home.social

Search

277 results for “zacpwhite”

  1. "The creator of the open source WireGuard VPN software [was] locked out of his Microsoft developer account, and as a result cannot sign drivers or ship updates for WireGuard for Windows users ...

    In the case of VeraCrypt ... its developer [said] being locked out of his account means he is unable to update the software in time for a crucial certificate authority expiry, which... may prevent some users from booting up"

    mastodon.social/@zackwhittaker

    #microslop #windows #microsoft #wireguard #veracrypt

  2. "The creator of the open source WireGuard VPN software [was] locked out of his Microsoft developer account, and as a result cannot sign drivers or ship updates for WireGuard for Windows users ...

    In the case of VeraCrypt ... its developer [said] being locked out of his account means he is unable to update the software in time for a crucial certificate authority expiry, which... may prevent some users from booting up"

    mastodon.social/@zackwhittaker

    #microslop #windows #microsoft #wireguard #veracrypt

  3. "The creator of the open source WireGuard VPN software [was] locked out of his Microsoft developer account, and as a result cannot sign drivers or ship updates for WireGuard for Windows users ...

    In the case of VeraCrypt ... its developer [said] being locked out of his account means he is unable to update the software in time for a crucial certificate authority expiry, which... may prevent some users from booting up"

    mastodon.social/@zackwhittaker

    #microslop #windows #microsoft #wireguard #veracrypt

  4. "The creator of the open source WireGuard VPN software [was] locked out of his Microsoft developer account, and as a result cannot sign drivers or ship updates for WireGuard for Windows users ...

    In the case of VeraCrypt ... its developer [said] being locked out of his account means he is unable to update the software in time for a crucial certificate authority expiry, which... may prevent some users from booting up"

    mastodon.social/@zackwhittaker

    #microslop #windows #microsoft #wireguard #veracrypt

  5. #Microsoft locks account that #VeraCrypt maintainer uses to sign #Windows bootloaders with no explanation or route for appeal. If they don't fix this, in a few months every Windows computer that uses VeraCrypt whole-disk encryption will stop being able to boot and all the data on it that isn't backed up elsewhere will be lost. 🤦
    If this doesn't convince you big tech has too much control, I don't know what will.
    h/t @zackwhittaker
    techcrunch.com/2026/04/08/vera
    #infosec #privacy #TechIsShitDispatch

  6. When people keep advising victims not to pay ransom because threat actors can't be trusted to really delete all the data, my inner researcher kicks in and wants to know how often that really happens.

    So I started sending out inquiries.

    Now you might think that those who publicly and repeatedly urge journalists to "spread the word" not to pay would respond and share some of their experiences with untrustworthy threat actors, but no..... they didn't even respond.

    Read about the replies I did get, because they really surprised me.

    I have no doubt that some professionals will hate what I have reported, but then, perhaps they should have responded, too, if they think differently.

    How often do threat actors default on promises to delete data?
    databreaches.net/2026/04/05/ho

    #databreach #incidentresponse #ransom

    @zackwhittaker @campuscodi @euroinfosec @lawrenceabrams @jgreig @securityaffairs @Hackread @h4ckernews

  7. Looks like the bad guys are using the email addresses harvested from the #CondéNast / #WIRED #breach. I just received this #phishing email on an #Addyio email address I've never used for anything else. I'll be deactivating the email address, of course.
    I like #Addyio, but there's one important feature it's missing: I really wish they would implement an integration with #HaveIBeenPwned.
    Ref: haveibeenpwned.com/Breach/WIRED
    FYI @troyhunt @zackwhittaker @briankrebs
    #spam #infosec #privacy

  8. Looks like the bad guys are using the email addresses harvested from the #CondéNast / #WIRED #breach. I just received this #phishing email on an #Addyio email address I've never used for anything else. I'll be deactivating the email address, of course.
    I like #Addyio, but there's one important feature it's missing: I really wish they would implement an integration with #HaveIBeenPwned.
    Ref: haveibeenpwned.com/Breach/WIRED
    FYI @troyhunt @zackwhittaker @briankrebs
    #spam #infosec #privacy

  9. Looks like the bad guys are using the email addresses harvested from the #CondéNast / #WIRED #breach. I just received this #phishing email on an #Addyio email address I've never used for anything else. I'll be deactivating the email address, of course.
    I like #Addyio, but there's one important feature it's missing: I really wish they would implement an integration with #HaveIBeenPwned.
    Ref: haveibeenpwned.com/Breach/WIRED
    FYI @troyhunt @zackwhittaker @briankrebs
    #spam #infosec #privacy

  10. Looks like the bad guys are using the email addresses harvested from the #CondéNast / #WIRED #breach. I just received this #phishing email on an #Addyio email address I've never used for anything else. I'll be deactivating the email address, of course.
    I like #Addyio, but there's one important feature it's missing: I really wish they would implement an integration with #HaveIBeenPwned.
    Ref: haveibeenpwned.com/Breach/WIRED
    FYI @troyhunt @zackwhittaker @briankrebs
    #spam #infosec #privacy

  11. Looks like the bad guys are using the email addresses harvested from the #CondéNast / #WIRED #breach. I just received this #phishing email on an #Addyio email address I've never used for anything else. I'll be deactivating the email address, of course.
    I like #Addyio, but there's one important feature it's missing: I really wish they would implement an integration with #HaveIBeenPwned.
    Ref: haveibeenpwned.com/Breach/WIRED
    FYI @troyhunt @zackwhittaker @briankrebs
    #spam #infosec #privacy

  12. Also NEW by me:

    "If threat actors gave you a chance to redact the patient data they hacked before they leak it, would you take them up on the offer? Read about the Woundtech incident."

    I've never encountered any threat actors spending so much time redacting patient data before they leak it -- and even giving their victim the opportunity to redact the hacked data tranche before the threat actors leak it.

    Read more about this one at:

    databreaches.net/2026/03/23/if

    #databreach #healthsec #woundtech #cybersecurity #redaction #incidentresponse #FulcrumSec

    @zackwhittaker @campuscodi @euroinfosec @DysruptionHub @amvinfe

  13. Also NEW by me:

    "If threat actors gave you a chance to redact the patient data they hacked before they leak it, would you take them up on the offer? Read about the Woundtech incident."

    I've never encountered any threat actors spending so much time redacting patient data before they leak it -- and even giving their victim the opportunity to redact the hacked data tranche before the threat actors leak it.

    Read more about this one at:

    databreaches.net/2026/03/23/if

    #databreach #healthsec #woundtech #cybersecurity #redaction #incidentresponse #FulcrumSec

    @zackwhittaker @campuscodi @euroinfosec @DysruptionHub @amvinfe

  14. Also NEW by me:

    "If threat actors gave you a chance to redact the patient data they hacked before they leak it, would you take them up on the offer? Read about the Woundtech incident."

    I've never encountered any threat actors spending so much time redacting patient data before they leak it -- and even giving their victim the opportunity to redact the hacked data tranche before the threat actors leak it.

    Read more about this one at:

    databreaches.net/2026/03/23/if

    #databreach #healthsec #woundtech #cybersecurity #redaction #incidentresponse #FulcrumSec

    @zackwhittaker @campuscodi @euroinfosec @DysruptionHub @amvinfe

  15. Also NEW by me:

    "If threat actors gave you a chance to redact the patient data they hacked before they leak it, would you take them up on the offer? Read about the Woundtech incident."

    I've never encountered any threat actors spending so much time redacting patient data before they leak it -- and even giving their victim the opportunity to redact the hacked data tranche before the threat actors leak it.

    Read more about this one at:

    databreaches.net/2026/03/23/if

    #databreach #healthsec #woundtech #cybersecurity #redaction #incidentresponse #FulcrumSec

    @zackwhittaker @campuscodi @euroinfosec @DysruptionHub @amvinfe

  16. This is an astounding article from @WIRED. It's about how a man trapped into being a pig-butchering scammer stole reams of data about the operations of the scam shop he was enslaved in, and ultimately escaped.
    I highly recommend it.
    h/t @zackwhittaker
    wired.com/story/he-leaked-the-
    Free link: archive.ph/4lBx1
    #infosec #privacy #PigButchering

  17. This is an astounding article from @WIRED. It's about how a man trapped into being a pig-butchering scammer stole reams of data about the operations of the scam shop he was enslaved in, and ultimately escaped.
    I highly recommend it.
    h/t @zackwhittaker
    wired.com/story/he-leaked-the-
    Free link: archive.ph/4lBx1
    #infosec #privacy #PigButchering

  18. This is an astounding article from @WIRED. It's about how a man trapped into being a pig-butchering scammer stole reams of data about the operations of the scam shop he was enslaved in, and ultimately escaped.
    I highly recommend it.
    h/t @zackwhittaker
    wired.com/story/he-leaked-the-
    Free link: archive.ph/4lBx1
    #infosec #privacy #PigButchering

  19. This is an astounding article from @WIRED. It's about how a man trapped into being a pig-butchering scammer stole reams of data about the operations of the scam shop he was enslaved in, and ultimately escaped.
    I highly recommend it.
    h/t @zackwhittaker
    wired.com/story/he-leaked-the-
    Free link: archive.ph/4lBx1
    #infosec #privacy #PigButchering

  20. This is an astounding article from @WIRED. It's about how a man trapped into being a pig-butchering scammer stole reams of data about the operations of the scam shop he was enslaved in, and ultimately escaped.
    I highly recommend it.
    h/t @zackwhittaker
    wired.com/story/he-leaked-the-
    Free link: archive.ph/4lBx1
    #infosec #privacy #PigButchering

  21. 𝐖𝐡𝐞𝐧 𝐒𝐢𝐥𝐞𝐧𝐜𝐞 𝐁𝐞𝐜𝐨𝐦𝐞𝐬 𝐌𝐚𝐧𝐝𝐚𝐭𝐨𝐫𝐲: 𝐀 𝐂𝐡𝐫𝐨𝐧𝐢𝐜𝐥𝐞 𝐨𝐟 𝐚𝐧 𝐈𝐧𝐣𝐮𝐧𝐜𝐭𝐢𝐨𝐧

    Writing about cybersecurity required time, study, and rigour for work I felt was necessary. One article naturally led to the next; one case connected to the previous one. It was demanding but manageable, and above all, consistent with the journalistic principles I had chosen to uphold.

    suspectfile.com/when-silence-b

    @campuscodi @zackwhittaker
    @jgreigj @lawrenceabrams @briankrebs @PogoWasRight

    #HCRG #Injunctions #Law #Private_Life #UK_High_Court_Injunction

  22. 𝐖𝐡𝐞𝐧 𝐒𝐢𝐥𝐞𝐧𝐜𝐞 𝐁𝐞𝐜𝐨𝐦𝐞𝐬 𝐌𝐚𝐧𝐝𝐚𝐭𝐨𝐫𝐲: 𝐀 𝐂𝐡𝐫𝐨𝐧𝐢𝐜𝐥𝐞 𝐨𝐟 𝐚𝐧 𝐈𝐧𝐣𝐮𝐧𝐜𝐭𝐢𝐨𝐧

    Writing about cybersecurity required time, study, and rigour for work I felt was necessary. One article naturally led to the next; one case connected to the previous one. It was demanding but manageable, and above all, consistent with the journalistic principles I had chosen to uphold.

    suspectfile.com/when-silence-b

    @campuscodi @zackwhittaker
    @jgreigj @lawrenceabrams @briankrebs @PogoWasRight

    #HCRG #Injunctions #Law #Private_Life #UK_High_Court_Injunction

  23. 𝐖𝐡𝐞𝐧 𝐒𝐢𝐥𝐞𝐧𝐜𝐞 𝐁𝐞𝐜𝐨𝐦𝐞𝐬 𝐌𝐚𝐧𝐝𝐚𝐭𝐨𝐫𝐲: 𝐀 𝐂𝐡𝐫𝐨𝐧𝐢𝐜𝐥𝐞 𝐨𝐟 𝐚𝐧 𝐈𝐧𝐣𝐮𝐧𝐜𝐭𝐢𝐨𝐧

    Writing about cybersecurity required time, study, and rigour for work I felt was necessary. One article naturally led to the next; one case connected to the previous one. It was demanding but manageable, and above all, consistent with the journalistic principles I had chosen to uphold.

    suspectfile.com/when-silence-b

    @campuscodi @zackwhittaker
    @jgreigj @lawrenceabrams @briankrebs @PogoWasRight

    #HCRG #Injunctions #Law #Private_Life #UK_High_Court_Injunction

  24. 𝐖𝐡𝐞𝐧 𝐒𝐢𝐥𝐞𝐧𝐜𝐞 𝐁𝐞𝐜𝐨𝐦𝐞𝐬 𝐌𝐚𝐧𝐝𝐚𝐭𝐨𝐫𝐲: 𝐀 𝐂𝐡𝐫𝐨𝐧𝐢𝐜𝐥𝐞 𝐨𝐟 𝐚𝐧 𝐈𝐧𝐣𝐮𝐧𝐜𝐭𝐢𝐨𝐧

    Writing about cybersecurity required time, study, and rigour for work I felt was necessary. One article naturally led to the next; one case connected to the previous one. It was demanding but manageable, and above all, consistent with the journalistic principles I had chosen to uphold.

    suspectfile.com/when-silence-b

    @campuscodi @zackwhittaker
    @jgreigj @lawrenceabrams @briankrebs @PogoWasRight

    #HCRG #Injunctions #Law #Private_Life #UK_High_Court_Injunction

  25. 𝐖𝐡𝐞𝐧 𝐒𝐢𝐥𝐞𝐧𝐜𝐞 𝐁𝐞𝐜𝐨𝐦𝐞𝐬 𝐌𝐚𝐧𝐝𝐚𝐭𝐨𝐫𝐲: 𝐀 𝐂𝐡𝐫𝐨𝐧𝐢𝐜𝐥𝐞 𝐨𝐟 𝐚𝐧 𝐈𝐧𝐣𝐮𝐧𝐜𝐭𝐢𝐨𝐧

    Writing about cybersecurity required time, study, and rigour for work I felt was necessary. One article naturally led to the next; one case connected to the previous one. It was demanding but manageable, and above all, consistent with the journalistic principles I had chosen to uphold.

    suspectfile.com/when-silence-b

    @campuscodi @zackwhittaker
    @jgreigj @lawrenceabrams @briankrebs @PogoWasRight

    #HCRG #Injunctions #Law #Private_Life #UK_High_Court_Injunction

  26. For those being notified or first learning about the #WIRED #databreach:

    On December 25, I broke the story of how I had been contacted in November by "Lovely," who claimed to have discovered a vulnerability. They asked for help getting Condé Nast to respond to them. They claimed they were not seeking any bounty or payment and had only downloaded a few profiles as proof.

    They showed me my own data.

    Trying to help, I reached out to Condé Nast corporate as well as to a contact at #WIRED.

    Condé Nast never responded to me -- or to "Lovely" who eventually showed their true colors as someone trying to extort Condé Nast.

    Do they have more data? Yes, it appears they do.

    @troyhunt verified the data leak and #HIBP has been notifying its affected subscribers.

    Read more details in my blog post at databreaches.net/2025/12/25/co

    @zackwhittaker @campuscodi @gcluley @euroinfosec @ValeryMarchive

    #databreach #dataleak #infosec #cybersecurity #incidentresponse #CondeNast

  27. NEW by me:

    From bad to worse: Doctor Alliance hacked again by same threat actor

    databreaches.net/2025/11/18/fr

    This is a bad #databreach in terms of the #PII and #PHI acquired by the hacker, "Kazu," who is about to leak it all.
    Oof.

    Background: I reported on the first breach/attack a few days ago at databreaches.net/2025/11/12/do

    When the CEO claimed it was all secured the same day, the hacker got ticked off and went back in and hacked them again.

    #HealthSec #HIPAA #BusinessAssociate #thirdparty #vendor #hack #ransom #cybersecurity #incidentresponse

    @zackwhittaker @campuscodi @euroinfosec @Hackread

  28. NEW by me:

    From bad to worse: Doctor Alliance hacked again by same threat actor

    databreaches.net/2025/11/18/fr

    This is a bad #databreach in terms of the #PII and #PHI acquired by the hacker, "Kazu," who is about to leak it all.
    Oof.

    Background: I reported on the first breach/attack a few days ago at databreaches.net/2025/11/12/do

    When the CEO claimed it was all secured the same day, the hacker got ticked off and went back in and hacked them again.

    #HealthSec #HIPAA #BusinessAssociate #thirdparty #vendor #hack #ransom #cybersecurity #incidentresponse

    @zackwhittaker @campuscodi @euroinfosec @Hackread

  29. NEW by me:

    From bad to worse: Doctor Alliance hacked again by same threat actor

    databreaches.net/2025/11/18/fr

    This is a bad #databreach in terms of the #PII and #PHI acquired by the hacker, "Kazu," who is about to leak it all.
    Oof.

    Background: I reported on the first breach/attack a few days ago at databreaches.net/2025/11/12/do

    When the CEO claimed it was all secured the same day, the hacker got ticked off and went back in and hacked them again.

    #HealthSec #HIPAA #BusinessAssociate #thirdparty #vendor #hack #ransom #cybersecurity #incidentresponse

    @zackwhittaker @campuscodi @euroinfosec @Hackread

  30. NEW by me:

    From bad to worse: Doctor Alliance hacked again by same threat actor

    databreaches.net/2025/11/18/fr

    This is a bad #databreach in terms of the #PII and #PHI acquired by the hacker, "Kazu," who is about to leak it all.
    Oof.

    Background: I reported on the first breach/attack a few days ago at databreaches.net/2025/11/12/do

    When the CEO claimed it was all secured the same day, the hacker got ticked off and went back in and hacked them again.

    #HealthSec #HIPAA #BusinessAssociate #thirdparty #vendor #hack #ransom #cybersecurity #incidentresponse

    @zackwhittaker @campuscodi @euroinfosec @Hackread