@SttyKi
iAccount based inEast Asia!
About this account
- Account based in
- East Asia
- Connected via
- East Asia App Store
! X says this location may be affected by a proxy or VPN.
Account-level information from X, not a live location or the device used for a specific post.
I'm just nurse. BlackHat USA 2025/2026 Speaker Signal: @SttyK.88 fd61227fdc@protonmail.com
Joined May 2017
- Tweets24.4K
- Following1.4K
- Followers9.1K
- Likes29.2K
棒 retweeted
Today, Treasury took unprecedented action against the A7 Network, a shadow banking network with ties to Russia used by the Iranian regime to evade sanctions as part of Operation Economic Outcast.
Treasury’s @FinCENnews proposed a rule that would prohibit transmittals of funds regarding transactions involving the A7 Network’s Sub-Agents.
Additionally, FinCEN issued an Alert to help financial institutions detect and report suspicious activity related to the A7 Network.
Treasury’s Office of Foreign Assets Control sanctioned the A7 Network as a significant transnational criminal organization.
home.treasury.gov/news/press…
棒 retweeted
INTEL DROP
DarkSword C2 controllers, 43 hosts in the Total Insights detection pipeline across 26 networks in Hong Kong, the United States, Singapore, China, Japan, Brazil, and South Korea. Hosting skews heavily to APAC.
8.210.67.79
35.203.134.133
38.60.125.123
38.181.56.130
43.98.165.114
43.108.57.27
43.136.35.215
43.160.231.87
43.165.167.94
43.255.28.208
45.192.110.60
47.236.83.240
47.254.120.61
64.90.13.176
89.125.43.163
103.27.79.231
103.30.78.49
103.52.153.142
103.230.240.83
103.242.2.144
103.254.148.169
107.149.129.212
107.175.49.181
112.213.103.111
112.213.108.85
112.213.110.214
118.107.35.196
118.107.35.248
154.18.187.160
154.23.141.210
154.36.167.198
156.238.120.147
157.119.103.204
162.4.136.30
162.251.94.208
167.104.101.115
186.244.231.115
191.40.37.39
192.253.229.191
206.238.20.42
208.87.200.68
209.222.251.117
210.126.235.135
Sharing the host with other C2 and tooling:
38.181.56.130 controller:darksword + controller:cyberstrikeai + ost:pentagi
47.236.83.240 controller:darksword + controller:cobaltstrike + malware-hosting
Also flagged kev-vulnerable:
43.165.167.94
89.125.43.163
118.107.35.248
157.119.103.204
162.251.94.208
206.238.20.42
Two in the same /24:
118.107.35.196, 118.107.35.248
Block the set and hunt for beacons to these controllers.
#TotalInsights #ThreatIntel #DarkSword #C2
team-cymru.com/total-insight…
棒 retweeted
I don't have the right words to express the car crash of thoughts and feelings that come with reading this ridiculous post. The gall. The overtness. The ridiculousness. The self-owning. It's too much to articulate.
anthropic.com/research/glm-5…
ある種の緊張感を生み出せる(リスクとして認識させられる)から、こういうのだいじだと思う。
Replying to @cheenanet
またこれはサイバー攻撃とは少し異なるけども、最近はAppleがSiriで会話データを録音し提供していた問題で集団訴訟され、iPhoneユーザーは一人あたり数千円程度の和解金の受取ができた
大きな金額ではないけども、アメリカでは政府機関の訴訟・集団訴訟で圧力がかけられることが多いのは良いと思う
This morning @FBI and our partners the Dutch National Police are announcing the arrest of one of the alleged leaders of ShinyHunters - a global cybercrime and threat actor group linked to cyberattacks in the United States, the Netherlands, and around the world.
In coordination with FBI investigators the Dutch High-Tech Crime Unit arrested the suspect under Dutch law. As we speak FBI teams are actively working with partners to obtain and execute more leads in the ongoing investigation based on this arrest.
Thank you to our Dutch National Police partners for their continued work with us in this case and the industry partners who shared information with us.
The investigation continues.
-DKP🇺🇸
棒 retweeted
A year ago we launched Signal Secure Backups.
Now, we’re happy to share all of the additions and improvements we’ve made to backups since then: On-device backups, cross-platform support, storage optimization, and attachment backfill for linked devices.
signal.org/blog/backup-impro…
棒 retweeted
[SECURITY NOTICE] Bitget Hot Wallet Incident — September 24, 2026
At 18:31 UTC on September 24, 2026, Bitget's security systems detected unauthorized transfers from some of our hot wallets. Our security team activated emergency response protocols immediately.
What we have confirmed:
-Estimated funds affected: approximately $351.6 million
-Cold wallets remain fully secure. Bitget operates a three-tier wallet architecture — the breach contained only a portion of the hot wallet and warm wallet layers.
-User funds are safe. The full amount of this loss falls within the coverage of Bitget's User Protection Fund, which currently holds over $464 million
Actions we have taken:
-Emergency response team activated within minutes of detection
-Abnormal transfer addresses identified, flagged, and reported
-Withdrawals temporarily suspended as a precautionary measure, pending security review
-Law enforcement and on-chain security firms have been formally notified and are engaged
What this means for you:
-Your account balances are accurate and your assets are protected
-Deposits and trading remain fully operational
Withdrawals are temporarily paused and will be restored as soon as the security review is complete
-What comes next: We will provide updates on an hourly basis across this channel and all official platforms. A full incident report — including root cause analysis and corrective actions — will be published within 24 hours. We will not speculate on the attack vector until the investigation is complete.
Bitget has navigated multiple market cycles. We will not run from this. Every dollar and every decision will be accounted for, transparently and in full.
Updates will be posted here and across all official Bitget channels as they become available.
— Gracy Chen, CEO, Bitget