Advertisement · 728 × 90

Posts by Costin G. Raiu

The Angry Spark APT Mystery: One Victim, Zero Attribution
The Angry Spark APT Mystery: One Victim, Zero Attribution YouTube video by Three Buddy Problem

NEW PROBLEM UP! 🚨

We discuss a mysterious, VM-obfuscated backdoor that lived undetected on a single U.K. machine for a year before disappearing, finding clues pointing to an elite-level APT intrusion that still evades broader industry coverage.

WATCH on YouTube www.youtube.com/watch?v=mSD9...

2 days ago 10 4 1 2
Video

"They sound like idiots...WHAT are you talking about?!?" #threebuddyproblem @jags.bsky.social @craiu.bsky.social

1 day ago 3 3 2 0
Karl Marx, AI, and the future of work
Karl Marx, AI, and the future of work YouTube video by Three Buddy Problem

"Are you saying that through technology and AI, we will reach the ideals of communism?" @craiu.bsky.social @jags.bsky.social
www.youtube.com/watch?v=bQMB...

2 weeks ago 3 2 1 0
Preview
Three Buddy Problem Technology Podcast · Updated Weekly · The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware,...

FRESH! Our weekend radio show is available for all earholes everwhere @craiu.bsky.social @jags.bsky.social

LISTEN podcasts.apple.com/us/podcast/t...

1 month ago 5 4 2 1

Episodes like this just create an empathetic contagion. I can just feel the bond and friendship when I watch you guys. @ryanaraine.bsky.social , @craiu.bsky.social, @jags.bsky.social.

Appreciate you guys putting this out into the world 🫶

4 weeks ago 9 2 1 0
Preview
War in Iran, Anthropic v Pentagon, Trenchant zero-day sanctions, AI stock market shocks - Security Conversations (Presented by Thinkst Canary: Most Companies find out way too late that they’ve been breached. Thinkst Canary changes this. Deploy Canaries and Canarytokens in minutes […]

POD UP ALERT! (Presented by @thinkstcanary.canary.tools)

War in Iran + cyber capabilities and proxy risks; Anthropic’s clash with the Pentagon; market shockwaves from AI-driven security tools; mass layoffs tied to automation; Trenchant exec sentencing and sanctions in the exploit trade...

1 month ago 7 4 2 1
Preview
A destructive cyberattack in Poland raises NATO 'red-line' questions - Security Conversations (Presented by Material Security: We protect your company’s most valuable materials — the emails, files, and accounts that live in your Google Workspace and Microsoft […]

🔥 #ThreeBuddyProblem Ep83 has been pushed to your earholes. Poland CERT on Russian wipers, Sandworm or not Sandworm, new FortIvanti nightmares + some KasperSekrets chit-chat @craiu.bsky.social @jags.bsky.social

securityconversations.com/episode/a-de...

2 months ago 7 3 1 1
Advertisement
Preview
Cheap, AI-generated zero-days and the real meaning of ‘advanced’ malware - Security Conversations (Presented by Material Security: We protect your company’s most valuable materials — the emails, files, and accounts that live in your Google Workspace and Microsoft […]

🌨️ ❄️ Here's a fresh episode of the problem to help you brave the bad weather this weekend (sponsored by Material Security) @craiu.bsky.social @jags.bsky.social

LISTEN securityconversations.com/episode/chea...

2 months ago 5 4 1 0
Preview
Live updates: Trump keeping Machado’s Nobel prize after Venezuelan opposition leader presents it to him | CNN Politics Venezuelan opposition leader María Corina Machado, the 2025 Nobel Peace Prize winner, met with President Donald Trump today. Follow for live updates.

Sources: US officials are telling multiple agencies, including FBI, to pull pple from attending the RSA conference after Jen Easterly, who led CISA under Biden, was named RSAC CEO: www.cnn.com/politics/liv...

3 months ago 32 21 4 9
A special mailbag episode with book recommendations
A special mailbag episode with book recommendations YouTube video by Three Buddy Problem

This week's Three Buddy Problem show is presented by Material Security and includes book-reading recommendations from @craiu.bsky.social and @jags.bsky.social

WATCH youtu.be/mY9rRd1Wm_I?...

3 months ago 10 4 1 1
Preview
Hamid Kashfi on the situation in Iran; Did cyber cause Venezuela blackouts? - Security Conversations (Presented by Material Security: We protect your company’s most valuable materials — the emails, files, and accounts that live in your Google Workspace and Microsoft […]

NEW!! (Presented by Material Security). We talk about the escalating protests in Iran, the expected cyber effects, and parallels with cyber operations and Venezuela power cuts. @craiu.bsky.social @jags.bsky.social @darkcell.bsky.social

securityconversations.com/episode/hami...

3 months ago 4 3 2 0
https://medium.com/@costin.raiu/the-cybersecurity-booklist-11-must-reads-for-2026-from-the-three-buddy-problem-podcast-ef8216958bd3

The Cybersecurity Booklist: 11 Must-Reads for 2026 from The Three Buddy Problem Podcast: t.co/XuM7Bd0MXh @ryanaraine.bsky.social @jags.bsky.social

3 months ago 6 3 0 0

This weekend's problem is up on YouTube. Shoutout to ThreatLocker for supporting the show! @craiu.bsky.social @jags.bsky.social
www.youtube.com/watch?v=LR9F...

4 months ago 3 2 0 1
Post image

!! BRAND NEW Three Buddy Problem, on React2Shell, BRICKSTORM, .gov surveillance madness, and AI agents finding smart contracts exploits @craiu.bsky.social @jags.bsky.social

LISTEN EVERYWHERE pod.link/1414525622

(Presented by ThreatLocker)

4 months ago 7 6 1 1
Gemini 3, Fortinet/Chrome zero-days, Cloudflare monoculture
Gemini 3, Fortinet/Chrome zero-days, Cloudflare monoculture YouTube video by Three Buddy Problem

This week's problem is up on YouTube @craiu.bsky.social @jags.bsky.social (Presented by Material Security)
youtu.be/75F-z1OvpYU?...

4 months ago 7 2 0 0
Advertisement
Preview
Shai-Hulud 2.0, Russia GRU Intrusions, and Microsoft’s Regulatory Capture - Security Conversations (Presented by Material Security: We protect your company’s most valuable materials — the emails, files, and accounts that live in your Google Workspace and Microsoft […]

NEW podcast alert!
@jags.bsky.social @craiu.bsky.social
securityconversations.com/episode/shai...

4 months ago 5 2 1 2
Video

OpenAI's Dave Aitel on using Aardvark to audit cryptocurrency smart contracts @craiu.bsky.social @daveaitel.bsky.social

5 months ago 6 2 1 0
Post image

Three Buddy Problem, Ottawa, Canada. @craiu.bsky.social @jags.bsky.social

5 months ago 13 1 1 0
OpenAI’s Dave Aitel talks Aardvark, economics of bug-hunting with LLMs
OpenAI’s Dave Aitel talks Aardvark, economics of bug-hunting with LLMs YouTube video by Three Buddy Problem

This week's show features OpenAI's Dave Aitel and is up on YouTube @daveaitel.bsky.social @jags.bsky.social @craiu.bsky.social
youtu.be/EwMJsU8klZ0?...

5 months ago 9 3 1 1
Preview
Apple’s iOS forensics freeze, WhatsApp zero-click, China outs NSA - Security Conversations Three Buddy Problem – Episode 69: We dig into news that Apple's iOS 26 has quietly killed the shutdown.log forensic artifact used to spot signs […]

New episode ALERT! @craiu.bsky.social @jags.bsky.social

News on Apple's iOS 26 quietly killing shutdown.log forensic artifact, a million-dollar WhatsApp zero-click that never materialized, Chinese threat intel reports pointing fingers at the NSA...

securityconversations.com/episode/appl...

5 months ago 6 3 0 1
Costin's advice for threat hunters: Look at Ukraine CERT reports
Costin's advice for threat hunters: Look at Ukraine CERT reports YouTube video by Three Buddy Problem

Costin with some advice for threat hunters @craiu.bsky.social @jags.bsky.social
youtube.com/shorts/z6fX1...

6 months ago 7 3 1 0
Apple Exploit-Chain Bounties, Tactical Wi-Fi Exploit Suitcases
Apple Exploit-Chain Bounties, Tactical Wi-Fi Exploit Suitcases YouTube video by Three Buddy Problem

An all-new Three Buddy Problem for your weekend earholes. Apple exploits chains, Oracle + ransomware, Ivanti 0days, VT pricing tiers @craiu.bsky.social @jags.bsky.social
youtu.be/qPj9_8azAvk?...

6 months ago 6 4 0 0
6 months ago 356 47 18 5
Advertisement
Video

"The best netflow comes from asking friends for favors." -- @jags.bsky.social @craiu.bsky.social

10 months ago 9 2 1 1

[FR][EN]Our last report on Storm-1516, a russian information manipulation set (IMS) likely to affect the French and European debate.

So proud of my team!

Feel free to share and enjoy. #FIMI

11 months ago 23 6 1 0
Preview
Three Buddy Problem Technology Podcast · Updated Weekly · The Three Buddy Problem is a popular Security Conversations podcast that goes beyond industry talking points to discuss what others won’t -- nation-state malware,...

🔥 NEW pod alert! Signalgate and Signal's ID management nightmares, who's the mysterious APT caught in Russia, the return of Lab Dookhtegan and coordinated hack-for-leak ops @craiu.bsky.social @jags.bsky.social

Apple: bit.ly/3budprob
YouTube: bit.ly/TBP-YT
Spotify: bit.ly/3DH5wEO

1 year ago 9 3 0 1

This week, four buddies, no problems! Katie Moussouris is joining the show 🌺

Set your alarms ⏰

Spotify: bit.ly/3DH5wEO
Apple: bit.ly/3budprob
YouTube: bit.ly/TBP-YT

@k8em0.bsky.social @craiu.bsky.social @jags.bsky.social

1 year ago 22 6 1 2
Preview
A half-dozen Microsoft zero-days, Juniper router backdoors, advanced bootkit hunting - Security Conversations Three Buddy Problem – Episode 38: On the show this week, we look at a hefty batch of Microsoft zero-days exploited in the wild, iOS […]

A brand-new pod for your weekend earholes. The show is available on all platforms @craiu.bsky.social @jags.bsky.social
securityconversations.com/episode/a-ha...

1 year ago 14 3 0 1
Preview
Ryan Naraine on LinkedIn: #threebuddyproblem 🇨🇳 🇺🇸 On the pod, we unpacked a new report on what China knows about NSA intrusions 🕵‍♀️ Costin Raiu #ThreeBuddyProblem

🇨🇳🇺🇸🕵️ On the pod, we unpacked a new report on what China knows about NSA intrusions @jags.bsky.social @craiu.bsky.social www.linkedin.com/posts/ryanar...

1 year ago 7 2 1 0

Good news, there appear to be no need to cancel the results of the German elections!

1 year ago 12 2 3 0