North Korea
September 2026
September 2026
Vol. 9, Iss. 38
Robin’s Newsletter #431
US authorities board vessels to check for cyber compromise. Google says Gemini kinda did crimes. US Treasury Sec says AI labs should be held liable.
June 2026
June 2026
Vol. 9, Iss. 24
Robin’s Newsletter #417
Claude access restrited. Microsoft repos compromised for second time in as many weeks. OpenClaw is average at phishing emails.
April 2026
April 2026
Vol. 9, Iss. 15
Robin’s Newsletter #408
Mythos madness. Russian DNS hijacking. US warns energy, water, of Iranian threat actors.
Vol. 9, Iss. 14
Robin’s Newsletter #407
Anthropic's source code leak. North Korea compromises popular JS library. What does Rowhammer mean for Nvidia GPUs in AI workloads?
March 2026
March 2026
Vol. 9, Iss. 12
Robin’s Newsletter #405
Delve compliance reports called into question. US evaluators lacked confidence in Microsoft cloud. Feds seize Iran-linked domains in Stryker attack.
December 2025
December 2025
Vol. 8, Iss. 50
Robin’s Newsletter #391
Have we reached peak ransomware? 50+ orgs affected by React2shell fallout. Highly-targeted 'ConsentFix' campaign.
October 2025
October 2025
Vol. 8, Iss. 42
Robin’s Newsletter #383
‘Sophisticated’ threat had ‘long-term’ access to F5. 'Nationally significant' attacks against UK up 50%. NK hiding malware in smart contracts.
September 2025
September 2025
Vol. 8, Iss. 39
Robin’s Newsletter #380
JLR secures line of credit for supply chain. US Secret Service uncovers 100,000 SIM farm. NCA arrests man in Collins Aerospace attack.
August 2025
August 2025
Vol. 8, Iss. 35
Robin’s Newsletter #376
Salt Typhoon comp'd over 200 organisations. Anthropic says cybercrims run ransomware ops using Claude. SK Telecom lacked pretty much any security.
Vol. 8, Iss. 32
Robin’s Newsletter #373
Bouygues telecom breach affects 6.4M. Microsoft Exchange vulnerability allows cloud takeover. Thai hospital fined for patient record food wrappers.
July 2025
July 2025
Vol. 8, Iss. 30
Robin’s Newsletter #371
SharePoint shells for China. Clorox's $380M help desk lawsuit. And massive surges in UK VPN signups following Online Safety Act checks come into effect.
Vol. 8, Iss. 29
Robin’s Newsletter #370
Data on 6.5M Co-op members stolen. UK MoD kept Afghan data breach a secret using super-injunction. Salt Typhoon all up in National Guard's network.
June 2025
June 2025
Vol. 8, Iss. 23
Robin’s Newsletter #364
More retail cyber attack news. Meta, Yandex caught de-anonymising Android users. Vendors to collaborate on threat actor naming.
May 2025
May 2025
Vol. 8, Iss. 20
Robin’s Newsletter #361
M&S insurance claim may top £100M. Coinbase flips script on extortion attempt. OpenAI instructed to retain output log data.
Vol. 8, Iss. 18
Robin’s Newsletter #359
Co-op, Harrods join M&S as victims of Scattered Spider breaches. Spanish power outage not a cyberattack. RDP lets you login with old creds.
April 2025
April 2025
Vol. 8, Iss. 17
Robin’s Newsletter #358
M&S Cyber incident. Lots of data from FBI, Verizon, IBM, Mandient. Calls for greater harmonisation of cyber rules.
March 2025
March 2025
Vol. 8, Iss. 11
Robin’s Newsletter #352
Apple/UK gov hearing held in private. Garantex founder arrested on holiday in India. American fraud losses up 25%.
Vol. 8, Iss. 9
Robin’s Newsletter #350
FBI points finger at North Korea for $1.5B crypto-heist. US deprioritises Russia cyber threat. 7,000 people freed from scam centres in Myanmar.
October 2024
October 2024
Vol. 7, Iss. 42
Robin’s Newsletter #331
Chinese accusations of Intel backdoors. Microsoft loses customer security logs. Hong Kong arrests in multi-milloin deepfake video scams.
August 2024
August 2024
Vol. 7, Iss. 32
Robin’s Newsletter #321
CrowdStrike's underwhelming root cause analysis. Progress escapes SEC action. Dutch DPA rules data scraping has no legal basis.
February 2024
February 2024
Vol. 7, Iss. 6
Robin’s Newsletter #295
No, 3 million toothbrushes didn't DDoS anything. But... Deepfake video used in CFO scam to steal £20 million. TfL has been trialling AI surveillance.
November 2023
November 2023
Vol. 6, Iss. 48
Robin’s Newsletter #284
Warning over Lazarus software supply-chain attacks. Australia cyber security strategy published.
October 2023
October 2023
Vol. 6, Iss. 40
Robin’s Newsletter #276
Ukraine says Russia is going after war crimes data. US, Japan says China targeting routers for persistence. UK logistics firm goes under following ransomware attack.
February 2022
February 2022
Vol. 5, Iss. 6
Robin’s Newsletter #190
News Corp targeted in 'advanced persistent' attack. US launches Cyber Safety Review Board. One guy knocks North Korea off the 'net.
January 2022
January 2022
Vol. 5, Iss. 3
Robin’s Newsletter #187
Russian authorities scoop up members of REvil. Google Analytics and GDPR. Using a cyberattack to accelerate dgitial transformation.
January 2021
January 2021
Vol. 4, Iss. 5
Robin’s Newsletter #137
Law enforcement's Emotet takedown and NetWalker leak site seized. Got root? Sudo vuln will get you there. North Korea goes after security researchers for 0-day.
April 2020
April 2020
Vol. 3, Iss. 16
Robins Newsletter #96
Compliance risk and the German state of North Rhine-Westphalia’s loss of €30M-€100M #COVID19 aid because of poor identity verification. Plus DoD and measuring meaningful things. And jumping air-gaps with computer fans.
Vol. 3, Iss. 7
Robin’s Newsletter #87
Huawei, Crypto AG, and all the nations doin' all the cybers; plus Emotet.