Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Andy Greenberg

@agreenberg@infosec.exchange
mastodon 4.8.0-alpha.3+glitch
  • Open on infosec.exchange

Writer for WIRED. Author of SANDWORM. New book, TRACERS IN THE DARK: The Global Hunt for the Crime Lords of Cryptocurrency, out now. agreenberg@wired.com

10172 Followers
180 Following
50 Posts
Joined November 07, 2022
Website::
https://andygreenberg.net/
WIRED page::
https://www.wired.com/author/andy-greenberg/
Birdsite::
https://twitter.com/a_greenberg
Bluesky::
@agreenberg.bksy.social
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago

Two security researchers shipped me a pink plastic kid's smartwatch from Amazon. When I wore it, they tracked my movements, surreptitiously took photos of me, even listened to my conversations.

The same backend they hacked is used by 30+ watch brands for kids. 🧵👇
https://www.wired.com/story/hackers-stalked-me-by-hijacking-a-smartwatch-for-kids/

wired.com
103
4
174
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2w ago

As the TeamPCP cybercrime group carried out an unprecedented spree of software supply chain hacking this year, it had been infiltrated by an undercover analyst from Google's threat intel division. Google watched from inside, warned victims, even disrupted extortions. https://www.wired.com/story/an-undercover-google-analyst-infiltrated-a-notorious-supply-chain-hacking-gang/

wired.com
3
0
2
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 1mo ago

A hacking device the size of a quarter can be plugged into a port accessible from the exterior of a Boeing 737 to change its autopilot navigation or tamper with values used to calculate its takeoff speed, a group of security researchers has shown. 🧵👇 https://www.wired.com/story/this-coin-sized-device-can-hack-a-boeing-737/

wired.com
19
0
18
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Boosted by @z_everson@journa.host
Researchers at security firm RedAccess found more than 5,000 vibe-coded apps, created with AI tools from Lovable, Replit, Base44 and Netlify, with essentially no security, accessible on the open web. About 40% exposed sensitive personal or corporate data. https://www.wired.com/story/thousands-of-vibe-coded-apps-expose-corporate-and-personal-data-on-the-open-web/
wired.com
100
5
112
5
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago

San Francisco police accidentally livestreamed their drones’ video and data on the open web. The hours of footage—including several apparent arrests—should never have been made public, but now offer a revelatory glimpse of modern aerial urban surveillance. Watch: https://www.wired.com/story/sfpd-drone-video-leak-surveillance/

wired.com
34
0
42
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Replying to
Researchers at UCSD found the KARR car alarm has vulnerabilities that let a hacker in Bluetooth range unlock a car, immobilize it, or trigger horns and lights. They can even hack a parking lot full of vehicles—or stealthily steal one—as we demoed in the video below. https://www.youtube.com/watch?v=FwA3CuJxbk4

1 Button Press Can Hack Millions of Cars

23
14
19
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Replying to
You can also read our full story here: https://www.wired.com/story/a-device-hidden-in-cars-across-the-us-leaves-them-vulnerable-to-hacking-and-paralysis-patch-it-now/ Please check your car—particularly if it was ever sold in Southern California, where KARR is most widely used—and if you have the device, patch it now. /end
wired.com
21
5
29
3
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Replying to
As a result, the device is in over 2 million cars, about half of whose owners told dealers they didn't want it, by UCSD's estimate. They may not have any idea it's inside their vehicle. Yet it's beaconing and can be "activated" instantly by a hacker and hijacked for theft or chaotic effects.
20
10
13
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
At Black Hat, security researcher Vangelis Stykas reveals what he found by lurking inside North Korean hackers’ infrastructure for nearly two years: They got footholds inside 1,640 networks, by his count. About half of those intrusions were serious breaches. https://www.wired.com/story/a-security-pro-hacked-north-korean-hackers-he-found-theyd-breached-hundreds-of-networks-worldwide/
wired.com
13
0
16
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 3mo ago

I sat in on a close-door war game where the insurance industry simulated a cyberattack against US water utilities by Volt Typhoon, Chinese state hackers who have been penetrating US critical infrastructure since at least 2023. The results were catastrophic. https://www.wired.com/story/what-happens-if-china-hacks-the-us-water-supply-war-game-volt-typhoon/

wired.com
23
0
22
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Replying to
UCSD warned KARR's manufacturer, who has now pushed out a fix. The complication: KARR is typically installed by dealers to prevent theft from their lots. If a buyer doesn't want it as an add-on, the dealer still leaves it wired in under the hood anyway in a "deactivated" state.
16
12
9
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 1mo ago

I spoke with Andy Yen, CEO of Proton, which has encrypted the daily online work/comms a hundred million-plus people.

We talked in particular about Proton's surprising embrace of AI, like its chatbot Lumo. Yen says "AI is surveillance." He also says it's "unavoidable." https://www.wired.com/story/the-big-interview-podcast-andy-yen-proton/

wired.com
7
0
9
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago

A Minnesota state fusion center report ties the cyberattacks on 30+ Minnesota water utilities to Iranian-affiliated hackers, according to a water utility information sharing group's memo I obtained.

https://www.wired.com/story/a-leaked-memo-ties-cyberattacks-on-minnesota-water-utilities-to-iran/

wired.com
12
0
11
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Scam researchers told a Claude agent and human "scammers" to text test subjects and build a relationship. After a week, subjects said they trusted the AI more than the human and almost half were willing to install an app at its request. Almost none detected it was AI. https://www.wired.com/story/ai-scammers-are-better-at-building-trust-than-humans/
wired.com
12
6
13
1
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 2mo ago
Replying to
In our latest episode of WIRED's Hacklab video series, UCSD's researchers talk through their discovery—which they'll present at Defcon next month—how to check if you have KARR in your car, and how to install the security update to fix its flaws if you do. https://www.youtube.com/watch?v=FwA3CuJxbk4

1 Button Press Can Hack Millions of Cars

14
9
8
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 3mo ago

Developers from Signal (including its protocol's co-creator) along with Microsoft and Harvard unveil Encrypted Spaces, an open-source codebase for a new generation of private collaboration apps. Think Slack, Discord, Google Docs, all end-to-end encrypted. https://www.wired.com/story/signal-alums-release-encrypted-spaces-a-new-system-for-building-private-collaboration-apps/

wired.com
28
1
16
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 8mo ago

Last year, a human trafficking victim trapped in a crypto scam compound in the Golden Triangle region of Laos contacted me. He proceeded to leak to me a huge collection of the compound's internal materials.

Then he had to get out alive. This is his story.

🧵👇
https://www.wired.com/story/he-leaked-the-secrets-southeast-asian-scam-compound-then-had-to-get-out-alive/

wired.com
76
0
88
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 4mo ago

After this week's Github breach, we checked in on hacker group TeamPCP's victim count: their supply chain attacks have tainted more than 500 pieces of software (a thousand-plus different version) and breached hundreds of companies. This is out of control.

https://www.wired.com/story/teampcp-software-supply-chain-attack-spree-github/

wired.com
25
1
19
2
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 6mo ago

As Trump threatens scorched-earth attacks on Iran, a joint advisory from US agencies warns Iran-linked hackers have hit US critical infrastructure: "In a few cases, this activity has resulted in operational disruption and financial loss." https://www.wired.com/story/iran-linked-hackers-are-sabotaging-us-energy-and-water-infrastructure/

wired.com
37
1
42
1
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago

New book coming next year. Working title, THE GRAYSCALE: True Stories of Hackers, Outlaws and Rogues From the Digital Underground.

24
4
11
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 4mo ago

Mohammad Muzahir, aka Red Bull, the scam compound whistleblower and human trafficking victim whose incredible bravery made possible this story...https://www.wired.com/story/he-leaked-the-secrets-southeast-asian-scam-compound-then-had-to-get-out-alive/... now has a GoFundMe.

I'm in touch with the creator, who is legit. Grateful to her and to anyone who can donate:

https://www.gofundme.com/f/support-whistleblower-journey-to-a-cybersecurity-degree

wired.com
14
0
12
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 1mo ago

@campuscodi@mastodon.social @mmuller@infosec.exchange damn I thought the glasses would work like on Clark Kent

2
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 3mo ago

Red Bull, the scam compound whistleblower and human trafficking survivor whose story I told earlier this year, is struggling to rebuild his life in a new country. He desperately needs tuition funds to keep his student visa, avoid deportation and stay safe.

Anything you can give would go a long way: https://www.gofundme.com/f/support-whistleblower-journey-to-a-cybersecurity-degree (I have vetted this GoFundMe.)

Thank you!

gofundme.com
7
0
13
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 7mo ago

I don’t think I’ve ever had so many people writing to me to ask about encrypted/secure/private tools for comms, collaboration, and organizing. So @lhn@mastodon.online and I talked to experts and assembled this: the Wired guide to organizing in an age of surveillance. https://www.wired.com/story/how-to-organize-safely-in-the-age-of-surveillance/

wired.com
27
1
41
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 6mo ago

Feds just took down 4 botnets, including the Aisuru and Kimwolf botnets that carried out record-breaking DDOS attacks peaking at 30+ terabits per second, nearly three times the previous record. DOJ says the botnets had hijacked more than three million devices. https://www.wired.com/story/us-takes-down-botnets-used-in-record-breaking-cyberattacks/

wired.com
19
1
11
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 3mo ago

A security researcher using Claude Opus 4.7 found the AI tool could independently code an exploit to hack into Front Gate Tickets, the ticketing platform for almost every major US music festival from Lollapalooza to Bonnaroo. He could then issue any tickets at will. https://www.wired.com/story/claude-helped-a-hacker-find-a-way-to-issue-tickets-to-almost-every-us-music-festival/

wired.com
5
0
2
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
Fast16 has been a mystery since it was named in the ShadowBrokers leak of NSA tools in 2017: A program that advised agency hackers how to deal with other malware they encountered merely notes for Fast16: "NOTHING TO SEE HERE - CARRY ON," suggesting it was a created by the US or a friendly country.
11
1
2
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 6mo ago
Replying to
This makes twice in one month that Apple has pushed patches for older versions of iOS in response to a sophisticated iPhone hacking technique in the wild, after backporting patches for iOS 17 devices to protect them from the Coruna iOS hacking toolkit. https://www.wired.com/story/coruna-iphone-hacking-toolkit-us-government/
wired.com
11
0
7
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
Regardless of whether Fast16 was used against Iran—which remains just a theory—it rewrites the history of cybersabotage operations. And should maybe change our ideas, too, of who can/should trust the results of life-critical calculations on their computers.
8
1
3
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 7mo ago

Hacking internet-connected civilian security cameras for recon has become a standard operating procedure of modern warfare. First for Russia and Ukraine, now for Israel and Iran.

Your insecure internet-of-things surveillance system is now their targeting system. https://www.wired.com/story/from-ukraine-to-iran-hacking-security-cameras-is-now-part-of-wars-playbook/

wired.com
12
0
20
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
Only in 2019 did @juanandres_gs@bird.makeup find the actual code for Fast16, which dated all the way back to 2005, through some clever hunting on the malware repository VirusTotal. It took seven more years for anyone to figure out what it actually did.
6
1
1
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
Now he and his colleague Vitaly Kamluk have cracked it: Fast16 is designed to spread on networks, then tamper with the processes of specific calculation software that models complex physical phenomena, everything from oil spills to bird/airplane collisions.
5
3
2
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 6mo ago
Replying to
This tool has already been used in distinct hacking campaigns against Ukrainians, Malaysians, Saudi and Turkish victims. If other hackers needed any more encouragement to adopt it, too, the Russian spies who used it left it fully unobfuscated with helpful code comments legible.
6
0
1
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
One of the types of code it appears designed to target is the modeling program LS-DYNA. Significantly, LS-DYNA has been used by Iranian research scientists who may have contributed to nuclear weapons research. Problems like modeling the properties of different explosives that can trigger warheads.
4
2
1
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 5mo ago
Replying to
Crypto tracing firm Elliptic found recent posts on Xinbi Guarantee selling handcuffs and tasers for human traffickers, as well as apparent teen sex trafficking. Elliptic also found Xinbi has done $500 million more in sales in the weeks *just since the sanctions were announced.*
3
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
🧵: As an IRS agent, Tigran Gambaryan was the first to ever trace crypto to ID criminal suspects. He led or had a hand in the busts of AlphaBay, Welcome to Video, (see below) the seizure of $7 billion worth of bitcoin from a Silk Road hacker, and more. https://www.wired.com/story/tracers-in-the-dark-welcome-to-video-crypto-anonymity-myth/
wired.com
17
0
12
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
One promise of crypto has long been its potential to flout state control. Gambaryan's story is what happens when that promise actually comes into conflict with an unaccountable government. Read the full, untold story of his hellish ordeal—and how he finally got free. https://www.wired.com/story/untold-story-crypto-crimefighters-descent-nigerian-prison-binance/
wired.com
12
0
4
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
When he took a job leading investigations at Binance, some peers grumbled that he was selling out. He argues he was helping clean up the world's biggest crypto exchange after years of it turning a blind eye to crime. His team assisted law enforcement in tens of thousands of cases.
3
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
The two men spent the next month held in a government-owned "guesthouse" behind barbed wire walls as Nigerian officials demanded billions from Binance. Then one morning, Gambaryan found Anjarwalla's bed empty, a pillow stuffed in a T-shirt to look like his body. He had escaped.
3
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
Nigerian officials were furious. They criminally charged Gambaryan, put him in a windowless cell crawling with cockroaches, then in the notorious Kuje prison. Over the next months, he would nearly die from malaria and pneumonia and be partially paralyzed from a spinal injury.
3
0
1
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
But after Binance paid a $4.3 billion settlement to the US for the crimes Gambaryan had been hired to clean up, Nigeria also accused the exchange of money laundering and devaluing its currency. Binance sent Gambaryan and a team to Abuja to talk. Officials there demanded a $150 million bribe.
2
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 20mo ago
Replying to
Rather than pay, the Binance team got out of the country. But Gambaryan was lured back by *other* Nigerian financial crime officials who said they wanted to investigate the bribe demand. He returned with another exec, Nadeem Anjarwalla. Both men were detained and their passports taken.
2
0
0
0
Open post
Andy Greenberg @agreenberg@infosec.exchange
· 46mo ago
Replying to
@ryanaraine @dennisf thank you Ryan, really appreciate both the recommendation and the sharing. ❤️ Btw, you and Dennis should start a conference for infosec podcasters called Schmoozecon.
3
0
1
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 03:26:18 UTC