Martijn Grooten

@martijn_grooten
2.7K Followers
237 Following
1,087 Posts
Cyber optimist. Researcher, reader, runner. Lapsed mathematician. Digital Security Threat Analyst at Internews. Also Coalition Against Stalkerware, Civilsphere Lab etc. He/they.
Twittermartijn_grooten
Webhttps://www.lapsedordinary.net
WorkInternews. Also: Coalition Against Stalkerware, Civilsphere, Ford Foundation's Cybersecurity Advisory Team. Also etc.
LocationGreece
EFF Teams Up With AV Comparatives to Test Android Stalkerware Detection by Major Antivirus Apps | Electronic Frontier Foundation https://www.eff.org/deeplinks/2025/11/eff-teams-av-comparatives-test-android-stalkerware-detection-major-antivirus-apps
EFF Teams Up With AV Comparatives to Test Android Stalkerware Detection by Major Antivirus Apps

EFF has, for many years, raised the alarm about the proliferation of stalkerware—commercially-available apps designed to be installed covertly on another person’s device to exfiltrate data from that device without their knowledge. We’ve teamed up with the researchers at AV Comparatives to test the most popular anti-virus products for Android to see how well they detect the most popular stalkerware products in 2025

Electronic Frontier Foundation
Tropical Storm Jerry🌀 (@[email protected])

FYI - because of what I saw happening over on mastodon. Social and a few other instances, I am resetting all the password of infosec.exchange users that haven't logged in during the previous 3 months. There's a lot of password stuffing and whatnot going on and I don't want to contribute to the problem of spam/phishing on the fediverse, and this was the best option I could come up with. Each of the accounts whose password is reset will get an email, so if you are here wondering "wtf, dude?", that's why.

Infosec Exchange
I rarely post here but I had an account on infosec.exchange going back and I just got a notification that my password had been changed. The original password and the email address shouldn't have been guessable so... that's bad, I think?
Keynote address: The security products we deserve

YouTube
Silent Push, in collaboration with Team Cymru, has uncovered Raspberry Robin C2 domains by identifying key nameservers, domain naming conventions, and a combination of IP and ASN diversity patterns. https://www.silentpush.com/blog/raspberry-robin/
Well, it is certainly shaping up to be an interesting evening. Do I know anyone in security at Grindr? If so, hit me up. I'm going to deal with my election anxiety by working.
I'm at my first big cybersecurity event since the pandemic. Naturally, I catch up a lot of gossip. People who turn out to be kinda shitty, that kind of stuff.
But I also learned through the gossip that @GossiTheDog really good people. So there's that too.
Lots of bad things to say about Elon Musk, but since he took over Twitter and made it an inhabitable place, I've had a lot more time to read books. Which, frankly, is awesome. Tonight, I reached my Goodreads goal of 75 books to read.
Backdooring thousands of pagers with explosives and then mass detonating those devices indiscriminately to injure often random humans does not feel like something any nation should be doing, supporting or celebrating. https://www.bbc.co.uk/news/live/cwyl9048gx8t?post=asset%3A45a99d22-17da-4f84-ae51-4c5b7a17b2aa#post
Lebanon exploding pagers latest: Israel strikes southern Lebanon as Hezbollah leader warns 'red lines' crossed

Hassan Nasrallah says the exploding device attacks are "a declaration of war" which paid "no heed to innocent people".

BBC News

Happening tomorrow: Join the Citizen Lab & CLTC Berkeley for a panel on the #cybersecurity threats faced by transnational advocacy groups in the US that are targeted by state and state-related actors.

Moderated by @rondeibert, this discussion will feature Citizen Lab researchers @nouraaljizawi, Gözde Böcü & Nicola Lawford sharing key findings on the cybersecurity threat landscape.

Register here: https://www.eventbrite.com/e/enhancing-cybersecurity-and-resilience-for-transnational-dissidents-tickets-982093878227

Enhancing Cybersecurity and Resilience for Transnational Dissidents

Join CLTC & Citizen Lab for a webinar on the cybersecurity challenges faced by US transnational activists targeted by state-related actors.

Eventbrite