{"id":5606,"date":"2025-12-27T14:35:06","date_gmt":"2025-12-27T09:35:06","guid":{"rendered":"https:\/\/paknews.centers.pk\/these-are-the-cybersecurity-stories-we-were-jealous-of-in-2025\/"},"modified":"2025-12-27T14:35:06","modified_gmt":"2025-12-27T09:35:06","slug":"these-are-the-cybersecurity-stories-we-were-jealous-of-in-2025","status":"publish","type":"post","link":"https:\/\/paknews.centers.pk\/ur\/these-are-the-cybersecurity-stories-we-were-jealous-of-in-2025\/","title":{"rendered":"These are the cybersecurity stories we were jealous of in 2025"},"content":{"rendered":"<p><br \/>\n<\/p>\n<div>\n<p id=\"speakable-summary\" class=\"wp-block-paragraph\">It\u2019s the end of the year. That means it\u2019s time for us to celebrate the best cybersecurity stories <em>we didn\u2019t<\/em> publish. <a href=\"https:\/\/techcrunch.com\/2023\/12\/22\/techcrunch-security-desk-jealousy-list\/\" target=\"_blank\" rel=\"noreferrer noopener\">Since 2023<\/a>, TechCrunch has looked back at the best stories across the board from the year in cybersecurity.<\/p>\n<p class=\"wp-block-paragraph\">If you\u2019re not familiar, the idea is simple. There are now dozens of journalists who cover cybersecurity in the English language. There are a lot of stories about cybersecurity, privacy, and surveillance that are published every week. And a lot of them are great, and you should read them. We\u2019re here to recommend the ones we liked the most, so keep in mind that it\u2019s a very subjective and, at the end of the day, incomplete list.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Anyway, let\u2019s get into it. <em>\u2014 Lorenzo Franceschi-Bicchierai<\/em><\/p>\n<h2 class=\"wp-block-heading\" id=\"h-shane-harris-described-how-he-cultivated-a-senior-iranian-hacker-as-a-source-who-was-then-killed\">Shane Harris described how he cultivated a senior Iranian hacker as a source, who was then killed<\/h2>\n<p class=\"wp-block-paragraph\">Every once in a while, there\u2019s a hacker story that as soon as you start reading, you think it could be a movie or a TV show. This is the case with <a href=\"https:\/\/www.theatlantic.com\/magazine\/2026\/01\/mohammad-tajik-iran-cyber-intelligence\/684954\/?gift=kPTlqn0J1iP9IBZcsdI5IUTLJcsVKq12m0EyVlSYJBQ&amp;utm_source=copy-link&amp;utm_medium=social&amp;utm_campaign=share\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Shane Harris\u2019 very personal tale of his months-long correspondence with a top Iranian hacker<\/a>.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In 2016, The Atlantic\u2019s journalist made contact with a person claiming to work as a hacker for Iran\u2019s intelligence, where he claimed to have worked on major operations, such as the downing of an American drone and the now-infamous hack against oil giant Saudi Aramco, where Iranian hackers wiped the company\u2019s computers. Harris was rightly skeptical, but as he kept talking to the hacker, who eventually revealed his real name to him, Harris started to believe him. When the hacker died, Harris was able to piece together the real story, which somehow turned out to be more incredible than the hacker had led Harris to believe.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The gripping story is also a great behind-the-scenes look at the challenges cybersecurity reporters face when dealing with sources claiming to have great stories to share.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-the-washington-post-revealed-a-secret-order-demanding-apple-let-u-k-officials-spy-on-users-encrypted-data\">The Washington Post revealed a secret order demanding Apple let U.K. officials spy on users\u2019 encrypted data<\/h2>\n<p class=\"wp-block-paragraph\">In January, the <a href=\"https:\/\/www.washingtonpost.com\/technology\/2025\/02\/07\/apple-encryption-backdoor-uk\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">U.K. government secretly issued Apple with a court order<\/a> demanding that the company build a back door so police can access the iCloud data of any customer in the world. Due to a worldwide gag order, it was only because <a href=\"https:\/\/www.washingtonpost.com\/technology\/2025\/02\/07\/apple-encryption-backdoor-uk\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The Washington Post<\/a> broke the news that we learned the order existed to begin with. The demand was the first of its kind, and \u2014 if successful \u2014 would be a major defeat for tech giants who have spent the past decade locking themselves out of their users\u2019 own data so they can\u2019t be compelled to provide it to governments.<\/p>\n<p class=\"wp-block-paragraph\">Apple subsequently <a href=\"https:\/\/techcrunch.com\/2025\/02\/21\/apple-pulls-icloud-end-to-end-encryption-feature-for-uk-users-after-government-demanded-backdoor\/\" target=\"_blank\" rel=\"noreferrer noopener\">stopped offering its opt-in end-to-end encrypted cloud storage<\/a> to its customers in the U.K. in response to the demand. But by breaking the news, the secret order was thrust into the public eye and allowed both Apple and critics to scrutinize U.K. surveillance powers in a way that hasn\u2019t been tested in public before. The story sparked a months-long diplomatic row between the U.K. and the United States, prompting Downing Street to drop the request \u2014 only to <a href=\"https:\/\/techcrunch.com\/2025\/10\/01\/uk-government-tries-again-to-access-encrypted-apple-customer-data-report\/\" target=\"_blank\" rel=\"noreferrer noopener\">try again<\/a> several months later.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-the-trump-administration-accidentally-texted-me-its-war-plans-by-the-atlantic-is-this-year-s-best-headline\">\u201cThe Trump administration accidentally texted me its war plans\u201d by The Atlantic is this year\u2019s best headline<\/h2>\n<p class=\"wp-block-paragraph\">This story was the sort of fly-on-the-wall access that some reporters would dream of, but <a rel=\"nofollow noopener\" href=\"https:\/\/www.theatlantic.com\/politics\/archive\/2025\/03\/trump-administration-accidentally-texted-me-its-war-plans\/682151\/\" target=\"_blank\">The Atlantic\u2019s editor-in-chief got to play out in real time<\/a> after he was unwittingly added to a Signal group of senior U.S. government officials <em>by <\/em>a senior U.S. government official discussing war plans on their cell phones.\u00a0<\/p>\n<figure class=\"wp-block-image aligncenter size-full is-resized\"><img loading=\"lazy\" decoding=\"async\" width=\"1000\" height=\"608\" src=\"https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg\" alt=\"a screenshot from the leaked Signal chat, which reads (from Pete Hegseth): &quot;MORE TO FOLLOW (per timeline) We are currently clean on OPSEC. Godspeed to our Warriors.&quot; Then, JD Vance follows: &quot;I will say a prayer for victory.&quot;\" class=\"wp-image-3078772\" style=\"width:600px\" srcset=\"https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg 1000w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=150,91 150w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=300,182 300w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=768,467 768w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=680,413 680w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=430,261 430w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=720,438 720w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=900,547 900w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=800,486 800w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=668,406 668w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=617,375 617w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=708,430 708w, https:\/\/techcrunch.com\/wp-content\/uploads\/2025\/12\/clean-on-opsec.jpg?resize=50,30 50w\" sizes=\"auto, (max-width: 1000px) 100vw, 1000px\"\/><figcaption class=\"wp-element-caption\"><span class=\"wp-element-caption__text\">\u201cWe are currently clean on OPSEC,\u201d said Secretary of Defense Pete Hegseth. they were not. <\/span><span class=\"wp-block-image__credits\"><strong>Image Credits:<\/strong>The Atlantic (screenshot)<\/span><\/figcaption><\/figure>\n<p class=\"wp-block-paragraph\">Reading the discussion about where U.S. military forces should drop bombs \u2014 and then seeing news reports of missiles hitting the ground on the other side of the world \u2014 was confirmation that Jeffrey Goldberg needed to know that he was, as he suspected, in a real chat with real Trump administration officials, and this was all on-the-record and reportable. <\/p>\n<p class=\"wp-block-paragraph\">And so he did, paving the way for a months-long investigation (and critique) of the government\u2019s operational security practices, in what was called the biggest <a rel=\"nofollow noopener\" href=\"https:\/\/www.404media.co\/the-signal-clone-the-trump-admin-uses-was-hacked\/\" target=\"_blank\">government opsec mistake<\/a> in history. The unraveling of the situation ultimately exposed security lapses involving the use of <a href=\"https:\/\/micahflee.com\/how-the-knock-off-signal-app-used-by-trump-officials-got-hacked-in-20-minutes\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">a knock-off Signal clone<\/a> that further jeopardized the government\u2019s ostensibly secure communications.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-brian-krebs-tracked-down-a-prolific-hacker-group-admin-as-a-jordanian-teenager\">Brian Krebs tracked down a prolific hacker group admin as a Jordanian teenager<\/h2>\n<p class=\"wp-block-paragraph\">Brian Krebs is one of the more veteran cybersecurity reporters out there, and for years he has specialized in following online breadcrumbs that lead to him revealing the identity of notorious cybercriminals. In this case, <a href=\"https:\/\/krebsonsecurity.com\/2025\/11\/meet-rey-the-admin-of-scattered-lapsus-hunters\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Krebs was able to find the real identity behind a hacker\u2019s online handle Rey<\/a>, who is part of the notorious <a href=\"https:\/\/techcrunch.com\/2024\/11\/01\/the-biggest-underestimated-security-threat-of-today-advanced-persistent-teenagers\/\" target=\"_blank\" rel=\"noopener\">advanced persistent teenagers<\/a>\u2018 cybercrime group that calls itself Scattered LAPSUS$ Hunters.<\/p>\n<p class=\"wp-block-paragraph\">Krebs\u2019 quest was so successful that he was able to talk to a person very close to the hacker \u2014 we won\u2019t spoil the whole article here \u2014 and then the hacker himself, who confessed to his crimes and claimed he was trying to escape the cybercriminal life.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">Independent media outlet 404 Media has accomplished more impact journalism this year than most mainstream outlets with vastly more resources. One of its biggest wins was <a href=\"https:\/\/www.404media.co\/airlines-will-shut-down-program-that-sold-your-flights-records-to-government\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">exposing and effectively shuttering a massive air travel surveillance system<\/a> tapped by federal agencies and operating in plain sight.<\/p>\n<p class=\"wp-block-paragraph\">404 Media reported that a little-known data broker set up by the airline industry called the Airlines Reporting Corporation was selling access to 5 billion plane tickets and travel itineraries, including names and financial details of ordinary Americans, allowing government agencies like ICE, the State Department, and the IRS to track people without a warrant.<\/p>\n<p class=\"wp-block-paragraph\">ARC, owned by United, American, Delta, Southwest, JetBlue, and other airlines, said it would shut down the warrantless data program following <a href=\"https:\/\/www.404media.co\/airlines-sell-5-billion-plane-ticket-records-to-the-government-for-warrantless-searching\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">404 Media\u2019s months-long reporting<\/a> and intense pressure from lawmakers.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-wired-made-the-3d-printed-gun-that-luigi-mangione-allegedly-used-to-kill-a-healthcare-executive-to-test-the-legalities-of-ghost-guns\">Wired made the 3D-printed gun that Luigi Mangione allegedly used to kill a healthcare executive to test the legalities of \u201cghost guns\u201d<\/h2>\n<p class=\"wp-block-paragraph\">The killing of UnitedHealthcare CEO Brian Thompson in December 2024 was one of the biggest stories of the year. Luigi Mangione, the chief suspect in the killing, was soon after arrested and indicted on charges of using a \u201cghost gun,\u201d a 3D-printed firearm that had no serial numbers and built in private without a background check \u2014 effectively a gun that the government has no idea exists.<\/p>\n<p class=\"wp-block-paragraph\">Wired, using its <a href=\"https:\/\/www.wired.com\/2015\/06\/i-made-an-untraceable-ar-15-ghost-gun\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">past reporting experience on 3D-printed weaponry<\/a>, sought to test how easy it would be to build a 3D-printed gun, while navigating the patchwork legal (and ethical) landscape. <a href=\"https:\/\/www.wired.com\/story\/luigi-mangione-ghost-gun-built-tested\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">The reporting process was exquisitely told<\/a>, and the video that goes along with the story is both excellent and chilling.<\/p>\n<figure class=\"wp-block-embed is-type-video is-provider-youtube wp-block-embed-youtube wp-embed-aspect-16-9 wp-has-aspect-ratio\">\n<p><div class=\"youtube-embed\" data-video_id=\"tQB_ib-KQXA\"><iframe title=\"I 3D-Printed Luigi Mangione\u2019s \u2018Ghost Gun\u2019 | Hacklab | WIRED\" width=\"696\" height=\"392\" src=\"https:\/\/www.youtube.com\/embed\/tQB_ib-KQXA?feature=oembed&#038;enablejsapi=1\" frameborder=\"0\" allow=\"accelerometer; autoplay; clipboard-write; encrypted-media; gyroscope; picture-in-picture; web-share\" referrerpolicy=\"strict-origin-when-cross-origin\" allowfullscreen><\/iframe><\/div>\n<\/p>\n<\/figure>\n<h2 class=\"wp-block-heading\" id=\"h-npr-detailed-a-federal-whistleblower-s-account-of-how-doge-took-sensitive-government-data-and-the-threats-he-faced\">NPR detailed a federal whistleblower\u2019s account of how DOGE took sensitive government data, and the threats he faced<\/h2>\n<p class=\"wp-block-paragraph\">DOGE, or the Department of Government Efficiency, was one of the biggest running stories of the year, as <a href=\"https:\/\/techcrunch.com\/2025\/05\/20\/the-people-in-elon-musk-doge-universe\/\" target=\"_blank\" rel=\"noreferrer noopener\">the gang of Elon Musk\u2019s lackeys<\/a> ripped through the federal government, tearing down security protocols and red tape, as part of the <a href=\"https:\/\/techcrunch.com\/2025\/02\/07\/doge-biggest-breach-of-united-states-government-data-under-way\/\" target=\"_blank\" rel=\"noreferrer noopener\">mass-grab<\/a> of citizens\u2019 data. NPR had some of the best investigative reporting <a href=\"https:\/\/www.npr.org\/2025\/04\/15\/nx-s1-5355896\/doge-nlrb-elon-musk-spacex-security\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">uncovering the resistance movement of federal workers<\/a> trying to prevent the pilfering of the government\u2019s most sensitive data.<\/p>\n<p class=\"wp-block-paragraph\">In one story detailing a whistleblower\u2019s official disclosure as shared with members of Congress, a senior IT employee in the National Labor Relations Board told lawmakers that as he was seeking help investigating DOGE\u2019s activity, he \u201cfound a printed letter in an envelope taped to his door, which included threatening language, sensitive personal information and overhead pictures of him walking his dog, according to the cover letter attached to his official disclosure.\u201d<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-mother-jones-found-an-exposed-dataset-of-tracked-surveillance-victims-including-world-leaders-a-vatican-enemy-and-maybe-you\">Mother Jones found an exposed dataset of tracked surveillance victims, including world leaders, a Vatican enemy, and maybe you<\/h2>\n<p class=\"wp-block-paragraph\">Any story that starts with <a href=\"https:\/\/www.linkedin.com\/posts\/gabriel-geiger-a1700b196_on-a-saturday-night-last-year-i-stumbled-activity-7383891781480001537-L1KZ\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">a journalist saying<\/a> they found something that made them \u201cfeel like shitting my pants,\u201d you know it\u2019s going to be a fun read. Gabriel Geiger found a dataset from a mysterious surveillance company called First Wap, which <a rel=\"nofollow noopener\" href=\"https:\/\/www.motherjones.com\/politics\/2025\/10\/firstwap-altamides-phone-tracking-surveillance-secrets-assad-erik-prince-jared-leto-anne-wojcicki\/\" target=\"_blank\">contained records on thousands of people from around the world<\/a> whose phone locations had been tracked.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The dataset, spanning 2007 through 2015, allowed Geiger to identify dozens of high-profile people whose phones were tracked, including a former Syrian first lady, the head of a private military contractor, a Hollywood actor, and an enemy of the Vatican. This story explored the shadowy world of phone surveillance by exploiting Signaling System No. 7, or SS7, an obscurely named protocol long known to allow malicious tracking.<\/p>\n<h2 class=\"wp-block-heading\" id=\"h-wired-reported-on-the-investigation-behind-a-string-of-swatting-attacks-on-hundreds-of-schools-nationwide\">Wired reported on the investigation behind a string of \u201cswatting\u201d attacks on hundreds of schools nationwide<\/h2>\n<p class=\"wp-block-paragraph\">Swatting has been a problem for years. What started as a bad joke has become a real threat, which has resulted in <a href=\"https:\/\/www.justice.gov\/usao-ks\/pr\/ohio-gamer-pleads-guilty-swatting-caused-death\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">at least one death<\/a>. Swatting is a type of hoax where someone \u2014 often a hacker \u2014 calls the emergency services and tricks the authorities into sending an armed SWAT team to the home of the hoaxer\u2019s target, often pretending to be the target themselves and pretending they are about to commit a violent crime.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In this feature, <a href=\"https:\/\/www.wired.com\/story\/school-swatting-torswats-brad-dennis\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Wired\u2019s Andy Greenberg put a face on the many characters who are part of these stories<\/a>, such as the call operators who have to deal with this problem. And he also profiled a prolific swatter, known as Torswats, who for months tormented the operators and schools all over the country with fake \u2014 but extremely believable \u2014 threats of violence, as well as a hacker who took it upon himself to track Torswats down.\u00a0<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/techcrunch.com\/2025\/12\/26\/these-are-the-cybersecurity-stories-we-were-jealous-of-in-2025\/\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>It\u2019s the end of the year. That means it\u2019s time for us to celebrate the best cybersecurity stories we didn\u2019t publish. Since 2023, TechCrunch has looked back at the best stories across the board from the year in cybersecurity. If you\u2019re not familiar, the idea is simple. There are now dozens of journalists who cover [&hellip;]<\/p>","protected":false},"author":1,"featured_media":5608,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[36],"tags":[],"class_list":["post-5606","post","type-post","status-publish","format-standard","has-post-thumbnail","category-tech"],"_links":{"self":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/5606","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/comments?post=5606"}],"version-history":[{"count":0,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/posts\/5606\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media\/5608"}],"wp:attachment":[{"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/media?parent=5606"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/categories?post=5606"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/paknews.centers.pk\/ur\/wp-json\/wp\/v2\/tags?post=5606"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}