Brutkey

Kevin Beaumont
@GossiTheDog@cyberplace.social

What a time to be alive

Tl;dr of the Scatter Spider LAPSUS$ chat aka fuckmandiantunit221bcr0wdshart is:

- they’ve owned a lot of big companies by phoning them up and asking for access - this includes orgs who haven’t disclosed their incidents

- they also appear to have an Oracle WebLogic exploit (unclear if zero day) and a SAP Netweaver exploit and used that to get inside orgs

- They appear to also be (or owned) ShinyHunters ransomware, as they include internal ShinyHunter emails and IMs.

grey
@grey@infosec.exchange

@GossiTheDog@cyberplace.social The hacker known as 4chan just flew over my house!


grey
@grey@infosec.exchange

@GossiTheDog@cyberplace.social Teen skids are doing a great job leading the industry around on a leash. It kills me to see our industry tracking scattered spider like it's a cohesive intrusion set and not hundreds of teens on different discords, telegrams, signal gc, and tox groups sharing photos and screenshots to brag to their underage Roblox girlfriends.