Stefan Tanase

11.3K posts

Stefan Tanase banner
Stefan Tanase

Stefan Tanase

@stefant

Cybersecurity researcher. Threat hunter. Freedom geek. Crypto bro. Founder. Tweets belong to my parrot. @csis_cyber @dnsc_ro @ctidao

Romania 🇷🇴 Katılım Mart 2007
1.8K Takip Edilen7.8K Takipçiler
Stefan Tanase retweetledi
The Kobeissi Letter
The Kobeissi Letter@KobeissiLetter·
What just happened? At 2:30 PM ET today, CBS News reported that President Trump was considering "boots on the ground" in Iran. Then, at 3:43 PM ET, President Trump said "I don't want to do a ceasefire with Iran," with the S&P 500 hitting a new 2026 low. Exactly 90 minutes later, at 5:13 PM ET, President Trump said the US is "considering winding down" the war with Iran. Between the 3:43 PM ET and 5:13 PM ET comments, the S&P 500 had already risen nearly +1% on NO news. By 6:15 PM ET, the S&P 500 rallied +1.8% from its low, adding +$900 BILLION in market cap. Markets are now closed until Monday.
The Kobeissi Letter tweet media
English
874
2.3K
10.3K
2.7M
Stefan Tanase retweetledi
CISA Cyber
CISA Cyber@CISACyber·
📢 Russian Intelligence Services cyber actors are conducting phishing campaigns to compromise commercial messaging app accounts of individuals with high intelligence value. Review our PSA with @FBICyberDiv for info on safeguarding mobile communications. 🔗 go.dhs.gov/i99
CISA Cyber tweet media
English
4
43
79
10.1K
Stefan Tanase retweetledi
FBI Director Kash Patel
FBI Director Kash Patel@FBIDirectorKash·
The @FBI has identified cyber actors associated with Russian Intelligence Services targeting users of commercial messaging applications, including Signal. The campaign targets individuals of high intelligence value, including current and former U.S. government officials, military personnel, political figures, and journalists.   Globally, this effort has resulted in unauthorized access to thousands of individual accounts. After gaining access, the actors can view messages and contact lists, send messages as the victim, and conduct additional phishing from a trusted identity. It's important for you to be aware and take action - this vulnerability is not with the application - but you as the end user.   The FBI and CISA have released a joint PSA to help you identify this activity and protect your accounts: ic3.gov/PSA/2026/PSA26…
English
2.6K
4K
13.8K
1.7M
Stefan Tanase retweetledi
Is Now on VT!
Is Now on VT!@Now_on_VT·
Sample is now on VT! 🚩Hash: 54562bd71d5e0d025297b25d4cacb384 🎯Actor name: UnicornSpy 🔹Comment: At the beginning of September, our systems recorded a new distribution of malware aimed at stealing confidential data. Russian energy companies, factories, as well as suppliers and developers of electronic components were attacked.… 🌐URL: securelist.ru/unicorn-data-s… 🔎OnVT: virustotal.com/gui/file/54562…
English
0
4
14
1.7K
Stefan Tanase retweetledi
First Squawk
First Squawk@FirstSquawk·
Iranian Parliament Speaker Ghalibaf: According to statements by Israeli and American military officials, 320% of Iran’s missile launchers have been destroyed so far. However, Iran continues to launch missiles at a high rate. Now, the enemy aims to destroy up to 500% of them! A unique achievement for the US military!
English
11
15
134
22.2K
Stefan Tanase retweetledi
Iosefina Pascal
Iosefina Pascal@iosefinapascal·
Just like Calin Georgescu got censored on social media a few days before the elections. Same EU playbook, same narrative, same goal... different outcome?
Mario Nawfal@MarioNawfal

🇭🇺 EXCLUSIVE BREAKING: FACEBOOK RESTRICTS ORBÁN POSTS WEEKS BEFORE HUNGARY’S ELECTION As Hungary heads toward a crucial April election, Facebook is reportedly restricting posts from the country’s Prime Minister. The move followed a call by an opposition party (Tisza Party) member, a former Meta employee, urging supporters to mass-report his content. Meanwhile, Tisza leader Péter Magyar has disproportionately high engagement figures, outperforming global figures, despite operating in a much smaller, language-limited country Péter also used a personal “professional mode” profile rather than a political page, contrary to Meta’s long-standing guidelines, potentially bypassing limits on political content. Questions are also emerging around how Meta moderates political content in Hungary. A regional Meta official has publicly shared positions aligned with mainstream European narratives, including pro-Ukraine messaging and content seen as anti-government in Hungary. If Hungary’s largest social platform keeps restricting Orbán’s content while opposition accounts seem inflated before the election, serious questions arise about free speech and democratic integrity. This requires an urgent investigation. I’ve seen political interference by social media companies in other countries, and I really hope this is not happening in Hungary.

English
24
101
363
5.2K
Stefan Tanase retweetledi
J. A. Guerrero-Saade
J. A. Guerrero-Saade@juanandres_gs·
Sergey Mineev was the greatest APT hunter of all time. He sought no glory, he just loved the hunt. And his discoveries repeatedly redefined our collective knowledge of global cyberespionage.
Boris Larin@oct0xor

Heartbroken to hear about the passing of @Skvern0. He was one of the best threat hunters in the industry - even APTs were afraid of him. I’m grateful for the time we worked together and for everything I learned from him. Rest in peace.

English
0
22
198
28.7K
Stefan Tanase retweetledi
FalconFeeds.io
FalconFeeds.io@FalconFeedsio·
🚨 DDoS Alert: 🇷🇴 NoName claims to have targeted multiple websites in Romania. - MOL Romania - Ministry of National Defence - Romania - Tim Rail Cargo Srl - Autoritatea Feroviară Română - Ministry of Justice of Romania - Metrorex S.A - Chamber of Deputies - Informatică Feroviară SA - National Railway Company CFR SA - Supreme Court of Romania
FalconFeeds.io tweet mediaFalconFeeds.io tweet mediaFalconFeeds.io tweet media
Română
0
3
4
1.5K
Stefan Tanase retweetledi
NK NEWS
NK NEWS@nknewsorg·
How AI-powered ‘vibe coding’ threatens North Korea’s illicit IT worker schemes dlvr.it/TRW8r7
English
1
9
16
16.2K
Stefan Tanase retweetledi
Dan Cimpean
Dan Cimpean@DanCimpean·
@FalconFeedsio Please allow me to call this BD Anonymous claim regarding the 🇷🇴🇪🇺Romanian National Cyber Security Directorate as “bullshit” ⛔️ Pardon my French, please … @DNSC_RO
English
0
6
18
542
Stefan Tanase retweetledi
Polymarket
Polymarket@Polymarket·
JUST IN: Trump says his advice to young people is to find "the hot thing" like vibe coding.
English
199
166
3.3K
339.5K
Stefan Tanase retweetledi
Stefan Tanase
Stefan Tanase@stefant·
Looking at the client code reveals something unusual. The request URL is assembled in fragments. This is a technique used to avoid static detection or automated scanning during app reviews.
Stefan Tanase tweet media
English
1
2
24
2.2K
Stefan Tanase
Stefan Tanase@stefant·
Telegram on Android used a free, undocumented Google Translate endpoint to power a Premium feature. To do that, the client exported plaintext messages to Google’s servers. What started as a shortcut to probably avoid API costs ended up creating a large client-side backdoor for Telegram chats.
English
2
4
23
2.3K
Stefan Tanase
Stefan Tanase@stefant·
Technical breakdown of the Telegram / Google Translate vector mentioned in this investigation by @christogrozev Telegram on Android had for a long time used a free Google Translate API endpoint for the message translation feature. Thread 🧵
Christo Grozev@christogrozev

Denis Alimov, FSB Alfa veteran and senior operative of Russia's new and "most secretive" assassination unit, walked into El Dorado Airport in Bogotá on Feb 24 looking like a tourist heading to Cartagena. He walked out in handcuffs. He was undone by Google Translate. 🧵New @TheInsider investigation with @DerSpiegel — thread below.

English
4
16
116
79.2K