130 Followers
259 Following
78 Posts

(Software) Engineer & #Whitehat @ Healthcare business 🇩🇪​🕵️
Interested in #OffSec, #Hospitals, #Healthcare, #Biohacking 🏥
Tinkering/Prototyping 24/7 👨‍💻👾 Sometimes do #CTF's 🏁​ Level 2X

Chat with me! I am here to network! 💬​

⚠️​​opinions expressed are mine ⚠️​​

Great news! Hive #ransomware group got disrupted! Hive attacked multiple #healthcare facilities before. Interestingly, the banner on their darknet page explicitly lists the "Polizeipräsidium #Reutlingen" next to the big 3 letter agencies. Wondering how my neighbors were involved... Anyways, good job! #infosec #cybersecurity #news

Update on #SickKids #ransomware attack 4th January 2023:
3xp0rtblog shared this post by #lockbit. Does LockBit really think there are no computers in a #hospital ?

#infosec #cybersecurity #health #healthcare #canada

Sam Curry and his findings in #automobile #industry. Got Goosebumps reading this. Great article!
https://samcurry.net/web-hackers-vs-the-auto-industry/
#infosec #cyber #cybersecurity #car
Web Hackers vs. The Auto Industry: Critical Vulnerabilities in Ferrari, BMW, Rolls Royce, Porsche, and More

During the fall of 2022, a few friends and I took a road trip from Chicago, IL to Washington, DC to attend a cybersecurity conference and (try) to take a break from our usual computer work. While we were visiting the University of Maryland, we came across a fleet of electric scooters scattered across the

Sam Curry | Web Application Security Researcher

#LockBit released the #ransomware decryptor for the "#SickKids" #hospital for free and claimed to ban the partner who attacked the facility, because he violated their "affiliate rules".

The affiliate rules of Lockbit say:
"[..] It is forbidden to encrypt institutions where damage to the files could lead to death, such as cardiology centers, neurosurgical departments, maternity hospitals and the like, that is, those institutions where surgical procedures on high-tech equipment using computers may be performed. It is allowed to steal data from any medical facilities without encryption, as it may be a medical secret and must be strictly protected in accordance with the law. [..]"

Ukrainian Gov claimed that they have taken down a huge russian propaganda SIM farm. VX-Underground says 100k+ SIMs and 1.5M+ social media accounts. Impressive tech setup shown in youtube video.

https://youtu.be/TpqHCrn-f-8

Кіберполіція провела загальнонаціональну операцію з припинення діяльності ворожих ботоферм

YouTube

I randomly stumbled across some interesting update on the (officially not) hack of the #NewYork based Hospital-chain "One Brooklyn Health" last month (19th Nov 2022):

The company was not disclosing any info about why they have shut down their own networks. They just said that patient data would not be at risk. Of course many assumed it might be a ransomware attack.

However, on 11th Dec 2022, the former city council San Albanese tweetet that there is a $5M ransom requested - so I guess a #ransomware attack is now "confirmed".
(https://twitter.com/SalAlbaneseNYC/status/1601985985134628865)

But some good #healthcare news: The CEO told CNN today that over 80% of workstations have been "restored". (https://edition.cnn.com/2022/12/20/tech/hospital-ransomware/index.html)

Sal Albanese on Twitter

“Amazing, One Brooklyn Hospital System (composed of merger of 3 hospitals) has been hacked and criminals are requesting a 5M ransom. Meanwhile, these vital facilities are functioning with pen & paper bc they won’t pay ransom. This according to a staff member.”

Twitter
You didnt tell me that Mastodon supports animated GIFs as profile pics. Im sold.