#killchain — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #killchain, aggregated by home.social.
-
“UK boss brags about improving UK military ‘kill chain’”
by Joe Glenton in The Canary
@thecanaryuk
@uk_politics
@UKLabour
@[email protected]
@[email protected]“The British military finds itself in dubious company once again. Relying on Anduril’s technology ties the UK deeper into the US-Israeli colonial security framework. The firm claims it isn’t using fully autonomous killing systems yet, but has made clear that capacity exists. These rapid developments are outstripping international law’s ability to catch up — with dangerous implications for everyone”
https://www.thecanary.co/uncategorized-en/2026/04/27/uk-military-adopts-anduril-lethal-ai-tech/
#Press #SocialMedia #UK #BritishMilitary #Anduril #KillChain #Israel #US #Colonial #AutonomousKilling #Rafael #Oracle #Lattice
-
“UK boss brags about improving UK military ‘kill chain’”
by Joe Glenton in The Canary
@thecanaryuk
@uk_politics
@UKLabour
@[email protected]
@[email protected]“The British military finds itself in dubious company once again. Relying on Anduril’s technology ties the UK deeper into the US-Israeli colonial security framework. The firm claims it isn’t using fully autonomous killing systems yet, but has made clear that capacity exists. These rapid developments are outstripping international law’s ability to catch up — with dangerous implications for everyone”
https://www.thecanary.co/uncategorized-en/2026/04/27/uk-military-adopts-anduril-lethal-ai-tech/
#Press #SocialMedia #UK #BritishMilitary #Anduril #KillChain #Israel #US #Colonial #AutonomousKilling #Rafael #Oracle #Lattice
-
“UK boss brags about improving UK military ‘kill chain’”
by Joe Glenton in The Canary
@thecanaryuk
@uk_politics
@UKLabour
@[email protected]
@[email protected]“The British military finds itself in dubious company once again. Relying on Anduril’s technology ties the UK deeper into the US-Israeli colonial security framework. The firm claims it isn’t using fully autonomous killing systems yet, but has made clear that capacity exists. These rapid developments are outstripping international law’s ability to catch up — with dangerous implications for everyone”
https://www.thecanary.co/uncategorized-en/2026/04/27/uk-military-adopts-anduril-lethal-ai-tech/
#Press #SocialMedia #UK #BritishMilitary #Anduril #KillChain #Israel #US #Colonial #AutonomousKilling #Rafael #Oracle #Lattice
-
“UK boss brags about improving UK military ‘kill chain’”
by Joe Glenton in The Canary
@thecanaryuk
@uk_politics
@UKLabour
@[email protected]
@[email protected]“The British military finds itself in dubious company once again. Relying on Anduril’s technology ties the UK deeper into the US-Israeli colonial security framework. The firm claims it isn’t using fully autonomous killing systems yet, but has made clear that capacity exists. These rapid developments are outstripping international law’s ability to catch up — with dangerous implications for everyone”
https://www.thecanary.co/uncategorized-en/2026/04/27/uk-military-adopts-anduril-lethal-ai-tech/
#Press #SocialMedia #UK #BritishMilitary #Anduril #KillChain #Israel #US #Colonial #AutonomousKilling #Rafael #Oracle #Lattice
-
“UK boss brags about improving UK military ‘kill chain’”
by Joe Glenton in The Canary
@thecanaryuk
@uk_politics
@UKLabour
@[email protected]
@[email protected]“The British military finds itself in dubious company once again. Relying on Anduril’s technology ties the UK deeper into the US-Israeli colonial security framework. The firm claims it isn’t using fully autonomous killing systems yet, but has made clear that capacity exists. These rapid developments are outstripping international law’s ability to catch up — with dangerous implications for everyone”
https://www.thecanary.co/uncategorized-en/2026/04/27/uk-military-adopts-anduril-lethal-ai-tech/
#Press #SocialMedia #UK #BritishMilitary #Anduril #KillChain #Israel #US #Colonial #AutonomousKilling #Rafael #Oracle #Lattice
-
Palantir Goes Mask-Off For Fascism. It Won’t End Well.
https://www.techdirt.com/2026/04/20/palantir-goes-mask-off-for-fascism-it-wont-end-well/
the company seems to be betting that Trumpist-flavored authoritarianism is a permanent feature of the American political landscape — and that going all-in on it will never, ever have any long-term consequences.…
#Palantir #MaskOff #Fascism #AllIn #Consequences #GlobalSurveillance #KillChain
-
Palantir Goes Mask-Off For Fascism. It Won’t End Well.
https://www.techdirt.com/2026/04/20/palantir-goes-mask-off-for-fascism-it-wont-end-well/
the company seems to be betting that Trumpist-flavored authoritarianism is a permanent feature of the American political landscape — and that going all-in on it will never, ever have any long-term consequences.…
#Palantir #MaskOff #Fascism #AllIn #Consequences #GlobalSurveillance #KillChain
-
Palantir Goes Mask-Off For Fascism. It Won’t End Well.
https://www.techdirt.com/2026/04/20/palantir-goes-mask-off-for-fascism-it-wont-end-well/
the company seems to be betting that Trumpist-flavored authoritarianism is a permanent feature of the American political landscape — and that going all-in on it will never, ever have any long-term consequences.…
#Palantir #MaskOff #Fascism #AllIn #Consequences #GlobalSurveillance #KillChain
-
Palantir Goes Mask-Off For Fascism. It Won’t End Well.
https://www.techdirt.com/2026/04/20/palantir-goes-mask-off-for-fascism-it-wont-end-well/
the company seems to be betting that Trumpist-flavored authoritarianism is a permanent feature of the American political landscape — and that going all-in on it will never, ever have any long-term consequences.…
#Palantir #MaskOff #Fascism #AllIn #Consequences #GlobalSurveillance #KillChain
-
Palantir Goes Mask-Off For Fascism. It Won’t End Well.
https://www.techdirt.com/2026/04/20/palantir-goes-mask-off-for-fascism-it-wont-end-well/
the company seems to be betting that Trumpist-flavored authoritarianism is a permanent feature of the American political landscape — and that going all-in on it will never, ever have any long-term consequences.…
#Palantir #MaskOff #Fascism #AllIn #Consequences #GlobalSurveillance #KillChain
-
« The US Air Force and […] partners are fielding new mission capabilities on airframes and command-and-control nodes to compress the #KillChain. The find, fix, track, target, engage, assess process requires ubiquitous access to data […]
Red Hat Device Edge embeds […] data sets in a manner that positions the warfighter to use AI and ML to increase the accuracy of airborne targeting and mission-guidance systems »
-
France’s evolving battlefield doctrine increasingly reflects a network-centric warfare model, where platforms like a Hornet-class reconnaissance drone act as a forward ISR node, feeding real-time data into a broader #KillChain. In such a setup, the Hornet performs #Targeting and #TargetDesignation, rapidly identifying and geo-locating threats at the tactical edge.
This data is transmitted through #C2 systems, enabling assets like the #MQ9Reaper to assume control of the engagement cycle. The Reaper conducts #ISR, confirms the target (PID), and executes a #PrecisionStrike using #AGM114 #Hellfire missiles with #LaserGuidance.
The integration of low-level reconnaissance drones with high-end strike platforms significantly compresses the #SensorToShooter loop, enhancing #SituationalAwareness and reducing response time. This architecture enables efficient #CloseAirSupport, persistent surveillance, and immediate #BDA, making it a cornerstone of #ModernWarfare and #DroneWarfare.
-
France’s evolving battlefield doctrine increasingly reflects a network-centric warfare model, where platforms like a Hornet-class reconnaissance drone act as a forward ISR node, feeding real-time data into a broader #KillChain. In such a setup, the Hornet performs #Targeting and #TargetDesignation, rapidly identifying and geo-locating threats at the tactical edge.
This data is transmitted through #C2 systems, enabling assets like the #MQ9Reaper to assume control of the engagement cycle. The Reaper conducts #ISR, confirms the target (PID), and executes a #PrecisionStrike using #AGM114 #Hellfire missiles with #LaserGuidance.
The integration of low-level reconnaissance drones with high-end strike platforms significantly compresses the #SensorToShooter loop, enhancing #SituationalAwareness and reducing response time. This architecture enables efficient #CloseAirSupport, persistent surveillance, and immediate #BDA, making it a cornerstone of #ModernWarfare and #DroneWarfare.
-
Blaming AI error for the US attack on Shajareh Tayyebeh misses the point, argues Kevin Baker. This isn’t something better guardrails or algorithms could have stopped. The real fault lies with the people who decided to compress kill chains, build systems that generate thousands of targeting decisions each hour, and launch illegal wars 👇
#AIWarfare #KillChain #MilitaryAI
https://artificialbureaucracy.substack.com/p/kill-chain -
#KillChain worth reading yourself:
“Decision” is wandering now. In the military context it means the system’s output, a targeting nomination scored and forwarded. In journalism and tech criticism it means much the same, the thing the AI got wrong. In neither of these does it mean what it used to mean, which is a person choosing to do something for which they could be held accountable. People are still making decisions in that sense. Someone decided to compress the kill chain. Someone decided...🧵 -
Palantir boldly defends its pivotal role in the "kill chain," with CEO Alex Karp declaring: "We are very, very proud of that." ⚔️💻 The tech giant highlights its AI-driven contributions to military precision amid fierce debate. #Palantir #AI #KillChain https://www.heise.de/en/news/Palantir-defends-its-role-in-the-kill-chain-We-are-very-very-proud-of-that-11211275.html
Personal opinion 🤢
-
"In Iran, AI has potentially already been involved in identifying exponentially more targets than in previous wars, said Utrecht University’s Dorsey. Those targets could have existed beforehand — or they could have been generated quickly by AI systems, creating a serious concern about how carefully these have been vetted as required by law, she said.
“How do you lift the veil on a system making 37mn computations per second? How on earth would you even be able to even trace that back in any way?” Dorsey said. “Are you going to meaningfully exercise context-appropriate human control and judgment over decisions that are generated by these systems?”"
https://www.ft.com/content/fedb262e-e6db-40bc-a4d0-080812f0f82b
-
IT-Rechtlerin - “Der Irankrieg ist eine Testphase für viele Felder der KI”
IT-Juristin Verena Jackson kennt viele Beispiele für den Einsatz von KI im Irankrieg. Auch autonome Systeme würden getestet.#Drohnen #Kill-Chain #Ethik #Kriegsführung
“Der Irankrieg ist eine Testphase für viele Felder der künstlichen Intelligenz” -
"Shortening the kill chain” - quicker than “the speed of thought”
"The use of AI tools to enable attacks on Iran heralds a new era of bombing quicker than “the speed of thought”, experts have said, amid fears human decision-makers could be sidelined... Academics say AI is collapsing the time required for military decision-making. >>
https://www.theguardian.com/technology/2026/mar/03/iran-war-heralds-era-of-ai-powered-bombing-quicker-than-speed-of-thought
#technology #AI #ethics #KillChain #FullyAutonomousWeapons #algorithm #CognitiveOffLoading #speed #violence #DecisionMaking #HumanOversight -
"Shortening the kill chain” - quicker than “the speed of thought”
"The use of AI tools to enable attacks on Iran heralds a new era of bombing quicker than “the speed of thought”, experts have said, amid fears human decision-makers could be sidelined... Academics say AI is collapsing the time required for military decision-making. >>
https://www.theguardian.com/technology/2026/mar/03/iran-war-heralds-era-of-ai-powered-bombing-quicker-than-speed-of-thought
#technology #AI #ethics #KillChain #FullyAutonomousWeapons #algorithm #CognitiveOffLoading #speed #violence #DecisionMaking #HumanOversight -
"Shortening the kill chain” - quicker than “the speed of thought”
"The use of AI tools to enable attacks on Iran heralds a new era of bombing quicker than “the speed of thought”, experts have said, amid fears human decision-makers could be sidelined... Academics say AI is collapsing the time required for military decision-making. >>
https://www.theguardian.com/technology/2026/mar/03/iran-war-heralds-era-of-ai-powered-bombing-quicker-than-speed-of-thought
#technology #AI #ethics #KillChain #FullyAutonomousWeapons #algorithm #CognitiveOffLoading #speed #violence #DecisionMaking #HumanOversight -
"Shortening the kill chain” - quicker than “the speed of thought”
"The use of AI tools to enable attacks on Iran heralds a new era of bombing quicker than “the speed of thought”, experts have said, amid fears human decision-makers could be sidelined... Academics say AI is collapsing the time required for military decision-making. >>
https://www.theguardian.com/technology/2026/mar/03/iran-war-heralds-era-of-ai-powered-bombing-quicker-than-speed-of-thought
#technology #AI #ethics #KillChain #FullyAutonomousWeapons #algorithm #CognitiveOffLoading #speed #violence #DecisionMaking #HumanOversight -
"Shortening the kill chain” - quicker than “the speed of thought”
"The use of AI tools to enable attacks on Iran heralds a new era of bombing quicker than “the speed of thought”, experts have said, amid fears human decision-makers could be sidelined... Academics say AI is collapsing the time required for military decision-making. >>
https://www.theguardian.com/technology/2026/mar/03/iran-war-heralds-era-of-ai-powered-bombing-quicker-than-speed-of-thought
#technology #AI #ethics #KillChain #FullyAutonomousWeapons #algorithm #CognitiveOffLoading #speed #violence #DecisionMaking #HumanOversight -
#Palantir: Why is the #Israel-linked #surveillance firm embedded in #Britain's #NHS?
Medical professionals, #lawyers and #activists express concern over the #Techgiant's government contracts given ties to #USImmigration and #IsraeliSurveillance operations
By Fleur Hargreaves, January 28, 2026
"The #UKGovernment is facing growing pressure over its decision to award large government contracts to #PalantirTechnologies, a US-based data and #ArtificialIntelligence [#AI] company.
"Partially funded by the #CIA at its inception, the company has faced heavy scrutiny after receiving a £330m ($413m) contract with #NHSEngland in 2023, which is up for renewal in 2027.
"It was also recently awarded a £240m deal with the British #MinistryOfDefence (#MoD) in December, three times more than a previous contract signed in 2022.
"Palantir entered into a strategic partnership with the MoD in September, in which it pledged a £1.5bn investment to 'boost military AI' and to 'work together to transform lethality in the battlefield', according to a government press release.
"Aspects of the deal included developing a so-called '#KillChain', which uses advanced data management and #AI to better strike 'enemy target[s]'.
"This increased integration of the tech firm within the UK’s health service and armed forces has raised alarm among campaigners, who point to the company’s involvement in the #genocide in #Gaza and US President Donald Trump’s lethal campaign against unauthorised immigration.
"British MPs have also raised concerns about Palantir’s defence contracts following an investigation that revealed the #SwissArmy had rejected the company over fears that US intelligence agencies would gain access to sensitive data."
#USPol #UKPol #WorldPol #AITools #WarMachines #Spying #SpyMachines #BigBrother #SurveillanceState #PayYourTaxes #TaxTheWarMachines
#AbolishPalantir #NoWar #TechnoFascism -
#Palantir: Why is the #Israel-linked #surveillance firm embedded in #Britain's #NHS?
Medical professionals, #lawyers and #activists express concern over the #Techgiant's government contracts given ties to #USImmigration and #IsraeliSurveillance operations
By Fleur Hargreaves, January 28, 2026
"The #UKGovernment is facing growing pressure over its decision to award large government contracts to #PalantirTechnologies, a US-based data and #ArtificialIntelligence [#AI] company.
"Partially funded by the #CIA at its inception, the company has faced heavy scrutiny after receiving a £330m ($413m) contract with #NHSEngland in 2023, which is up for renewal in 2027.
"It was also recently awarded a £240m deal with the British #MinistryOfDefence (#MoD) in December, three times more than a previous contract signed in 2022.
"Palantir entered into a strategic partnership with the MoD in September, in which it pledged a £1.5bn investment to 'boost military AI' and to 'work together to transform lethality in the battlefield', according to a government press release.
"Aspects of the deal included developing a so-called '#KillChain', which uses advanced data management and #AI to better strike 'enemy target[s]'.
"This increased integration of the tech firm within the UK’s health service and armed forces has raised alarm among campaigners, who point to the company’s involvement in the #genocide in #Gaza and US President Donald Trump’s lethal campaign against unauthorised immigration.
"British MPs have also raised concerns about Palantir’s defence contracts following an investigation that revealed the #SwissArmy had rejected the company over fears that US intelligence agencies would gain access to sensitive data."
#USPol #UKPol #WorldPol #AITools #WarMachines #Spying #SpyMachines #BigBrother #SurveillanceState #PayYourTaxes #TaxTheWarMachines
#AbolishPalantir #NoWar #TechnoFascism -
#Palantir: Why is the #Israel-linked #surveillance firm embedded in #Britain's #NHS?
Medical professionals, #lawyers and #activists express concern over the #Techgiant's government contracts given ties to #USImmigration and #IsraeliSurveillance operations
By Fleur Hargreaves, January 28, 2026
"The #UKGovernment is facing growing pressure over its decision to award large government contracts to #PalantirTechnologies, a US-based data and #ArtificialIntelligence [#AI] company.
"Partially funded by the #CIA at its inception, the company has faced heavy scrutiny after receiving a £330m ($413m) contract with #NHSEngland in 2023, which is up for renewal in 2027.
"It was also recently awarded a £240m deal with the British #MinistryOfDefence (#MoD) in December, three times more than a previous contract signed in 2022.
"Palantir entered into a strategic partnership with the MoD in September, in which it pledged a £1.5bn investment to 'boost military AI' and to 'work together to transform lethality in the battlefield', according to a government press release.
"Aspects of the deal included developing a so-called '#KillChain', which uses advanced data management and #AI to better strike 'enemy target[s]'.
"This increased integration of the tech firm within the UK’s health service and armed forces has raised alarm among campaigners, who point to the company’s involvement in the #genocide in #Gaza and US President Donald Trump’s lethal campaign against unauthorised immigration.
"British MPs have also raised concerns about Palantir’s defence contracts following an investigation that revealed the #SwissArmy had rejected the company over fears that US intelligence agencies would gain access to sensitive data."
#USPol #UKPol #WorldPol #AITools #WarMachines #Spying #SpyMachines #BigBrother #SurveillanceState #PayYourTaxes #TaxTheWarMachines
#AbolishPalantir #NoWar #TechnoFascism -
#Palantir: Why is the #Israel-linked #surveillance firm embedded in #Britain's #NHS?
Medical professionals, #lawyers and #activists express concern over the #Techgiant's government contracts given ties to #USImmigration and #IsraeliSurveillance operations
By Fleur Hargreaves, January 28, 2026
"The #UKGovernment is facing growing pressure over its decision to award large government contracts to #PalantirTechnologies, a US-based data and #ArtificialIntelligence [#AI] company.
"Partially funded by the #CIA at its inception, the company has faced heavy scrutiny after receiving a £330m ($413m) contract with #NHSEngland in 2023, which is up for renewal in 2027.
"It was also recently awarded a £240m deal with the British #MinistryOfDefence (#MoD) in December, three times more than a previous contract signed in 2022.
"Palantir entered into a strategic partnership with the MoD in September, in which it pledged a £1.5bn investment to 'boost military AI' and to 'work together to transform lethality in the battlefield', according to a government press release.
"Aspects of the deal included developing a so-called '#KillChain', which uses advanced data management and #AI to better strike 'enemy target[s]'.
"This increased integration of the tech firm within the UK’s health service and armed forces has raised alarm among campaigners, who point to the company’s involvement in the #genocide in #Gaza and US President Donald Trump’s lethal campaign against unauthorised immigration.
"British MPs have also raised concerns about Palantir’s defence contracts following an investigation that revealed the #SwissArmy had rejected the company over fears that US intelligence agencies would gain access to sensitive data."
#USPol #UKPol #WorldPol #AITools #WarMachines #Spying #SpyMachines #BigBrother #SurveillanceState #PayYourTaxes #TaxTheWarMachines
#AbolishPalantir #NoWar #TechnoFascism -
#Palantir: Why is the #Israel-linked #surveillance firm embedded in #Britain's #NHS?
Medical professionals, #lawyers and #activists express concern over the #Techgiant's government contracts given ties to #USImmigration and #IsraeliSurveillance operations
By Fleur Hargreaves, January 28, 2026
"The #UKGovernment is facing growing pressure over its decision to award large government contracts to #PalantirTechnologies, a US-based data and #ArtificialIntelligence [#AI] company.
"Partially funded by the #CIA at its inception, the company has faced heavy scrutiny after receiving a £330m ($413m) contract with #NHSEngland in 2023, which is up for renewal in 2027.
"It was also recently awarded a £240m deal with the British #MinistryOfDefence (#MoD) in December, three times more than a previous contract signed in 2022.
"Palantir entered into a strategic partnership with the MoD in September, in which it pledged a £1.5bn investment to 'boost military AI' and to 'work together to transform lethality in the battlefield', according to a government press release.
"Aspects of the deal included developing a so-called '#KillChain', which uses advanced data management and #AI to better strike 'enemy target[s]'.
"This increased integration of the tech firm within the UK’s health service and armed forces has raised alarm among campaigners, who point to the company’s involvement in the #genocide in #Gaza and US President Donald Trump’s lethal campaign against unauthorised immigration.
"British MPs have also raised concerns about Palantir’s defence contracts following an investigation that revealed the #SwissArmy had rejected the company over fears that US intelligence agencies would gain access to sensitive data."
#USPol #UKPol #WorldPol #AITools #WarMachines #Spying #SpyMachines #BigBrother #SurveillanceState #PayYourTaxes #TaxTheWarMachines
#AbolishPalantir #NoWar #TechnoFascism -
Как Warlock атакуют вашу инфраструктуру
В ноябре 2025 года эксперты по реагированию на инциденты Angara MTDR столкнулись с несколькими инцидентами с участием группировки Warlock (Lenient Wolf, Storm-2603, GOLD SALEM). Данный кластер активности использует уязвимости внешнего контура как один из первоначальных векторов атак, например, CVE-2023-24955, CVE-2025-49704, CVE-2025-49706, CVE-2025-53770, CVE-2025-53771, в опубликованном веб-приложении SharePoint. В октябре 2025 года этот ряд пополнился свежей уязвимостью WSUS — CVE-2025-59287 , которая имеет рейтинг критичности 9,8 из 10 по CVSS. Узнать, как это было
https://habr.com/ru/companies/angarasecurity/articles/984840/
#уязвимости #warlock #killchain #реагирование_на_инциденты #эксплуатация #мониторинг #хакерские_атаки
-
That is entirely the wrong headed (giggity) approach, IMHO.
A big part of man(person)-machine interface is the control and responsibility remaining in human hands.
Not so long ago, the few of us geeks who foresaw where machine brains would take us, campaigned in #stopkillerrobots.
A campaign to keep human decision making in military #killchain
A campaign that failed spectacularly, in no small part, I am sure to uniformed Doctorow analogues dismissing it as unnecessary farsical puppetry.Even now, I actively strive to #regulateAI IRL and human decision making is essential and imperative in AI.
The "reverse centaur" is a canard, as much as a driver of a motorcar is not pulling the cargo by their muscle.AI is not going away for the same reason we don't see "Picks and shovels" (!) digging infrastructure trenches anymore. Machines have been eating jobs since the 1700s and it's only scary now because the white collars are on the chopping block.
I have huge respect for @pluralistic and his role, which he fulfills admirably is an activist, a what we call in Australia, a shitstirer. His opinions stimulate debate, but keeping an expert in the decision chain, if it's only a tick box is a good thing.
Call it a "moral crumple zone" if you will.
Removing it all together is bad and I am disturbed anyone would try to make hay of this.
The alternative is full automation and I am sure all the #AI "fans" would agree it's a bad thing. -
Уже не Thor: как мы выслеживали одну группировку и «разбудили» другую
Во время расследования инцидентов мы, команда Positive Technologies Expert Security Center Incident Response (PT ESC IR) при поддержке департамента Threat Intelligence (PT ESC TI) обнаружили следы использования вредоносного ПО (ВПО) KrustyLoader . Впервые ВПО было описано в январе 2024 года экспертами из команд Volexity и Mandiant. Оно было замечено в атаках с использованием RCE-уязвимостей нулевого дня в продукте Ivanti Connect Secure. Тогда же было указано, что KrustyLoader написан под Linux, однако позже появились версии под Windows. Примечательно, что на момент исследования загрузчик использовался только одной группировкой, которую мы называем QuietCrabs . Дальнейшее расследование позволило обнаружить в инфраструктуре жертвы активность другой группировки. Интересно, что ее деятельность, вероятно, помешала QuietCrabs реализовать атаку и стала причиной, по которой на эту атаку обратили внимание. Мы предполагаем, что второй группировкой являются хакеры Thor . В статье мы покажем цепочки атак, обнаруженные нами во время расследования, и расскажем про сами инструменты, которые использовали злоумышленники.
https://habr.com/ru/companies/pt/articles/967426/
#реагирование_на_инциденты #целевые_атаки #кибератаки #группировка #thor #quietcrabs #удаленное_выполнение_кода #rce #killchain #цепочка_атаки_хакера
-
AI slop coding, или Как создать нелепые длинные цепочки атак с помощью ИИ
В процессе исследования вредоносных файлов, которые использовали группировки злоумышленников, мы наткнулись на интересные ранее незамеченные атаки, в которых использовались GitHub-аккаунты для хранения вредоносных файлов и данных жертв. Эти атаки не выглядели как что-то массовое, и, судя по всему, при разработке злоумышленники использовали ИИ. Самую раннюю подобную активность мы зафиксировали в сентябре 2024 года, самую позднюю — в апреле 2025-го. Мы в команде Threat Intelligence исследуем сложные атаки с интересными способами закрепления и сбора информации, с уникальной инфраструктурой. Бывает, попадаются какие-то простенькие скрипты на пару строчек или же «бомбы», которые запускают сразу десятки различных малварей. Но очень редко мы встречаем настолько длинные цепочки очень простых скриптов, написанных ИИ и при этом рабочих, в такой сложной связке — видно, что логика была продумана. Считайте это описание целевых атак в иерархии script kiddie.
-
Один GET и облака нет: роняем прод в надёжном облаке быстро и качественно
Сегодня мы уроним прод в Яндекс Облаке, действуя из тестовой среды. В процессе разберемся: что такое сервис метаданных, IAM токен, сервисный аккаунт, зачем сервисные аккаунты привязывают к облачным ресурсам. А дочитавшие до конца узнают, как понять и предотвратить атаки на облачную инфраструктуру. Положить прод
https://habr.com/ru/companies/alfa/articles/941846/
#информационная_безопасность #сервис_метаданных #cloud #security #killchain #ssrf #rce #яндекс_облако #облако
-
We need to REGULATE #AI
An AI vocoder needs inaudible markers.
A photorealistic GenAI needs a mandated watermark
A bureaucratic admin AI decision needs a human rubber stamp.
A #killbot needs a human in the #killchain
-
Следствие ведут Эникейщики: Артефакты, Экспертиза и Пицца в 3 ночи
Сегодня мы берем в работу горячие кейсы для блюшников с платформы Standoff (ивент УК Сити-2022). В программе: ✅ Киллчейны — строим, как Лего, только вместо деталек— артефакты. ✅ SIEM-магия — учимся дружить с тулзой, которая видит всё, даже ваш кофе-брейк в логах. ✅ Охота на артефакты — находим то, что хакеры хотели спрятать лучше, чем собака кость. Запаситесь чипсами и колой, ведь расследование без перекуса - не расследование! Я уже заварил чай...
-
The #Pentagon says #AI is speeding up its 'kill chain' | TechCrunch
Leading AI developers, such as #OpenAI and #Anthropic , are threading a delicate needle to sell software to the United States #military : make the Pentagon more efficient, without letting their AI #kill people.
#killchainhttps://techcrunch.com/2025/01/19/the-pentagon-says-ai-is-speeding-up-its-kill-chain/
-
Как у взрослых: смотрим цепочки атак команд со студенческого Standoff
Хабр, на связи Standoff 365. В мае состоялась первая студенческая кибербитва . И впервые это было соревнование с участием команд атакующих, а не только защитников. Решили поделиться фидбэ е ком от участников движняка. Ребята сами рассказали о своих удачах и разочарованиях. Если интересно, ныряйте под кат за разборами цепочек атак. Узнать про «взрослые» атаки студентов
https://habr.com/ru/companies/pt/articles/842050/
#standoff #cybersecurity #соревнования_хакеров #киберполигон #killchain #взломы #ctf #rce #bruteforce #пентест
-
На мушке у APT-группировок: kill chain из восьми шагов и котики
Пламенный хабропривет от Александра Бадаева из отдела расследования угроз ИБ и Яны Авезовой, аналитика исследовательской группы. Оба мы работаем в Positive Technologies, и, как вы могли подумать, пути наши в компании не так уж часто пересекаются. Ну сами посудите: с одной стороны — хакерские группировки, распутывание цепочек атак, а с другой – анализ киберугроз, статистика, сухие цифры и красивые графики. Так, да не так. И вот когда один из нас собрал информацию о 16 хакерских группировках, атакующих Ближний Восток, другой (а точнее — другая) проанализировал их тактики и техники, результатом этого тандема стало большое исследование. Ну а в этой статье мы расскажем о том, как действуют APT-группировки, с чего начинают атаку и как развивают ее, двигаясь к намеченной цели. Больше котиков
-
Как действовали хакеры на ноябрьском Standoff 12. Разбираем цепочку атак на космолифт и не только
В ноябре 2023 года мир был свидетелем кибербитвы Standoff, которая длилась несколько дней. Пятнадцать команд этичных хакеров провели серию впечатляющих технических ходов. Атакам подверглись все представленные на киберполигоне отрасли. Напомним, на нем воссозданы технологические и бизнес-процессы реальных компаний, обеспечивающих жизнедеятельность целых стран: нефтеперерабатывающий завод, банки, МФЦ и многое другое. В минувшем сезоне кибербитвы в Государстве F появилась новая компания — CosmoLink Labs. По легенде, она была создана в качестве инновационного центра для разработки и проведения космических исследований. Компания построила космолифт до орбитальной станции, владеет центром управления полетами и центром радиосвязи, запускает спутники. Появление нового сегмента привлекло внимание мировых киберпреступников, которые решили использовать эту уникальную локацию в своих целях. В этой статье мы — Айнур Мухарлямов и Сергей Болдырев , специалисты группы обнаружения атак на конечных устройствах — разберем цепочку атак одной команды на космическую отрасль с помощью продуктов Positive Technologies. Давайте вместе погрузимся в мир кибербезопасности и узнаем, какие вызовы и возможности нас ждут в будущем. Подробнее
https://habr.com/ru/companies/pt/articles/794945/
#cybersecurity #soc #кибератаки #киберучения #killchain #standoff #вебшелл #учетные_данные #siem #nta
-
Как действовали хакеры на ноябрьском Standoff 12. Разбираем цепочку атак на космолифт и не только
В ноябре 2023 года мир был свидетелем кибербитвы Standoff, которая длилась несколько дней. Пятнадцать команд этичных хакеров провели серию впечатляющих технических ходов. Атакам подверглись все представленные на киберполигоне отрасли. Напомним, на нем воссозданы технологические и бизнес-процессы реальных компаний, обеспечивающих жизнедеятельность целых стран: нефтеперерабатывающий завод, банки, МФЦ и многое другое. В минувшем сезоне кибербитвы в Государстве F появилась новая компания — CosmoLink Labs. По легенде, она была создана в качестве инновационного центра для разработки и проведения космических исследований. Компания построила космолифт до орбитальной станции, владеет центром управления полетами и центром радиосвязи, запускает спутники. Появление нового сегмента привлекло внимание мировых киберпреступников, которые решили использовать эту уникальную локацию в своих целях. В этой статье мы — Айнур Мухарлямов и Сергей Болдырев , специалисты группы обнаружения атак на конечных устройствах — разберем цепочку атак одной команды на космическую отрасль с помощью продуктов Positive Technologies. Давайте вместе погрузимся в мир кибербезопасности и узнаем, какие вызовы и возможности нас ждут в будущем. Подробнее
https://habr.com/ru/companies/pt/articles/794945/
#cybersecurity #soc #кибератаки #киберучения #killchain #standoff #вебшелл #учетные_данные #siem #nta
-
Как действовали хакеры на ноябрьском Standoff 12. Разбираем цепочку атак на космолифт и не только
В ноябре 2023 года мир был свидетелем кибербитвы Standoff, которая длилась несколько дней. Пятнадцать команд этичных хакеров провели серию впечатляющих технических ходов. Атакам подверглись все представленные на киберполигоне отрасли. Напомним, на нем воссозданы технологические и бизнес-процессы реальных компаний, обеспечивающих жизнедеятельность целых стран: нефтеперерабатывающий завод, банки, МФЦ и многое другое. В минувшем сезоне кибербитвы в Государстве F появилась новая компания — CosmoLink Labs. По легенде, она была создана в качестве инновационного центра для разработки и проведения космических исследований. Компания построила космолифт до орбитальной станции, владеет центром управления полетами и центром радиосвязи, запускает спутники. Появление нового сегмента привлекло внимание мировых киберпреступников, которые решили использовать эту уникальную локацию в своих целях. В этой статье мы — Айнур Мухарлямов и Сергей Болдырев , специалисты группы обнаружения атак на конечных устройствах — разберем цепочку атак одной команды на космическую отрасль с помощью продуктов Positive Technologies. Давайте вместе погрузимся в мир кибербезопасности и узнаем, какие вызовы и возможности нас ждут в будущем. Подробнее
https://habr.com/ru/companies/pt/articles/794945/
#cybersecurity #soc #кибератаки #киберучения #killchain #standoff #вебшелл #учетные_данные #siem #nta
-
Defensive Security Podcast Episode 223
https://defensivesecurity.org/defensive-security-podcast-episode-223/
#KillChain #LabCorp #Russia #SingHealth
#infosec -
@Weld Disrupting the #killchain early on at the initial access stage (#unpatched #VMware) isn't as sexy of a headline as focusing on the execution capabilities or impact of #Log4Shell.