A #Chinese embassy has been caught looking to #Spy on financial transactions. 
#News #Espionage #SigInt #Wiretap #Finance #ForeignPolicy #SignalsIntelligence #LawEnforcement #TrueCrime
https://www.telegraph.co.uk/news/2026/01/12/revealed-china-embassy-secret-plans-spy-basement
Because of course there's a secret network of satellites, and of course #Musk owns them.
#SpaceNews #Espionage #SignalsIntelligence
https://www.npr.org/2025/10/17/nx-s1-5575254/spacex-starshield-starlink-signal
My network is getting hammered by SSH scanners lately. Possibly checking for CVE-2023-25136. The IP below has sent over 2k flows in a day and Greynoise tags it as an SSH Bruteforcer and worm.
Another IP originating from Russia (92.63.197[.]82) has also sent just over 2k flows. Historical analysis shows it targeting previous SSH vulnerabilities.
#cve_2023_25136 #SSH #Netflow #Firewalla #IPS #SignalsIntelligence #Vulnerability
🗞️ NCSC’s first bulletin of the month emphasized how adversaries collect much of their information about the #UnitedStates via open source #intelligence (#OSINT), with only a small percentage from clandestine/covert collection methodologies (spies, #signalsintelligence, etc.).
https://news.clearancejobs.com/2023/01/31/every-opsec-failure-gives-u-s-adversaries-more-osint/
Netflow analysis is honestly an art. So many artifacts to pivot off of to create a trail of connections. Finding out who and what got compromised, C2 beacon connections, and if you're lucky enough you may find the C2 controller (which I did).
Tools I can't go without: Augury, Maxmind, @DomainTools , Censys
#SignalsIntelligence #ThreatHunting #NetflowAnalysis #CobaltStrike