Trump is back baby!

Who will win the debate

  • Trump

    Votes: 17 33.3%
  • Harris

    Votes: 22 43.1%
  • I genuinely don’t care at this stage

    Votes: 12 23.5%

  • Total voters
    51
  • Poll closed .
serious shit:

A federal whistleblower just dropped one of the most disturbing cybersecurity disclosures I’ve ever read.

He's saying DOGE came in, data went out, and Russians started attempting logins with new valid DOGE passwords

Media's coverage wasn't detailed enough so I dug into his testimony:Image
Who’s the whistleblower?

Daniel Berulis — a senior DevSecOps architect at the National Labor Relations Board (NLRB), formerly with TS/SCI clearance.

He just told Congress the Department of Government Efficiency (DOGE) pulled off a covert cyber op inside a federal agency.Image
DOGE demanded root access.
Not auditor access. Not admin.

They were given “tenant owner” privileges in Azure — full control over the NLRB’s cloud, above the CIO himself.
This is never supposed to happen.Image
They disabled the logs.
Berulis says DOGE demanded account creation with no recordkeeping.

They even ordered security controls bypassed and disabled tools like network watcher so their actions wouldn’t be logged.Image
And then the data started flowing out.
10+ GB spike in outbound traffic

Exfiltration from NxGen, the NLRB's legal case database
No corresponding inbound traffic
Unusual ephemeral containers and expired storage tokensImage
They used an external library that used AWS IP pools to rotate IPs for scraping and brute force attacks.

They downloaded external GitHub tools like requests-ip-rotator and browserless — neither of which the agency uses.Image
The most daming claim in this statement IMO:

Within 15 minutes of DOGE accounts being created…
Attackers in Russia tried logging in using those new creds.
Correct usernames and passwords.

2 options here. The DOGE device was hacked. And I don't think I need to explain the 2nd.Image
Multi-factor authentication? Disabled.
Someone downgraded Azure conditional access rules — MFA was off for mobile.
This was not approved and not logged.Image
Cost spikes without new resources.
Azure billing jumped 8% — likely from short-lived high-cost compute used for data extraction, then deleted.Image
Then came the intimidation.

While preparing this disclosure, Berulis found a drone surveillance photo of himself taped to his front door with a threatening note.

This was just a few days ago.Image
US-CERT was about to be called in.
CISA’s cyber response team.
But senior officials told them to stand down — no report, no investigation.Image
I'm going to cover this more as I find out more.
Jesus, any one of those would be a fireable offence from pretty much any enterprise out there.

If you have tenant level permissions and have disabled logging like that then yeah, who knows what the fuck went on, you can do whatever the hell you want, nobody will be able to trace it if you know how to cover your tracks.
 
I have zero interest in arguing with you. Consider yourself permanently on ignore Matty. Don't respond to me again I have no interest.
If you want to ignore me, then put me on ignore and you won't be able to see my comments.

You don't get to tell me who I can and can't respond to.
 
Way over dramatic. The USA is still very safe to visit. You guys have lost the run of yourselves. Much like you talking shit pre trump election.
Given the number of ICE arrests and detentions made in error in the last 100 days, you can't actually believe that.
The US is roughly 100 times the population size of Ireland.

We deported an illegal alien back to the US this week who had been living here for 30 years for having an fake document. And he was arrested and held in detention for 2 years

Are we becoming s totalitarion state
 
EVENT GUIDE - HIGHLIGHT
Best Of Cork Special
City Limits, Coburg St.

27th Jun 2025 @ 8:00 pm
More info..

Let's Elevate DJs At The Pav

The Pavillion, Today @ 10:30pm

More events ▼
Top