Scott Wilson

@scottwilson@infosec.exchange
378 Followers
364 Following
103 Posts

28+ year information security “professional”.

I'm a cishet, middle-aged, middle class, Christian, husband, dad, doggy-dad, and friend. I'm also a Stage IIIB #ColorectalCancer survivor. I like non-alcoholic #beer, #gardening and yardwork, playing guitar, and reading #books (mystery, thriller, suspense, #scifi, fantasy, astrophysics, and cosmology).

I’m supporter of #LGBTQIA rights, a #BlackLivesMatter advocate, a believer in #TransRights and proponent of equality. I support #Ukraine.

Currently clean on OPSEC | Only hand-crafted, artisanal memes.

Posts are on auto-delete (1 week).

PronounsHe/Him/His
Home Pagehttps://bscottwilson.com
[Bad] Codehttps://codeberg.org/bswilson
Photoshttps://pixel.infosec.exchange/scottwilson
Anubis is a Opensource Web AI Firewall Utility that weighs the soul of your connection using one or more challenges in order to protect upstream resources from scraper bots. It makes sure humans can have access to the resources available while blocking all bad bots. A perfect tool to block AI slop and must have for all developers and IT pros https://github.com/TecharoHQ/anubis
GitHub - TecharoHQ/anubis: Weighs the soul of incoming HTTP requests to stop AI crawlers

Weighs the soul of incoming HTTP requests to stop AI crawlers - TecharoHQ/anubis

GitHub

If you took off time last week, you should check out today's Metacurity, which succinctly recaps the most critical infosec developments you might have missed, including

--IT giant Ingram Micro's systems shut down after SafePay ransomware attack
--Qantas is talking with threat actor after attack,
--Android spyware flaw exposes thousands of customers,
--Ransomware negotiator may have struck deals with hackers,
--US sanctions bulletproof hoster,
--US goes after DRPK "IT worker" program,
--A racist hacked Columbia and the NYT shamed itself,
--North Korean hackers using a new family of macOS malware,
--Hackers use genAI tool to build phishing sites in 30 seconds,
--Hacking campaign targeted French orgs using Ivanti zero days,
--Hackers impersonate big brands in callback phishing scams,
--Hunters International calls it quits and offers free decryptors,
--Threat actor opened 103K fraudulent Medicare accounts using stolen data,
--TikTok is building a new app ahead of possible deal,
--Louis Vuitton Korea acknowledges breach,
--SK Telecom beset by more breach-related troubles,
--SEC and SolarWinds move to dismiss breach counts,
--Secret Service team has recovered $400m in scam crypto investments,
--Cyber reserve team to defend Moldova from Russian threats,
--Cloudflare will block AI crawlers by default,
--AT&T launches anti-SIM swapping feature,
--Kelly Benefits breach exposes data on more than 500K people,
--LevelBlue to buy Trustwave Holdings,
--Ethical hacker contest coming up in South Korea,
--Researcher earns $25K in bug bounties by scanning GitHub commits,
--CBP wants tech companies to double down on device surveillance,
--Putin's disinformation campaign seeks to undermine EU democracies

https://www.metacurity.com/it-giant-ingram-micros-systems-shut-down-after-safepay-ransomware-attack/

IT giant Ingram Micro's systems shut down after SafePay ransomware attack

Qantas is talking with threat actor after attack, Android spyware flaw exposes thousands of customers, Ransomware negotiator may have struck deals with hackers, US sanctions bulletproof hoster, US goes after DRPK "IT worker" program, A racist hacked Columbia and the NYT shamed itself, much more

Metacurity

s/Happy\ Monday/My\ condolences/g

#monday

Good morning
-Cyber scammers arrested in Nepal
-Lynx RaaS rebrands as Sinobi
-New Hpingbot botnet
-New RondoDox botnet
-IconAds fraud operation disrupted
-JDWP ports abused for cryptomining
-SHELLTER team threatens customers after its pen-test framework was used in malware attacks
-Massive AI disinfo hits Germany
-APT36 targets BOSS Linux
-DjVuLibre fixes Linux attack
-New sudo vulns
-Instagram uses one-day certs
-Lenovo AppLocker bypass

-QiAnXin claims to find new North American APT
-SEC and SolarWinds seek settlement
-C&M hack linked to malicious insider who sold his credentials
-Luis Vuitton discloses breach
-Ingram Micro deals with ransomware attack
-Idealab breach
-Indiana University hack
-Win 11 finally overtakes Win 10
-Taiwan warns against Chinese mobile apps
-Australia introduces age verification for search engines
-EU to send cyber reserve to Moldova

Newsletter: https://news.risky.biz/risky-bulletin-chinese-researchers-claim-to-find-new-north-american-apt/
Podcast: https://risky.biz/RBNEWS447/

Whenever I mention that boycotting is a privilege, I inevitably get people trying to explain how wrong I am.

How “easy” it is to find alternatives.

How “important” it is not to support big businesses like Amazon.

How “lazy” it is not to shop local.

They talk over me, condescend and accuse me of not fighting for the cause.

Disabled people need your support and solidarity.

We’re all in this fight together.

When we tell you something is inaccessible, believe us.

Most of us already feel guilty we can’t do more, but there’s many things that aren’t “easy” for us.

Survival is resistance. It’s not “lazy” to utilize a service that will keep you alive.

Fight the fascists. Not one another.

It’s really lovely to hear you say this. What a simple gesture that anyone can make that has a huge impact for those who need it most.

I once saw a sticker on the streets with this passage, which aligns with your sentiment. I made a graphic of it because that’s how my family rolls, and I’d love to think more people every day are doing the same thing.

#LGBTQ #Pride #PrideMonth

When I was a kid, bedtime was 9 pm. l couldn't wait to be a grownup so I could go to bed anytime I wanted.

Turns out that is 9 pm.

Web browser @Vivaldi 7.5 for desktop introduces custom tab stack colors, a cleaner tab context menu, custom DNS providers, an improved address bar, Mail and Calendar updates, and other improvements and bug fixes.
https://alternativeto.net/news/2025/7/vivaldi-7-5-released-with-custom-tab-stack-colors-improved-tab-context-menu-and-more/
×

It’s really lovely to hear you say this. What a simple gesture that anyone can make that has a huge impact for those who need it most.

I once saw a sticker on the streets with this passage, which aligns with your sentiment. I made a graphic of it because that’s how my family rolls, and I’d love to think more people every day are doing the same thing.

#LGBTQ #Pride #PrideMonth

@markwyner Exact same. It inhibits the bigots at least a little, and emboldens the marginalized at least a little. It takes the invisibility out of solidarity.
@markwyner Oh hell yes! Well said and absolutely spot ON why I wear my Pride Watch band and why we fly the LGBTQIA+ flag all month. Our friends notice. Others get it.
@markwyner Same reason why my watch band is a rainbow (I had to change it couple of times, but I always keep the rainbow theme). It’s the easiest way to let LGBTQ people know, they are safe with me
@markwyner my wife wore a "protect trans kids" fanny pack to a protest and a trans protestor stopped by and chatted with us. She got asked for help at work because she sported a little rainbow flag in our car. It's in-group signalling: "hey, we're on your side."

@markwyner

This only works if, when the yobbo on the bus or the pub bore start attacking queer people, whether physically or verbally, you stand up and tell them to shut the fuck up and sit back down.

If you were it to make people feel safe, then you must be prepared to back that up with actions when the occasion demands.

@CrypticMirror holistically, you are 100% correct. But the point here isn’t to address how to help people who are actively being victimized.

The point of this sentiment is to help people who are looking for a beacon when they need one. So they don’t feel alone or unwanted just walking around, living their lives.

@markwyner In a similar way, this is why I wear a mask.
@markwyner This is exactly why I wear a rainbow-pin on my battlevest when going to shows. I might listen to the harshest music out there but I won't judge you for who you are.

@markwyner It's a rainbow, right? It doesn't exclude anyone. It doesn't classify people into categories of legitimacy. It just says everyone is a person.

This man married to his wife for almost 30 years is ok with that.

@markwyner

We ALL can do SOMETHING!

I LOVE this!

Funny story—I live in a small senior community & added the rainbow flag to my garden banner rotation.
I was told by a friend here that people were confused & asking if it meant my husband and I are gay? So much ignorance & fear.
#WeAllStandTogether #WeAllCanDoSomething