InfoSecSherpa

@InfoSecSherpa@infosec.exchange
4.8K Followers
353 Following
5.5K Posts

The countdown to the weekend begins with Five for Friday by Sherpa Intelligence 💃🕺🪩

Read five #InfoSec & #DataPrivacy news items from this past week that you may have missed.

Five for Friday for June 27, 2025 🌟
https://sherpaintelligence.substack.com/p/five-for-friday-27-june-2025

OneClik: A ClickOnce-Based APT Campaign Targeting Energy, Oil and Gas Infrastructure
https://www.trellix.com/blogs/research/oneclik-a-clickonce-based-apt-campaign-targeting-energy-oil-and-gas-infrastructure/

The countdown to the weekend begins with Five for Friday by Sherpa Intelligence 💃🕺🪩

Read five #InfoSec & #DataPrivacy news items from this past week that you may have missed.

Five for Friday for June 27, 2025 🌟
https://sherpaintelligence.substack.com/p/five-for-friday-27-june-2025

Hey folks, I got contacted by Barracuda Networks for a cybersecurity engineer position. I don't need it, I'm good where I'm at, but I thought I'd share with you in case, you're looking.

Unfortunately, I don't know anymore details than what's on the link, sorry, but good luck.

https://jobs.jobvite.com/careers/barracuda-networks-inc/job/oskEvfwF?__jvst=Job%20Board&__jvsd=barracuda #infosecjobs #getfedihired

Barracuda Networks Inc. is looking for Cybersecurity Engineer.

Barracuda Networks Inc. is looking for Cybersecurity Engineer. Learn more or Jobvite a friend.

“U.S users of BBC.com who choose not to pay will still have access to “select global breaking news stories,” as well as BBC Radio 4 and BBC World Service radio livestreams, BBC World Service Languages sites, and a variety of free newsletters and podcasts, the BBC said.”

https://variety.com/2025/digital/news/bbc-us-website-paywall-subscription-pricing-1236441560/

BBC Website Adds Paywall for US Users, Details Subscription Prices

BBC Studios and BBC News have launched the "first phase" of a pay model for BBC.com in the US.

Variety
Australian police allege this 27-year-old woman hacked the systems of Western Sydney University (she was a former student) to get discounted parking on campus, altered her own academic results and threatened to sell stolen student data on the dark web: https://www.parranews.com.au/2025/06/woman-arrested-over-wsu-cyber-hacks/ #infosec #australia

Help us raise money for a good cause during the 2025 fundraiser! Those who order by 06 July can ship to your home or ship to the conference for local pick up.

https://www.customink.com/fundraising/bsides-las-vegas-2025-shirts-hoodies

"Texas law gives grid operator power to disconnect data centers during crisis. Senate Bill 6 pairs mandatory curtailment with a voluntary demand response procurement program."
https://www.utilitydive.com/news/texas-law-gives-grid-operator-power-to-disconnect-data-centers-during-crisi/751587/
Texas law gives grid operator power to disconnect data centers during crisis

Senate Bill 6 pairs mandatory curtailment with a voluntary demand response procurement program.

Utility Dive

"Invisible until it breaks: The risk of cutting costs and undervaluing cybersecurity: Cutting cybersecurity might feel like a smart financial move—until it isn’t."

https://www.fastcompany.com/91352486/invisible-until-it-breaks-the-risk-of-cutting-costs-and-undervaluing-cybersecurity

Invisible until it breaks: The risk of cutting costs and undervaluing cybersecurity

Cutting cybersecurity might feel like a smart financial move—until it isn’t.

Fast Company
"The 22-year-old Racine native just became the first Black woman ever crowned Miss Wisconsin, breaking barriers and shining bright in a space that hasn’t always made room for faces like hers."
https://www.becauseofthemwecan.com/blogs/botwc-firsts/history-made-willow-newell-crowned-first-black-miss-wisconsin
History Made: Willow Newell Crowned First Black Miss Wisconsin - Because of Them We Can

Wisconsin has a new queen. She’s Black, she’s beautiful and her name is Willow Newell. The 22-year-old Racine native just became the first Black woman ever crowned Miss Wisconsin, breaking barriers and shining bright in a space that hasn’t always made room for faces like hers.

Because of Them We Can
×

there there some weird wires being crossed here, or this uav has been all over the world .. on its current flight? or somehow globe.asdb.fi is interpreting that it went up and has never landed, and therefore all its recorded flight data is from this flight? so we get its full ... browser history?

this is very weird.

okay this is bananas.
all the flight tracks are very clearly around military bases in the US or cruising around the mexican border in san diego.

either a bunch of different places are using the same hex code for an aircraft (000001? cmon) or its one aircraft thats traveled around the world and done 'stuff'.

this is some 'oh hey look what strava did aahahahahah... .. WAIT.. WAAAAAIT AHAHAH HOLY SHIT' kinda shit right here

https://en.wikipedia.org/wiki/Bayraktar_TB2

so uh
it occaionally flashes a callsign - TB2T488

so its a turkish military drone just cruising around.... what appears to be a highschool and some markets .. in bangledesh?

https://www.google.com/maps/@22.7289819,92.0953899,13.57z/data=!5m1!1e1?entry=ttu&g_ep=EgoyMDI1MDYyMi4wIKXMDSoASAFQAw%3D%3D

https://globe.adsb.fi/?icao=000001&filtercategory=b6

Bayraktar TB2 - Wikipedia

best guess - its either some kinda search and rescue operation or something, because watching this aircraft on globe.adsb.fi sometimes it changes its shape into a helicopter and gets a different callsign (maybe theres more than 1 aircraft and adsb coverage is spotty?) or maybe its someone living out a ghost recon fantasy
@Viss would not be surprised if its stack fail, spoofing, broken beacon, or any combination within
@morb @Viss I imagine that the database lumps together certain empty/null/broken callsigns/beacons.
@morb @Viss so multiple fucked up entries look like one fucked up insane flight record
@NosirrahSec @morb yeah i had thought the same thing - like 000001 is the default hex code for some drone and its one of those 'change your password after first install' sorta deals, but people are dumb and ... dont

@Viss the record for flight is days (of course with refueling).

I would expect that there would be at least two crews, but after about three or four days, they’d start to get on each other’s nerves.

@Viss You probably already thought of that, but did you compare the tracks with globe.adsbexchange.com?