Security experts warned Friday about a widespread zero day vulnerability, tentatively dubbed "CVE-2025-TRUMP," that threatens to let Russia backdoor....well, everything.
@briankrebs would it be worthwhile to use a VPN and select a server in another country at this point?
@briankrebs Can you recommend some wording that we should send to all our vendors and security providers, asking to assure us that *they* won’t be stopping Russian detection/protection/analysis/defense?

@briankrebs

I recommend airgapping the system, wiping the OS and installing a new, more security-hardened version without this exploit immediately.

PS Always remember your threat model.

@briankrebs A #russia 🇷🇺 Trojan horse virus has infected the United States of America 🇺🇸

#russian #trump's a #RussianAsset 👌🏼

@briankrebs intentional backdoor. no cve gets assigned if the shits by design.
@Viss @briankrebs
Shits By Design is my new company name.

@FritzAdalis @Viss @briankrebs

I'm going to start Giggles by Design, just in hopes that you'll buy me out

@FritzAdalis @Viss @briankrebs “Where good enough is our very best.”
@briankrebs I’m hearing reports of in-the-wild exploitation.
@briankrebs in 2015, China got read access to a bunch of US government systems. In 2025, Russia got write access
@briankrebs Can an CVE have a wildcard on the year?
@briankrebs indicators of compromise include sporadic nonsensical transmissions from the host that appeared to have been garbled with a form of proprietary encryption
@briankrebs
I can guarantee you that Russia won't 'backdoor' anything. Everything 'gay' is illegal, remember???
@briankrebs I feel it’s more like social engineering allowed them to install a rootkit.

@briankrebs

Trump loves Putin using the "back-door"

@briankrebs aka TRUMPY-BEAR wait that hits too close
@briankrebs
You forgot to attach the star
@briankrebs Can you believe it's been a year and nobody has bothered to patch this yet?