Dave Aitel
daveaitel.bsky.social
Dave Aitel
@daveaitel.bsky.social
Reposted by Dave Aitel
Politico is reporting that the breach at the Congressional Budget Office is "ongoing."

“Do NOT click on any links in emails from CBO. Do NOT share sensitive information with CBO colleagues over email, Microsoft Teams, or Zoom at this time,” the email to CBO staff reads.
Cybersecurity breach at Congressional Budget Office remains a live threat
Library of Congress employees were informed to take caution when emailing the office of the congressional scorekeeper.
www.politico.com
November 10, 2025 at 9:40 PM
Reposted by Dave Aitel
i find every story about costco's brand strategy and overall approach completely fascinating.
Why Costco Went All in on Kirkland — and How It Paid Off | WSJ Case Study
YouTube video by The Wall Street Journal
www.youtube.com
November 10, 2025 at 6:18 PM
Reposted by Dave Aitel
Since we're rapidly approaching Thanksgiving, some pumpkin pie history by @lifesafeast.bsky.social. I love pumpkin pie but since I was born south of the Mason-Dixon line, I also love sweet potato pie.

Who knew pumpkin pie originated in France?! jamieschler.substack.com/p/tarte-au-c...
Tarte à la Citrouille - Pumpkin Pie
…highly esteemed by the Americans
jamieschler.substack.com
November 10, 2025 at 5:25 PM
Reposted by Dave Aitel
He said there was no room to sleep. People sat up, slept on the floor, standing up. He saw many pregnant women there too. The conditions were unbearable. His wife is horrified by his account.
November 7, 2025 at 3:08 AM
Reposted by Dave Aitel
He said that the agents would throw food at them to eat. The agents threatened to withhold food for a week and to beat him up if he didn't sign deportation papers. He said he saw others refuse and get beaten/receive no food. He signed because he was afraid.
November 7, 2025 at 3:08 AM
Reposted by Dave Aitel
Her husband told her that detainees at Broadview had to get up at 5am to get in line for one bathroom. He often peed himself. One time he had to wait until 2pm to use the bathroom. You could only use the bathroom once a day. He said the agents would beat you if you used the bathroom on yourself.
November 7, 2025 at 3:08 AM
Reposted by Dave Aitel
A family friend was telling us about what her husband shared about his experience in Broadview before he was deported back to Mexico. She's been sharing to friends and family because she's just in disbelief & horror what her husband told her. She wasn't able to talk to him until he was in Mexico.
November 7, 2025 at 3:08 AM
Reposted by Dave Aitel
At @ncsc.gov.uk we have just launched the CyberUK tech talks call for papers across three topics

- Cyber applications of AI
- What works: approaches that reduce cyber harm
- The evolving threat

www.cyberuk.uk/2026/call-fo...
Tech Talks - Call for Papers
www.cyberuk.uk
November 6, 2025 at 8:12 PM
Reposted by Dave Aitel
Hoping this helps our colleagues across the industry
November 5, 2025 at 1:01 PM
Reposted by Dave Aitel
🚨🧵New RUSI report, ‘The Impact of Evolving Threat Perceptions on the Transatlantic Alliance’ by Erik Brattberg is out now!
The Impact of Evolving Threat Perceptions on the Transatlantic Alliance
The US and Europe are diverging in their perceptions of, and approaches to, national security threats. What could this mean for the transatlantic alliance?
www.rusi.org
November 6, 2025 at 10:52 AM
Reposted by Dave Aitel
NVISO has linked VShell to UNC5174, a cyber contractor for the Chinese MSS

www.nviso.eu/blog/nviso-a...
November 6, 2025 at 11:15 AM
Reposted by Dave Aitel
“crime syndicate conducts close access operations” is much more the cyberpunk future i was promised.
Crowdstrike claims Scattered Spider planned to have accomplices physically travel to target company offices to connect to WiFi and enable access to target networks.
www.theregister.com/2025/11/04/c...
November 5, 2025 at 3:36 PM
Reposted by Dave Aitel
Excited to share a new and improved draft of The Limits of Regulating AI Safety Through Liability and Insurance: Lessons From Cybersecurity, co-authored with the brilliant Josephine Wolff. 🧵 papers.ssrn.com/sol3/papers....
The Limits of Regulating AI Safety Through Liability and Insurance: Lessons From Cybersecurity
As Artificial Intelligence (AI) systems become increasingly embedded in decision-making, design, and development across public and private sectors, proposals to
papers.ssrn.com
November 5, 2025 at 3:35 PM
Reposted by Dave Aitel
I knew it would take less than a day for a tiktok dj to make something.
November 5, 2025 at 12:13 PM
Reposted by Dave Aitel
Okay, so: once you’ve nicked £90m in assorted crown jewels from a national museum, I think it’s safe to say you no longer fall into the “petty crime” category even if you haven’t previously been noteworthy in your field.

www.theguardian.com/world/2025/n...
Louvre jewel heist by petty criminals, not organised professionals, says Paris prosecutor
Laure Beccuau said ‘upper echelons of organised crime’ unlikely to be involved as one perpetrator remains at large
www.theguardian.com
November 2, 2025 at 8:54 PM
Reposted by Dave Aitel
Terrific discussion with OpenAI's @daveaitel.bsky.social on @ryanaraine.bsky.social's Three Buddy Problem podcast about Aardvark, which is OpenAI's new agentic bug-hunting tool. It's a must listen if you're in security. #infosec www.youtube.com/watch?v=EwMJ...
OpenAI’s Dave Aitel talks Aardvark, economics of bug-hunting with LLMs
YouTube video by Three Buddy Problem
www.youtube.com
November 2, 2025 at 8:18 AM
Reposted by Dave Aitel
OpenAI's Dave Aitel on using Aardvark to audit cryptocurrency smart contracts @craiu.bsky.social @daveaitel.bsky.social
November 1, 2025 at 6:06 PM
Reposted by Dave Aitel
Revisiting Widevine L3: DRM As A Playground For Hackers - Felipe Custodio Romero
youtu.be/T3Xo4C6vIto
#HackLu
Revisiting Widevine L3: DRM As A Playground For Hackers - Felipe Custodio Romero
YouTube video by Cooper
youtu.be
November 1, 2025 at 10:32 AM
Reposted by Dave Aitel
Nice. @daveaitel.bsky.social tells the Three Buddy Problem podcast that he came up with the name for OpenAi's Aardvark project (openai.com/index/introd...). Why Aardvark? "Because they eat bugs"

www.youtube.com/watch?v=7Ikm...
Three Buddy Problem Episode 70 Livestream
YouTube video by Three Buddy Problem
www.youtube.com
October 31, 2025 at 3:41 PM
Reposted by Dave Aitel
OpenAI launches Aardvark, a GPT-5-powered autonomous cybersecurity research agent that can identify and help patch vulnerabilities, in private beta (Sabrina Ortiz/ZDNET)

Main Link | Techmeme Permalink
October 30, 2025 at 5:10 PM
Aardvark is a labor of love and mission for the whole team. We are super excited to bring it to you. Sign up for the beta immediately!!! openai.com/index/introd...
Introducing Aardvark: OpenAI’s agentic security researcher
Now in private beta: an AI agent that thinks like a security researcher and scales to meet the demands of modern software.
openai.com
October 30, 2025 at 6:15 PM
Reposted by Dave Aitel
October 30, 2025 at 2:10 PM
Reposted by Dave Aitel
This is a heartbreaking read about a woman living in Lyme, Connecticut, who meticulously documented all the people getting sick for decades while doctors floundered.
The haunting legacy of Lyme, Connecticut
The "Polly Murray Papers" reveal the horrific symptoms of ground-zero Lyme disease sufferers. By Kris Newby
www.lymedisease.org
October 30, 2025 at 2:28 PM