ravirockks Profile Banner
Ravi Nayyar Profile
Ravi Nayyar

@ravirockks

Followers
1K
Following
200K
Statuses
86K

Software & CNI Law | PhD Scholar @Sydney_Uni | Fellow & Research Contributor @ASPI_org | Associate Fellow @ Social Cyber Institute | Blogging @TechLegalUpdate

Sydney, New South Wales
Joined June 2010
Don't wanna be here? Send us removal request.
@ravirockks
Ravi Nayyar
1 month
G’Day, Since folks are increasingly talking about software supply chain risks to national security, here's a collection of my work on the subject. Going back to 2022.
Tweet media one
1
0
2
@ravirockks
Ravi Nayyar
28 seconds
Why do we never see a protest against JavaScript?
0
0
0
@ravirockks
Ravi Nayyar
8 minutes
Something I argued in my write-up on last year's Sydney Dialogue:
Tweet media one
0
0
0
@ravirockks
Ravi Nayyar
46 minutes
Yes, Google Search summaries are clean.
Tweet media one
0
0
0
@ravirockks
Ravi Nayyar
1 hour
'Company A is a consumer-packaged goods company headquartered in Boca Raton, Florida, that is the maker of a fitness drink and whose securities are publicly traded on the NASDAQ Stock Market'. Any guesses?
0
0
0
@ravirockks
Ravi Nayyar
1 hour
Aha:
Tweet media one
0
0
0
@ravirockks
Ravi Nayyar
1 hour
'We are all supposed to gather facts, be objective and based on your experience and skills and the compliance frameworks you are complying with, present your findings'. The High Table comes for troublemakers like @blackroomsec and @cyb3rops.
@blackroomsec
BlackRoomSec
8 hours
State Dept and Treasury were recently hacked and no one screamed. There is a report out that pretty much every single one of our telecommunications providers have been infiltrated by China and again no one is screaming. They are doing an audit of all of the federal systems to find out the facts. And they have to do this because it hasn't been done for many decades. Anyone in the cybersecurity industry that is upset that the federal government (who write the very compliance frameworks your organizations supposedly have to comply with🙄) is doing an audit is not only acting irresponsibly but are being very foolish. We all do this for a living. We are all supposed to gather facts, be objective and based on your experience and skills and the compliance frameworks you are complying with, present your findings. Every time a manager in our orgs complains that they have to comply with a framework all of us get annoyed because we are doing our jobs. When we gather facts are we modifying any data? No. In fact there are multiple security controls that talk about immutability and tamper-proof auditing. Every single one of you reading this has configured these systems and knows what read only access means. Your feelings on what is going on in the federal government do not change the material facts of the matter. Audits our long overdue. There are a lot of suspicious payments going out via channels that they normally would not go out from. Millions of federal workers have not shown up to their physical offices to work and as a result have placed each operation at risk of various compromises. An audit is being conducted in every agency. You do not have to like that this is going on but it is going to happen and lawsuits which are temporary in nature will be overturned because there is nothing illegal going on by way of the actual audit. Please stop believing the hysterics.
0
0
0
@ravirockks
Ravi Nayyar
1 hour
'Investigating and prosecuting ... federal crimes committed by Hamas supporters in the United States, including on college campuses ... '... allow JTF 10-7 to issue administrative subpoenas to foreign banks with correspondent accounts'. Good.
@Osint613
Open Source Intel
10 hours
BREAKING 🔴 The US is opening an investigation against Hamxs for October 7
Tweet media one
Tweet media two
0
0
0
@ravirockks
Ravi Nayyar
1 hour
The Indian MoD/services when they see foreign platforms.
Tweet media one
@livefist
Livefist
5 hours
Stupefying price-tag for 3 measly diesel-electric submarines. Wondering how many modded Arihant SSGNs/new SSNs we’d be able to build with that sum. @SandeepUnnithan definitely has thoughts on this.
Tweet media one
0
0
0
@ravirockks
Ravi Nayyar
2 hours
@BaldingsWorld Putting the legal aspect aside, the Left appears to be making the same political mistakes.
1
0
1
@ravirockks
Ravi Nayyar
2 hours
@naomi2009 How on earth did his local liaison/helpers not know that he would be breaking the local law?
0
0
1
@ravirockks
Ravi Nayyar
2 hours
Good grief. How is being a ‘sanctuary city’ compatible with the rule of law or indeed the US’s obligations under the international law of counternarcotics and counterterrorism? Ironic that folks in the party running most/all such cities then hector others about the rule of law.
@BillMelugin_
Bill Melugin
7 hours
The leaks continue. The LA Times reports they’ve obtained a leaked government document which indicates there will be a “large scale” ICE enforcement operation in the LA area before the end of the month. This comes after the Aurora op was leaked, w/ CBS & NBC writing articles citing numerous U.S. officials that it was coming, forcing ICE to reschedule it to last week, and the op was a failure. And a large scale Chicago op was also leaked to the media during Trump’s first week in office, leading to a canceling and rescheduling of that op as well. It is extremely dangerous for ICE officers to have their plans leaked & for their targets to know they are coming. Somebody either does not want these operations to succeed, or is overzealous in sharing operational details that should be kept under wraps. An early issue for this new Trump admin to face.
0
0
0
@ravirockks
Ravi Nayyar
2 hours
Folks, the Indians have plugged TONS of leakages, including phantom welfare beneficiaries, with Aadhaar(-linked bank accounts).
@BaldingsWorld
Blume Industries CEO Balding 大老板
9 hours
An entry level coder could do this on a few minutes. This is just willful
0
0
1
@ravirockks
Ravi Nayyar
3 hours
Would it kill the WaPo to do similarly breathless cyber coverage of the bazillion insecure edge devices in CNI around the world? Especially when that is a far greater risk to international cyber resilience than the Poms serving Apple with a TCN?
0
0
0