GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Notices by Micah Lee (micahflee@infosec.exchange)

  1. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Tuesday, 17-Jun-2025 22:24:14 JST Micah Lee Micah Lee
    in reply to
    • Andy Mouse
    • Cody Casterline 🏳️‍🌈

    @andymouse @NfNitLoop

    Yeah, that's not true. Read up on how Signal is engineered to cryptographically prevent themselves from having access to group metadata and message sender metadata that you're claiming they could share with law enforcement:

    https://signal.org/blog/sealed-sender/

    https://signal.org/blog/signal-private-group-system/

    There's plenty of real things you could criticize about Signal, so maybe stick to those and not the misinformation?

    In conversation about 2 days ago from infosec.exchange permalink
  2. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Tuesday, 17-Jun-2025 17:20:48 JST Micah Lee Micah Lee

    I wrote about how to turn in-person meetings into Signal groups, how to manage large semi-public Signal groups while vetting new members, and how to use announcement-only Signal groups, perfect for rapidly responding to ICE raids https://micahflee.com/using-signal-groups-for-activism/

    In conversation about 2 days ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      Using Signal groups for activism
      Things are heating up. Millions of people are taking to the streets against Trump's rising authoritarianism. Communities around the US are organizing to defend against ICE raids, to protest Israeli genocide, for mutual aid, and for other forms of fighting fascism. Signal can help people safely organize in all of
  3. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Monday, 26-May-2025 23:54:09 JST Micah Lee Micah Lee

    Check it out. I just published TeleMessage Explorer: a new open source research tool https://micahflee.com/telemessage-explorer-a-new-open-source-research-tool/

    In conversation about 24 days ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      TeleMessage Explorer: a new open source research tool
      I've spent the last week or two writing code to make sense of the massive hack of data from TeleMessage, the comically insecure company that makes a modified Signal app that Trump's former national security advisor Mike Waltz was caught using. I've decided to publish my code as open source
  4. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Thursday, 22-May-2025 13:07:08 JST Micah Lee Micah Lee

    My latest on the clean OPSEC saga: TeleMessage customers include DC Police, Andreesen Horowitz, JP Morgan, and hundreds more https://micahflee.com/telemessage-customers-include-dc-police-andreesen-horowitz-jp-morgan-and-hundreds-more/

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      TeleMessage customers include DC Police, Andreesen Horowitz, JP Morgan, and hundreds more
      I've been digging through the 410 GB of Java heap dumps from TeleMessage's archive server, provided by DDoSecrets. Here's a description of the dataset, some of my initial findings, details about an upcoming open source research tool I'm going to release, and a huge list of potential TeleMessage customers. First,
  5. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Sunday, 18-May-2025 23:01:02 JST Micah Lee Micah Lee

    Here's how the TM SGNL server, which had access to plaintext chat logs from people like Mike Waltz, got hacked in about 20 minutes https://www.wired.com/story/how-the-signal-knock-off-app-telemessage-got-hacked-in-20-minutes/ (my first article in WIRED!)

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: media.wired.com
      How the Signal Knockoff App TeleMessage Got Hacked in 20 Minutes
      from Micah Lee
      The company behind the Signal clone used by at least one Trump administration official was breached earlier this month. The hacker says they got in thanks to a basic misconfiguration.
  6. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Friday, 09-May-2025 01:13:15 JST Micah Lee Micah Lee

    DOGE bro Kyle Schutt's computer infected by malware, credentials found in stealer logs https://micahflee.com/doge-bro-kyle-schutts-computer-infected-by-malware-credentials-found-in-stealer-logs/

    In conversation about a month ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: images.unsplash.com
      DOGE bro Kyle Schutt's computer infected by malware, credentials found in stealer logs
      Kyle Schutt is a 37 year old "DOGE software engineer," according to ProPublica. In February, Drop Site News reported that he gained access to FEMA's "core financial management system." His computer was apparently compromised with malware, because his email address and passwords have shown up in four separate stealer log
  7. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Sunday, 04-May-2025 06:19:12 JST Micah Lee Micah Lee
    in reply to
    • Rich Felker

    @dalias yup, well said

    In conversation about 2 months ago from infosec.exchange permalink
  8. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Sunday, 04-May-2025 05:36:15 JST Micah Lee Micah Lee
    in reply to

    The source code for the TM SGNL apps (basically a backdoored version of Signal used by Trump officials) is public! Since it's open source, I've pushed it to github for easier research https://micahflee.com/heres-the-source-code-for-the-unofficial-signal-app-used-by-trump-officials/

    iOS code: https://github.com/micahflee/TM-SGNL-iOS

    Android code: https://github.com/micahflee/TM-SGNL-Android

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments



    1. Domain not in remote thumbnail source whitelist: opengraph.githubassets.com
      GitHub - micahflee/TM-SGNL-Android: Backdoored Signal app, used by senior Trump officials like Mike Waltz, downloaded from the official TeleMessage website
      Backdoored Signal app, used by senior Trump officials like Mike Waltz, downloaded from the official TeleMessage website - micahflee/TM-SGNL-Android
  9. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Sunday, 04-May-2025 05:36:15 JST Micah Lee Micah Lee

    I wrote up a detailed analysis of TM SGNL, the unofficial Signal app that senior Trump fascists use to organize their war crimes https://micahflee.com/tm-sgnl-the-obscure-unofficial-signal-app-mike-waltz-uses-to-text-with-trump-officials/

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      TM SGNL, the obscure unofficial Signal app Mike Waltz uses to text with Trump officials
      Yesterday, a Reuters photographer captured a photo of the freshly-ousted former National Security Advisor Mike Waltz checking his Signal messages during a Trump cabinet meeting. If you're not familiar with Waltz, he's most well known for inviting The Atlantic's editor-in-chief to secret Trump administration war crimes Signal group. They discussed,
  10. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Wednesday, 30-Apr-2025 08:43:18 JST Micah Lee Micah Lee

    They're explicitly trying to make antisemitic speech legal, so that just anti-Israel speech will be illegal https://forward.com/fast-forward/716347/antisemitism-bill-congress-jews-jesus/

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: forward.com
      Why the Antisemitism Awareness Act now has a religious liberty clause to protect ‘Jews killed Jesus’ statements
      from @jacobkornbluh
      The Antisemitism Awareness Act's added language says it would not infringe on religious liberty to protect the claim that Jews killed Jesus.
  11. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Thursday, 10-Apr-2025 03:28:54 JST Micah Lee Micah Lee
    • Electronic Frontier Foundation

    Here's how to set up ~$30 worth of gear to detect cell-site simulators, which are used by police and ICE to spy on phones in a physical location, using @eff's new tool Rayhunter https://micahflee.com/hunting-street-level-cell-phone-surveillance-with-rayhunter/

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      Hunting street-level cell phone surveillance with Rayhunter
      Things are scary in the US right now. ICE is disappearing students for protesting genocide and kidnapping innocent people off the streets to enslave in El Salvador. All over the country, people are taking to the streets every week to protest oligarchy, and fascist counter-protesters are starting to show up
  12. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Monday, 07-Apr-2025 04:03:57 JST Micah Lee Micah Lee

    The leftists vs liberal discourse about yesterday’s big protests is so stupid. There’s nothing wrong with millions of people protesting Trump. There will be more protests. There will be more diversity of tactics. But people in the streets is a good thing

    In conversation about 2 months ago from infosec.exchange permalink
  13. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Sunday, 06-Apr-2025 07:06:30 JST Micah Lee Micah Lee

    Made a new sign!

    In conversation about 2 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/287/337/483/004/036/original/795f442d75a77823.png
  14. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Tuesday, 25-Mar-2025 02:26:01 JST Micah Lee Micah Lee

    Trump admin uses Signal to coordinate military operations, and also accidentally added the editor in chief of The Atlantic to a group about bombing Houthi targets in Yemen that includes JD Vance, Stephen Miller, Marco Rubio, Pete Hegseth, and other dipshits https://www.theatlantic.com/politics/archive/2025/03/trump-administration-accidentally-texted-me-its-war-plans/682151/?gift=kPTlqn0J1iP9IBZcsdI5IVJpB2t9BYyxpzU4sooa69M

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: cdn.theatlantic.com
      The Trump Administration Accidentally Texted Me Its War Plans
      from https://www.facebook.com/https://www.facebook.com/jeffreygoldberg182
      U.S. national-security leaders included me in a group chat about upcoming military strikes in Yemen. I didn’t think it could be real. Then the bombs started falling.
  15. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Wednesday, 19-Mar-2025 08:55:59 JST Micah Lee Micah Lee

    Tesla board members, executive sell off over $100 million of stock in recent weeks https://abcnews.go.com/Business/tesla-board-members-executive-sell-off-100-million/story?id=119889047

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: i.abcnewsfe.com
      Tesla board members, executive sell off over $100 million of stock in recent weeks
      from ABC News
      As Tesla stock has fallen in recent weeks, members of the board and an executive at Elon Musk's company have sold off millions of dollars in stock, according to filings.
  16. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Thursday, 13-Mar-2025 03:33:34 JST Micah Lee Micah Lee

    Here's the second installment of my Paramilitary Leaks series. How you can set up your computer to read through the leaked militia chats yourself https://micahflee.com/step-by-step-guide-to-reading-the-leaked-militia-chats-yourself/

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: micahflee.com
      Step-by-step guide to reading the leaked militia chats yourself
      Welcome to the second installment of my series on the Paramilitary Leaks! In case you missed it, the first installment is here: Exploring the Paramilitary Leaks. Since I published that, several people reached out offering to help. We now have a private Signal group of researchers working on this together,
  17. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Tuesday, 11-Mar-2025 10:10:31 JST Micah Lee Micah Lee

    "I haven’t been able to sleep, fearing that ICE or a dangerous individual might come to my home. I urgently need legal support, and I urge you to intervene and provide the necessary protections to prevent further harm." https://zeteo.com/p/scoop-emails-show-mahmoud-khalil-ask-columbia-protection-ice

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: substackcdn.com
      SCOOP: Emails Show Mahmoud Khalil Asked Columbia for Protection a Day Before He Was Detained
      from Prem Thakker
      "I haven’t been able to sleep, fearing that ICE or a dangerous individual might come to my home. I urge you to intervene and provide the necessary protections to prevent further harm."
  18. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Tuesday, 11-Mar-2025 01:30:08 JST Micah Lee Micah Lee

    I’m liking the shape of this curve

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/138/674/946/338/112/original/ed8ebab34409f9f6.png
  19. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Friday, 07-Mar-2025 06:27:30 JST Micah Lee Micah Lee

    Congrats everyone! Tesla stock has now dropped down to where it was just before Trump was elected/Elon was appointed Shadow President

    In conversation about 3 months ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/117/245/796/575/038/original/4bcee26a5477f519.png
  20. Embed this notice
    Micah Lee (micahflee@infosec.exchange)'s status on Wednesday, 05-Mar-2025 08:20:12 JST Micah Lee Micah Lee
    in reply to

    Seven Tesla charged torched near Boston https://www.nbcnews.com/news/us-news/tesla-charging-stations-torched-apparent-arson-boston-latest-attack-el-rcna194692

    In conversation about 4 months ago from infosec.exchange permalink

    Attachments

    1. Domain not in remote thumbnail source whitelist: media-cldnry.s-nbcnews.com
      Tesla charging stations torched in apparent arson near Boston, latest attack on Elon Musk company
      from NBCNews
      This could be the latest in a string of fires intentionally targeting the electric vehicle company owned by the billionaire Trump adviser.
  • Before

User actions

    Micah Lee

    Micah Lee

    Member of the Lockdown Systems Collective making @cyd — writing at https://micahflee.com — author of HACKS, LEAKS, AND REVELATIONS https://hacksandleaks.com

    Tags
    • (None)

    Following 0

      Followers 0

        Groups 0

          Statistics

          User ID
          34821
          Member since
          21 Nov 2022
          Notices
          116
          Daily average
          0

          Feeds

          • Atom
          • Help
          • About
          • FAQ
          • TOS
          • Privacy
          • Source
          • Version
          • Contact

          GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

          Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.