
In this article, we discuss the tools and TTPs used in the SideWinder APT's attacks in H2 2024, as well as shifts in its targets, such as an increase in attacks against the maritime and logistics sectors.

SideWinder targets the maritime and nuclear sectors with an updated toolset.
In this article, we discuss the tools and TTPs used in the SideWinder APT's attacks in H2 2024, as well as shifts in its targets, such as an increase in attacks against the maritime and logistics sectors.
Last year, we published an article about SideWinder, a highly prolific APT group whose primary targets have been military and government entities in Pakistan, Sri Lanka, China, and Nepal. In it, we described activities that had mostly happened in the first half of the year. We tried to draw attention to the group, which was aggressively extending its activities beyond their typical targets, infecting government entities, logistics companies and maritime infrastructures in South and Southeast Asia, the Middle East, and Africa. We also shared further information about SideWinder’s post-exploitation activities and described a new sophisticated implant designed specifically for espionage.
We continued to monitor the group throughout the rest of the year, observing intense activity that included updates to SideWinder’s toolset and the creation of a massive new infrastructure to spread malware and control compromised systems. The target
X (Twitter) is down in worldwide outage.
Musk owned social media platform has just experienced its first major worldwide outage, though it seems the service is on the mend.
- X, the former Twitter, has experienced a worldwide outage as of 12PM on Monday CAT.
- This is likely the first major outage of the company since Musk took ownership in 2022.
- The outage seems to have only lasted for about half an hour.
X (Twitter) is down in worldwide outage.
Musk owned social media platform has just experienced its first major worldwide outage, though it seems the service is on the mend.
- X, the former Twitter, has experienced a worldwide outage as of 12PM on Monday CAT.
- This is likely the first major outage of the company since Musk took ownership in 2022.
- The outage seems to have only lasted for about half an hour.
Will an AI Bot Decide if You Get That Job?
Companies are turning to tech solutions to screen candidates. Critics and job seekers have concerns.
Will an AI Bot Decide if You Get That Job?
Companies are turning to tech solutions to screen candidates. Critics and job seekers have concerns.
Do These 6 AI Voice Cloning Companies Do Enough to Prevent Misuse?
Washington, DC – Consumer Reports (CR) released findings today from an assessment of voice cloning products from six companies: Descript, ElevenLabs, Lovo, PlayHT, Resemble AI, and Speechify. CR found that a majority of the products assessed did not have meaningful safeguards to stop fraud or misuse...
- CR researchers were able to easily create a voice clone based on publicly available audio in four of the six products in the test set:
- These products did not employ any technical mechanisms to ensure researchers had the speaker’s consent to generate a clone or to limit the cloning to the user’s own voice. These companies—ElevenLabs, Speechify, PlayHT, and Lovo—required only that researchers check a box confirming that they had the legal right to clone the voice or make a similar self-attestation.
- Descript and Resemble AI took steps to make it more difficult for customers to misuse their products by creating a non-consensual voice clone.
- Four of the six companies (Speechify, Lovo, PlayHT, and Descript) required only a customer’s name and/or email address to make an account.
Do These 6 AI Voice Cloning Companies Do Enough to Prevent Misuse?
Washington, DC – Consumer Reports (CR) released findings today from an assessment of voice cloning products from six companies: Descript, ElevenLabs, Lovo, PlayHT, Resemble AI, and Speechify. CR found that a majority of the products assessed did not have meaningful safeguards to stop fraud or misuse...
- CR researchers were able to easily create a voice clone based on publicly available audio in four of the six products in the test set:
- These products did not employ any technical mechanisms to ensure researchers had the speaker’s consent to generate a clone or to limit the cloning to the user’s own voice. These companies—ElevenLabs, Speechify, PlayHT, and Lovo—required only that researchers check a box confirming that they had the legal right to clone the voice or make a similar self-attestation.
- Descript and Resemble AI took steps to make it more difficult for customers to misuse their products by creating a non-consensual voice clone.
- Four of the six companies (Speechify, Lovo, PlayHT, and Descript) required only a customer’s name and/or email address to make an account.
A New Framework for Understanding Algorithmic Feeds and How to Fix Them.
Laura Edelson details a new framework for more useful public conversations about social media feeds and better research into user safety.
A New Framework for Understanding Algorithmic Feeds and How to Fix Them.
Laura Edelson details a new framework for more useful public conversations about social media feeds and better research into user safety.
$16bn health agency managed finances with Excel spreadsheet.
It's just one of 6,000 apps that New Zealand thinks might be best tamed with ERP
It's just one of 6,000 apps that New Zealand thinks might be best tamed with ERP
$16bn health agency managed finances with Excel spreadsheet.
It's just one of 6,000 apps that New Zealand thinks might be best tamed with ERP
It's just one of 6,000 apps that New Zealand thinks might be best tamed with ERP
Foxconn says it built FoxBrain, an in-house reasoning LLM, trained in four weeks with support from Nvidia via its Taiwan-based supercomputer and consulting.
The world's largest contract electronics maker, Foxconn, said Monday it has built its own large language model with reasoning capabilities, developed in-house and trained in just four weeks.
Pirate Streaming Site Malware Campaign Infected One Million Devices.
A campaign stemming from pirate streaming sites used malvertising redirector URLs to generate revenue, and infected almost a million devices.
In December 2024, Microsoft Threat Intelligence identified a malware campaign stemming from pirate streaming sites. Using iframe malvertising redirector URLs to generate revenue, and redirects up to five layers deep, malware payloads hosted on GitHub, Discord and Dropbox, acted as a dropper for additional payloads hosted elsewhere. Microsoft says the goal was to steal information and it believes almost a million devices were infected.
How so?
It is as if you were on your phone.
Look at you! On your phone! But you’ve got a secret! And you won’t tell! You’re not on your phone! It is only as if you were on your phone! You’re just pretending to be on your phone! On your phone!
It is as if you were on your phone is an almost speculative game about an incredibly near future in which we’re all simultaneously under significant pressure to be on our phones all the time, but also to not be on our phones all the time. Our fingers want to touch the screen, our eyes want to watch the surface, our brains want to be occupied efficiently and always. But it’s also exhausting liking photos, swiping profiles, watching short-form video, and everything else we’re always doing. It is as if you were on your phone presents an alternative: pretend to be on your phone so that you pass as human, but actually do essentially nothing instead. Follow the prompts and be free.
Grandmother gets X-rated message after Apple AI fail.
Louise Littlejohn said she was shocked and then laughed when she received the error strewn voicemail transcription.
A woman from Dunfermline has spoken of her shock after an Apple voice-to-text service mistakenly inserted a reference to sex - and an apparent insult - into a message left by a garage.
The is what Mrs Littlejohn saw on the voicemail screen in the Phone app on her iPhone after receiving a voicemail from the garage.
Grandmother gets X-rated message after Apple AI fail.
Louise Littlejohn said she was shocked and then laughed when she received the error strewn voicemail transcription.
A woman from Dunfermline has spoken of her shock after an Apple voice-to-text service mistakenly inserted a reference to sex - and an apparent insult - into a message left by a garage.
The is what Mrs Littlejohn saw on the voicemail screen in the Phone app on her iPhone after receiving a voicemail from the garage.
💜Thank you for correcting me.
I edited it now 😄
I actually wanted to keep the title short, but I think it would be better to edit the title to avoid any confusion to make it clear that it's manufactured in China, rather than saying it in the current way.
Edit: I edited the title to reflect the details better.
Zoom researchers detail a “chain of draft” method to let LLMs accurately solve reasoning problems with as little as 7.6% of the tokens used by current methods.
Large Language Models (LLMs) have demonstrated remarkable performance in solving complex reasoning tasks through mechanisms like Chain-of-Thought (CoT) prompting, which emphasizes verbose, step-by-step reasoning. However, humans typically employ a more efficient strategy: drafting concise intermedia...
Large Language Models (LLMs) have demonstrated remarkable performance in solving complex reasoning tasks through mechanisms like Chain-of-Thought (CoT) prompting, which emphasizes verbose, step-by-step reasoning. However, humans typically employ a more efficient strategy: drafting concise intermediate thoughts that capture only essential information. In this work, we propose Chain of Draft (CoD), a novel paradigm inspired by human cognitive processes, where LLMs generate minimalistic yet informative intermediate reasoning outputs while solving tasks. By reducing verbosity and focusing on critical insights, CoD matches or surpasses CoT in accuracy while using as little as only 7.6% of the tokens, significantly reducing cost and latency across various reasoning tasks.
What one Finnish church learned from creating a service almost entirely with AI.
St. Paul’s Lutheran church in Helsinki has held the first church service in Finland created mostly by artificial intelligence.
A tale of good versus evil played out on the large screen in the sanctuary of St. Paul’s Lutheran church in Finland. Jesus was shown in robes with long hair and a beard, while Satan was dressed in more modern clothes but with a menacing frown and higher-pitched voice — all created by artificial intelligence.
What one Finnish church learned from creating a service almost entirely with AI.
St. Paul’s Lutheran church in Helsinki has held the first church service in Finland created mostly by artificial intelligence.
A tale of good versus evil played out on the large screen in the sanctuary of St. Paul’s Lutheran church in Finland. Jesus was shown in robes with long hair and a beard, while Satan was dressed in more modern clothes but with a menacing frown and higher-pitched voice — all created by artificial intelligence.
Socially self-hosting source code with Tangled on Bluesky.
Relevant post about The Guardian privacy.
A better link to keep your privacy, if you want to read the article: https://www.skinnyguardian.xyz/uk/lifeandstyle2025mar08ai-wingmen-bots-to-write-profiles-and-flirt-on-dating-apps/
I just wanted to encourage you to upload your videos to PeerTube.
[Not Serious] 3 numbers more.
Civil rights advocates say they are concerned that the Trump administration will penalize pro-Palestinian students who have not violated any laws or expressed support for Hamas. They also are expressing concern about the use of AI, a new technology that has advanced even since Oct. 7, to surveil students.
Advocates for and against the administration’s efforts both say they expect them to wind up in court. For now, though, the crackdown is already creating a chill on college campuses, according to the NPR report, which found that some foreign students are increasingly hesitant about participating in any pro-Palestinian events, even when they are not demonstrations against Israel.
From their about us page:
The Forward has always been a not-for-profit association and is supported by the contributions of its readers.
Better source: https://blog.google/products/search/ai-mode-search/
Thank you for your words, I added also Wired website.
With all respect, I think you are being too gentle on them.
The Verge is owned by Vox Media, which is close to having a Monopoly on the news(They own The Verge, Vox, NYMag{Which alone has many sections like Vulture and Curbed for example} and many more.) They are partly owned by Warner Bros. Discovery (25%).
In short they have way more than enough to keep paying their electricity bills.
2 things:
they're actually better than the other news sites you list here.
What you are saying does not make any sense unless you did not click the links to see the amount of trackers in the tests.
Either way, I'm using ad-blocking, DNS filtering, and I do general browsing like this in a separate browser that wipes everything on exit sooo 🤷 saves you from worrying about this stuff or even thinking about it much.
Yet you are using Lemmy instead of Reddit? Which means you kind of understand fully that the tools that you are talking about does not protect you 100% , rather they just reduce the amount of trackers tracking you.
Also it's pretty dystopian to support the websites that violates people privacy, instead of using the websites that basically provide the same product with better privacy.
You can read the other websites without JavaScript as well.
Also, that might not stop all the trackers, as the webpages are loaded with their trackers.
If they kept my privacy 100%, sure I could pay up to 3 dollars a month.
If they did not prove themselves to be a better browser in terms of privacy, then what is the purpose of their existence?
(I am not the one who wrote this blog post)
I actually kind of trying different browsers on Android, but my setup is iron fox on my phone and brave on my desktop.
I think Firefox lost long time ago on the desktop, I never know why they don't focus on their market share on phones more(Firefox for Android started displaying pages weirdly in the last 2 weeks and they almost never add new futures to it.)
Anyway, I will be waiting for Servo in 2025.
I believe the table is correct, maybe the contributor confused them.
Hi,
This is not my project, I just liked it.
You are right, I think it might worth suggesting it to the author on codeberg.