John
@bigbadw0lf.bsky.social
1.4K followers 170 following 56 posts
Frontline Intelligence with #AdvancedPractices 🦅 @Google Threat Intel | views are my own
Posts Media Videos Starter Packs
Reposted by John
gregotto.bsky.social
🚨🚨🚨 Google released a report on "Brickstorm" this morning — a next-level, suspected China-linked campaign targeting U.S. firms. Ultra-stealthy, 400+ day dwell times, focus on stealing IP, finding zero-days, and focused on long-term cyberespionage. cyberscoop.com/chinese-cybe...
Brickstorm malware powering ‘next-level’ Chinese cyberespionage campaign
Mandiant and Google have identified “Brickstorm,” a sophisticated, suspected China-linked hacking campaign targeting U.S. tech firms, legal organizations, and BPOs. The operation often goes undetected...
cyberscoop.com
Reposted by John
cyberoverdrive.bsky.social
Not me losing my mind tracking ORBs lalalala I can't hear you over the sound of how many darned ORB networks there are 🫠
a close up of a woman 's face with a purple shirt on .
ALT: a close up of a woman 's face with a purple shirt on .
media.tenor.com
bigbadw0lf.bsky.social
Patched IOT devices?

What a quaint idea.
bigbadw0lf.bsky.social
Could I offer you another type of compromised network appliance in this trying time?
bigbadw0lf.bsky.social
Hot off the press is a new blog detailing our observations from in the wild exploitation of CVE-2025-22457 by UNC5221 including two newly observed malware families tracked as BRUSHFIRE and TRAILBLAZE.

cloud.google.com/blog/topics/...
Suspected China-Nexus Threat Actor Actively Exploiting Critical Ivanti Connect Secure Vulnerability (CVE-2025-22457) | Google Cloud Blog
cloud.google.com
bigbadw0lf.bsky.social
🔥 new blog covering recent UNC3886 ops. Massive S/O to all the authors for dropping such a great blog.
Reposted by John
lasq.pl
Lasq @lasq.pl · Mar 12
Super happy this blog is finally released. Dive into the intricacies of backdoors targeting Juniper devices, veriexec bypass zero-day and other interesting TTPs, all with UNC3886, a China-nexus cyber espionage group as your guide!

cloud.google.com/blog/topics/...
Ghost in the Router: China-Nexus Espionage Actor UNC3886 Targets Juniper Routers | Google Cloud Blog
We discovered China-nexus threat actors deployed custom backdoors on Juniper Networks’ Junos OS routers.
cloud.google.com
bigbadw0lf.bsky.social
I did get my second pair of Superblast 2s so not a total loss
bigbadw0lf.bsky.social
The universe doesn’t want me to get a pair of the Vaporfly 4s
Reposted by John
kschake.bsky.social
What I feel is ashamed.
atrupar.com
Trump to Zelenskyy: "Don't tell us what we're gonna feel. You're in no position to dictate that. You're in no position to dictate what we're gonna feel. We're gonna feel very good and very strong. You're right now not in a very good position. You're gambling with World War 3."
bigbadw0lf.bsky.social
Only 10, you doubt me brother
bigbadw0lf.bsky.social
Is this the gabagool I keep hearing about
bigbadw0lf.bsky.social
Shameless plus as to why being able to track akas is so valuable
bigbadw0lf.bsky.social
Submitted without comment
bigbadw0lf.bsky.social
Next generation hater and I’m here for it