Telegram CEO To The World: I’ll Moderate Content On My Platform

Posted in Commentary with tags on September 6, 2024 by itnerd

It’s amazing what an arrest will make you do.

Pavel Durov who is the CEO of Telegram, and who was arrested by French authorities and now is facing charges related to child sexual abuse material, drug trafficking, importing cryptology without prior declaration, as well as a “near-total absence” of cooperation with French authorities, has broken his silence on these events. You can read his full statement here. I encourage you to read his statement, but here’s the things that it covers:

  • He plays the “this is unfair” card for most of this statement.
  • He admits that policing what happens on Telegram has become harder over time. And he says it’s now his “personal goal” to “significantly improve things in this regard.”

I will also note that it appears that this process of better moderation is beginning. The Verge notes that Telegram has already updated its FAQ to note that private chats are no longer shielded from being moderated.

I guess that he’s hoping that if he does this, French authorities won’t ship him to some dark prison cell for a long time. I am not sure if that will work, but good luck to him I suppose.

Sensitive Patient Data Exposed in Data Breach 

Posted in Commentary with tags on September 6, 2024 by itnerd

Recently, cybersecurity researcher Jeremiah Fowler, discovered a non-password-protected database containing thousands of sensitive records belonging to Confidant Health, an AI-powered platform offering mental health and addiction treatment services. 

Key Facts

  • The exposed database contained 126,276 files and 1.7 million logging records, exposing driver’s licenses, ID cards, health insurance details, Medicaid cards, medical record requests, diagnostic drug tests, psychotherapy intake notes, transcripts of treatment sessions and more. 
  • The exposure of these files poses potential risks including identity theft, medical extortion, Medical identity theft and other significant HIPAA violations

You can find the full report here: https://www.vpnmentor.com/news/report-confidanthealth-breach/

Bad News For Elon Musk….. Advertisers To Spend Less On Twitter Ads Going Forward

Posted in Commentary with tags on September 6, 2024 by itnerd

Remember when Elon Musk told advertisers who left Twitter to “go f**k themselves“? And he also sued advertisers for boycotting Twitter? Well, Elon is finding out that when you do stuff like that, it doesn’t end well. I say that because it looks like companies are going to spend less on advertising on Twitter going forward. Here’s what this looks like via The Next Web:

The advertising exodus from X is set to accelerate. In 2025, almost half of marketers in Europe and North America plan to cut their spending on the platform.

That’s according to a new study from Kantar, a market research firm based in the UK. The company found that trust in ads on X is now “historically low.”

Unsurprisingly, the company’s reputation has plummeted under the leadership of Elon Musk.

When Musk bought the platform in 2022, trust from marketers stood at a worrying 22%. Two years later, it’s down to a dismal 12%.

Trust isn’t their only concern. Only 4% of marketers now think adverts on X provide brand safety. Google tops that ranking with 39%.

Gonca Bubani, Kantar’s global media director, believes a swift turnaround is unlikely.

“X has changed so much in recent years and can be unpredictable from one day to the next,” she said. “It’s difficult to feel confident about your brand safety in that environment.”

This could explain why Elon has decided to hire people to work in areas like security as well as trust and safety after he either fired them or they quit rather than work for him. He needs to give advertisers a reason to come back to Twitter so he doesn’t have to face the prospect of having to tank Tesla stock by selling a ton of it so that he get cash to keep Twitter afloat. But honestly, I think at this point advertisers are done with Elon and his antics and there’s no way back in terms of getting them on board. Plus since Elon put Twitter into a death spiral, other social media contenders have emerged. Threads and Bluesky being the ones that would likely benefit from advertisers looking to spend their dollars on a platform other than Twitter. While I am always free to be proven wrong, I don’t think I will be. This I believe is the latest nail in Twitter’s coffin. And it’s all Elon’s fault in terms of Twitter being in that coffin.

Equinix Issues More Than $750 Million in Green Bonds to Drive Sustainability Initiatives

Posted in Commentary with tags on September 5, 2024 by itnerd

Equinix, Inc., the world’s digital infrastructure company, today announced that it issued more than $750 million in green bonds across two completed offerings. The green bonds will enable Equinix to advance on its sustainability initiatives and drive improvements in the operational eco-efficiency of its business. With these latest issuances, Equinix will have issued a total of approximately $5.6 billion of green bonds, making it one of the top 10 largest U.S. corporate issuers in the investment-grade green bond market.

Equinix issued €600 million principal amount of 3.65% senior green notes due 2033. This follows the issuance of Swiss Franc 100 million principal amount of 1.5575% senior green notes due 2029. Equinix used rate locks to hedge a significant portion of the interest rate risk associated with the issuance of both the Euro and Swiss Franc green bonds. Accounting for such hedges, the Euro and Swiss Franc green bonds are expected to carry an effective coupon of 3.62% and 1.67%, respectively. The Euro offering closed on September 3, 2024, and the Swiss Franc offering closed on September 4, 2024.

Equinix intends to allocate an amount equal to the net proceeds from the green bonds to finance or refinance, in whole or in part, recently completed or future Eligible Green Projects. Equinix’s allocation strategy includes covering project expenditures up to two years before the issuance of the green bonds and three years following the green bond issuance. These projects, which form the backbone of the company’s sustainability mission, span a wide range of impactful categories—from green building development and renewable energy innovations to advanced energy efficiency, resource conservation and cutting-edge decarbonization solutions.

Highlights/Key Facts

  • Equinix’s Eligible Green Projects follow its 2024 Green Finance Framework based on the Green Bond Principles of June 2021 and Green Loan Principles of February 2023, a set of guidelines that promote transparency and integrity in, and advance the standardization of, green debt disclosures. The Framework aims to increase Equinix’s focus on protecting the environment and addressing global climate change through greenhouse gas emissions reductions, increasing resource efficiency and driving corporate transparency and accountability. 
  • Equinix had previously issued an aggregate of $4.9 billion of investment-grade green bonds under its 2020 Green Finance Framework to advance its progress toward its near-term science-based target to become climate neutral by 2030 and improve the operational eco-efficiency of its business. As of the end of June 2023, Equinix had fully allocated the proceeds from these green bonds in accordance with the 2020 Green Finance Framework. 
  • Globally, Equinix continues to invest in new and innovative technologies in energy efficiency, renewable energy and heat export projects as part of its global Future First sustainability strategy, focusing on areas that have the greatest impact on customers and key stakeholders.
    • In 2023, it maintained 96% renewable energy coverage across its portfolio. It also remains highly focused on improving the energy efficiency of its facilities as measured by power usage effectiveness (PUE), which improved 8%+ compared to the prior year.
    • In addition, Equinix was recognized for its climate performance and transparency in 2023 by achieving the highest ranking of the CDP’s prestigious Climate Change A List for the second consecutive year. Of 23,000+ companies that disclosed environmental data to CDP in 2023, less than 2% received the top score. 
  • Equinix continues to advance its green initiatives through its participation as a founding signatory of the Climate Neutral Data Centre Operator Pact and Self-Regulatory Initiative, which is leading advocacy and steering the development of sustainability requirements for the EU data center industry to become climate neutral by 2030. 

Additional Resources

2023 Equinix Sustainability Report and Global Reporting Initiative (GRI) Metrics 

Brazil’s President Calls Out Elon Musk…. And I Am Totally Here For It

Posted in Commentary with tags on September 5, 2024 by itnerd


Brazilian President Luiz Inácio Lula da Silva in an interview with CNN called out Elon Musk in epic fashion. Here’s what he said:

“The Brazilian justice system may have given an important signal that the world is not obliged to put up with Musk’s extreme right-wing anything goes just because he is rich,” the president said.

I agree with this 100% simply because the best way to take down Elon Musk is to call out his behaviour and punish him for it. And surprisingly the Brazilians were the first to do that. I had my money on the EU to be first, but at least someone is doing God’s work. Hopefully, this emboldens other countries and the like to make Elon pay for his behaviour. Again, I’m looking at you EU. But the US can step up and do the same thing as well.

Bravo Brazil!

Twitter Is Hiring Security And Safety Staff… Is This A Hail Mary?

Posted in Commentary with tags on September 5, 2024 by itnerd

Elon Musk fired a whole lot of people when he took over Twitter. And others, particularly those who were responsible for guardrails around the platform simply left. That has made the platform a train wreck next to a dumpster fire as it has become to every right wing nut job and Nazi among others. That in turn, along with Elon’s antics, have driven away advertisers. But the guardrails may, and I stress may be about to go back into place. Tech Crunch is reporting that Twitter is doing some hiring:

Nearly two years after the layoffs across X’s trust, safety and security teams, Elon Musk’s social media company is now trying to hire new employees to help moderate content and secure its platform, according to X’s official job listings

In the last month, X posted two dozen job openings evenly split across its safety and cybersecurity teams

The jobs on X’s safety team range from director of strategic response on X’s safety team to government affairs managers. On its cybersecurity teams, X is hiring several security engineers and a threat intelligence specialist. 

I personally think that this might be a Hail Mary from Elon. Assuming that he isn’t actively trying to destroy Twitter. Which to be frank, I wouldn’t put it past him to do that. He’s got to make money somehow. And having the appearance of a group of humans who are capable of moderating content on Twitter would help with that as Elon could use that to appease and attract advertisers back to the platform. And in turn make money that way. There’s also the fact that the EU is demanding that Elon moderates content on Twitter. And perhaps he doesn’t want to fight the EU because Elon knows that he’d lose.

The question is, who would want to work for Elon given his behaviour to date? I sure as Hell wouldn’t want to. And I suspect that he might have difficulty filling these roles as a result of that.

CIRA’s ‘What’s up with the internet?’ podcast premieres second season exploring today’s most pressing cybersecurity problems

Posted in Commentary with tags on September 5, 2024 by itnerd

Today, CIRA announces the premiere of season two of its podcast, What’s up with the internet? focusing on the enduring subject of cybersecurity, online safety and the evolution of cybercrimes. Hosted by award-winning Canadian tech journalist Takara Small, this season of What’s up with the internet? is a revelatory journey full of eye-opening discussions around a topic that has impacted everything from our economy to our healthcare system—and even our elections.

Across six episodes, What’s up with the internet? explores the headline-grabbing cyber attacks on our public institutions, the government’s role in cybersecurity, the stories of those impacted by cybercrimes, the high stakes world of ransomware negotiations and more. Listeners will also receive expert advice on how to keep themselves safe in a shifting online threat landscape.

Season two features commentary and guest interviews from a variety of experts including Sami Khoury, Head of the Canadian Centre for Cyber Security, security guru Bruce Schneier, David Shipley, CEO and Co-Founder of Beauceron Security, Jon Ferguson, Vice-president, Cyber & DNS, CIRA and more.

Ahead of the release of season two, CIRA surveyed its membership on their experiences with hacking and cybersecurity.

Key facts

  • 61 per cent of CIRA members have been the victim of a hack or an online scam, with the most common being phishing scams
  • 60 per cent of CIRA members don’t trust private organizations with their data, while 39 per cent were only somewhat trusting
  • 45 per cent reported that they had experienced their personal data being breached or stolen online

Listeners can learn more at cira.ca/podcast and subscribe to What’s up with the internet? on all major podcast platforms, including Apple Podcasts and Spotify.

No Shock Here… Twitter Is The Biggest Source For Election Disinformation

Posted in Commentary with tags on September 4, 2024 by itnerd

Seriously, this doesn’t come as a big shock to anyone who has been watching the downfall of the toxic mess that is Twitter which is of course owned by that not so fine person Elon Musk. Mother Jones is reporting that Elon seems to be okay with Twitter being the biggest source of election disinformation:

Elon Musk is not just the Trump-supporting owner of the social media platform X, formerly known as Twitter. It turns out he is also one of the platform’s biggest peddlers of election-related disinformation, according to a new report published Thursday by the Center for Countering Digital Hate.

The report from CCDH, a nonprofit organization focused on protecting civil liberties and holding social media companies accountable, found that 50 false or misleading posts shared by Musk on X between January 1 and July 31 of this year racked up a staggering 1.2 billion views. The group categorized the posts under three main themes: false claims that Democrats are “importing voters” through illegal immigration (the bulk of the content that researchers examined); false claims that voting is vulnerable to fraud; and a manipulated video, also known as a deepfake, of Vice President Kamala Harris.

According to the report, while independent fact-checkers found the content in all of those 50 posts shared by Musk to be false or misleading, none of the posts in question contained a “community note,” X’s user-generated fact-checking systemthat the company promise’s can contextualize “potentially misleading posts.” Just this week, Musk claimed in a post on X that community notes offer “a clear and immediate way to refute anything false in the replies,” adding, “the same is not true for legacy media who lie relentlessly, but there is no way to counter their propaganda.”

This is simply one more data point proving that Elon Musk isn’t trying to promote free speech. He’s instead trying to promote a specific agenda at any cost. Thus if you’re still on Twitter, it’s time to get off the platform and go someplace else for your social media needs. Bluesky for example is getting a lot of signups from Brazil from what I hear. Mastodon is a good place to go as well. Because Twitter sure isn’t what it used to be.

Russian Hacking Group Targets iOS & Android Devices Says Google

Posted in Commentary with tags on September 4, 2024 by itnerd

There have been reports that recent exploit attacks on iOS and Android web browsers by Russian hacking group APT29, have been detected by Google:

The Google TAG report, authored by Clement Lecigne, and published on August 29, revealed that the exploits being deployed by the Russian state-sponsored APT29 hacking group were the same as those used by commercial spyware vendors in the past.

Observed by the Google and Mandiant security analysts between November 2023 and July 2024, the exploits formed part of what is known as a watering hole attack. This is pretty much what you would expect it to be: a cyberattack targeting victims by infecting a website or service that they would ordinarily use and trust. Just like predators who attack their prey by hiding near real watering holes for thirsty animals at their most vulnerable. “The use of watering hole attacks circumvents traditional web security controls like URL categorization filters,” Adam Maruyama, field chief technology officer at Garrison Technology said, “because the owner of the site and the human-readable content hosted there are legitimate, leaving only a few layers of protection between the end user’s device and the malicious webcode.” The threat becoming even more acute on mobile devices, Maruyama continued, “where few users have endpoint protection products to stop even known exploits, leaving unpatched devices vulnerable.”

The prey in these particular attacks were Mongolian government websites, although the same tactic would apply to any targeted victim. State-sponsored groups such as APT29 tend to go for big game, as it were, being commercial and government organizations that benefit their paymasters most. The common denominator was that the victims were using the Safari browser on older versions of iOS (those before 16.6.1) initially and then Android users running the m121 to m123 versions of the Chrome browser. It should be noted that fixes had already been made available for the vulnerabilities exploited in these attacks, but users who were using unpatched versions were at risk.

Alan Bavosa, VP of Security Products at Appdome had this comment:

“While the APT29 group attack is focused on mobile browsers, the real targets ultimately are the Android and iOS apps running on unprotected end-user devices. To counter such threats, comprehensive mobile app protection is vital. App developers need to protect their apps and mobile end users from these and other attacks, using basic mobile app security protections as well as protections against new, sophisticated attacks, such as accessibility malware and social engineering attacks.”

“The nature of today’s mobile attack landscape means that it is difficult, if not impossible, for mobile end users to protect themselves.”

“Consumers are holding mobile brands accountable for mobile app defense. In order for mobile developers to keep up, they must implement automated mobile app defense systems to combat today’s increasingly sophisticated cyber threats rather than using SDKs or protecting their apps from scratch.”

This is a wakeup call for consumers and brands on how vulnerable the little rectangles we carry around with us everywhere we go really are. Thus updates need to be issued and applied and app companies need to make sure that their apps are secure.

The August BlackFog State of Ransomware Report Is Out

Posted in Commentary with tags on September 4, 2024 by itnerd

BlackFog has today released the State of Ransomware report for August 2024.Additionally, Darren Williams, CEO and Founder, BlackFog, has provided his thoughts on the state of ransomware in August, below:

     “August witnessed the 3rd highest number of attacks for the year with 63 publicly disclosed attacks, already surpassing the total number of attacks in 2020, 2021 and 2022. It also represents the second highest number of undisclosed attacks of the year with 464, with a ratio of 737% undisclosed to disclosed attacks.

From a sector perspective Healthcare had the biggest increase this month with 20%, or 16 verified attacks. This makes Healthcare the most targeted sector by a significant margin, followed by Government and Education, which saw only modest increases of 10% and 12% respectively.

In terms of variants, this month we saw RansomHub, a new entrant rocket to 7.9% of all attacks, followed by Medusa and Rhysida at 7.6% and 6.0% respectively. While LockBit still maintains its lead with 18.4% of all attacks, we only saw one confirmed attack this month.

A similar trend was observed in unreported attacks with RansomHub commanding 8.4% of attacks.

Lastly, we saw data exfiltration rates to China increase significantly to 20% this month (an increase of 4%) and Russia stable at 6%, with 93% of all attacks involving data exfiltration.”

BlackFog State of Ransomware Report August 2024: https://privacy.blackfog.com/wp-content/uploads/2024/09/BlackFogRansomwareReport-Aug-2024.pdf