𝗧𝗛𝗜𝗡𝗚𝗦 𝗙𝗔𝗟𝗟 𝗔𝗣𝗔𝗥𝗧: 𝗔𝗟𝗟𝗬𝗜𝗡𝗚 𝗖𝗬𝗕𝗘𝗥𝗦𝗘𝗖𝗨𝗥𝗜𝗧𝗬 𝗔𝗡𝗗 𝗗𝗜𝗣𝗟𝗢𝗠𝗔𝗖𝗬 𝗔𝗚𝗔𝗜𝗡𝗦𝗧 𝗔𝗨𝗧𝗛𝗢𝗥𝗜𝗧𝗔𝗥𝗜𝗔𝗡 𝗗𝗜𝗦𝗢𝗥𝗗𝗘𝗥

There are over 100 armed conflicts worldwide, all with a technological dimension, as global systems face mounting strain. In this session, Luxembourg’s Cybersecurity and Digitalisation Ambassador offers a clear-eyed look at current challenges in geopolitics and cyberdiplomacy, and how these fields can work together in response. Join the discussion and bring your questions on international relations and order in the digital world

Luc Dockendorf @lucdockendorf : Luxembourg’s Cyber and Digital Ambassador since March 2025, has worked in international relations since 2003, including roles with the Ministry of Foreign Affairs, the UN Security Council, the Human Rights Council, and leading EU cyber policy discussions.

📅 Conference Dates: 6–8 May 2026 | 09:00–18:00
📍 14, Porte de France, Esch-sur-Alzette, Luxembourg
🎟️ Tickets: https://2026.bsides.lu/tickets/
📅 Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg #Cybersecurity #Diplomacy #Geopolitics #CyberDiplomacy #InternationalRelations #BsidesLuxembourg2026

Day 1 at #DISB2026 in Bucharest. 🏰 Spent half the day trying not to get lost in the Palace of the Parliament and the other half networking. Met the team from DDN to talk data storage. Today was mostly high-level "innovation" talk, but I’m ready for the heavy lifting tomorrow — Cyber Diplomacy and AI security sessions. Stay tuned! 🚀 #CyberDiplomacy #MastodonTech #InfoSec #InnovationSummit

Happy Holidays! Grab for yourself and share a copy with your friends and family as a gift: “Cyber Polyticks.” Do remember to leave your reviews too.
https://www.amazon.com/gp/aw/d/B085DTB3SB

#cyber #Cryptocurrency #Antitrust #China #IoT #algorithms #privacy #cybersecurity #cyberdiplomacy

Cyber Polyticks: Sarfaraz, Ms. Hina: 9798618819206: Amazon.com: Books

Cyber Polyticks [Sarfaraz, Ms. Hina] on Amazon.com. *FREE* shipping on qualifying offers. Cyber Polyticks

Researcher (m/f/d) in the research focus “International Cybersecurity” - IFSH

The Institute for Peace Research and Security Policy at the University of Hamburg has been investigating the conditions for peace and security – on a…

Russia, North Korea partner on cybercrime, researchers warn

Findings suggest a new level of coordination between Moscow and Pyongyang.

POLITICO

The UN signs a global cybercrime convention — a long-awaited step toward unified digital law enforcement. Cooperation is the new firewall. 🌐🤝 #CyberDiplomacy #GlobalSecurity

https://www.theregister.com/2025/10/27/un_cybercrime_convention_signed/

UN Cybercrime Treaty wins dozens of signatories, to go with its many critics

: Allows surveillance and cross-border evidence sharing, which worries human rights groups

The Register

It's been a busy 24 hours in the cyber world with significant updates on recent breaches, new malware and exploitation techniques, and some interesting developments in cyber diplomacy and legal battles. Let's take a look:

Workday CRM Breach Linked to ShinyHunters ⚠️
- HR giant Workday disclosed a data breach impacting its third-party CRM platform, confirming attackers accessed business contact information like names, emails, and phone numbers.
- This incident is part of a wider social engineering campaign, strongly linked to the ShinyHunters extortion group, which has targeted numerous high-profile companies (e.g., Adidas, Qantas, Google) by tricking employees into linking malicious OAuth apps to Salesforce instances.
- While Workday states no customer tenants or data within them were impacted, the exposed contact info could be used for further social engineering or vishing scams.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/hr-giant-workday-discloses-data-breach-amid-salesforce-attacks/
🗞️ The Record | https://therecord.media/workday-social-engineering-data-breach
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/18/workday_crm_breach/

Bragg Gaming Group Suffers Internal Breach 🎲
- Casino game producer Bragg Gaming Group reported a cyber incident where hackers accessed its internal computer environment.
- Preliminary investigations indicate the breach was limited to internal systems, with no personal information affected and no impact on the company's operations or data access.
- Bragg has engaged cybersecurity experts to manage the incident, making them the latest gaming company to face a breach after recent incidents impacting Ainsworth Game Technology and International Game Technology.
🗞️ The Record | https://therecord.media/casino-gaming-company-cyber-incident-bragg

Canadian House of Commons Breached 🇨🇦
- Canada's House of Commons experienced a data breach, with an unknown malicious actor gaining access to employee names, job titles, office locations, email addresses, and government-managed hardware information.
- The Communications Security Establishment (CSE) confirmed the incident and is investigating, noting recent warnings about China, Iran, and Russia increasingly targeting Canadian systems.
- While attribution is pending, the CSE's assessment highlights China's interest in intellectual property, Iran's espionage, and Russia's targeting due to Canada's NATO role and support for Ukraine.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/17/cybersecurity_news_roundup/

PipeMagic Backdoor Leverages Zero-Day in Ransomware Attacks 💥
- Microsoft has detailed PipeMagic, a sophisticated modular backdoor used by threat actor Storm-2460, which is being disguised as a ChatGPT desktop application.
- Storm-2460 exploits a Windows Common Log File System Driver (CLFS) zero-day vulnerability (CVE-2025-29824) to escalate privileges before deploying ransomware, with RansomExx and Play ransomware variants observed.
- The malware's design, including its use of a modified GitHub ChatGPT project and dynamic payload injection, makes it difficult to detect, targeting IT, financial, and real estate sectors globally.
🗞️ The Record | https://therecord.media/ransomware-gang-masking-pipemagic-backdoor

ERMAC Android Banking Trojan Source Code Leaked 📱
- The source code for ERMAC v3.0, a prominent Android banking trojan, has been leaked online, exposing its internal architecture and operator infrastructure.
- Discovered in an open directory, the leak includes the malware's backend, frontend panel, exfiltration server, deployment configurations, and builder, revealing expanded targeting capabilities for over 700 banking, shopping, and crypto apps.
- Significant operational security failures by the ERMAC operators, such as hardcoded JWT tokens and default root credentials, have made it easier for researchers to map their infrastructure and for detection solutions to improve.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/security/ermac-android-malware-source-code-leak-exposes-banking-trojan-infrastructure/

Infostealers Target Russian Crypto Developers via npm 🎣
- Researchers at Safety have uncovered malicious npm packages ("solana-pump-test", "solana-spl-sdk") targeting the Solana cryptocurrency ecosystem, specifically aimed at Russian crypto developers.
- These packages act as infostealers, searching for crypto tokens, password files, exchange credentials, and wallet files, then exfiltrating data to US-linked command and control (C2) servers.
- The use of the familiar "cryptohan" handle provides a veneer of legitimacy, and the targeting of Russian victims, potentially linked to state-backed ransomware groups, raises questions about state-sponsored activity.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/18/solana_infostealer_npm_malware/

Kinsing Cryptomining Group Expands to Russia ⛏️
- The Kinsing (H2Miner, Resourceful Wolf) cryptojacking group has launched a large-scale campaign targeting Russian computers for Monero cryptocurrency mining.
- The attacks, observed since April, exploit vulnerabilities in widely-used software, specifically CVE-2017-9841, a critical remote code execution flaw in the PHPUnit testing framework.
- This marks Kinsing's first large-scale activity in Russia, highlighting that criminal groups are not limited by geography and the ongoing need to patch even older vulnerabilities.
🗞️ The Record | https://therecord.media/cryptomining-group-kinsing-hits-russia

New Tool Sni5Gect Sniffs and Exploits 5G Traffic 📡
- Security researchers have released Sni5Gect, an open-source framework capable of real-time sniffing and targeted payload injection in pre-authentication 5G communication without requiring a rogue base station.
- The tool exploits unencrypted messages exchanged between the gNB (base station) and User Equipment (UE) during connection handshaking, enabling uplink/downlink sniffing with over 80% accuracy.
- Sni5Gect facilitates a novel downgrade attack (CVD-2024-0096) from 5G to 4G, allowing for further surveillance and attacks, and its creators have withheld "other serious exploits" for trusted institutions only.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/18/sni5gect/

China Slams US Over Chip Tracking as "Surveillance Empire" geopolitics
- Chinese state media has criticised proposed US measures to embed asset tracking tags in GPU shipments to prevent black-market diversions to China, labelling the US an "aspiring surveillance empire."
- This comes amidst ongoing US export controls on advanced chips and semiconductor manufacturing equipment, with Beijing raising concerns about potential remote disabling or "kill switches" in US-made chips.
- The rhetoric highlights escalating tensions over technology control, with China's own extensive surveillance networks and past US accusations against Huawei for backdoors adding layers of irony to the debate.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/18/china_gpu_tracking/

Zelle Sued Over Rampant Payment Fraud 💸
- New York State is suing Early Warning Services (EWS), the company behind the bank-owned P2P payment app Zelle, alleging it knowingly enabled widespread fraud.
- The lawsuit claims Zelle lacked critical safety features, allowing scammers to easily mimic brands and trick users into sending payments, with victims often unable to retrieve stolen funds due to the app's rapid payment design.
- Despite over $1 billion in alleged fraud between 2017-2023 and previous complaints from elected officials, EWS reportedly failed to require banks to report scams or timely remove fraudsters' accounts.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/17/cybersecurity_news_roundup/

Nuance Settles MOVEit Breach Lawsuit for $8.5M ⚖️
- Microsoft-owned Nuance has agreed to an $8.5 million settlement in a class-action lawsuit stemming from the 2023 MOVEit Transfer mega-breach, affecting approximately 1.225 million people.
- While denying liability, Nuance, a medical transcription and speech recognition provider, was accused of negligence for failing to properly secure personal information siphoned by the Clop ransomware gang.
- This settlement, though modest compared to some MOVEit payouts, highlights the ongoing legal fallout for organisations caught in supply-chain breaches, particularly in the sensitive healthcare sector.
🕵🏼 The Register | https://go.theregister.com/feed/www.theregister.com/2025/08/18/nuance_lawsuit/

UK Sentences "Serial Hacker" to 20 Months in Prison 🔒
- A 26-year-old UK national, Al-Tahery Al-Mashriky, has been sentenced to 20 months in prison after pleading guilty to nine charges under the Computer Misuse Act.
- Al-Mashriky, linked to groups like 'Spider Team' and 'Yemen Cyber Army', infiltrated and defaced over 3,000 websites, including Yemeni government sites, an Israeli news outlet, and US/Canadian faith organisations, often posting political or religious messages.
- Forensic evidence also showed he possessed stolen login details for millions of Facebook users and credentials for services like Netflix and PayPal, demonstrating the broad impact of his activities.
🤖 Bleeping Computer | https://www.bleepingcomputer.com/news/legal/uk-sentences-serial-hacker-of-3-000-sites-to-20-months-in-prison/

US State Department Gutting Cyber Diplomacy Staff 📉
- The US State Department's political appointees are accused of gutting the Bureau of Cyberspace and Digital Policy (CDP) by reorganising offices and significantly reducing staff, despite congressional directives to bolster cyber diplomacy.
- This restructuring has fragmented the CDP's functions, moving critical cyberattack response and strategy teams to other bureaus, and resulted in the firing of at least half a dozen subject matter experts.
- Critics argue this move undermines the US's ability to work with allies on cybersecurity, hold adversaries accountable, and promote secure internet infrastructure, potentially taking years to rebuild lost capabilities.
🤫 CyberScoop | https://cyberscoop.com/state-department-cyber-diplomacy-setback-congress-action-op-ed/

#CyberSecurity #ThreatIntelligence #Ransomware #Malware #ZeroDay #Vulnerability #SocialEngineering #DataBreach #CyberCrime #InfoSec #CyberAttack #IncidentResponse #ThreatActor #CyberDiplomacy #DataPrivacy

HR giant Workday discloses data breach after Salesforce attack

Human resources giant Workday has disclosed a data breach after attackers gained access to a third-party customer relationship management (CRM) platform in a recent social engineering attack.

BleepingComputer

LIGNE DE CODE, LIGNE DE FRONT

Face aux cyberattaques étatiques, l’UE déploie son Plan Bleu : riposte coordonnée, réserve numérique, diplomatie active. Une Europe stratège naît dans le feu des crises hybrides.

🔗 https://whatsapp.com/channel/0029VaE5Wl8Dp2Q7vJyg0G30

#EuroScope #Cybersecurity #PlanBleu #CyberDiplomacy #EUCCS #IPCR #CSIRTs #EU_CyCLONe #OTAN #HybridThreats #RésilienceEuropéenne #SolidaritéNumérique #SouverainetéDigitale

EuroScope : la chaîne sur l’Europe | WhatsApp Channel

EuroScope : la chaîne sur l’Europe WhatsApp Channel. 🌐 *Bienvenue dans "EuroScope 🇪🇺"!* 🚀 Passionné par l'avenir de l'Europe? Rejoignez notre fil pour une veille captivante! 🌍🔍 🤝 Échangez sur les développements politiques, les enjeux sociaux, et découvrez les initiatives européennes qui façonnent notre continent. 🔔 *Prêts à explorer l'actualité passionnante de l'Europe?*🚀🌐📰 https://www.youtube.com/@protomandator https://www.tiktok.com/@protomandator. 162 followers

WhatsApp.com
#SocialMedia is geopolitics, #cyberdiplomacy is critical: #Trump “also reiterated that he would, in particular, be willing to offer #tariff relief for #China if Beijing approved the sale of the US operations of #TikTok”.
https://www.platformer.news/trump-tariffs-tiktok/
When your shadow VP knows how to do foreign interference with their social media, they will likely advise you to get more such weapons.
TikTok’s fate could be decided by tariffs

Trump is holding out ByteDance's app as a bargaining chip. Will China take the bait?

Platformer
Transnational REPRESSION, autocorrect fail there. Sadly missed the film (is it online?) but great panel. Great to hear German government people who understand how critical #cybersecurity & #encryption is to fundamental, human rights. #privacy #activism #autocracy #cyberdiplomacy

RE: https://bsky.app/profile/did:plc:yfdpl325c5f33ur3y2e3xt3y/post/3ljnhhsejgs24
Bluesky

Bluesky Social