Shane Huntley(@ShaneHuntley) 's Twitter Profileg
Shane Huntley

@ShaneHuntley

🇦🇺 Google's Threat Analysis Group. Pwnie award winner. Tweets are my own.

ID:27616593

linkhttps://blog.google/threat-analysis-group/ calendar_today30-03-2009 10:50:12

1,9K Tweets

16,5K Followers

987 Following

Kaz Nejatian(@CanadaKaz) 's Twitter Profile Photo

Long term value of a company is inversely correlated to the frequency with which its leaders feel like they can't speak the truth.

Political executives who care more about how they look than the truth destroy value. Yet, business school churn out so many of these people.

account_circle
Runa Sandvik(@runasand) 's Twitter Profile Photo

Since Apple is now notifying even more victims of spyware, let me resurface this article about Apple's Lockdown Mode, an opt-in iOS/iPadOS/macOS feature to defend against such attacks. glitchcat.xyz/p/four-things-…

account_circle
Shane Huntley(@ShaneHuntley) 's Twitter Profile Photo

Fascinating deck on the challenges commercial surveillance vendors and exploit vendors are facing and how it looks from their side.

Nice to see TAG and Mandiant report referenced on slide 56. Let's keep up the pressure.

account_circle
Bernardo Quintero(@bquintero) 's Twitter Profile Photo

We're expanding our team in Google Málaga!

Open positions:

Security Engineering Manager, Product Security Engineering, Cloud CISO
google.com/about/careers/…
Information Security Engineer, Product Security Engineering, Cloud CISO. Apply now!
google.com/about/careers/…

Apply now!

We're expanding our team in Google Málaga! Open positions: Security Engineering Manager, Product Security Engineering, Cloud CISO google.com/about/careers/… Information Security Engineer, Product Security Engineering, Cloud CISO. Apply now! google.com/about/careers/… Apply now!
account_circle
Shane Huntley(@ShaneHuntley) 's Twitter Profile Photo

Comprehensive report from Google's threat intelligence teams on 2023 observed 0 day in the wild.

There's protections we can apply now but we all need to continue to invest to make 0day harder and our systems safer countering these threats.

Comprehensive report from Google's threat intelligence teams on 2023 observed 0 day in the wild. There's protections we can apply now but we all need to continue to invest to make 0day harder and our systems safer countering these threats.
account_circle
Shane Huntley(@ShaneHuntley) 's Twitter Profile Photo

If you change your Mac's locale to 'English (Australia)' 'Trash' is renamed to 'Bin'.

Nice attention to detail.

If you change your Mac's locale to 'English (Australia)' 'Trash' is renamed to 'Bin'. Nice attention to detail.
account_circle
John Hultquist(@JohnHultquist) 's Twitter Profile Photo

APT29 (Midnight Blizzard/Cozy Bear) is targeting German political parties. The SVR has been on a tear lately and their mission of keeping Putin up to date on the West's thinking is especially important at this critical moment in the war. 1/2 mandiant.com/resources/blog…

account_circle
@norootcause@hachyderm.io on mastodon(@norootcause) 's Twitter Profile Photo

In a complex system, there isn’t a “safety” knob that you can just turn to the right to increase safety. Safety features increase complexity (new failure modes!) and have opportunity costs (finite resources!). Every intervention involves a tradeoff.

account_circle
Lorenzo Franceschi-Bicchierai(@lorenzofb) 's Twitter Profile Photo

NEW: Russian government hackers (Midnight Blizzard/SVR) keep hacking into Microsoft systems, the company revealed today.

The hackers are using information stolen last year to continue their attacks targeting source code and company systems.

techcrunch.com/2024/03/08/mic…

account_circle
Ryan Gallagher(@rj_gallagher) 's Twitter Profile Photo

New: Inside Microsoft's Bing search engine in China, which is censoring information on human rights, democracy, climate change & much more to satisfy China's authoritarian government: bloomberg.com/news/features/…

account_circle
Shane Huntley(@ShaneHuntley) 's Twitter Profile Photo

Quick stopover at Houston Space Center on my way to NYC.

Space stuff does reignite in me the optimism I had as a child that eventually led me to tech.

Quick stopover at Houston Space Center on my way to NYC. Space stuff does reignite in me the optimism I had as a child that eventually led me to tech.
account_circle
Lorenzo Franceschi-Bicchierai(@lorenzofb) 's Twitter Profile Photo

NEW: Spyware maker Variston has lost staff and is shutting down, according to former employees and sources close to the surveillance industry.

The company’s apparent demise came after Google “burned” Variston's name publicly, exposing its hacking tools.

techcrunch.com/2024/02/15/var…

account_circle
Shane Huntley(@ShaneHuntley) 's Twitter Profile Photo

'Three former employees said Google’s report in 2022 blew the lid on Variston’s secrecy. One of the employees said the Google report exposing Variston “might have been the beginning of the end” for the spyware maker.'

Anyway...

techcrunch.com/2024/02/15/var…

account_circle
Katie Nickels(@likethecoins) 's Twitter Profile Photo

This is interesting research that's worth reading. I'd encourage readers to also consider what's NOT here - these groups didn't use LLMs to make new malware or find zero-days. They used them to help research and write scripts. I'm not panicking about this...

account_circle