/
Navigation
C
Chronicles
Browse all articles
C
E
Explore
Semantic exploration
E
R
Research
Entity momentum
R
N
Nexus
Correlations & relationships
N
~
Story Arc
Topic evolution
S
Drift Map
Semantic trajectory animation
D
P
Posts
Analysis & commentary
P
Browse
@
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
?
Concept Search
Semantic similarity search
!
High Impact Stories
Top coverage by position
+
Sentiment Analysis
Positive/negative coverage
*
Anomaly Detection
Unusual coverage patterns
Analysis
vs
Rivalry Report
Compare two entities head-to-head
/\
Semantic Pivots
Narrative discontinuities
!!
Crisis Response
Event recovery patterns
Connected
Nav: C E R N
Search: /
Command: ⌘K
Embeddings: large
VOICE ARCHIVE

David DiMolfetta

@ddimolfetta
22 posts
2026-02-25
The Treasury sanctions align with an FBI investigation into Peter Williams, a former employee of U.S. defense contractor L3Harris who pleaded guilty to selling cyber exploits to a Russian entity: https://www.nextgov.com/...
2026-02-25 View on X
CyberScoop

A US judge sentences ex-L3Harris executive Peter Williams to 7+ years in prison, after he pleaded guilty in 2025 to theft of trade secrets and selling exploits

Additionally, the U.S. Treasury sanctioned the Russian zero-day brokerage that Peter Williams sold the exploits to.  —  Learn more.

2025-09-26
Update: an industry source tells me the hacking group responsible for this activity is likely tied to China.  A CISA official said earlier the agency is not focused at the moment on attribution.  The high chance that this is China probably wouldn't surprise many.  [embedded post]
2025-09-26 View on X
BleepingComputer

CISA issues an emergency directive ordering US federal agencies to secure their Cisco firewall devices against two flaws exploited in zero-day attacks

CISA has issued a new emergency directive ordering U.S. federal agencies to secure their Cisco firewall devices against two flaws that have been exploited in zero-day attacks.

2025-08-31
NEW: Noem terminates 24 FEMA IT staffers after a review found security lapses that let hackers get inside.  An internal email I obtained ordered all agency employees to change their passwords “due to recent cybersecurity incidents and threats.”  —  www.nextgov.com/people/2025/ ...
2025-08-31 View on X
Nextgov/FCW

DHS Secretary Kristi Noem fires 24 FEMA IT staffers, including the CIO and CISO; DHS says they failed security protocols and let hackers access FEMA networks

I thought the whole point of DOGE was to expose our data to everyone.  Just paying customers then?  —  Fuck these amateurs.  —  www.nextgov.com/people/2025/ ... @snacking.dev : The...

NEW: Noem terminates 24 FEMA IT staffers after a review found security lapses that let hackers get inside. An internal email I obtained ordered all agency employees to change their passwords “due to recent cybersecurity incidents and threats.” https://www.nextgov.com/...
2025-08-31 View on X
Nextgov/FCW

DHS Secretary Kristi Noem fires 24 FEMA IT staffers, including the CIO and CISO; DHS says they failed security protocols and let hackers access FEMA networks

I thought the whole point of DOGE was to expose our data to everyone.  Just paying customers then?  —  Fuck these amateurs.  —  www.nextgov.com/people/2025/ ... @snacking.dev : The...

2025-08-30
NEW: Noem terminates 24 FEMA IT staffers after a review found security lapses that let hackers get inside.  An internal email I obtained ordered all agency employees to change their passwords “due to recent cybersecurity incidents and threats.”  —  www.nextgov.com/people/2025/ ...
2025-08-30 View on X
Nextgov/FCW

DHS Secretary Kristi Noem fires 24 FEMA IT staffers, including the CIO and CISO; DHS says they failed security protocols and let hackers access FEMA networks

An internal FEMA email obtained by Nextgov/FCW ordered all agency employees to change their passwords “due to recent cybersecurity incidents and threats.”

2025-07-23
🇨🇳SharePoint vulnerability update: “We assess that at least one of the actors responsible for this early exploitation is a China-nexus threat actor,” Mandiant/Google Cloud CTO Chalres Carmakal says in a statement sent to me just now. My earlier reporting: https://www.nextgov.com/... [image]
2025-07-23 View on X
Bloomberg

Source: the US National Nuclear Security Administration was among those breached by a hack of SharePoint; no sensitive information is known to be compromised

The US agency responsible for maintaining and designing the nation's cache of nuclear weapons was among those breached by a hack …

2025-04-16
NEW: In an 11th hour move, CISA spokesperson says it extended the contract for the MITRE-backed CVE Program last night: [image]
2025-04-16 View on X
BleepingComputer

CISA says it will extend funding to Mitre, which runs the CVE Program, and “there will be no lapse in critical CVE services”, after Mitre said funding expired

CISA says the U.S. government has extended MITRE's funding to ensure no continuity issues with the critical Common Vulnerabilities and Exposures (CVE) program.

The update comes just hours after a subset of the CVE Board said it plans to break off to maintain the CVE Program under a new body called the CVE Foundation. Unclear what happens next, but the new group could have a role in future contracting discussions: https://www.thecvefoundation.org/
2025-04-16 View on X
BleepingComputer

CISA says it will extend funding to Mitre, which runs the CVE Program, and “there will be no lapse in critical CVE services”, after Mitre said funding expired

CISA says the U.S. government has extended MITRE's funding to ensure no continuity issues with the critical Common Vulnerabilities and Exposures (CVE) program.

I've confirmed this is legit. Story on the way.
2025-04-16 View on X
BleepingComputer

CISA says it will extend funding to Mitre, which runs the CVE Program, and “there will be no lapse in critical CVE services”, after Mitre said funding expired

CISA says the U.S. government has extended MITRE's funding to ensure no continuity issues with the critical Common Vulnerabilities and Exposures (CVE) program.

2025-04-10
New: Trump signs EO targeting former CISA chief Chris Krebs and his colleagues. DOJ also ordered to investigate him; order pulls “any active security clearance held by individuals” at entities associated with Krebs, including SentinelOne, pending gov't review⬇️
2025-04-10 View on X
Nextgov/FCW

President Trump directs the DOJ to investigate former CISA Director Chris Krebs, who Trump fired for contradicting Trump's baseless 2020 election fraud claims

President Donald Trump signed an executive order Wednesday night directing the Justice Department to investigate former top …

2025-01-23
Current DHS advisory list that one source flagged to me: www.dhs.gov/advisory-pan...  Housed in it, among several groups: Cyber Safety Review Board and the National Security Telecommunications Advisory Committee — Would this termination halt the government's probe into the Salt Typhoon hacks? [embedded post]
2025-01-23 View on X
Wired

Q&A with former CISA Director Jen Easterly, appointed in 2021, on leaving the agency, Donald Trump, China's Salt Typhoon, Russia, unfinished business, and more

Chinese hacks, rampant ransomware, and Donald Trump's budget cuts all threaten US security. Mastodon: @lhn@mastodon.online . Forums: r/cybersecurity Mastodon: Lily Hay Newman / @lh...

Current DHS advisory list that one source flagged to me: www.dhs.gov/advisory-pan...  Housed in it, among several groups: Cyber Safety Review Board and the National Security Telecommunications Advisory Committee — Would this termination halt the government's probe into the Salt Typhoon hacks? [embedded post]
2025-01-23 View on X
Defense One

Sources: the Trump admin dismissed the members of the CSRB, which investigates major cybersecurity incidents, likely disrupting the Salt Typhoon hacks probe

This includes several cyber committees, like CISA's advisory panel and the Cyber Safety Review Board, which was investigating Salt Typhoon.  —  That review is “dead,” person famili...

2025-01-22
Current DHS advisory list that one source flagged to me: www.dhs.gov/advisory-pan...  Housed in it, among several groups: Cyber Safety Review Board and the National Security Telecommunications Advisory Committee — Would this termination halt the government's probe into the Salt Typhoon hacks? [embedded post]
2025-01-22 View on X
Dark Reading

The Trump administration fires all advisory committee members within the DHS, including those in the CISA's CSRB, which was investigating Salt Typhoon hackers

In a letter sent today, the acting DHS secretary terminated membership to all advisory boards, including the Cyber Safety Review Board …

2025-01-15
Good piece from @timstarks.bsky.social and @markapomerleau.bsky.social on the complexities of hacking back against adversaries:  —  cyberscoop.com/aggressive-c...
2025-01-15 View on X
CyberScoop

Experts say Donald Trump and others pushing for stronger US cyber offense must clarify if escalation is a proper response to recent Chinese cyber breaches

cyberscoop.com/aggressive-c... X: Eric Geller / @ericgeller : Tale as old as time: “Advocates for increased offensive measures need to clarify what precisely they want to do, exper...

2024-06-15
Wrap up of today's Brad Smith hearing. Not as adversarial as some imagined it would be, though Smith was thrown some tricky questions on Microsoft's business in China —> https://www.nextgov.com/...
2024-06-15 View on X
Washington Post

Brad Smith tells a US House committee that Microsoft “accepts responsibility” for the issues the CSRB found, its business in China serves US interests, and more

if they haven't shown good cybersecurity performance Jessica Lyons / The Register : Microsoft answered Congress' questions on security. Now the White House needs to act Sean Lyngaa...

2024-06-14
Wrap up of today's Brad Smith hearing. Not as adversarial as some imagined it would be, though Smith was thrown some tricky questions on Microsoft's business in China —> https://www.nextgov.com/...
2024-06-14 View on X
Washington Post

Brad Smith tells a US House committee that Microsoft “accepts responsibility” for the issues the CSRB found, its business in China serves US interests, and more

Microsoft President Brad Smith faced the the House Homeland Security Committee amid sharp criticism the company's practices put government clients at risk.

2024-04-25
Sen. Wyden on just passed NatSec package w/ bill leading to potential TikTok ban: “I plan to watchdog how this legislation is implemented, and will blow the whistle if the executive branch oversteps beyond the purpose of the bill.” [image]
2024-04-25 View on X
The Verge

President Biden signs the ByteDance-TikTok divest-or-ban bill into law, after the Senate passed it by 79-18; the House passed the legislation 360-58 on April 20

The divest-or-ban bill is now law, starting the clock for ByteDance to make its move.  The company has an initial nine months …

2024-04-24
Sen. Wyden on just passed NatSec package w/ bill leading to potential TikTok ban: “I plan to watchdog how this legislation is implemented, and will blow the whistle if the executive branch oversteps beyond the purpose of the bill.” [image]
2024-04-24 View on X
The Verge

The US Senate passes the ByteDance-TikTok divestment bill by 79-18, after the House passed the bill on April 20; President Biden signs the bill into law

A bill that would force China-based company Bytedance to sell TikTok — or else face a US ban of the platform — is all but certain …

2024-03-26
Breaking: U.S. unseals indictment against APT31 operatives linked to China's MSS, alleging espionage and foreign intelligence gathering, including the targeting of U.S. gov't officials in White House, DOJ, Commerce, Treasury, State and others [image]
2024-03-26 View on X
BleepingComputer

The US and the UK sanction a Wuhan-based company linked to the Chinese state-backed hacking group APT31 for targeting critical infrastructure organizations

APT31 has a focus on political targets, but also high tech and intellectual property — The benign emails with tracking links followed by remote exploitation of routers is a usually...

2024-02-01
Volt Typhoon is getting a lot of attention today, with @CISAJen telling the committee that the China-backed hacking group has attempted to deeply burrow itself into U.S. systems. “This is not theoretical,” she said.
2024-02-01 View on X
Wall Street Journal

The FBI and US DOJ disrupt Volt Typhoon, a uniquely dangerous Chinese hacking operation to hijack hundreds of Cisco and Netgear routers at end-of-life status