Salta al contenuto principale



China Hackers Exploit Citrix Gateway to Breach European Telecom


Archived/non pay-walled

Here is the original report by Darktrace: Salty Much: Darktrace’s view on a recent Salt Typhoon intrusion

Cybersecurity programs typically focus on protecting core applications and digital assets. But what if the bad guys start targeting trusted defensive measures?

This was the case as reported by Darktrace, a cybersecurity platform provider. Its report sheds light on a sophisticated cyber intrusion linked to Salt Typhoon. The threat actor group is believed to be operated by China's Ministry of State Security, which conducts cyber espionage campaigns against other countries.

The recent attack features a blend of zero-day exploitation and trusted software abuse. In this instance, Salt Typhoon infiltrated a European telecommunications provider through a gateway device. The attackers then executed a familiar—but evolving—arsenal of stealth techniques.
These included DLL sideloading and abusing trusted antivirus software—such as Norton, Bkav, and IObit—to mask malicious payloads under legitimate binaries. The campaign also deployed a custom backdoor known as SNAPPYBEE (aka Deed RAT) by using a dual command-and-control channel (HTTP and unidentified TCP) to sustain the covert access.

Darktrace analysts attribute the incident to Salt Typhoon based on overlapping tactics, infrastructure, and malware patterns seen in prior operations by the group. The event underscores a growing trend: nation-state actors are increasingly weaponizing legitimate tools and supply-chain software to bypass traditional security controls and AI-powered detection.

...

Given the current geopolitical relationship between the US and China, attacks like this are sure to keep occurring. The two countries compete in world markets. Plus, mutual distrust exists across economic, technological, and military domains.

This campaign also symbolizes broader China-linked cyber operations targeting telecom and communications infrastructure as part of its strategic intelligence-gathering efforts.

“Organizations should expect stealthy activity that blends with normal operations when facing Salt Typhoon,” said Jason Soroko, a Senior Fellow at Sectigo, a provider of comprehensive certificate lifecycle management.”

As this attack illustrates, there has been a shift toward stealth-driven espionage. Attackers now rely less on malware volume. Their focus has turned to exploiting the trust woven into enterprise systems. The time has arrived to apply the zero-trust paradigm to cybersecurity defenses.



[Announcement] Migrating away from lemmy.


Last week this instance decided out of nowhere that it deserves a break and vanished.

After multiple attempts of troubleshooting, I was about to put up a static html to announce the move away from "the broken ass lemmy", when i figured out the real problem (nginx config was changed for some reason and no longer correct).

That being said, I still would like to move away from lemmy. At the time of setup, it was the closest to a reddit replacement we had available but by now nostr has matured a lot and it would be in everyones best interest to start building a community on there instead of a federated platform like lemmy on which you lose your entire online presence when the instance goes down.

If you have any suggestions on what specific nostr frontend we should host here on monero.town, please feel free to share them!

Personally id like to deploy an instance of monstr.land/ but sadly it is currently not FOSS.

#meta


US government shutdown enters 36th day to become longest in history


Shutdown beats record set during Trump’s first term as succession of Senate votes fails to yield breakthrough

The US government shutdown became the longest in history on Wednesday, crossing the 36-day mark with no end in sight as Republican and Democratic senators remained at loggerheads over restarting funding to shuttered federal departments.

The shutdown beat the previous 35-day record set in December 2018 and January 2019 during Donald Trump’s first term, when government funding legislation was held up over his insistence on including money to build a wall along the border with Mexico.

The standoff began on the first day of October, after Democratic senators refused to vote for a government funding bill unless it included an extension of Joe Biden-era tax credits that lower costs for health plans purchased through Affordable Care Act (ACA) exchanges. Tens of millions of Americans are expected to be unable to afford insurance once the credits expire at the end of 2025.




in reply to BrikoX

Kovarex enrichment process unlocked
Questa voce è stata modificata (3 ore fa)


Space junk may have struck a Chinese crew ship in low-Earth orbit


The three-man crew was supposed to return to Earth on Wednesday to wrap up six months in space.


Archived version: archive.is/newest/arstechnica.…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



40 NGOs accuse Israel of using aid as a political weapon


Israel is deliberately obstructing the entry of humanitarian aid into the Gaza Strip by imposing a new registration system for NGOs


Archived version: archive.is/newest/thecanary.co…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.






Israel's genocide has left Gaza with just 5% of its farm land remaining


The UN has warned that what is happening in Gaza represents a “near-total collapse of the agricultural and production system"


Archived version: archive.is/newest/thecanary.co…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



US states demand Meta reject EU sustainability directives


In a letter to Mark Zuckerberg, US state attorneys demanded Meta defy EU sustainability and human rights directives — citing "European elites" and "bureaucrats in Brussels."


Archived version: archive.is/newest/euobserver.c…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



Rep. Mikie Sherrill wins N.J. governor in Tuesday's second victory for Democrats


cross-posted from: beehaw.org/post/23037393

A former Navy pilot, first elected to Congress in 2018, will be New Jersey's next governor.

Democratic Rep. Mikie Sherrill defeated former Republican Assemblyman Jack Ciattarelli, according to a race call by The Associated Press, capping a closely-watched gubernatorial election that some polls predicted would be a coin flip.




Prop 50: Californians pass redistricting measure that helps Democrats flip up to five House seats


Approval of measure could determine if Republicans keep full control of government in next year’s midterm elections

It was a decisive victory for Democrats in deep-blue California, who had raced to counter a gerrymander in Texas, engineered at the US president’s behest, to carve out new safe Republican districts. The Associated Press declared Proposition 50 had passed almost instantly when polls closed statewide.

In approving the measure, voters chose to toss out the work of California’s independent redistricting commission and temporarily adopt maps drawn by the state legislature to help Democrats pick up five additional seats in the US House of Representatives.

Newsom and Democrats framed the measure as a way to safeguard US democracy from Trump’s “wrecking ball” presidency. By contrast, opponents offered a mixed message, with Republicans alternatively attacking Newsom and praising the work of the independent mapmaking panel.



Just Stop Oil protesters convicted after being denied right to state climate facts


Lawyers call for clarity over law as six are found guilty while being stopped from using defence used by fellow activists


Haroon Siddique Legal affairs correspondent | Wed 5 Nov 2025 08.00 CET

The six protesters outside Southwark crown court. From left: Andrew Dames, Clara O’Callaghan, Cosmo Cattell, Jane Touil, Michael Dunk and Adelheid Russenberger. Photograph: Just Stop Oil

Six environmental protesters were convicted after they were denied the ability to put a “reasonable excuse” defence or climate facts before the jury, despite these being afforded to other activists acquitted for taking part in the same demonstration.

After an eight-day trial at Southwark crown court in London, the six Just Stop Oil (JSO) activists were found guilty of public nuisance, which carries a maximum 10-year sentence, for climbing gantries on the M25 in 2022 to demand an end to new fossil fuel projects. They will be sentenced next month.

The way their case was handled contrasts starkly with that of three other JSO activists who took part in the same demonstration on London’s orbital motorway.

They were found not guilty of public nuisance after the judge at Guildford crown court allowed them to argue a defence of reasonable excuse and prosecutors permitted them to include 12 climate facts in the agreed facts – undisputed by both prosecutors and defence lawyers – presented to the jury. The verdicts in the two cases were less than three weeks apart.

Adelheid Russenberger, a history PhD student from London, who is one of those being sentenced at Southwark crown court next month, said: “It was just a complete disparity in how the judges treated the case and, to an extent, how the prosecutors dealt with them.
‘Compassion and care are being stripped away’: a Just Stop Oil activist on her time in prison
Read more

“One previous prosecutor was happy to accept some agreed facts regarding climate and the other wasn’t.”

The introduction of the statutory offence of public nuisance under the controversial Police, Crime, Sentencing and Courts Act (PCSCA) was widely criticised as an attack on the right to protest.

Section 78 of the act includes a defence of reasonable excuse, but Judge Perrins, sitting at Southwark, refused to allow Russenberger, who represented herself, and her fellow accused to advance the defence to the jury.

He ruled: “The subjective belief of each defendant that their conduct was justified as an act of protest cannot afford them a reasonable excuse under the terms of the act for their subsequent actions.” He said that would prevent any protesters being convicted of public nuisance.

Raj Chada, head of criminal defence at Hodge, Jones and Allen, who represented Andrew Dames at Southwark and Isabel Rock at the Guildford trial, said: “There is an inconsistency and the UK courts are wrongly, in my view, not [always] allowing reasonable excuse to be used and failing to give adequate protection to your right to free speech.”

Russenberger, Dames and co-defendants Cosmo Cattell, Jane Touil, Clara O’Callaghan and Michael Dunk took part in the M25 protest, which spanned four days, on 8 November 2022. Rock, Sam Holland and Rachel Payne, who were found not guilty at Guildford crown court, participated on the following day.

Mel Carrington, a JSO spokesperson, said: “[Judges who] deny juries their right to determine whether or not our actions were justified are not protecting the public. They are acting anti-democratically and immorally.”

Ruth Ehrlich, head of policy and campaigns at human rights defence group Liberty, said: “The government must review its anti-protest laws in light of the mounting evidence they aren’t fit for purpose.”

A spokesperson for judges in England and Wales said: “Judicial independence and impartiality are fundamental to the rule of law. In each case, judges make decisions based on the evidence and arguments presented to them and apply the law as it stands.”

The Crown Prosecution Service has been approached for comment.

In March, JSO announced an end to its campaign of civil resistance, its demand to end new oil and gas having become government policy.

Questa voce è stata modificata (1 giorno fa)
in reply to als

John Larroquette was so good at playing a skeezy asshole for some reason!
in reply to als

They need to stop waiting around to get arrested. The era of accountability is over.


Rough sleeping ban in central Auckland considered by government


Government ministers have confirmed they are considering measures to move homeless people out of Auckland's city centre - but the exact details remain unclear.

Asked for more details, Justice Minister Paul Goldsmith said he had been tasked with ensuring police had the tools they needed to tackle public disorder.

"It's blindingly obvious to everybody that the CBD, particularly of Auckland, but a lot of places, have been characterised by disorder and real concern around public safety," Goldsmith said. "We're open to some new suggestions in that area."

Asked specifically whether he would consider a ban on rough sleeping, Goldsmith said: "We're working our way through those issues... when we've got something to announce, we'll announce that."



Don Henley - Cass County (2015)


Don Henley, membro degli Eagles, è texano. Arriva dalla Cass County, la sua contea dove, presumo, la musica che lui sentiva da giovane, che veniva suonata per la maggiore, era la musica country... Leggi e ascolta...


Don Henley - Cass County (2015)


immagine

Don Henley, membro degli Eagles, è texano. Arriva dalla Cass County, la sua contea dove, presumo, la musica che lui sentiva da giovane, che veniva suonata per la maggiore, era la musica country . E Don celebra appunto la musica country in questo suo nuovo lavoro, che viene pubblicato ben 15 anni dopo il precedente, Inside Job. Ed è anche il suo primo album di musica country... artesuono.blogspot.com/2015/10…


Ascolta il disco: album.link/s/3qsw8b2cxvBthq1OQ…


HomeIdentità DigitaleSono su: Mastodon.uno - Pixelfed - Feddit




US | Uncle Sam wants to scan your iris and collect your DNA, citizen or not


DHS rule would expand biometric collection to immigrants and some citizens linked to them


German government approves largest minimum wage increase in its history


The German government has approved the largest minimum wage increase in the country’s history. Wages will increase in two stages over 2026 and 2027.


Archived version: archive.is/newest/iamexpat.de/…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



Germany to Boost Ukraine Aid by $3.45 Billion in 2026


Germany aims to boost financial aid to Ukraine by $3.45 billion in 2026, focusing on military support amid ongoing challenges from Russia.


Archived version: archive.is/newest/united24medi…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



World ‘very likely’ to exceed 1.5C climate goal in next decade: UN


Despite Paris Agreement pledges, countries 'have landed off target' on climate goals multiple times, the UN warns.


Archived version:


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



Jamaica PM says hurricane Melissa caused damage equivalent to nearly one-third of GDP


At least 75 people were confirmed dead across the Caribbean, including 43 in Haiti and 32 in Jamaica


Archived version: archive.is/newest/theguardian.…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



Japan dispatches troops to help combat deadly bear attacks


Japan's military deployed troops to the country's mountainous north on Wednesday to help trap bears after an urgent request from local authorities struggling to cope with a wave of attacks.


Archived version: archive.is/20251105053804/reut…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.

Questa voce è stata modificata (1 giorno fa)


SmartScreen for Internet Explorer and IE Mode on Windows 11 deprecated


Microsoft has deprecated SmartScreen on Internet Explorer and IE Mode within Windows 11. It has also issued some recommendations for administrators about the issue.

https://www.neowin.net/news/smartscreen-for-internet-explorer-and-ie-mode-on-windows-11-deprecated/

Technology Channel reshared this.



Report: Israeli forces, settlers carried out over 2000 attacks across West Bank last month


Israeli forces and settlers carried out 2,350 attacks across the occupied West Bank last month, Wafa news agency reported, citing the Palestinian Authority’s Colonisation and Wall Resistance Commission.


Archived version: archive.is/newest/middleeastey…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



US government shutdown now longest ever


The government standstill entered its 36th day, making it the longest closure on record. Congress has failed to approve funding for the new fiscal year that began on October 1.


Archived version: archive.is/newest/dw.com/en/us…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



European Investment Bank faces assessment in Israeli war crimes complicity case


The Hind Rajab Foundation (HRF) says its complaint accusing the European Investment Bank (EIB) of complicity in Israeli war crimes has moved to a formal assessment phase within the bank’s complaints mechanism.


Archived version: archive.is/newest/middleeastey…


Disclaimer: The article linked is from a single source with a single perspective. Make sure to cross-check information against multiple sources to get a comprehensive view on the situation.



[Patch Notes] 3.27.0b Hotfix


3.27.0b Hotfix


  • Fixed a bug introduced in 3.27.0b causing WombGifts from Hive Fortresses to incorrectly drop inside the Fortress area instead of outside.
in reply to BrikoX

The issue should now be fixed. Unfortunately, the hotfix did not go out properly by the time the hotfix notes were posted, but it was released several hours later. Apologies!


Source: reddit.com/r/pathofexile/comme…



[Patch Notes] 3.27.0b Patch Notes (restartless)


3.27.0b Patch Notes


Keepers League Improvements and Fixes

  • Monsters that are targeting Ailith will now move closer before using their skills.
  • Ailith will create skills more frequently during Hive Fortress encounters. Note there is a maximum of 6 skill objects active at a time.
  • Increased the cooldown for which Ailith cannot be damaged for after taking damage. This cooldown becomes longer the more damage she takes from an individual hit.
  • Failing a Breach Hive or Hive Fortress encounter will now drop all the loot of the monsters you had killed up to that point. You will not however gain any Graftblood or Wombgifts.
  • Rare Breach and Blight Monsters can no longer spawn with the Soul Eater modifier.
  • Mysterious Wombgifts were failing to generate Maps sometimes. Mysterious Wombgifts now no longer grant regular Maps, and there is now a small chance for higher level Mysterious Wombgifts to birth special types of Maps such as Shaper Guardian Maps or Synthesis Unique Maps.
  • The Artificial Selection Genesis Tree notable now affects the chance to get Hivebrain Glands from the Tree.
  • Breach Encounter skills can now be activated by pressing the 'League Interface' bind (default 'V') while in range.
  • Ailith now has the same quick action shortcuts as other vendors. Most notably, Ctrl + Click now opens the sell items window when using keyboard and mouse.
  • It that was Tul and It that was Esh now have unusable corpses. This fixes a bug where if you destroyed the corpse of these bosses shortly after they die the Hiveborn Body Part quest item would not drop.
  • Fixed desync that could occur with Unstable Breaches which caused them to sometimes appear already expanded.
  • Fixed a bug with the Gifts for the Genesis Tree quest saying you had turned in no body parts when you had turned in exactly 9 body parts.
  • Fixed a bug where Genesis Tree Passives for Birthed Unique Items generating with Strength, Dexterity or Intelligence Requirements were described as increased/reduced instead of more/less.
  • Fixed a bug where the It That Claws and It That Suspects Breach monsters were counted as Beyond Demons.
  • Updated the descriptions Encrusted Fruit and Wild growth notable passives on the Genesis Tree to have the correct displays: 25% chance for Birthed Currency to drop as Gold instead and 2% chance for Birthed Currency to drop as a full stack respectively. This is just a display update and they have functioned like this since 3.27.0 launch.

General Improvements and Fixes

  • Added a button to leave another player's hideout if you arrived there via The Market.
  • Significantly increased the cooldown on Faustus talking when using asynchronous trade.
  • Fixed a bug where Captured Beasts could not be placed in Merchant's Tabs.
  • Fixed an issue where Transfigured Gems were not searchable using The Market.
  • Fixed a bug where Foulborn Nightmare Jewels had much higher radius than intended. This change affects existing items.
  • Fixed a bug where the Foulborn Kalisa's Grace Unique Gloves' 50% reduced Mana Cost Buff was not being applied to the player.
  • Fixed a bug where Animate Guardian of Smiting's Smite ability unintentionally had base damage lowered by ~38% and effectiveness of added damage lowered by ~70% in 3.27.0.
  • Fixed a bug where Added Physical Damage on Attack Skill Gems was incorrectly described like Base Damage rather than Added Damage. Only Physical Damage was affected by this bug.
  • Fixed a bug where the tab colours in Siosa's shop were incorrect.
  • Fixed an instance crash.

Controller

  • Added the ability to access sales history in asynchronous trade when using a controller.
  • Fixed an bug which prevented navigation within certain Stash Tabs when using a controller.
  • Fixed a bug which prevented moving Voidstones from the Voidstone storage inventory into the Atlas sockets when using a controller.
  • Fixed a bug where Y/Triangle could not be used to corrupt a monster trapped in Essence with a Vaal Orb when using a controller.

This patch was deployed without restarting the servers, you'll need to restart your client to patch the client changes.



Steam Deck gets a new low-power screen-off downloads mode




All Republicans Defeated as Democrats Sweep Key Races in Three States Ahead of Midterms


Democrats scored a historic sweep Tuesday, capturing key races in Pennsylvania, Virginia, and New York, leaving Republicans shut out and building momentum ahead of the 2026 midterms.


Democrats sweep all 30 House of Delegates seats in Northern Virginia, flip 13 seats statewide


Democratic candidates won all 30 of Northern Virginia's seats in the Virginia House of Delegates on Tuesday as the party was set to significantly expand its 51-49 majority in the state's lower chamber.

As of 11 p.m., Democrats had picked up 13 seats statewide, according to the Virginia Public Access Project. With only one race undecided, the Democrats will hold at least 64 of the 100 seats, the most they have held in nearly 40 years.

https://www.cbs19news.com/news/state/democrats-sweep-all-30-house-of-delegates-seats-in-northern-virginia/article_68f8098d-0602-5234-8c2a-08c1bcd33944.html




in reply to silence7

He thinks he holds the purse strings. We'll use it to carry his head to the jeu de paume court.
Questa voce è stata modificata (1 giorno fa)


Democrats Retain Control of Pennsylvania’s Supreme Court with Three-Seat Sweep




L'alta ziggurat di Abidjan, faro eclettico nella metropoli del modernismo africano - Il blog di Jacopo Ranieri


reshared this