Éric Freyssinet

@ericfreyss
3.3K Followers
3.4K Following
2.8K Posts

Conseiller senior cybercriminalité & cybersécurité / Senior #cybercrime & #cybersecurity adviser #ComCyberMI #Gendarmerie | Alumni #Polytechnique (X92), #TelecomParis, PhD #LIP6 | Associate member #Labo_Loria | Compte personnel / Personal account
Toots 🇬🇧/🇫🇷
Président du comité d'organisation de #Botconf / Chairman of the #Botconf organising team
@botconf

(Old account on mastodon.etalab.gouv.fr)
Admin of https://riin.fr/ - #DFIR #fedi22 #malware #forensics

Bloghttps://eric.freyssi.net
Twitter (ex...)https://twitter.com/ericfreyss
LinkedInhttps://www.linkedin.com/in/ericfreyssinet/
Pixelfed | Matrixhttps://metapixl.com/@ericfreyss | @ericfreyss:matrix.org
La France rachète à Atos l'entreprise Bull, fleuron trop longtemps en souffrance des supercalculateurs
https://www.clubic.com/actualite-607144-la-france-rachete-a-atos-l-entreprise-bull-fleuron-trop-longtemps-en-souffrance-des-supercalculateurs.html
La France rachète à Atos l'entreprise Bull, fleuron trop longtemps en souffrance des supercalculateurs

L'État français a finalisé ce 31 mars 2026 le rachat de Bull, spécialiste du calcul haute performance et de l'IA, pour une valeur pouvant atteindre 404 millions d'euros. L'acquisition d'une entreprise historique.

clubic.com

Really good research from Rapid7 here, where they’ve found multiple new versions of BPFdoor which do things like listen and backdoor on extremely uncommon 4G and 5G signaling protocols - it strongly suggests BPFDoor has been placed far inside telcos for surveillance.

They provide a tool to check for the new implant - I would strongly suggest telcos look for this on their Linux systems, including call infrastructure.

https://www.rapid7.com/blog/post/tr-bpfdoor-telecom-networks-sleeper-cells-threat-research-report/

BPFdoor in Telecom Networks: Sleeper Cells in the backbone

A months-long investigation by Rapid7 Labs has uncovered evidence of an advanced China-nexus threat actor placing stealthy digital sleeper cells in telecommunications networks, in order to carry out high-level espionage – including against government networks. Read more in a new blog.

Rapid7
I'm currently looking to expand my social network and would love to get in touch with anyone in the "global south" (especially African countries) involved in #hamradio, wireless community networks, #FOSS or #OSHW development or the #maker and #hacker communities. I'd be very happy if anyone from the above target groups would reach out and introduce themselves #followerpower
Fake OpenClaw Token Giveaway Targets GitHub Devs with Wallet-Draining Scam https://hackread.com/fake-openclaw-token-github-devs-wallet-drainer-scam/
Fake OpenClaw Token Giveaway Targets GitHub Devs with Wallet-Draining Scam

Scammers target GitHub devs with a fake OpenClaw token giveaway, using phishing links and a wallet drainer to steal crypto via a cloned site.

Hackread - Cybersecurity News, Data Breaches, AI and More

#Trivy, a popular open-source vulnerability scanner, was compromised - attackers hijacked 75 version tags in #GitHub Actions to deliver an infostealer.

It ran in CI pipelines, stealing creds and tokens, exfiltrating data:
#SoftwareSupplyChainSecurity
👇
https://thehackernews.com/2026/03/trivy-security-scanner-github-actions.html

Trivy Security Scanner GitHub Actions Breached, 75 Tags Hijacked to Steal CI/CD Secrets

Trivy attack force-pushed 75 tags via GitHub Actions, exposing CI/CD secrets, enabling data theft and persistence across developer systems.

The Hacker News

RE: https://mstdn.social/@swheritage/116272142405742756

"France and Germany are moving beyond the “altruism” of the early open-source movement, reframing it as a matter of national autonomy. Stéphanie Schaer, The Interministerial Directorate for Digital Affairs in France (DINUM), highlighted Tchap—a secure messaging app used by 400,000 civil servants—as proof that the state can break its dependency on “monopolistic IT solutions” by investing in the digital commons."

#OpenSource #SWH10

Allemagne : le format ODF obligatoire dans l’administration https://www.zdnet.fr/blogs/l-esprit-libre/allemagne-le-format-odf-obligatoire-dans-ladministration-492348.htm Un succès pour les formats ouverts et la Document Foundation (LibreOffice)
Allemagne : le format ODF obligatoire dans l’administration - ZDNET

The Document Foundation, qui gère LibreOffice, salue la décision du ministère allemand du Numérique, qui impose le format ODF dans l’administration fédérale, refusant ainsi le contesté OOXML de Microsoft.

ZDNET

New, from our ERT: #CECbot, an Android TV botnet and the first malware we're aware of that exploits HDMI-CEC.

It puts the TV to sleep so you don't notice the box behind it is running DDoS and residential proxy traffic. Curve25519/ChaCha20 crypto, 9 persistence layers, and... LAN mapping.

Successor to a Mirai fork, shares not much but the C2 server.

https://github.com/deepfield/public-research/blob/main/cecbot/report.md

#threatintel #DDoS

public-research/cecbot/report.md at main · deepfield/public-research

DDoS botnet research and indicators of compromise from Nokia Deepfield ERT - deepfield/public-research

GitHub
Isabelle Mergault, comédienne et sociétaire des «Grosses Têtes», est morte à 67 ans

Laurent Ruquier a annoncé, ce vendredi après-midi auprès de l’AFP, son décès. Elle souffrait depuis plusieurs mois d’un cancer.

TV Magazine