely based on the board’s vote. The John F. Kennedy Center for the Performing Arts was established and named by an act of Congress (Public Law 88-260 in 1964, codified in 20 U.S.C. § 76h et seq.), making its official name part of federal statute. While the Board of Trustees can vote to recommend or propose a name change—as they did unanimously on December 18, 2025, to add “Trump” to the name—the actual renaming requires legislative action to amend the law.The Process: Board Proposal: The Kennedy Center’s Board of Trustees (which includes presidential appointees, congressional ex officio members, and others) can discuss and vote on a proposed name change. In this case, the Trump-appointed board voted to rename it the “Donald J. Trump and John F. Kennedy Memorial Center for the Performing Arts,” citing Trump’s contributions to renovations and fundraising. Congressional Legislation: To make the change official, Congress must pass a bill amending the relevant statutes. For example: Legislation has already been introduced in the House by Rep. Bob Onder (R-Mo.) to codify the rename. The bill would need to pass both the House and Senate, then be signed into law by the President (or overridden if vetoed). Potential Challenges and Approval: Ex officio board members (e.g., congressional Democrats like Rep. Joyce Beatty, Senate Leader Chuck Schumer, and House Leader Hakeem Jeffries) have stated that federal law prohibits name changes without congressional action, calling the board’s move unauthorized or illegal. reuters.com They dispute the “unanimous” vote claim, noting some were muted or unable to oppose. Kennedy family members, such as grandnephew Joe Kennedy, have opposed it, arguing the board lacks authority. reuters.com If passed, the change could face legal challenges, but congressional approval would make it binding. Until Congress acts, the center retains its current name, though the White House has begun referring to it as the “Trump-Kennedy Center” in announcements.  https://twitter.com/OpenSourceZone/status/2001373638654841181?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2001373638654841181%7Ctwgr%5E686532e3ba9f23547c3b85b453c29e8ca105954e%7Ctwcon%5Es1_c10&ref_url=https%3A%2F%2Fredstate.com%2Fbobhoge%2F2025%2F12%2F18%2Fschizophrenia-dem-approval-rating-falls-off-a-cliff-but-voters-still-want-them-to-retake-the-house-n2197259 Trump announces ‘Patriot Games,' with 2 high school athletes from each state President Trump   announced plans for a “Patriot Games” next year that will pit top high school athletes from across the country against one another as part of a series of events to mark 250 years since the nation's founding. Trump announced the launch of Freedom 250, an organization that will lead the administration's efforts to celebrate the country's 250th birthday in 2026. One of the events that will be featured as part of the festivities will be what Trump called the “first-ever Patriot Games, an unprecedented four-day athletic event featuring the greatest high school athletes — one young man and one young woman from each state and territory.” The event is slated for next fall. Source: thehill.com https://twitter.com/BehizyTweets/status/2001758550067155179?s=20 (function(w,d,s,i){w.ldAdInit=w.ldAdInit||[];w.ldAdInit.push({slot:13499335648425062,size:[0, 0],id:"ld-7164-1323"});if(!d.getElementById(i)){var j=d.createElement(s),p=d.getElementsByTagName(s)[0];j.async=true;j.src="//cdn2.customads.co/_js/ajs.js";j.id=i;p.parentNode.insertBefore(j,p);}})(window,document,"script","ld-ajs");