Exploit Code Not People

@cooperq@infosec.exchange
1.6K Followers
287 Following
124 Posts
Senior public interest technologist at EFF Threat Lab ⵣ "Noted activist security type" ⵣ Anti-fascist ⵣ ACAB ⵣ he/they ⵣ My tweets do not represent views of my employer
Work emailcooperq@eff.org
Personal emailcooperq at my-website
Personal websitehttps://www.cooperq.com
Githubhttps://github.com/cooperq
Workhttps://www.eff.org
Policy and Research Staff Technologist

...

Orbic RC400L
New from 404 Media: we went through court records to see how three alleged Tesla vandals were identified. License plate readers, looking through Instagram, fingerprints on Molotov cocktails, physical surveillance. Comes as authorities say this is domestic terrorism https://www.404media.co/how-three-alleged-tesla-vandals-got-caught/
How Three Alleged Tesla Vandals Got Caught

Automatic license plate readers, Instagram captions, and fingerprints.

404 Media
Cell-site simulators (CSS, also known as Stingrays or IMSI catchers) are devices that masquerade as legitimate cell-phone towers, tricking phones within a certain radius into connecting to the device rather than a tower. Our new tool, Rayhunter, can help you find them.
https://www.eff.org/deeplinks/2025/03/meet-rayhunter-new-open-source-tool-eff-detect-cellular-spying
Meet Rayhunter: A New Open Source Tool from EFF to Detect Cellular Spying

Rayhunter is a new open source tool we’ve created that runs off an affordable mobile hotspot that we hope empowers everyone, regardless of technical skill, to help search out cell-site simulators (CSS) around the world.

Electronic Frontier Foundation
“This is extremely suspicious behavior that normal towers do not exhibit,” EFF’s @cooperq told @WIRED. “This is not 100 percent incontrovertible truth, but it’s strong evidence suggesting a cell-site simulator was deployed.” https://www.wired.com/story/2024-dnc-cell-site-simulator-phone-surveillance/
Secret Phone Surveillance Tech Was Likely Deployed at 2024 DNC

Data WIRED collected during the 2024 Democratic National Convention strongly suggests the use of a cell-site simulator, a controversial spy device that intercepts sensitive data from every phone in its range.

WIRED
I hope this is an elaborate Supply Chain Attack joke.
https://getfullyear.com/
Never Have Outdated Footer Dates Again

My "Ignore All Previous Instructions" t-shirt from @molly0xfff's store has arrived and it's everything I hoped for. I get to help support her reporting on crypto BS and have a picture of a snarling raccoon on my chest.

https://store.mollywhite.net/products/ignore-all-previous-instructions-unisex-t-shirt

Ignore all previous instructions unisex t-shirt

So who else is gonna be at shmoocon?
A new take on the sextortion email scam includes pictures of the targets’ houses, but don’t fall for it. You probably haven’t been hacked. https://www.eff.org/deeplinks/2024/09/new-email-scam-includes-pictures-your-house-dont-fall-it
New Email Scam Includes Pictures of Your House. Don’t Fall For It.

You may have arrived at this post because you received an email with an attached PDF from a purported hacker who is demanding payment or else they will send compromising information—such as pictures sexual in nature—to all your friends and family. You’re searching for what to do in this frightening...

Electronic Frontier Foundation
What registrar do y'all like? What email provider? I need to host email for about 3 people across about 3 domains. I was previously on Gandi but ever since they got bought they have become worse and worse. I'm ready to move. Looking at porkbun or possibly cloudflare for registration and somewhere else for email. Thoughts?