694 Followers
625 Following
237 Posts
Journalist
Personal websitehttps://raphae.li
If you know of anything similar happening at other threat research firms, give me a holler.

Scoop: Palo Alto chose not to tie China to recently uncovered hacking campaign for fear of retaliation from Beijing

https://www.reuters.com/world/china/palo-alto-chose-not-tie-china-hacking-campaign-fear-retaliation-beijing-sources-2026-02-12/

To the pen testers, red teamers and IR folks out there: How often are you encountering vibe coding in your engagements? I'm curious whether and how often vibe coded software is leaving the door open to your clients' networks. Leave a comment or PM me if you have thoughts.
New: Palantir's chatbot is now helping to staff the State Department's annual performance panels, partially outsourcing a key HR function to AI
https://www.reuters.com/world/us/us-state-department-cable-says-agency-using-ai-help-staff-job-panels-2025-06-09/
So, uh... I just did a Google search which was not about homework... because I haven't been in school in decades, and I got this pop up from Google. And, like, I actually think there are ways to use AI in school properly, but this kind of advertising from Google seems... super sketchy.

New: The Coinbase data breach that could end up costing the company $400 million is linked to the leak of customer data out of India.

At one outsourcer, more than 200 workers were fired when a woman was caught taking pics of her workstation with her personal phone.

https://www.reuters.com/sustainability/boards-policy-regulation/coinbase-breach-linked-customer-data-leak-india-sources-say-2025-06-02/

NEW: @aj_vicens and I went through some of the leaked TeleMessage files. Whoever hacked the service had access to a wide cross-section of US government communications.

https://www.reuters.com/world/us/hacker-who-breached-communications-app-used-by-trump-aide-stole-data-across-us-2025-05-21/

Our story on how the cybersecurity industry has publicly given Krebs and SentinelOne the cold shoulder:

https://www.reuters.com/world/us/cybersecurity-industry-falls-silent-trump-turns-ire-sentinelone-2025-04-10/

What Are We Really Securing?

In a few days, tens of thousands of cybersecurity professionals will descend on San Francisco for RSA, the world’s largest cybersecurity conference. We’ll talk about threats and vulnerabilities and, inevitably, about the promise of agentic AI.

Jen Easterly speaks out on the cybersecurity industry’s silence as Trump goes after Krebs et al:

“If we allow the quiet dismissal of dedicated public servants in our community to pass without comment — we’re not defending national security; we’re compromising it.”

https://www.reuters.com/world/us/ex-cisa-boss-says-trump-actions-risk-dangerously-degrading-us-cyber-defenses-2025-04-25/