#FotoVorschlag 'Kritzeleien' / 'Scribblings'

Beim Spaziergang am Meer entdeckte ich diese geheimen Botschaften im Sand. Kann das jemand übersetzen?

While walking by the sea, I discovered these secret messages in the sand. Can anyone translate them?

#photography #fotografie #naturephotography #wattwurm #sandworm #beachlife #seashorephotography

🐛🤖 "Shai-Hulud-themed malware" in PyTorch Lightning? Really? What's next, a Bene Gesserit ransomware? This is just another excuse for a #cybersecurity company to throw #buzzwords like multimodal and AI at us while riding the #sandworm of #fearmongering. 📈🔒
https://semgrep.dev/blog/2026/malicious-dependency-in-pytorch-lightning-used-for-ai-training/ #ShaiHuludMalware #PyTorchLightning #HackerNews #ngated
Shai-Hulud Themed Malware Found in the PyTorch Lightning AI Training Library

The PyPI package lightning was compromised in versions 2.6.2 and 2.6.3 with Mini Shai-Hulud themed malicious code to execute credential-stealing malware on import.

Semgrep

Sandworm uses SSH tunneled over Tor to maintain long-term, stealthy persistence on compromised systems. Layers inside layers — it's almost elegant, in a deeply unsettling way.

The real takeaway: lateral movement detection and egress monitoring matter more than ever when the attacker is patient, quiet, and in no hurry to leave. 🕵️

#infosec #Sandworm #ThreatIntel
https://gbhackers.com/ssh-over-tor-tunnel/

"He who can command the worm, can command the breakfast."

#Dune #sandworm

Cyber warfare groups: Sandworm - Negative PID

They moved from espionage to physical disruption. Their operations have affected national power grids, critical infrastructure, and global supply chains. They

Negative PID
Cyber warfare groups: Sandworm - Negative PID

They moved from espionage to physical disruption. Their operations have affected national power grids, critical infrastructure, and global supply chains. They

Negative PID
#BREAKING #ESETresearch provides technical details on #DynoWiper, a data‑wiping malware used in a data‑destruction incident on December 29, 2025, affecting a company in Poland’s energy sector.
https://www.welivesecurity.com/en/eset-research/dynowiper-update-technical-analysis-attribution/
@CERT_Polska_en did an excellent job investigating the incident and published a detailed analysis in a report:
https://cert.pl/en/posts/2026/01/incident-report-energy-sector-2025/
#ESETresearch attributes the attack to the 🇷🇺 Russia‑aligned #Sandworm APT group with medium confidence, based on strong overlaps in behavior and TTPs with multiple earlier Sandworm attacks. Specifically, DynoWiper operates in a broadly similar fashion to the ZOV wiper, which we attribute to Sandworm with high confidence.
IoCs available in our GitHub repo: https://github.com/eset/malware-ioc/tree/master/dynowiper

Jeśli ktoś chce zerknąć do świeżo wydanego raportu firmy Dragos dotyczącego ataku na polski sektor energetyczny, to link znajdzie poniżej. Wskazywana przez badaczy grupa Electrum to nic innego jak Sandworm (wg nazewnictwa stosowanego przez ESET) czy po prostu APT44, czyli ślady prowadzą do Rosji. Ale szczegółów brak, same ogólniki. Sugeruję poczekać na publikację polskiego CERT-u, która ma szansę pojawić się już jutro.

https://5943619.hs-sites.com/hubfs/Reports/dragos-2025-poland-attack-report.pdf

#cyberbezpieczenstwo #apt44 #sandworm

📢 Un wiper a visé le réseau électrique polonais, attaque attribuée à Sandworm mais déjouée
📝 Selon Ars Technica, s’appuyant sur une analyse d’ESET et des informations de...
📖 cyberveille : https://cyberveille.ch/posts/2026-01-26-un-wiper-a-vise-le-reseau-electrique-polonais-attaque-attribuee-a-sandworm-mais-dejouee/
🌐 source : https://arstechnica.com/security/2026/01/wiper-malware-targeted-poland-energy-grid-but-failed-to-knock-out-electricity/
#Pologne #Sandworm #Cyberveille