TechNadu

@technadu@infosec.exchange
4 Followers
20 Following
121 Posts

✈️ Travel-as-a-Service — on the Dark Web.

@trustwave uncovers travel fraud shops offering real hotel bookings, flights, rentals — powered by stolen card data, airline miles, and forged documents.

Automation, refund abuse & Telegram comms make it scalable.

🚨 Windscribe has again blocked JET VPN for abusing its infrastructure.

CEO Yegor Sak shared with TechNadu that the app was distributing mass OpenVPN credentials tied to Windscribe accounts.

🚩 The free VPN was flagged for:
Misusing Windscribe & now reportedly PIA

- Fake Play Store ratings
- No visible privacy framework

Read the full exposé: https://www.technadu.com/free-vpn-windscribe-blocks-jet-vpn-again-over-server-misuse-app-store-boosting-and-alleged-switch-to-pia/603948/

#Infosec #VPN #Windscribe #PIA #Privacy

🔒 @windscribecom has accused JET VPN of hijacking its infrastructure—powering a free Android VPN by secretly rerouting traffic through Windscribe servers.

The app, which started as a photo tool, climbed into the Play Store’s Top 10.

Windscribe blocked it and exposed the tactic publicly.

⚠️ Another warning about shady “free” VPN apps with no real infrastructure.

💬 Share your thoughts or dive into the full report on https://www.technadu.com/windscribe-slams-top-ranked-jet-vpn-for-piggybacking-on-its-servers-without-consent/603733/

#Infosec #VPN #windscribe #CybersecurityNews #AndroidSecurity

🚨 PoisonSeed phishing kit bypasses FIDO2 by removing secure options from login flows & redirecting users to cloned Microsoft, Google, or Okta pages.

It doesn’t exploit FIDO2—it avoids it.
📌 Experts warn this is part of a broader phishing evolution using social engineering + session hijacking.
🔗 Full article:
https://www.technadu.com/seed-of-deceit-poisonseed-tricks-users-out-of-fido2-redirects-microsoft-google-and-okta-logins-to-phishing-pages/603376/

#CyberSecurity #FIDO2 #Phishing #Okta #Infosec

🚨 New Interlock RAT variant uncovered in the wild, deployed via KongTuke FileFix campaign:

🧪 Delivered through fake CAPTCHA web prompts
📁 PHP payload executed via PowerShell
🌐 Uses Cloudflare Tunnel to mask C2 infra
📡 Includes fallback IPs for resilient connection
🧠 Performs deep system recon and persistence

Details:

#malware #RAT #interlock #threatintel #infosec

🚨 Targeted doxing of ICE officers by Antifa-aligned groups (Portland)

🧩 Summary:
• Names, photos, & addresses of ICE agents + families leaked online
• DHS: assaults on officers up 700%
• FBI offering $50K after gunfire during CA child-rescue ops
• Doxed info may be used by gangs (e.g., MS-13, Tren de Aragua)

This isn't hacktivism—it’s real-world targeting via online exposure⚠️.

🔗 Full story:
https://www.technadu.com/deportation-fuels-doxing-ice-agents-and-families-data-leaked-amidst-widespread-protests/602660/

#Infosec #Doxing #OSINT #ICE #Activism #CyberThreats

TechNadu interviewed François Deruty, Chief Intelligence Officer of @sekoia_io to get answers about innovations observed in cybercrime operations, challenges faced by CIOs, and adjustments to intelligence programs.

Deruty spoke about organizations tailoring red-team scenarios to the precise threats they face. He emphasized how Generative AI–powered deepfakes and hyper-realistic phishing lures force CTI teams towards dynamic behavior modeling.

This interview discusses the following and more:
🟣Cybersecurity isn’t just tech; it’s about understanding geopolitical risks
🟣Generative AI playing a pivotal role in Security Operation Centers
🟣Thwarting real-world threats beyond borders with a collaborative effort

🔗Read the interview: https://www.technadu.com/exploiting-vulnerabilities-using-ai-at-machine-speed-the-alarming-number-of-unpatched-devices-and-anticipating-how-adversaries-think/600534/

🔔 👉 Follow @technadu for more Expert Insights and share your views in the comments below.

#Sekoia #TechNadu #Interviews #AI #Cybersecurity #GenerativeAI #SocialEngineering #CyberThreats #CyberResilience #CTI

TechNadu interviewed John DiLullo, Deepwatch's CEO, to gain expert insights about the AI-driven adversaries and insider risks, asking for a re-evaluation of traditional defenses and digital resilience.

Dilullo discussed how Managed Detection and Response (MDR) is the answer to the problems faced by targeted companies that are struggling despite spending on security.

He expressed concern over threat actors persistently targeting the human element to profit from their errors and accessing confidential data.

He shed light on the following:

👁‍🗨The silver bullet solution that is Managed Detection and Response for cyber resilience
👁‍🗨The staggering number of malware detected daily and the growing number of security tools
👁‍🗨Tackling business risk arising from challenges faced during communicating cyber risk to the Board

🔗Read the full interview: https://www.technadu.com/data-stewardship-fighting-ai-powered-threats-with-ai-deploying-advanced-managed-detection-and-response-solutions/598330/

🔔 👉 Follow @technadu for more Expert Insights and share your views in the comments below:

#MDR #HumanError #InsiderThreats #CEO #Cybersecurity #AIThreats #DataSecurity #CyberResilience #Interviews #ThoughtLeader

In this interview, TechNadu presents updates from ExpressVPN’s Chief Research Officer, Dr. Peter Membrey(@pmembrey).

Dr. Membrey discussed the creation of Lightway, VPNs transitioning from standalone apps to essential components of digital infrastructure, and the passion for solving problems as a compass that guides one’s career path.

He elaborated on his experience with quantitative analysis, VPNs being a piece of a larger privacy puzzle, and making an impact instead of merely building products.

In this interview, read expert insights from Dr. Peter Membrey about:

⭕Transitioning from incremental improvements to creating something that offers constant connectivity
⭕Reasons behind rewriting ‘Lightway’ in Rust from the C programming language
⭕Posting the largest bug bounty ($100,0000 USD) in the history of the Bugcrowd platform that remains unclaimed so far

🔗Read our full Interview: https://technadu.com/expressvpn-building-the-future-of-privacy-rust-powered-protocols-zero-knowledge-embeddable-vpns/595008/

🔔 👉 Follow @technadu for more Expert Insights and share your views in the comments below.

#ExpressVPN #Lightway #Rust #VPN #TechNadu #Bugcrowd #BugBounty #TrustedServer #OpenSource

ExpressVPN on Building the Future of Privacy: Rust-Powered Protocols, Zero-Knowledge Innovation, and Embeddable VPNs

Peter M., the visionary behind Lightway, on how ExpressVPN is redefining VPN transparency, embracing Rust, and preparing for seamless privacy.

TechNadu

We are thrilled to share this interview with Prof. Dr. Dennis-Kenji Kipker( @kenji), Research Director at the cyberintelligence institute and Advisory Board Member of Nord Security.

Prof. Kipker discussed his vision for AI and cybersecurity, and the efforts of the government of Germany in tackling cybercrime.

He mentioned studying new questions and problems regularly, and analyzing incoming challenges to build solution-oriented projects.

In this interview, we offer insights shared by Prof. Kipker about:

🌐The goal of achieving cyber resilience through European innovation
🌐Company employees entering business secrets into large language models
🌐Cyber threat level in Germany and how it is being mitigated

🔗Read the full interview: https://technadu.com/are-employees-thinking-before-sending-sensitive-company-data-to-llms-think-before-you-type/593700/

🔔 👉 Follow @technadu for more Expert Insights and share your views in the comments below.

#AI #LLM #NordSecurity #Cyberintelligence #EuropeanUnion #Germany #CyberResilience

Are Employees Thinking Before Sending Sensitive Company Data to LLMs? Think Before you Type!

Dr. Kipker, Research Director, cyberintelligence.institute discusses cyber resilience, European innovation, Germany’s defenses, and more.

TechNadu