James Sullivan
@mrjamessullivan.bsky.social
870 followers 280 following 20 posts
Director, Cyber, RUSI
Posts Media Videos Starter Packs
Reposted by James Sullivan
rusi.bsky.social
🚨 Applications now open for the UK Cyber Effects Network Fellowship Programme! Early-career professionals, don't miss this chance to deepen your knowledge of offensive cyber operations. Submit your application now. (Only open to NATO member citizens)
Cyber Effects Fellowship Programme: Call for Applications
The UK Cyber Effects Network is now accepting applications for the inaugural cohort of its Cyber Effects Fellowship Programme.
my.rusi.org
Reposted by James Sullivan
joetidy.bsky.social
I've had it confirmed by my own sources now that it is DragonForce. Not 100% sure on Scattered Spider but looks like it might be hackers with links to them at least. But who's left from the group after all the arrests?! Also fascinating nugget- DragonForce's website has been hacked itself it seems!
Reposted by James Sullivan
disordershow.bsky.social
Ransomware is becoming a huge problem – not just to private companies but to national infrastructure too. What can be done?

@rusi.bsky.social's @jamiemaccoll.bsky.social explains the issue to @snellarthur.bsky.social and tries to Order the Disorder in this week's episode.

Listen 👉 tr.ee/ksicr-3Wty
Reposted by James Sullivan
jamiemaccoll.bsky.social
@ciaranm.bsky.social is the opposite of a fearmonger, so it's important to listen when he concludes: "amidst all the noise and hype about cyber threats one thing has changed: the threat from China is significantly more serious than at any point in the digital age." rusi.org/explore-our-...
Typhoons in Cyberspace
The transformation of China’s digital attack capabilities is the most important change in the cyber threat to the West in more than a decade, writes Ciaran Martin.
rusi.org
mrjamessullivan.bsky.social
New on @rusi.bsky.social on the profound change in China as a cyber threat actor. @ciaranm.bsky.social outlines its new political, strategic and active footing in cyberspace that has laid the grounds for disruptive operations vs western critical infrastructure. Read how 👇

rusi.org/explore-our-...
Typhoons in Cyberspace
The transformation of China’s digital attack capabilities is the most important change in the cyber threat to the West in more than a decade, writes Ciaran Martin.
rusi.org
mrjamessullivan.bsky.social
Excellent piece on the relationship between the government and the private sector on technology and national security. With comments from @piahuesch.bsky.social @rusi.bsky.social
shashj.bsky.social
My piece on how the British intelligence & nat. sec. community is reaching out to the private sector in new ways: describing its problems in unclassified terms, more venture capital, more innovation ‘clusters’. But not easy to bridge secret & tech worlds. www.economist.com/britain/2025...
Why British spooks are reaching out to the private sector
It is not always easy to bridge the secret and commercial worlds
www.economist.com
Reposted by James Sullivan
jamiemaccoll.bsky.social
We're hosting a panel event at RUSI at 0900 on 3 April to discuss the UK government's ongoing consultation on ransomware legislation. I'll be joined by:

@alexmartin.bsky.social
@kathrynwestmore.bsky.social
Verona Hulse-Johnstone (NCC Group)
Edward Lewis, CyXcel

my.rusi.org/events/asses...
Assessing UK Ransomware Policy
Join an expert panel to discuss the UK government’s approach to ransomware.
my.rusi.org
mrjamessullivan.bsky.social
Excellent write up from @kimzetter.bsky.social here on the nuances behind some of the recent headlines on US cyber security and cyber operations.
kimzetter.bsky.social
I updated my story again. DoD denied reports that an order was issued to CyberCom, but Washington Post stands by story that order occurred Feb 24. But a Post reporter says the ops impacted were low-level, since US has not been conducting anything against Russia that rises to level of "use of force"
kimzetter.bsky.social
Two stories published Friday reporting that Trump admin had ordered US Cyber Command and CISA to "stand down" on their work to detect/counter Russian cyber threats. But new info has come out to contradict them. I dug into what we know and don't know. www.zetter-zeroday.com/did-trump-ad...
mrjamessullivan.bsky.social
New from @lmhurel.bsky.social @rusi.bsky.social and Gatra Priyandita from @aspi-org.bsky.social on responsible cyber behaviour in the Indo-Pacific. Case studies comprise Cambodia, Fiji, India, Indonesia, Japan, Pakistan and Taiwan - exploring how they pursue their interests in cyberspace. See 👇🌏
aspi-org.bsky.social
🚨 NEW REPORT 🚨

In 'Responsible cyber behaviour in the Indo-Pacific', Gatra Priyandita and Louise Marie Hurel urge the international community to broaden its understanding of responsible cyber behaviour by incorporating diverse perspectives from the Indo-Pacific.

🔖 Read it now ↪️ bit.ly/40sHoNq
Reposted by James Sullivan
joetidy.bsky.social
UK proposes to ban public bodies (schools, hospitals, etc) from paying cyber criminal ransoms. As others have said - this is a tangible and progressive move but these kinds of orgs don't pay up anyway. Also, as
@jamiemaccoll.bsky.social says - these gangs don't pick targets based on public policy.
Reposted by James Sullivan
moore.bsky.social
The United States is already one of the most globally aggressive, methodical, and pervasive threat actors in cyber.
ciaranm.bsky.social
The addition of capital letters means it’ll definitely work this time 🙄

(Honestly God knows where these ideas come from that:

(A) the US has been only on defense; or

(B) there’s some sort of magical cost waiting for us to
impose that’ll change everything but we’ve just been too cowardly to use)
Reposted by James Sullivan
rusi.bsky.social
For the latest analysis on defence, security and international affairs, here is a list of RUSI staff members to follow on BlueSky (will be updated regularly as user base expands).
mrjamessullivan.bsky.social
A thoughtful piece from @selenalarson.bsky.social for @rusi.bsky.social on how we (mis)categorise cyber crime groups compared to nation-state actors. Professional cyber crime groups are just as persistent as traditional APTs 'making them equally devastating in today’s threat landscape.' Read why 👇
rusi.bsky.social
Once reserved for nation-state actors, advanced and persistent cyber tactics are now common among cybercriminals, making them equally devastating in today’s threat landscape. Read the latest RUSI Commentary from @selenalarson.bsky.social.
Why Biasing Advanced Persistent Threats over Cybercrime is a Security Risk
Once reserved for nation-state actors, advanced and persistent cyber tactics are now common among cybercriminals, making them equally devastating in today’s threat landscape.
bit.ly
Reposted by James Sullivan
shashj.bsky.social
Perhaps a bit early for this, but wanted to pick out a few of my favourite pieces from the year. I started 2024 looking at ransomware: “...doing as much harm to UK national security as anything Russia, China, Iran or North Korea does in cyberspace.” www.economist.com/internationa...
How ransomware could cripple countries, not just companies
Experts think 2023 was a record year for digital attacks
www.economist.com
mrjamessullivan.bsky.social
A significant law enforcement operation has showcased the clear links between organised crime, sanctions evasion and hostile state activity. This includes laundering the proceeds of ransomware. Read more from @rusi.bsky.social colleagues @kathrynwestmore.bsky.social and @jamiemaccoll.bsky.social 👇
Reposted by James Sullivan
shashj.bsky.social
Punchy intro to CDS Xmas lecture at RUSI from @MTSavill: “last month's announcement of cuts… is emblematic of a dept. that is struggling to reconcile people and money with existing commitments at a very time when the threats that we face are growing in scale and complexity”