<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0" xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd" xmlns:googleplay="http://www.google.com/schemas/play-podcasts/1.0"><channel><title><![CDATA[Covert Access Team]]></title><description><![CDATA[Cyber & Physical Security, Penetration Testing, Social Engineering]]></description><link>https://covertaccessteam.substack.com</link><image><url>https://substackcdn.com/image/fetch/$s_!b45K!,w_256,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6f8233bb-f6fb-477f-b69c-351862ebe274_270x270.png</url><title>Covert Access Team</title><link>https://covertaccessteam.substack.com</link></image><generator>Substack</generator><lastBuildDate>Tue, 19 May 2026 19:03:22 GMT</lastBuildDate><atom:link href="https://covertaccessteam.substack.com/feed" rel="self" type="application/rss+xml"/><copyright><![CDATA[Brian Harris]]></copyright><language><![CDATA[en]]></language><webMaster><![CDATA[covertaccessteam@substack.com]]></webMaster><itunes:owner><itunes:email><![CDATA[covertaccessteam@substack.com]]></itunes:email><itunes:name><![CDATA[Brian Harris]]></itunes:name></itunes:owner><itunes:author><![CDATA[Brian Harris]]></itunes:author><googleplay:owner><![CDATA[covertaccessteam@substack.com]]></googleplay:owner><googleplay:email><![CDATA[covertaccessteam@substack.com]]></googleplay:email><googleplay:author><![CDATA[Brian Harris]]></googleplay:author><itunes:block><![CDATA[Yes]]></itunes:block><item><title><![CDATA[Attackers Are Turning Microsoft Teams Into a Malware Delivery System]]></title><description><![CDATA[KongTuke is now being reported using Microsoft Teams chats to reach employees directly, pose as IT support, and talk them into running a PowerShell command that installs ModeloRAT.]]></description><link>https://covertaccessteam.substack.com/p/attackers-are-turning-microsoft-teams</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/attackers-are-turning-microsoft-teams</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Fri, 15 May 2026 14:02:49 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!z2R0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!z2R0!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!z2R0!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!z2R0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1429886,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!z2R0!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!z2R0!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F817651a1-ca3b-4bb5-800d-00424a0dc15c_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://redcanary.com/threat-detection-report/threats/kongtuke/">KongTuke</a> is now being reported using Microsoft Teams chats to reach employees directly, pose as IT support, and talk them into running a PowerShell command that installs ModeloRAT. </p><p><a href="https://cybersecuritynews.com/hackers-hijack-microsoft-teams/">Cyber Security News </a>reported the Teams-based campaign on May 12, 2026, and <a href="https://www.bleepingcomputer.com/news/security/kongtuke-hackers-now-use-microsoft-teams-for-corporate-breaches/">BleepingComputer</a> reported on May 14 that the same activity can produce persistent access in as little as five minutes.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>The Attack</h2><p>The reported Teams campaign begins with contact from a fake or hijacked Teams account. The attacker presents as internal IT or help desk support. That matters because the instruction that follows would look absurd in most contexts: open PowerShell, paste a command, and run it.</p><p>In a Teams support chat, especially during an apparent device issue, that same instruction can look like a diagnostic step.</p><p>Cyber Security News reported that the command drops a ZIP archive into the user&#8217;s AppData path, extracts it locally, and launches the malware from a directory named <code>WPy64-31401</code>. That directory name is consistent with the WinPython packaging seen in earlier ModeloRAT reporting.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!1eqM!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!1eqM!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 424w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 848w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 1272w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!1eqM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png" width="852" height="166" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:166,&quot;width&quot;:852,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:132096,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!1eqM!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 424w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 848w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 1272w, https://substackcdn.com/image/fetch/$s_!1eqM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd238e466-ad00-4078-9f89-cad7da20dc9b_852x166.png 1456w" sizes="100vw"></picture><div></div></div></a></figure></div><p><a href="https://reliaquest.com/blog/threat-spotlight-help-desk-lures-drop-kongtukes-evolved-modelorat">Microsoft&#8217;s February analysis</a> of CrashFix described the same larger pattern: native Windows utilities, obfuscated PowerShell, WinPython, and a Python RAT running through <code>pythonw.exe</code> so the user does not see a console window. </p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4VhM!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4VhM!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 424w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 848w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 1272w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4VhM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png" width="859" height="133" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:133,&quot;width&quot;:859,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:93947,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4VhM!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 424w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 848w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 1272w, https://substackcdn.com/image/fetch/$s_!4VhM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc62a6fd-6206-4b1a-960f-58e7b5fa0b2b_859x133.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>The RAT beacons over HTTP, performs reconnaissance, and establishes persistence through a Run registry key. Microsoft also observed a follow-on chain creating a scheduled task named <code>SoftwareProtection</code> that executed a Python payload every five minutes.</p><p>The Teams variant reportedly adds resilience by using both a Run key and a randomly named scheduled task. That gives the operator two chances to survive cleanup. Remove the obvious startup entry and the scheduled task may still bring the implant back.</p><p>According to <a href="https://cybersecuritynews.com/hackers-hijack-microsoft-teams/">cybersecuritynews.com</a>,<br></p><blockquote><p><em>Since the malware relies on a portable Python environment to execute, tracking unusual instances of pythonw.exe running from user-writable paths like AppData can help surface suspicious activity early.</em></p><p><em>Regularly reviewing new scheduled task registrations and registry run key changes can help catch persistence attempts before they quietly take hold.</em></p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4piX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4piX!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 424w, https://substackcdn.com/image/fetch/$s_!4piX!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 848w, https://substackcdn.com/image/fetch/$s_!4piX!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 1272w, https://substackcdn.com/image/fetch/$s_!4piX!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4piX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png" width="729" height="727" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d1f51227-bdc9-4743-8717-bd79042acc77_729x727.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:727,&quot;width&quot;:729,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:123263,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4piX!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 424w, https://substackcdn.com/image/fetch/$s_!4piX!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 848w, https://substackcdn.com/image/fetch/$s_!4piX!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 1272w, https://substackcdn.com/image/fetch/$s_!4piX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1f51227-bdc9-4743-8717-bd79042acc77_729x727.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><h2>The Actors</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!SKr_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!SKr_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 424w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 848w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 1272w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!SKr_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png" width="1456" height="626" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:626,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:152233,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!SKr_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 424w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 848w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 1272w, https://substackcdn.com/image/fetch/$s_!SKr_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb8c2eb96-eba2-4134-a6e4-3c5de7f75a3a_1848x794.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://redcanary.com/threat-detection-report/threats/kongtuke/">KongTuke</a> has been tracked as a malicious traffic distribution system that uses compromised websites, redirects, and social engineering lures to deliver malware. </p><p><a href="https://redcanary.com/threat-detection-report/threats/kongtuke/">Red Canary</a> lists KongTuke under aliases including Chaya_002, LandUpdate808, and TAG-124, and describes the group&#8217;s tradecraft as heavily tied to compromised WordPress sites and changing lure chains.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6wLh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6wLh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 424w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 848w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 1272w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6wLh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png" width="1304" height="525" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:525,&quot;width&quot;:1304,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:242064,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197850717?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!6wLh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 424w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 848w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 1272w, https://substackcdn.com/image/fetch/$s_!6wLh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a04d0a1-b3a7-4c0c-b952-9dd4dc50bd1d_1304x525.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.huntress.com/blog/malicious-browser-extention-crashfix-kongtuke">Huntress reported</a> in January 2026 that KongTuke was using a malicious Chrome extension called NexShield, a near-clone of uBlock Origin Lite, to trigger a fake &#8220;CrashFix&#8221; flow. </p><p>That campaign intentionally broke the victim&#8217;s browser experience, then told the victim to run a command to &#8220;fix&#8221; it. The payload was ModeloRAT, a Python remote access trojan reserved for domain-joined systems.</p><p>The new Teams activity keeps the same basic infection idea but changes the point of contact. Instead of waiting for a user to hit a poisoned web lure, the actor moves into the workplace chat channel and starts a support conversation.</p><h2>Conclusion</h2><p>KongTuke&#8217;s move into Teams is a practical shift. They&#8217;re taking a lure that already worked in browsers and moving it closer to the employee&#8217;s daily workflow. That removes friction and also makes the attack feel less like a web scam and more like an internal support task.</p><p></p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[The Insider Threat]]></title><description><![CDATA[Most companies still think about physical attacks as an outside problem.]]></description><link>https://covertaccessteam.substack.com/p/the-insider-threat</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/the-insider-threat</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Fri, 15 May 2026 10:10:04 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!saT9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!saT9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!saT9!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!saT9!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!saT9!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!saT9!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!saT9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1788139,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!saT9!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!saT9!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!saT9!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!saT9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F29195ea6-2605-44b1-b894-3b87f6bfe9fb_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Most companies still think about physical attacks as an outside problem.</p><p>Meaning that when we think about who is going to be breaking into our building to steal intellectual property, bug the corporate board room or gain access to the servers, its somehow, in most people&#8217;s mind, a guy in a black hoodie or balaclava sneaking in.  </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>But now ask yourself this question, if given the choice, would you rather sneak around a building in he middle of the night trying to bypass an unknown number of sensors and alarms, or simply walk through the building holding a coffee and a smile ?   </p><p>This is why, for a large number of organizations, your biggest risk will always be insider threats, or perceived insider threats.</p><h2>Two Kinds of Risk</h2><p>Most organizations fall into one of two broad physical risk categories.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!q7ad!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!q7ad!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!q7ad!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1973647,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!q7ad!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!q7ad!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb099d0ff-9ad4-4bdb-864c-2917a55593f9_1024x1024.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The first category is the business that sells merchandise.</p><p>Jewelry stores, electronics shops, laptop resellers  and other merchandise-heavy businesses have a very specific problem. They hold goods that can be grabbed, moved, fenced, resold, stripped, or converted into cash quickly. </p><p>Their physical risk is often direct theft. The attacker does not need deep access to sensitive records or internal systems. They need proximity to the product, speed, and a way out.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;e8782217-5ad4-408d-bb1b-f1b9c53101e5&quot;,&quot;duration&quot;:null}"></div><p>For those businesses, smash-and-grab attacks still, and likely will always be the norm, and what these organizations should be actively working to prevent.</p><p>That said, daytime retail attacks have become more common and more aggressive. Flash-mob style thefts changed the assumptions for businesses that used to think the worst-case physical attack would happen after closing. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;7204780f-d508-4085-a566-d640cb68aa98&quot;,&quot;duration&quot;:null}"></div><p>A group can enter during normal hours, overwhelm staff, take what they came for, and leave before a good guy with a gun arrives.  This is a big reason why understanding your threats<a href="https://covertaccessteam.substack.com/p/time-on-target"> time on target</a> is incredibly important.</p><p>The second category is the organization that does not really sell merchandise.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!vilF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!vilF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 424w, https://substackcdn.com/image/fetch/$s_!vilF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 848w, https://substackcdn.com/image/fetch/$s_!vilF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 1272w, https://substackcdn.com/image/fetch/$s_!vilF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!vilF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png" width="536" height="603.3205741626795" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:941,&quot;width&quot;:836,&quot;resizeWidth&quot;:536,&quot;bytes&quot;:1499226,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6d22c9b6-4931-49ae-8738-2634be2cca5e_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!vilF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 424w, https://substackcdn.com/image/fetch/$s_!vilF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 848w, https://substackcdn.com/image/fetch/$s_!vilF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 1272w, https://substackcdn.com/image/fetch/$s_!vilF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff771d7aa-2323-490e-a5d1-eb7adc020cdd_836x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Pension companies, banks, insurance firms and similar organizations usually do not have display cases full of goods. Yes, they have laptops, phones, network gear, but nobody is breaking into google headquarters to steal laptops, their real exposure is access.</p><p>Access to things like: documents, credentials, conversations and intellectual property.</p><p>For these companies, the attacker is trying to collect information, plant a device, photograph documents, obtain a credential etc, and this will likely represent the bulk of organizations that will hire physical pentesters.</p><p>And most of these businesses rely, or have setup a variation of <a href="https://covertaccessteam.substack.com/p/front-heavy-security-and-why-its">front heavy security</a> to protect all of the above, which usually means an expectation of catastrophic failure.</p><h2>Why It Always Boils Down to Insider Threats</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!JSul!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!JSul!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!JSul!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!JSul!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!JSul!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!JSul!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1338525,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!JSul!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!JSul!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!JSul!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!JSul!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F3554f0b9-1f09-41ec-a52c-e46fa05abc24_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For this conversation, we&#8217;re ignoring the merchandise businesses. However, do keep in mind that merchandise-based businesses do have real insider threats that happen every single day. </p><p>The former employee, the disgruntled janitor, the person who needs a few extra bucks who used to work for you or currently still does, any of these people can turn on you, knowingly or unknowingly. </p><p>So insider threats on merchandise-based businesses are a real thing. However, we are going to be focusing on who is likely to employ the vast majority of physical pen testers, and that&#8217;s the other category.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Bwt5!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Bwt5!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Bwt5!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/aaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1528756,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Bwt5!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Bwt5!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faaed6684-f980-43d4-917c-ffda1baf4320_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>A physical attacker does not need to start as an insider to become an insider threat.</p><p>They only need to get past the point where people stop questioning their presence, eg <a href="https://covertaccessteam.substack.com/p/front-heavy-security-and-why-its">front heavy security&#8217;s</a> often single point of security barrier.</p><p>Most people, when they think of a bad guy, they think of somebody who&#8217;s going to break in in the middle of the night wearing a balaclava or a black hoodie. The problem is that companies and organizations that deal with espionage, pension companies and the like, the ones that we&#8217;re discussing, it is far easier and far more effective to break in during the day when all of the alarms and cameras are off because you can sweet-talk your way past a person, past a guard, past a secretary. You cannot do that with an alarm or a camera. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!MXAi!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!MXAi!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!MXAi!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1397880,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!MXAi!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!MXAi!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1f26fb80-51ac-40d3-8695-5bf7f46df89a_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>But understand that regardless of whether it was somebody who jumped through a window or cloned a badge or broke in from the outside, or if it was somebody who was already inside, a legitimate insider threat, both of these things are going to converge to an insider threat or a perceived insider threat where everybody around you, everybody around the attacker, assumes that the attacker, either a real employee who&#8217;s turned or an actual person who&#8217;s not supposed to be there, is legitimately there, and therefore it devolves into an insider threat.</p><p></p><p>And this is where one of the biggest oversights of all physical security comes into play, and I have seen this more times than I can count, and that is even companies that hire physical pen testers to come in and pen test the building, it&#8217;s almost always the same playbook. </p><p>Try to sneak into the building and then try to gain access to some secure location, but as I just mentioned, regardless as to how the threat gets inside, it will become an insider threat.  Most physical pentesters will tell you, that once you have a foothold into the building, the game is over, they have won.</p><p>And this is the big issue.</p><h2>But Did You Test It?</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!QVfg!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!QVfg!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!QVfg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2485400,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!QVfg!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!QVfg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffdf51586-6d22-4fdf-a10a-64fd360e4d61_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>One of the first questions in security should always be, did you test it?</p><p>Not, did you buy it. Not, did the vendor promise it works, but did you test it?</p><p>This is where a lot of companies get exposed. They will talk confidently about cameras, access control, visitor management, etc,  but when you ask when they last tested a physical insider threat scenario, the answer is usually silence.</p><p>Most organizations have never done it.  They are relying on their front heavy security, their parameter barriers to protect them while not considering that anyone who bypasses these barriers will likely have complete access to everything.</p><p>I can already hear SOC members, facility managers, and security guards saying things like, ah, but our server room is always locked, or you need an access control badge to get onto any other floor. And it&#8217;s like, yes, you do, but also understand that privilege escalation, whether it&#8217;s through cyber or physical, is not a difficult task. It can rely on patience, but it&#8217;s not very difficult.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rhcU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rhcU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rhcU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2112755,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!rhcU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!rhcU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0095ab79-2651-45b5-876b-64b0917b2eec_1672x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Understand that part of front-heavy security says that any person who&#8217;s gotten beyond the security choke points or perimeter barriers is authorized to be here. </p><p>That&#8217;s the assumption. How else did you get this far into the building? And so when people are using under-door tools or lockpicking or pulling card readers off the wall, etc., but they&#8217;re inside the building during daylight hours, 99 times out of 100, people assume they must be authorized to be here and they don&#8217;t care. </p><p>And that&#8217;s one of the biggest problems. And that&#8217;s one of the reasons why front-heavy security is so dangerous.</p><h1>Ask Yourself This Question</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2l4g!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2l4g!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2l4g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2087708,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2l4g!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!2l4g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb557a94b-86a4-492c-be3d-5490a1ccae50_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Assume that there is one person inside your building who is not supposed to be there during daylight hours. Would normal employees be able to spot them if they were acting normal, dressed appropriately, and maybe even had something that looked like a real functioning badge?</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xp6k!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xp6k!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xp6k!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1215835,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!xp6k!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!xp6k!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F99c25336-31a8-4ab7-a1b2-5308b2b0458b_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Now ask yourself the question, what areas and things do normal employees have access to within your building?  This is what our insider also has access to.</p><p>Would they have access to conference rooms? Would they have access to unlocked laptops? Do employees leave badges laying around on their desks? Could they get into the server or archive rooms? What could they get access to?</p><p>And now, the big question. You, who is reading this blog, are likely to be very security-minded. That&#8217;s why you&#8217;re reading this blog. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!9CrF!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!9CrF!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!9CrF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2080707,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197816823?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!9CrF!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!9CrF!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb34b0c7b-b84d-4d1a-86c8-99f73271216f_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>So assume that you are the insider threat. Assume that you have already gotten inside your own building, inside the organization that you work at. What could you do? </p><p>Because you already have all the knowledge. You already know all the vulnerabilities, the ins and outs of the building. You know when Sally from accounting leaves doors cracked open, or you know where the keys are to the server rack or other things. </p><p>All of this information are things that actual physical attackers will discover over time. So if you were the actual insider threat, how much damage could you do, and would the security barriers that are currently in place stop you?</p><h2>Conclusion</h2><p>The purpose of this article is not to shame people who&#8217;ve never done an insider threat scenario or even a physical pen test. It&#8217;s to illustrate the point that for a large majority of companies and organizations out there, your biggest threat are going to be insiders. </p><p>And most people, most companies, most organizations have never even considered this, let alone actually tested it. And regardless as to what security vendors or your facility manager or your SOC say, until you have tested something, you have absolutely no idea how things will go.</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[John-André Bjørkhaug Has Entered The Chat]]></title><description><![CDATA[So the other week we ran another iteration of the CAT course, which was fantastic.]]></description><link>https://covertaccessteam.substack.com/p/john-andre-bjrkhaug-has-entered-the</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/john-andre-bjrkhaug-has-entered-the</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Tue, 12 May 2026 14:16:22 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!TAco!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!TAco!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!TAco!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 424w, https://substackcdn.com/image/fetch/$s_!TAco!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 848w, https://substackcdn.com/image/fetch/$s_!TAco!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 1272w, https://substackcdn.com/image/fetch/$s_!TAco!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!TAco!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png" width="1456" height="1465" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1465,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:6094441,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!TAco!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 424w, https://substackcdn.com/image/fetch/$s_!TAco!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 848w, https://substackcdn.com/image/fetch/$s_!TAco!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 1272w, https://substackcdn.com/image/fetch/$s_!TAco!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F514136ca-f5d4-45dc-a0ef-b72a6e639d0b_1980x1992.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>So the other week we ran another iteration of the CAT course, which was fantastic.  Not only did we have a great group of students, but as the instructor, its always fun to see how they go about the final day or so infiltrating live buildings to test everything that they have learned. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bkwg!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bkwg!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 424w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 848w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bkwg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg" width="400" height="400" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:400,&quot;width&quot;:400,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;https://media.licdn.com/dms/image/v2/D4D03AQFORiRPpPV4_g/profile-displayphoto-shrink_400_400/B4DZUex6D2GkAk-/0/1739978155140?e=1779926400&amp;v=beta&amp;t=NjyqXCiZ1eUzmQHKmxpkI3SDMltETHZ5CK_SMwuum9o&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="https://media.licdn.com/dms/image/v2/D4D03AQFORiRPpPV4_g/profile-displayphoto-shrink_400_400/B4DZUex6D2GkAk-/0/1739978155140?e=1779926400&amp;v=beta&amp;t=NjyqXCiZ1eUzmQHKmxpkI3SDMltETHZ5CK_SMwuum9o" title="https://media.licdn.com/dms/image/v2/D4D03AQFORiRPpPV4_g/profile-displayphoto-shrink_400_400/B4DZUex6D2GkAk-/0/1739978155140?e=1779926400&amp;v=beta&amp;t=NjyqXCiZ1eUzmQHKmxpkI3SDMltETHZ5CK_SMwuum9o" srcset="https://substackcdn.com/image/fetch/$s_!bkwg!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 424w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 848w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!bkwg!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F00405c01-4ffa-433a-a505-30d896bd29aa_400x400.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>However, I wanted to write up a post specifically about a piece of gear that has come out of Norway recently from <a href="https://www.linkedin.com/in/bjorkhaug/">John-Andr&#233; Bj&#248;rkhaug</a>, which some of you may already know for his physical &amp; cyber pentesting talks.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>What some of you may not know is that John actually creates a lot of really awesome, and custom equipment for physical pentesters that he has only recently begun selling to the public.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Tmbm!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Tmbm!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Tmbm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg" width="1033" height="900" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:900,&quot;width&quot;:1033,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:476812,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Tmbm!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Tmbm!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F86da3d81-f00f-461c-88bb-26fff892c708_1033x900.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>John gave the CAT students access to some of his previously restricted equipment, and now that it is finally ok to talk about &#8230; I wanted to talk about it.</p><p>Most people are aware that some ID cards can be cloned with things like flippers, Icopys and Proxmarks, but that is abusing vulnerabilities on the front end of the access control system, while there is in fact a more glaring vulnerability on the backend.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!S8fC!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!S8fC!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 424w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 848w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 1272w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!S8fC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png" width="1345" height="821" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e303aab3-553a-4518-abfc-0559efb5685b_1345x821.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:821,&quot;width&quot;:1345,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:167547,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!S8fC!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 424w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 848w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 1272w, https://substackcdn.com/image/fetch/$s_!S8fC!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe303aab3-553a-4518-abfc-0559efb5685b_1345x821.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Effectively, you can think of card readers, for the most part, as having two communications protocols, one for the front end and one for the back end.</p><p>The front end (in blue) is between the card and reader and this is where you might try to clone a card with things like a flipper.  </p><p>The back end (in green) is between the reader and controller, which is a totally different protocol, and almost always setup to be vulnerable to a man in the middle attack, specifically by using a very outdated protocol called Wiegand.</p><p>Think of it like this, front end comms may or may not be encrypted sufficiently, but the back end comms is almost always unencrypted. </p><p>This means, that placing a device that can both capture and replay that back end communication can open doors, even if the front end is so secure no device could duplicate a card.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CUfq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CUfq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CUfq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg" width="1172" height="805" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:805,&quot;width&quot;:1172,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:981424,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!CUfq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CUfq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9a7163ce-928a-4f65-bc9e-9341c11dc0ab_1172x805.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Enter the <a href="https://www.redteamtools.com/espkey">ESPkey</a> (challenge coin for scale), which is a postage stamp sized device that sits behind the card reader to intercept and replay valid ID cards to the controller and thus opening the door.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BvT9!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BvT9!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BvT9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg" width="466" height="466" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1456,&quot;width&quot;:1456,&quot;resizeWidth&quot;:466,&quot;bytes&quot;:215943,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!BvT9!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!BvT9!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccb05651-d9df-4120-b2a0-02892db34360_1500x1500.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Now arguably, there should be an alert if someone pulls a card reader off the wall to install one of these devices &#8230; and there very often is a tamper switch, though whether its actually wired up, monitored and acted upon is a different issue. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tBHT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tBHT!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tBHT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg" width="470" height="470" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1456,&quot;width&quot;:1456,&quot;resizeWidth&quot;:470,&quot;bytes&quot;:148129,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!tBHT!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tBHT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5041c462-e808-45ae-997c-fd88c88524fd_1500x1500.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>However, this is why I love John&#8217;s trainer, because it comes equipped with active tamper switches and runs the Wiegand protocol on the back end, which is what you will abuse with the <a href="https://www.redteamtools.com/espkey">ESPkey</a>.  </p><p>John&#8217;s <a href="https://www.covertaccessteam.com/webshop/p/rfidemon-ultra">RFIDemon Ultra</a> allows you practice bypassing optical tampers switches, install ESPkeys and then bypass the card to readers front end communication entirely.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!XdMY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!XdMY!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!XdMY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg" width="1456" height="1092" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1092,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:374572,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!XdMY!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!XdMY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17df6357-926b-4ec7-9a0a-35f2c131dcb5_1600x1200.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>When asking Chatgbt about how common Wiegand is globally today you see about 90% of facilities.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!rCPa!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!rCPa!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 424w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 848w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 1272w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!rCPa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png" width="1188" height="722" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:722,&quot;width&quot;:1188,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:204697,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!rCPa!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 424w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 848w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 1272w, https://substackcdn.com/image/fetch/$s_!rCPa!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F1df5b414-076b-442e-ab5d-5e6566aaba4d_1188x722.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>One thing that all you auditors and pentesters should realize is that telling a company or organization to simply use unclonable cards does not necessarily fix the PACS vulnerability issue, it only resolves one of its components. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!j_la!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!j_la!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 424w, https://substackcdn.com/image/fetch/$s_!j_la!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 848w, https://substackcdn.com/image/fetch/$s_!j_la!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 1272w, https://substackcdn.com/image/fetch/$s_!j_la!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!j_la!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png" width="1456" height="1104" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1104,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:909399,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197351435?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!j_la!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 424w, https://substackcdn.com/image/fetch/$s_!j_la!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 848w, https://substackcdn.com/image/fetch/$s_!j_la!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 1272w, https://substackcdn.com/image/fetch/$s_!j_la!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0ea388f3-e916-44f4-8b4f-d22d06ae84b9_1498x1136.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The reader&#8217;s John makes each serve a purpose for different training needs, from decrypting encrypted sector data, bypassing tamper switches and installing ESPkeys to simply cloning cards.</p><p>And for anyone who likes mechanically bypassing PACS systems, <a href="https://www.covertaccessteam.com/webshop/johns-merch">John&#8217;s hooks</a> are arguably some of the best I have used &#8230; and yes I do use them on real engagements all the time, with my personal favorite being &#8220;Big John&#8221;, as they incredibly thin (0.8 mm), but made from solid steel which makes them very strong.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;0d58a5d5-7547-4656-aa5a-4a2c138ccd0f&quot;,&quot;duration&quot;:null}"></div><p>So, a huge thank you to John for all the gear he makes and the time he puts into each piece of equipment.</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Chinese Engineer Allegedly Phished NASA and U.S. Military for Aerospace Software]]></title><description><![CDATA[Federal prosecutors say a Chinese aerospace engineer spent years posing as trusted U.S.]]></description><link>https://covertaccessteam.substack.com/p/chinese-engineer-allegedly-phished</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/chinese-engineer-allegedly-phished</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Tue, 12 May 2026 10:48:17 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!RBKs!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!RBKs!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!RBKs!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!RBKs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png" width="430" height="430" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:430,&quot;bytes&quot;:1608628,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197332263?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!RBKs!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!RBKs!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fea2d63e2-9c22-4afe-bbf7-4c8c57fd723b_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><strong>Federal prosecutors say a Chinese aerospace engineer spent years posing as trusted U.S. researchers to obtain restricted aerospace software and source code from NASA, the U.S. military, universities, and private defense firms.</strong></p><p><strong>Song Wu, an engineer at China&#8217;s state-owned Aviation Industry Corporation of China, allegedly used fake email accounts to impersonate people inside the American research community and request software tied to aerospace engineering and computational fluid dynamics.</strong></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p><strong>He was indicted in September 2024 on wire fraud and identity theft charges. He remains at large.</strong><br></p><h2>The Case</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Fe_8!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Fe_8!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Fe_8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg" width="1024" height="576" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:576,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!Fe_8!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Fe_8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd3121056-e4d1-4679-931c-7e38a82660d9_1024x576.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>According to the <a href="https://www.justice.gov/usao-ndga/pr/chinese-national-charged-multi-year-spear-phishing-campaign">Department of Justice</a>, Song&#8217;s campaign ran from January 2017 through December 2021. Prosecutors allege he created email accounts impersonating U.S.-based researchers and engineers, then used those accounts to request specialized software and source code used in aerospace engineering and computational fluid dynamics.</p><p>Targets included personnel at NASA, the U.S. Air Force, Navy, Army, the Federal Aviation Administration, major research universities in Georgia, Michigan, Massachusetts, Pennsylvania, Indiana, and Ohio, and private aerospace companies.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qlIo!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qlIo!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 424w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 848w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 1272w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qlIo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png" width="537" height="517.4595687331537" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:715,&quot;width&quot;:742,&quot;resizeWidth&quot;:537,&quot;bytes&quot;:720799,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197332263?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!qlIo!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 424w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 848w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 1272w, https://substackcdn.com/image/fetch/$s_!qlIo!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5361a49d-e380-4638-84b7-7ddee29e1632_742x715.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Prosecutors said the tools could support industrial and military applications, including advanced tactical missile development, aerodynamic design, and weapons performance assessment. The FBI&#8217;s wanted notice says the software was restricted or proprietary and used for aerospace engineering and computational fluid dynamics.</p><p><a href="https://oig.nasa.gov/news/nasa-investigators-expose-a-chinese-national-phishing-for-defense-software/">NASA&#8217;s Cyber Crimes Division</a> received a report that someone had created a Gmail account claiming to be an established aerospace professor who frequently collaborated with NASA. The account was asking colleagues for access to export-controlled software and source code.</p><p>NASA OIG said investigators found the impersonator had targeted dozens of U.S. professors, researchers, and engineers. In some instances, the scheme worked, and victims unknowingly violated export control laws by sharing sensitive material.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!atV-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!atV-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 424w, https://substackcdn.com/image/fetch/$s_!atV-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 848w, https://substackcdn.com/image/fetch/$s_!atV-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!atV-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!atV-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg" width="354" height="502.0720221606648" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:722,&quot;resizeWidth&quot;:354,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!atV-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 424w, https://substackcdn.com/image/fetch/$s_!atV-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 848w, https://substackcdn.com/image/fetch/$s_!atV-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!atV-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f3f906e-51bf-4d05-a492-516c5481f6d5_722x1024.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Keep in mind that China is <a href="https://covertaccessteam.substack.com/p/a-look-at-chinas-talent-programs">always attempting</a> to steal this type of info and so these styles of attacks should come as no surprise.  <a href="https://covertaccessteam.substack.com/p/from-trust-to-treachery-the-f-35">This article</a> I previously wrote about is about how one Chinese agent was able to steal the blueprints for the F-22, C-130 Spector and more.</p><h2>The Actors</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Juo4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Juo4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 424w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 848w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 1272w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Juo4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png" width="1026" height="1097" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1097,&quot;width&quot;:1026,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:249838,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197332263?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Juo4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 424w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 848w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 1272w, https://substackcdn.com/image/fetch/$s_!Juo4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F087aab9b-c6bb-421d-a97f-f81928bdc3bc_1026x1097.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Song Wu is a Chinese national, born June 12, 1985, according to the FBI. The Bureau lists him under the alias Shuimusheng Wu and identifies his occupation as engineer.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Sl5K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Sl5K!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 424w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 848w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 1272w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Sl5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png" width="1402" height="598" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:598,&quot;width&quot;:1402,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:926291,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197332263?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Sl5K!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 424w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 848w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 1272w, https://substackcdn.com/image/fetch/$s_!Sl5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F23166676-a027-409d-96e5-b3b5c605da4b_1402x598.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>At the time of the alleged campaign, Song worked for Aviation Industry Corporation of China, <a href="https://www.avic.com/en/">known as AVIC</a>. The Department of Justice describes AVIC as a Beijing-headquartered, Chinese state-owned aerospace and defense conglomerate that manufactures civilian and military aircraft and is one of the largest defense contractors in the world.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!63Mx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!63Mx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png" width="523" height="348.7864010989011" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:523,&quot;bytes&quot;:2598906,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!63Mx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For anyone who may have read my post about the &#8220;<a href="https://covertaccessteam.substack.com/p/the-man-hunting-project">Man Huntin&#8217; Project</a>&#8221;, and looking to flex their OSINT, Humit &amp; Sigint muscles for a profit, as of the time of this article Song does not have a bounty :(</p><h2>The Attack</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!aBuT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!aBuT!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!aBuT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1718335,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197332263?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!aBuT!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!aBuT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F76b9878d-0d91-4d5c-b8cb-d8dd5729406c_1672x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Song allegedly built email accounts that looked like they belonged to real people in the aerospace and engineering community. Prosecutors say the messages appeared to come from colleagues, associates, friends, or other trusted figures. The ask was direct, send the source code, make the software available, provide a copy.</p><p>NASA OIG said Song and unidentified co-conspirators conducted extensive research on targets before contacting them. They posed as real friends and colleagues who needed software copies or source code that could be used to rebuild or modify applications.</p><p>The method worked because the environment was built for collaboration. NASA researchers, university faculty, defense engineers, and aerospace specialists regularly exchange technical material with people they know. The weakness was not only the inbox. It was the informal trust path around controlled technical data.</p><p>NASA OIG identified basic tells after the fact. Song allegedly made repeated requests for the same software and failed to justify why he needed it. Those are small indicators, but they are enough when the material is export-controlled and the request arrives through a consumer email account claiming to represent a known researcher.</p><h2>Conclusion</h2><p>Whether its <a href="https://covertaccessteam.substack.com/p/a-look-at-chinas-talent-programs">China&#8217;s thousand talent program</a>, traditional <a href="https://covertaccessteam.substack.com/p/from-trust-to-treachery-the-f-35">spy craft</a> or just outright theft, this sort of espionage is so common that it should be on everyone&#8217;s radar.</p><p>When people ask, why does this happen, lets simply look at the F-35 blueprints that were stolen by <a href="https://covertaccessteam.substack.com/p/from-trust-to-treachery-the-f-35">a different Chinese spy</a>, also using the &#8220;<a href="https://covertaccessteam.substack.com/p/the-trusted-method-for-infiltration">trusted method of infiltration</a>&#8221; and according to Lockheed Martin, the project took decades to develop and cost around 2 TRILLION dollars, all of which China got to skip by stealing the blueprints.</p><p>So when people tell you why would countries like China do this &#8230; well there is your answer, and if you think this isn&#8217;t happening every day, than I have to say I think that your naive.  </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[New AI Powered Phishing As A Service]]></title><description><![CDATA[I suppose that its going to be a regular occurance that AI will be used for both good and evil moving forward.]]></description><link>https://covertaccessteam.substack.com/p/new-ai-powered-phishing-as-a-service</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/new-ai-powered-phishing-as-a-service</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Mon, 11 May 2026 05:59:54 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!ix8L!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ix8L!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ix8L!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ix8L!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1509826,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197176969?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!ix8L!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!ix8L!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6fe3a713-8883-48f6-8d88-6345ccf06fb7_1672x941.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>I suppose that its going to be a regular occurance that AI will be used for both good and evil moving forward.</p><p><a href="https://www.varonis.com/blog/bluekit">Varonis</a> says its researchers obtained access to Bluekit, arguably one of the most sophisticated AI based phishing as a service platforms on the market today.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Varonis doesn&#8217;t say exactly how they actually got access to the platform, instead simply stating that,</p><blockquote><p><em>&#8220;To see how that held up in practice, we obtained access to Bluekit and reviewed the kit from the inside.&#8221;</em></p></blockquote><p>That said, from what they have reported, this may be one of the most dangerous phishing as a service providers yet.</p><h2>The Platform</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tEN-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tEN-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 424w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 848w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 1272w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tEN-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png" width="1456" height="634" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:634,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-1&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-1" title="BlueKit-1" srcset="https://substackcdn.com/image/fetch/$s_!tEN-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 424w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 848w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 1272w, https://substackcdn.com/image/fetch/$s_!tEN-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F647e5cc5-5bb6-4e04-8ac8-03c4f7ee5b8a_1536x669.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p style="text-align: center;"><em>The Bluekit dashboard showing the main operator panel. Source varonis</em></p><p>Older phishing kits were often modular by necessity. One seller provided a credential page. Another handled domains. Another sold SMS or email delivery. Another handled Telegram bots, proxy logic, or post-compromise dashboards. Operators had to stitch those pieces together, keep infrastructure alive, avoid basic analysis, and move fast before domains were burned.</p><p>Bluekit pulls that into one control plane.</p><p>Varonis found a dashboard covering site creation, domain setup, captured logs, delivery tooling, and campaign support features. Telegram is wired in as the default exfiltration channel. Operators can buy or connect domains inside the same interface they use to manage phishing pages and victim logs.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!RaIT!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!RaIT!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 424w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 848w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 1272w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!RaIT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png" width="1456" height="276" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:276,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Bluekit-0&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Bluekit-0" title="Bluekit-0" srcset="https://substackcdn.com/image/fetch/$s_!RaIT!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 424w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 848w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 1272w, https://substackcdn.com/image/fetch/$s_!RaIT!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F052a5b1e-1ef9-4ce9-a34c-dbc71dac8efe_1536x291.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p style="text-align: center;"><em>Some of the templates Bluekit supports. Source varonis</em></p><p>The template set is broad enough to cover common account takeover paths. Varonis reviewed templates for </p><ul><li><p>cloud</p></li><li><p>email</p></li><li><p>developer</p></li><li><p>social</p></li><li><p> retail</p></li><li><p>crypto services: including iCloud, Apple ID, Gmail, Outlook, Hotmail, Yahoo, ProtonMail, GitHub, Twitter, Zoho, Zara, and Ledger. </p></li></ul><p><a href="https://www.bleepingcomputer.com/news/security/new-bluekit-phishing-service-includes-an-ai-assistant-40-templates/">BleepingComputer</a> and <a href="https://www.securityweek.com/new-bluekit-phishing-kit-features-ai-assistant/">SecurityWeek</a> both reported the same general template spread after Varonis published its findings.</p><p>The templates map directly to account takeover. Email enables BEC. Cloud accounts expose documents and collaboration. Developer platforms expose repositories, secrets, and pipelines. Crypto and retail accounts support theft and fraud. Bluekit is not built around one lure. It is built around access.</p><h2>How It Works</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BykY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BykY!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 424w, https://substackcdn.com/image/fetch/$s_!BykY!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 848w, https://substackcdn.com/image/fetch/$s_!BykY!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 1272w, https://substackcdn.com/image/fetch/$s_!BykY!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BykY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png" width="1456" height="790" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/219d9140-22f9-4033-b282-d71782fa11af_1536x833.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:790,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-4&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-4" title="BlueKit-4" srcset="https://substackcdn.com/image/fetch/$s_!BykY!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 424w, https://substackcdn.com/image/fetch/$s_!BykY!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 848w, https://substackcdn.com/image/fetch/$s_!BykY!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 1272w, https://substackcdn.com/image/fetch/$s_!BykY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F219d9140-22f9-4033-b282-d71782fa11af_1536x833.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p style="text-align: center;"><em>The target details view with session state and browser-storage dumps. Source varonis</em></p><p>Bluekit appears to be designed around the modern phishing workflow, not the old &#8220;steal password, redirect victim, hope it works&#8221; model.</p><p>The operator starts inside the dashboard. From there, the kit supports domain selection, mode selection, and template selection. Once the site is live, the operator can configure how the phishing page behaves, including login-detection actions, redirects, anti-analysis checks, spoofing options, device filters, proxy settings, and session-handling behavior.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!hhSH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!hhSH!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 424w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 848w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 1272w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!hhSH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png" width="1456" height="1045" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1045,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-3&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-3" title="BlueKit-3" srcset="https://substackcdn.com/image/fetch/$s_!hhSH!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 424w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 848w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 1272w, https://substackcdn.com/image/fetch/$s_!hhSH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb507242f-2823-4f8e-9e36-b38550a77117_1536x1102.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><em>Optional site-level controls for redirects, spoofing, and anti-analysis checks. Source varonis</em></p><p>Varonis says Bluekit tracked session state, stored repeated dumps of cookies and local storage, and kept a live view of what the target saw after login. That means the panel is not limited to collecting a username and password. It is built to surface authenticated session material after the victim interacts with the lure.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6uV6!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6uV6!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6uV6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1463815,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197176969?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!6uV6!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!6uV6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa795a96d-fa09-469b-9c5a-c1dbade40cc1_1672x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>In an AiTM attack, the attacker positions infrastructure between the victim and the legitimate service, relays the login process, and attempts to capture credentials, MFA interaction, and session cookies. Microsoft has described AiTM campaigns as attacks that intercept authentication between the user and a legitimate service to capture the session cookie after MFA is completed.</p><p>Once an attacker has a usable session token, the password and MFA prompt are no longer the whole fight. The attacker is trying to inherit the session the user already authenticated. That is why traditional MFA can fail against this class of phishing. The user may complete MFA successfully, but the attacker&#8217;s infrastructure is positioned to capture the session material created by that successful login.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2mWJ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2mWJ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 424w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 848w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 1272w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2mWJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png" width="1456" height="790" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:790,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-4&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-4" title="BlueKit-4" srcset="https://substackcdn.com/image/fetch/$s_!2mWJ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 424w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 848w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 1272w, https://substackcdn.com/image/fetch/$s_!2mWJ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbf277c8b-5e18-4569-8207-805739af9ff2_1536x833.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Bluekit&#8217;s live session view and browser-storage dumps show the direction of travel. The kit is not just harvesting credentials. It is trying to package account takeover into a managed operator view.</p><h2>The AI Layer</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7jap!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7jap!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 424w, https://substackcdn.com/image/fetch/$s_!7jap!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 848w, https://substackcdn.com/image/fetch/$s_!7jap!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 1272w, https://substackcdn.com/image/fetch/$s_!7jap!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7jap!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png" width="1456" height="860" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:860,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-6&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-6" title="BlueKit-6" srcset="https://substackcdn.com/image/fetch/$s_!7jap!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 424w, https://substackcdn.com/image/fetch/$s_!7jap!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 848w, https://substackcdn.com/image/fetch/$s_!7jap!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 1272w, https://substackcdn.com/image/fetch/$s_!7jap!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9ac25636-196b-4069-881a-66e1b06ff345_1536x907.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p style="text-align: center;"><em>A prompt-and-response view from the AI Assistant test. Source varonis</em></p><p>Bluekit&#8217;s AI Assistant is the feature that gives the kit its headline value, but the reporting suggests it is still rough.</p><p>Inside the Bluekit panel, Varonis saw multiple model options, including an abliterated </p><ul><li><p>Llama default</p></li><li><p>GPT-4.1</p></li><li><p> Claude Sonnet 4</p></li><li><p> Gemini</p></li><li><p> DeepSeek variants.</p></li></ul><p>Varonis was only able to test the default abliterated Llama model. The commercial model options appeared in the interface but required additional configuration that Varonis did not have.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xiYK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xiYK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 424w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 848w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 1272w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xiYK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png" width="791" height="558" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:558,&quot;width&quot;:791,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;BlueKit-5&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="BlueKit-5" title="BlueKit-5" srcset="https://substackcdn.com/image/fetch/$s_!xiYK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 424w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 848w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 1272w, https://substackcdn.com/image/fetch/$s_!xiYK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83bb3c03-611e-4a5c-93c8-1e52b12299fa_791x558.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p style="text-align: center;"><em>The model selector inside Bluekit&#8217;s AI Assistant. Source varonis</em></p><p>Varonis tested the AI Assistant with an executive phishing scenario involving Microsoft 365 MFA re-verification, a branded QR code, email delivery, and a credential-harvesting page.</p><p>The following is a video demo by varonis,</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;ef1b524a-a8fc-47e0-a504-979b8976c053&quot;,&quot;duration&quot;:null}"></div><p>The result was a campaign skeleton, not a finished attack. Basically, this AI will help you outline everything but still requires humans to polish things up before the attack.</p><h2>The Actors</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3Fkl!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3Fkl!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3Fkl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png" width="485" height="485" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:485,&quot;bytes&quot;:1013108,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197176969?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!3Fkl!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!3Fkl!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbb8982a-ff9a-4aab-81e0-a7a36d3f5cad_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>No public reporting has identified a named developer, group, country, or criminal crew behind Bluekit.</p><p>Varonis refers to a developer shipping new features and templates quickly, but does not attribute the kit to a known actor. SecurityWeek also reported that Bluekit had not yet been seen in a live campaign at the time of Varonis&#8217; publication.</p><h2>Prevalence</h2><p>There is no public evidence that Bluekit is currently widespread.</p><p>Varonis says the kit had been on its radar for a while and that researchers initially hoped to catch it in a live campaign. Instead, the release cadence became the story. The developer kept adding features and templates fast enough that tracking the kit&#8217;s evolution became relevant on its own.</p><p>That puts Bluekit in the watchlist category, not the epidemic category.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ZTL_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ZTL_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 424w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 848w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 1272w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ZTL_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp" width="1024" height="536" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:536,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!ZTL_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 424w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 848w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 1272w, https://substackcdn.com/image/fetch/$s_!ZTL_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7825e5db-bea0-4f33-b78e-926be098332d_1024x536.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>SecurityWeek reported in April 2026 that phishing-kit activity increased after disruption of Tycoon 2FA, with Barracuda detections across several kits rising from roughly 20 million to more than 23 million, while Tycoon lost ground to other platforms including Mamba and EvilProxy.</p><h2>Conclusion</h2><p>While Bluekit isn&#8217;t dominating the phishing attack platforms yet, I do believe that AI based, or assisted, attack platforms will soon become a dominate method for all manner of cyber attack and defense. </p><p>With how rapid AI has grown up in the last five years, it will be very interesting to see where things stand going forward into the next five.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Could You Spot Ana Montes?]]></title><description><![CDATA[Suppose I tasked you with exfiltrating extremely sensitive information out of a government office, take a moment and think about how you would do it.]]></description><link>https://covertaccessteam.substack.com/p/could-you-spot-ana-montes</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/could-you-spot-ana-montes</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Sun, 10 May 2026 14:06:18 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!prlU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!prlU!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!prlU!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!prlU!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!prlU!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!prlU!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!prlU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2090148,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!prlU!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!prlU!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!prlU!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!prlU!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F265758f4-58f9-4a32-9c45-7f9afbda395d_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Suppose I tasked you with exfiltrating extremely sensitive information out of a government office, take a moment and think about how you would do it.</p><p>Some of you might consider downloading the data onto a USB and walking it out <a href="https://theweek.com/articles/463185/how-edward-snowden-stole-cache-nsa-secrets">Ed Snowden style</a>.  Others of you might consider printing off the documents and leaving with physical paper copies.  </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!17qn!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!17qn!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 424w, https://substackcdn.com/image/fetch/$s_!17qn!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 848w, https://substackcdn.com/image/fetch/$s_!17qn!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 1272w, https://substackcdn.com/image/fetch/$s_!17qn!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!17qn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png" width="1098" height="215" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:215,&quot;width&quot;:1098,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:48993,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!17qn!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 424w, https://substackcdn.com/image/fetch/$s_!17qn!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 848w, https://substackcdn.com/image/fetch/$s_!17qn!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 1272w, https://substackcdn.com/image/fetch/$s_!17qn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F38e3fb7b-4c44-4d0c-8368-1235dfc0c59b_1098x215.png 1456w" sizes="100vw"></picture><div></div></div></a></figure></div><p>But how would you go about it &#8230;?</p><p>Allow me to introduce you to one of the oldest schools of spying and by extension exfiltrating data via KIMs or Keep In Memory &#8230; its nothing more than practice memorization, and on that note, I will introduce you to Ana Belen Montes.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tXGp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tXGp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tXGp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg" width="800" height="500" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:500,&quot;width&quot;:800,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Management lessons from the espionage of Ana Montes | NOIR for USA  (National Office for Intelligence Reconciliation- NOIR)&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Management lessons from the espionage of Ana Montes | NOIR for USA  (National Office for Intelligence Reconciliation- NOIR)" title="Management lessons from the espionage of Ana Montes | NOIR for USA  (National Office for Intelligence Reconciliation- NOIR)" srcset="https://substackcdn.com/image/fetch/$s_!tXGp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tXGp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2576b681-6d77-4faa-a310-7f2e6c22ae1f_800x500.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>By day, Montes was a respected DIA (Defense Intelligence Agency) analyst. By night, she was working for Cuban intelligence. She entered DIA in 1985 already recruited, rose into the Cuba portfolio, and became one of the U.S. government&#8217;s senior analysts on Cuban military affairs. </p><p>Federal sources and DIA training material say she operated for more than 16 years before her arrest on September 21, 2001.</p><h2>Montes&#8217; Recruitment</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!obn4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!obn4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 424w, https://substackcdn.com/image/fetch/$s_!obn4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 848w, https://substackcdn.com/image/fetch/$s_!obn4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 1272w, https://substackcdn.com/image/fetch/$s_!obn4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!obn4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp" width="1200" height="675" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:675,&quot;width&quot;:1200,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:87772,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/webp&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!obn4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 424w, https://substackcdn.com/image/fetch/$s_!obn4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 848w, https://substackcdn.com/image/fetch/$s_!obn4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 1272w, https://substackcdn.com/image/fetch/$s_!obn4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd6e83c58-34d6-4fcd-ad51-a3aec9e4bb29_1200x675.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Montes was recruited before she ever entered DIA. In 1984, while working a clerical job at the Department of Justice, she was outspoken about U.S. policy in Central America. Cuban officials assessed her as sympathetic. </p><p>The FBI later described the sequence plainly, she met with them, agreed to help Cuba, and then applied to DIA because that would give her useful access. By the time she started there in 1985, she was already a recruited agent.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2Swn!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2Swn!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 424w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 848w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2Swn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg" width="397" height="264.18545454545455" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:183,&quot;width&quot;:275,&quot;resizeWidth&quot;:397,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;For 17 years, Ana Montes lived a double life. Every day, she went to work  as an intelligence analyst for the US government and then, at night, she  would type up everything&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="For 17 years, Ana Montes lived a double life. Every day, she went to work  as an intelligence analyst for the US government and then, at night, she  would type up everything" title="For 17 years, Ana Montes lived a double life. Every day, she went to work  as an intelligence analyst for the US government and then, at night, she  would type up everything" srcset="https://substackcdn.com/image/fetch/$s_!2Swn!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 424w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 848w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!2Swn!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb79c9990-ce1d-49d0-9b0e-9aa8a25b732e_275x183.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>This type of recruitment still happens to this day and it is arguably one of the most difficult parts of weeding out spies, China for example has used the <a href="https://covertaccessteam.substack.com/p/a-look-at-chinas-talent-programs">1000 talent program</a> for years to facilitate the theft and espionage of everything they can get access to.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!tg1V!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!tg1V!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!tg1V!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg" width="444" height="447.50157728706625" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:639,&quot;width&quot;:634,&quot;resizeWidth&quot;:444,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;US Navy sailor Wenheng Zhao, 26, pleads guilty to selling sensitive  national security secrets to Chinese spy | Daily Mail Online&quot;,&quot;title&quot;:&quot;US Navy sailor Wenheng Zhao, 26, pleads guilty to selling sensitive  national security secrets to Chinese spy | Daily Mail Online&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="US Navy sailor Wenheng Zhao, 26, pleads guilty to selling sensitive  national security secrets to Chinese spy | Daily Mail Online" title="US Navy sailor Wenheng Zhao, 26, pleads guilty to selling sensitive  national security secrets to Chinese spy | Daily Mail Online" srcset="https://substackcdn.com/image/fetch/$s_!tg1V!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 424w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 848w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!tg1V!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F072dc3b6-15c9-4833-8944-7c4370ebfcfa_634x639.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Prosecutors later alleged Marta Rita Velazquez, a former U.S. government employee and SAIS classmate of Montes, introduced Montes to a Cuban intelligence officer in New York in December 1984, helped facilitate her recruitment, and accompanied her on a clandestine trip to Cuba in 1985 for training. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!wgAz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!wgAz!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 424w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 848w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!wgAz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg" width="1140" height="641" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:641,&quot;width&quot;:1140,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:51590,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!wgAz!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 424w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 848w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!wgAz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4fb8115f-300a-4e8f-b8a6-2b4861ed7c27_1140x641.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Those charges against Velazquez were allegations, not a conviction, but Montes herself pleaded guilty in 2002 to conspiracy to commit espionage for Cuba.</p><p>Inside DIA, Montes became valuable because she was legitimate. She had access. She had standing. She had subject-matter authority. CDSE describes her as a senior DIA analyst for Cuban matters, holding TS/SCI access, with authorized exposure to highly sensitive counterintelligence information.</p><p>She also passed a DIA polygraph. Security officials knew she had strong foreign policy views and had concerns about her access, but there was no hard proof she was passing classified information. The polygraph gave false comfort.</p><h2>The Exfiltration </h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Y3ix!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Y3ix!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Y3ix!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png" width="465" height="465" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:465,&quot;bytes&quot;:2004655,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Y3ix!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!Y3ix!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5860a11c-96a8-49e6-9a08-b45570b0c4a5_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>According to the FBI and CDSE, Montes avoided removing documents from work, electronically or physically. She memorized classified details, went home, typed them onto her laptop, transferred the material to encrypted disks, then delivered those disks to Cuban handlers after receiving tasking by coded shortwave radio.</p><p>Montes worked around all typical methods of data extraction checking by making her own memory the transfer medium.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!9HmQ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!9HmQ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 424w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 848w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!9HmQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg" width="487" height="487" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1080,&quot;width&quot;:1080,&quot;resizeWidth&quot;:487,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Video: Who is Ana Montes, the &#8216;most dangerous spy in America&#8217;?&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Video: Who is Ana Montes, the &#8216;most dangerous spy in America&#8217;?" title="Video: Who is Ana Montes, the &#8216;most dangerous spy in America&#8217;?" srcset="https://substackcdn.com/image/fetch/$s_!9HmQ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 424w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 848w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!9HmQ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F48e27f9c-c853-449e-bb6c-e316af97d481_1080x1080.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Cuban intelligence handled her like an access platform. They trained her in clandestine communications, coded contact, package passing, and emergency procedures. CDSE says Cuban intelligence also taught her how to beat a polygraph, though whether that specific technique worked is unknown. What is known is that she passed one in 1994, after years of spying.</p><p>She received instructions through shortwave radio numbers broadcasts, used coded systems, and met handlers in person. The FBI later built the case through physical surveillance, electronic surveillance, and covert searches. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!nTWc!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!nTWc!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 424w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 848w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!nTWc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg" width="1078" height="434" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:434,&quot;width&quot;:1078,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Knowing Famous People | Austin Gisriel&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Knowing Famous People | Austin Gisriel" title="Knowing Famous People | Austin Gisriel" srcset="https://substackcdn.com/image/fetch/$s_!nTWc!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 424w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 848w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!nTWc!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F381cadaa-9101-4430-ac4b-22a32afa2c9f_1078x434.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Investigators wanted to identify her handler before arresting her, but after 9/11 Montes was about to be assigned work related to U.S. war plans. The FBI and DIA moved before she could access and pass that material.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!ou4H!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!ou4H!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!ou4H!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg" width="396" height="500" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:500,&quot;width&quot;:396,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;A DC Resident Spied for Cuba for Years. How Did She Get Away With It? -  Washingtonian&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="A DC Resident Spied for Cuba for Years. How Did She Get Away With It? -  Washingtonian" title="A DC Resident Spied for Cuba for Years. How Did She Get Away With It? -  Washingtonian" srcset="https://substackcdn.com/image/fetch/$s_!ou4H!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 424w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 848w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!ou4H!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4550fd8d-f9a3-4fb7-8303-8facdb7506bd_396x500.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Montes acknowledged revealing the identities of four American undercover intelligence officers working in Cuba. AP reported that prosecutors also said she disclosed secrets so sensitive they could not be described publicly, including information tied to U.S. surveillance of Cuban weapons.</p><p>She was sentenced to 25 years in prison. She was released in January 2023 after serving more than 20 years.</p><h2>Detecting a Montes Today</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!yY6P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!yY6P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!yY6P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png" width="534" height="534" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:534,&quot;bytes&quot;:1607578,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/197101852?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!yY6P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!yY6P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2aee508f-e9a3-46f4-8d92-a63fddc622c1_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Could you spot her today?</p><p>Most SOCs have methods and tools to detect data exfiltration, unauthorized access, etc, but in cases like this, nothing unauthorized was accessed, nothing was copied and nothing was printed that didn&#8217;t need to be. </p><p>The company or organization that you work for almost assuredly has sensitive information that would devastate the them if leaked or compromised.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!FwcR!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!FwcR!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!FwcR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png" width="476" height="476" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:476,&quot;bytes&quot;:1252600,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/186713722?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!FwcR!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!FwcR!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb033f99c-0775-4bd2-96ca-e8d488ee1243_1024x1024.png 1456w" sizes="100vw" loading="lazy" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Montes isn&#8217;t just relying on memorizing documents, she is relying on <a href="https://covertaccessteam.substack.com/p/the-trusted-method-for-infiltration">the trusted method</a> of infiltration, which is something every organization should be aware of, and have a strategy for combating. </p><h2>Conclusion</h2><p>One of the reasons why Montes was able to spy for nearly two decades is because methods like this are not only affective but incredibly difficult to spot.  </p><p>So I ask again, could the systems and protections that you currently have in place, at your own organization, catch the Ana Montes who may currently be working inside your agency ?<br><br>Remember, its not enough to say, hypothetically I could if &#8230; Ask if the current tools, procedures and systems you have in place today would actually catch her.</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Interview with Patrick Laverty]]></title><description><![CDATA[Patrick is a senior penetration testing consultant specializing in risk analysis, social engineering, and OSINT.]]></description><link>https://covertaccessteam.substack.com/p/interview-with-patrick-laverty-fb6</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/interview-with-patrick-laverty-fb6</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Sat, 09 May 2026 15:09:53 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/197013359/e8c90e50b7931652c6b077758934edb3.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Patrick is a senior penetration testing consultant specializing in risk analysis, social engineering, and OSINT. He holds certifications including CESE, OSCP, and CEH, and has completed the CAT course. He is also the creator of Layer 8 Conference, a leading event focused on social engineering and OSINT. <br><br>The Layer 8 Conference is June 5-6 in Boston and you can find out more &amp; buy tickets here <br><br>https://www.zeffy.com/en-US/ticketing/layer-8-conference</p>]]></content:encoded></item><item><title><![CDATA[Toronto Police Seize First Known SMS Blasters in Canada]]></title><description><![CDATA[Toronto Police say three men used mobile SMS blasters across the Greater Toronto Area, forcing phones onto fake cell networks and pushing fraud texts directly into victims&#8217; inboxes.]]></description><link>https://covertaccessteam.substack.com/p/toronto-police-seize-first-known</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/toronto-police-seize-first-known</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Wed, 06 May 2026 12:36:28 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!-Duj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!-Duj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!-Duj!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 424w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 848w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 1272w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!-Duj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png" width="1456" height="798" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/cff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:798,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1589387,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196649794?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!-Duj!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 424w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 848w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 1272w, https://substackcdn.com/image/fetch/$s_!-Duj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fcff67557-9dd1-4794-b2bb-2be49313f048_2427x1330.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.tps.ca/media-centre/news-releases/65760/">Toronto Police say </a>three men used mobile SMS blasters across the Greater Toronto Area, forcing phones onto fake cell networks and pushing fraud texts directly into victims&#8217; inboxes.</p><p>Police say tens of thousands of phones connected to the rogue devices. They also recorded more than 13 million network disruptions, including disruptions that could interfere with access to 911. Toronto Police called it the first known SMS blaster case in Canada.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>The Case</h2><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;636b556d-2c9b-4e4f-8830-4c70f02c8609&quot;,&quot;duration&quot;:null}"></div><p>The investigation, called <a href="https://www.tps.ca/media-centre/news-releases/65760/">Project Lighthouse</a>, began in November 2025 after a cybersecurity partner alerted police to a mobile SMS blaster operating in downtown Toronto.</p><p>The device was not fixed to a building. Police say it was mobile. That matters.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!UoUS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!UoUS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 424w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 848w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 1272w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!UoUS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png" width="521" height="411.6446776611694" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:527,&quot;width&quot;:667,&quot;resizeWidth&quot;:521,&quot;bytes&quot;:425973,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196649794?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!UoUS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 424w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 848w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 1272w, https://substackcdn.com/image/fetch/$s_!UoUS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fed04c475-01a8-4851-aac7-29e4a15dd419_667x527.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>A rogue tower sitting in one place is a problem. A rogue tower moving through the city is a roaming attack platform. It can pass through dense residential blocks, commercial zones, transit corridors, and event areas, hit thousands of devices, then disappear back into traffic.</p><p>Police say the blasters impersonated legitimate cellular infrastructure. Nearby phones connected to them. Once connected, victims received fraudulent text messages that appeared to come from trusted organizations, including banks, Canada Post, 407 ETR, and parking authorities. The links led to phishing pages built to steal credentials, payment data, or identity information.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;526a607a-755d-423c-8a0d-73e95fd8e322&quot;,&quot;duration&quot;:null}"></div><p>According to <a href="https://www.tps.ca/media-centre/news-releases/65760/">Toronto Police</a>, the disruptions could last from seconds to several minutes. During those windows, affected devices could have trouble connecting to legitimate cellular towers, including for emergency calls.</p><h2>The Actors</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!LSBD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!LSBD!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!LSBD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1990526,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196649794?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!LSBD!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 424w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 848w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 1272w, https://substackcdn.com/image/fetch/$s_!LSBD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F211ea78c-6d3d-4e78-9e5d-e3b8f7423457_1672x941.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Dafeng Lin, 27, of Hamilton, was arrested on March 31, 2026. Police charged him with offences including mischief, mischief endangering life, personation with intent to gain advantage, use of a computer system with intent to commit an offence, fraud under $5,000, possession of property obtained by crime, and possession of instruments to be used to commit forgery.</p><p>Junmin Shi, 25, of Markham, was also arrested on March 31. Police charged him with offences including mischief to data, mischief endangering life, personation with intent to gain advantage, fraudulently intercepting a computer system function, use of a computer system with intent to commit an offence, and possession of instruments to be used to commit forgery.</p><p>Weitong Hu, 21, of Markham, turned himself in on April 21. Police charged him with conspiracy to commit an indictable offence, intercepting private communication, trafficking identity information, possessing identity documents, unauthorized possession of credit card data, and personation with intent to gain advantage.</p><p>In total, police say the three men face 44 charges.</p><h2>Tradecraft</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0c0f!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0c0f!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 424w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 848w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 1272w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0c0f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png" width="1382" height="869" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:869,&quot;width&quot;:1382,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:227455,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196649794?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!0c0f!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 424w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 848w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 1272w, https://substackcdn.com/image/fetch/$s_!0c0f!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F94b6864b-2d5b-4736-840c-5b38c6910686_1382x869.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>SMS blasters sit in the same family as <a href="https://sls.eff.org/technologies/cell-site-simulators-imsi-catchers">IMSI</a> catchers, <a href="https://www.cato.org/policy-analysis/stingray-new-frontier-police-surveillance">StingRays</a>, and cell-site simulators. The names get used differently, but the principle is close enough: the attacker brings fake cellular infrastructure into range and tricks phones into talking to it.</p><p>StingRays became known through law enforcement and intelligence use. IMSI catchers were built to identify devices, locate phones, and map handsets in a target area. SMS blasters take that same radio deception and turn it toward mass fraud.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0NQB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0NQB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 424w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 848w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 1272w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0NQB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png" width="620" height="572" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:572,&quot;width&quot;:620,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Feds side with Anaheim Police over secret 'stingray' cellphone tracking &#8211;  Orange County Register&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Feds side with Anaheim Police over secret 'stingray' cellphone tracking &#8211;  Orange County Register" title="Feds side with Anaheim Police over secret 'stingray' cellphone tracking &#8211;  Orange County Register" srcset="https://substackcdn.com/image/fetch/$s_!0NQB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 424w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 848w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 1272w, https://substackcdn.com/image/fetch/$s_!0NQB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7f73a10e-76fb-46a0-9366-0ba12cbe168a_620x572.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The device pretends to be a legitimate cell tower. Nearby phones connect because they are designed to attach to the strongest or most available network. In many cases, the attacker forces the handset down to weaker network behavior, often 2G, where protections are thinner. Once the phone is attached, the blaster can push scam texts directly to the device, bypassing normal carrier filtering.</p><p>That is why the method is dangerous. The victim does not install malware. They do not join a bad Wi-Fi network. The attack happens through the cellular layer the phone already trusts.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!KbgE!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!KbgE!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 424w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 848w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 1272w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!KbgE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp" width="514" height="867.1914285714286" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1181,&quot;width&quot;:700,&quot;resizeWidth&quot;:514,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Free Stingray Detector Apps that Spies Could Outsmart - Advanced Security  Protection - TSCM / Debugging&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Free Stingray Detector Apps that Spies Could Outsmart - Advanced Security  Protection - TSCM / Debugging" title="Free Stingray Detector Apps that Spies Could Outsmart - Advanced Security  Protection - TSCM / Debugging" srcset="https://substackcdn.com/image/fetch/$s_!KbgE!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 424w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 848w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 1272w, https://substackcdn.com/image/fetch/$s_!KbgE!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffff44043-3e82-44f6-a5a4-7f846c58468e_700x1181.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For users, detection is imperfect. Warning signs include a sudden drop from 5G or LTE to 2G or &#8220;E,&#8221; emergency-only service, strange loss of signal, failed calls, or scam texts arriving right after a service glitch. None of that proves a rogue tower is nearby, but it is enough to treat the message as hostile.</p><h2>Conclusion</h2><p>This type of attack vector isn&#8217;t new, but it was the first time the Canadian police had seen this used in this way.  </p><p>Unfortunately, these devices are not difficult to create or use, but typically criminals who have the cyber abilities to do so often find that they have other professional opportunities that would usually keep them from turning to crime.</p><p>One of the things that concerns me the most about the use of these attacks is the inability for citizens to utilize emergency services by effectively taking thousands of phones offline.</p><p>Stay safe out there.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Last Week's CAT Course]]></title><description><![CDATA[Apologies for being away for about a week, but I was up in Copenhagen teaching a new group all the ins and outs of covert entry.]]></description><link>https://covertaccessteam.substack.com/p/last-weeks-cat-course</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/last-weeks-cat-course</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Tue, 05 May 2026 08:21:00 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!R6dk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!R6dk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!R6dk!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 424w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 848w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 1272w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!R6dk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png" width="1448" height="1086" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1086,&quot;width&quot;:1448,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2418138,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196517072?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!R6dk!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 424w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 848w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 1272w, https://substackcdn.com/image/fetch/$s_!R6dk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F17e365c8-3237-4e3b-987f-426bca25db53_1448x1086.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><br>Apologies for being away for about a week, but I was up in Copenhagen teaching a new group all the ins and outs of covert entry.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Pu5I!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Pu5I!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Pu5I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg" width="1456" height="1092" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1092,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1000202,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196517072?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Pu5I!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!Pu5I!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F6cc604cc-4f91-4ce3-b8f4-e7a55558279e_1600x1200.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Wanted to say thank you to everyone who was there, you were a great group to work with, and I really enjoyed watching how you all worked through the final day infiltration.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!0v7a!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!0v7a!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!0v7a!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg" width="1456" height="1092" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1092,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:374572,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196517072?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!0v7a!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 424w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 848w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!0v7a!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7153ff0e-baff-4acb-9e22-cfd8325bf6d9_1600x1200.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For anyone who wasn&#8217;t there, despite telling the client site not to inform their staff about the engagement, they seemed to have let the word slip to all employees, which made the student&#8217;s job much more difficult.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!1hcA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!1hcA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 424w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 848w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!1hcA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg" width="474" height="632" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1600,&quot;width&quot;:1200,&quot;resizeWidth&quot;:474,&quot;bytes&quot;:1227300,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196517072?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!1hcA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 424w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 848w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!1hcA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F916060a6-77e8-4c5c-b2d7-fdfd75b877a4_1200x1600.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>But despite the fact that the entire office was on high alert, the students still managed to not only infiltration the building and accomplish all the flags, they came up with some really clever methods of infiltration and I will let them tell you about sometime &#8230; if they choose to.<br></p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4mX6!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4mX6!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 424w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 848w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4mX6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg" width="499" height="230.87413194444446" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/be5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:533,&quot;width&quot;:1152,&quot;resizeWidth&quot;:499,&quot;bytes&quot;:244273,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/196517072?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F24cd59e5-c97b-4434-9f68-0d4de2946f53_1152x2048.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4mX6!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 424w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 848w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!4mX6!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe5968fc-8470-4c0c-96e5-fbccc7cd6e63_1152x533.jpeg 1456w" sizes="100vw"></picture><div></div></div></a></figure></div><p>Keep up the training, and let me know the next time you use Bob to gain persistence inside a target building</p><h1><br>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul>]]></content:encoded></item><item><title><![CDATA[Interview with Alex Cole]]></title><description><![CDATA[Alex is a cyber and physical security professional with more than 17 years of IT experience in the NHS.]]></description><link>https://covertaccessteam.substack.com/p/interview-with-alex-cole</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/interview-with-alex-cole</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Tue, 05 May 2026 07:45:25 GMT</pubDate><enclosure url="https://api.substack.com/feed/podcast/196514319/6cf8f5a3938ae543f08c9097ff13a161.mp3" length="0" type="audio/mpeg"/><content:encoded><![CDATA[<p>Alex is a cyber and physical security professional with more than 17 years of IT experience in the NHS. </p><p>He has also trained as a locksmith and developed expertise in covert access and physical penetration testing. Alex designs and manufactures the FIT&#8217;D secure door bypass units and brings a practical, cross-domain approach to real-world security assessments.<br><br>You can find Alex at:<br><br>https://www.linkedin.com/in/alex-j-cole/</p><p>https://assured.redsec.uk/</p><p>https://redsec.uk/<br><br>https://assured.redsec.uk/FITD1/</p>]]></content:encoded></item><item><title><![CDATA[Recon Playbook]]></title><description><![CDATA[When running a physical pentest, a lot of your time, probably around half, is going to be dedicated to various forms of recon.]]></description><link>https://covertaccessteam.substack.com/p/recon-playbook</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/recon-playbook</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Wed, 22 Apr 2026 09:43:17 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!Of5D!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Of5D!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Of5D!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 424w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 848w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 1272w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Of5D!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png" width="1073" height="528" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/feadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:528,&quot;width&quot;:1073,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:116690,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/195009627?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Of5D!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 424w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 848w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 1272w, https://substackcdn.com/image/fetch/$s_!Of5D!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffeadc081-85ea-4959-ab1a-0879d8925fc0_1073x528.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>When running a physical pentest, a lot of your time, probably around half, is going to be dedicated to various forms of recon.  Given that, and the fact that you will likely never be given as much time on an engagement as you&#8217;d like, you always want to optimize what you&#8217;re up to.  </p><p>This means both collecting specific intelligence and accomplishing tasks based upon that intelligence as quickly and effectively as possible.</p><p>At every phase of recon, you should know what information you are trying to get, why you need it, and what you can actually accomplish with it.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!_eeI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!_eeI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 424w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 848w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 1272w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!_eeI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png" width="485" height="554.462915601023" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1341,&quot;width&quot;:1173,&quot;resizeWidth&quot;:485,&quot;bytes&quot;:2672061,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/195009627?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!_eeI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 424w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 848w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 1272w, https://substackcdn.com/image/fetch/$s_!_eeI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F251c8706-72e7-40c3-b85e-aff908946e5d_1173x1341.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>For example, suppose you&#8217;re doing long range recon on a target from a hotel room.  Exactly what information will be enough for you to move onto short range recon?</p><p>This post is going to hopefully help black teams best optimize their recon time both in what info they are looking for, and what they can actually do during each phase.</p><p>The information comes directly from CAT&#8217;s Recon Playbook.</p><h2>The phases of recon</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4rgh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4rgh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 424w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 848w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 1272w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4rgh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png" width="499" height="497.6291208791209" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1452,&quot;width&quot;:1456,&quot;resizeWidth&quot;:499,&quot;bytes&quot;:8759663,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:&quot;&quot;,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/159462699?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!4rgh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 424w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 848w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 1272w, https://substackcdn.com/image/fetch/$s_!4rgh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F2f14b20f-9b04-4f06-9523-c2004c66bf0e_2028x2022.png 1456w" sizes="100vw" loading="lazy" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Recon should generally move through four phases: OSINT, long range, short range, and embedded.</p><p>That order matters because proximity creates risk. The closer you get, the easier it is to be noticed, remembered, challenged, or forced into bad decisions. </p><p>Each phase should do two things. First, it should answer a defined set of questions. Second, it should let you accomplish practical work that reduces friction later.</p><p>It should be noted that while engagements have many overlaps in approaches, recon types, vulnerabilities, etc not all targets will allocate each type of recon.  Further, each target building will have different requirements, info to gather and tasks to accomplish, but this post should give you an excellent template to use for all engagements.</p><p>Here is another hypothetical for you; suppose you are the team lead and you have outlined that during long range recon you need the following info:</p><ul><li><p>Employee Dress Code</p></li><li><p>Employee arrival &amp; exit times</p></li><li><p>Most used entrances / exits</p></li><li><p>Employee badges and lanyards</p></li></ul><p>However, after an entire day, your team reports back that they have only managed to get the employee dress code.  Do you move onto short range recon with the info you&#8217;ve gotten, or do you allocate another day for long range recon?</p><p></p>
      <p>
          <a href="https://covertaccessteam.substack.com/p/recon-playbook">
              Read more
          </a>
      </p>
   ]]></content:encoded></item><item><title><![CDATA[Funny, Strange & Face Palm Developments in the Stait of Hormuz]]></title><description><![CDATA[On April 17, an Iranian official told Reuters that commercial ships could use the waterway, but only with approval from the Islamic Revolutionary Guard Corps and in coordination with Iran&#8217;s ports authority.]]></description><link>https://covertaccessteam.substack.com/p/funny-strange-and-face-palm-developments</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/funny-strange-and-face-palm-developments</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Mon, 20 Apr 2026 08:20:04 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!2fSe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2fSe!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2fSe!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 424w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 848w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 1272w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2fSe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png" width="1456" height="757" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:757,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1224324,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2fSe!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 424w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 848w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 1272w, https://substackcdn.com/image/fetch/$s_!2fSe!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffa0c334c-aadf-4ca1-a08c-9c1ce0ee3566_2559x1331.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>On April 17, an Iranian official told <a href="https://www.reuters.com/world/middle-east/ships-crossing-hormuz-need-irgc-ok-unfreezing-assets-part-deal-iran-official-2026-04-17/">Reuters</a> that commercial ships could use the waterway, but only with approval from the Islamic Revolutionary Guard Corps and in coordination with Iran&#8217;s ports authority. </p><p>A day later, Indian ships were reporting gunfire during transit, including one crew broadcast now circulating publicly in which mariners can be heard telling Iranian forces they had already been cleared.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h1>Who Controls What</h1><p>There has been a back and fourth involving the strait as to who is actually in control of what, but on April 17th, the IRGC started publishing this broadcast in the area to all ships.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;8baebbed-0e1c-4457-a3c8-efd920a744ed&quot;,&quot;duration&quot;:null}"></div><p>Unfortunately, relying on the Iranians to manage the strait hasn&#8217;t seemed to go well for commercial vessels, as even those that have complied with the IRGC have later come under their fire.  Whether this is intentional or out of incompetence is yet unclear.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;da159f99-af62-426d-95a2-c4bbd0c6b862&quot;,&quot;duration&quot;:null}"></div><p>After the above distress call, it was reported that two additional Indian flagged ships were attacked while crossing the strait, prompting India to summon Iran&#8217;s ambassador and register &#8220;deep concern.&#8221; </p><p><a href="https://timesofindia.indiatimes.com/india/you-gave-clearance-now-you-are-firing-let-me-turn-back-hormuz-distress-call-caught-on-tape/articleshow/130377595.cms">Indian reporting</a> identified the vessels as <em>Sanmar Herald</em> and <em>Jag Arnav</em>. Another Indian tanker, <em>Desh Garima</em>, appears to have completed transit. </p><p>At the same time as all of this is ongoing, the Pentagon has released footage of the US Navy opening fire on an Iranian-flagged cargo ship who ignored warnings to turn around over a six hour period</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;7056d6f8-51c0-4b0b-a886-cbf5b7f7d4dd&quot;,&quot;duration&quot;:null}"></div><p></p><h1>The Strait</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!LFFt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!LFFt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 424w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 848w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!LFFt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg" width="770" height="513" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:513,&quot;width&quot;:770,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;How many ships have passed the Strait of Hormuz and how many were attacked?  | US-Israel war on Iran News | Al Jazeera&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="How many ships have passed the Strait of Hormuz and how many were attacked?  | US-Israel war on Iran News | Al Jazeera" title="How many ships have passed the Strait of Hormuz and how many were attacked?  | US-Israel war on Iran News | Al Jazeera" srcset="https://substackcdn.com/image/fetch/$s_!LFFt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 424w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 848w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!LFFt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F983efbef-12f7-40d3-a70a-0f1fdbdbc756_770x513.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Hormuz is small, but it moves a huge share of the world&#8217;s seaborne energy. <a href="https://www.reuters.com/world/middle-east/what-is-strait-hormuz-why-is-it-so-important-oil-2026-04-17/">Reuters</a> reported in February that more than 20 million barrels per day of crude, condensate, and fuels moved through the strait on average last year. </p><p>Qatar sends almost all of its LNG through it, and roughly a third of global fertilizer trade, including sulphur and ammonia, also passes through the corridor.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!x1A_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!x1A_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 424w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 848w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!x1A_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg" width="1456" height="819" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:819,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:200102,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/jpeg&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!x1A_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 424w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 848w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!x1A_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa4594fad-68a7-48a9-80da-1efa10574778_1600x900.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The <a href="https://www.iea.org/about/oil-security-and-emergency-response/strait-of-hormuz">IEA</a> says about 80% of oil and oil products moving through Hormuz in 2025 was headed to Asia. On LNG, almost 90% of the volumes exported through the strait went to Asian markets, while Europe&#8217;s share was just over 10%. </p><p>The big weak point for Europe is <a href="https://www.streetinsider.com/Reuters/Europe%252Bfacing%252Bjet%252Bfuel%252Bcrunch%252Bsees%252Brecord%252Binflows%252Bfrom%252BUS%252C%252BNigeria/26317448.html?classic=1">jet fuel</a>. Europe had been getting nearly 75% of its jet fuel imports, about 375,000 barrels per day, from the Gulf before the current disruption. </p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pWQq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pWQq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 424w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 848w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 1272w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pWQq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png" width="1160" height="255" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:255,&quot;width&quot;:1160,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:42133,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pWQq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 424w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 848w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 1272w, https://substackcdn.com/image/fetch/$s_!pWQq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc3bc5ebd-43f8-4c1f-86a8-21ebba0a9f36_1160x255.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>As those flows tightened, <a href="https://www.tradingview.com/news/reuters.com%2C2026%3Anewsml_L6N40Z0ZV%3A0-europe-facing-jet-fuel-crunch-sees-record-inflows-from-us-nigeria/">Europe started pulling record</a> replacement volumes from the United States and Nigeria. </p><h1>Britain&#8217;s Turn at Playing Navy</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Pvkx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Pvkx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 424w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 848w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 1272w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Pvkx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png" width="1170" height="541" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e22587de-29ec-42e5-86de-11888129d3fc_1170x541.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:541,&quot;width&quot;:1170,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:325425,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Pvkx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 424w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 848w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 1272w, https://substackcdn.com/image/fetch/$s_!Pvkx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe22587de-29ec-42e5-86de-11888129d3fc_1170x541.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Britain started this crisis trying to stay out of it. Keir Starmer said London would not be dragged into the Iran war and would not support the U.S. blockade of Hormuz. Days later, the same government was talking up a naval mission to protect shipping and restore freedom of navigation. That would have sounded more convincing if the Royal Navy still had the weight to carry the line. </p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!o_4Q!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!o_4Q!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 424w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 848w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 1272w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!o_4Q!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png" width="1138" height="254" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:254,&quot;width&quot;:1138,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:50626,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!o_4Q!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 424w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 848w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 1272w, https://substackcdn.com/image/fetch/$s_!o_4Q!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F4d6df0b3-8d69-4145-97fe-a44da846fd7b_1138x254.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><a href="https://www.reuters.com/business/aerospace-defense/iran-war-exposes-weakened-state-britains-armed-forces-2026-04-16/">Reuters</a> reported that Britain&#8217;s permanent warship presence in the Middle East had already ended when HMS Lancaster was decommissioned in Bahrain in December 2025, and the only destroyer sent to the region, HMS Dragon, made it as far as the Mediterranean before having to be sent for maintenance due to mechanical problems. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;59e68b06-c7cd-4c33-997a-b7ae65ec9a0f&quot;,&quot;duration&quot;:null}"></div><p></p><h1>Europe&#8217;s Reaction Is Very European</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Bil-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Bil-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 424w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 848w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 1272w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Bil-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png" width="770" height="350" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:350,&quot;width&quot;:770,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:65074,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Bil-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 424w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 848w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 1272w, https://substackcdn.com/image/fetch/$s_!Bil-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdae07794-5a34-4378-b83c-8bca2ec6b8ca_770x350.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://africa.businessinsider.com/local/markets/europe-set-to-copy-egypts-suez-canal-tolls-with-pound20bn-new-canal-plan-amid-strait/nr72680">Europe has decided</a> to carve a fresh canal through Turkey and start charging ships like a discount Suez.  The idea is to spend around 20 billion euros over the next decade or so to build an artificial route connecting the Black Sea and the Sea of Marmara, similar to the Suez Canal.</p><blockquote><p><em>Europe is moving closer to creating a Suez Canal-style maritime corridor as Turkey advances the &#163;20 billion Istanbul Canal, a project designed to establish a toll-based shipping route linking the Black Sea and the Sea of Marmara and reshaping global trade flows.</em></p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!mwcO!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!mwcO!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 424w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 848w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 1272w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!mwcO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png" width="1456" height="700" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:700,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:559864,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!mwcO!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 424w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 848w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 1272w, https://substackcdn.com/image/fetch/$s_!mwcO!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa514dfa9-0269-4fac-8b12-30a6cffe3540_1577x758.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>According to the <a href="https://africa.businessinsider.com/local/markets/europe-set-to-copy-egypts-suez-canal-tolls-with-pound20bn-new-canal-plan-amid-strait/nr72680">Business Insider</a>, </p><p><em>&#8220;Under the United Nations Convention on the Law of the Sea (UNCLOS), ships have the right of &#8220;transit passage&#8221; through straits used for international navigation.</em></p><p><em>Countries bordering such straits cannot demand payment for passage, though limited service-related charges are permitted.</em></p><p><em>Egypt and Panama, however, levy tolls because the Suez Canal and Panama Canal are man-made waterways.</em></p><p><em>Natural routes such as the Bosphorus and the Strait of Hormuz generally cannot impose transit fees.</em></p><p><em>Turkey&#8217;s proposal to build an artificial canal parallel to the Bosphorus would allow Ankara to introduce structured tolls without breaching international law.&#8221;</em></p><p>Basically the idea is simply this</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2Gd8!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2Gd8!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 424w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 848w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 1272w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2Gd8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png" width="478" height="612.0337837837837" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:758,&quot;width&quot;:592,&quot;resizeWidth&quot;:478,&quot;bytes&quot;:355439,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194767974?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2Gd8!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 424w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 848w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 1272w, https://substackcdn.com/image/fetch/$s_!2Gd8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7da1e876-05d1-44e4-a6e5-a63f4286e6b2_592x758.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><h2>Conclusion</h2><p>So what is going on in the Strait these days is honestly anyone&#8217;s guess, but it has made for some very entertaining reading. </p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Red Team vs Black Team]]></title><description><![CDATA[I get asked why use the term black team instead of red team &#8230; and, well, this post will hopefully answer that question.Covert Access Team is a reader-supported publication.]]></description><link>https://covertaccessteam.substack.com/p/red-team-vs-black-team</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/red-team-vs-black-team</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Sat, 18 Apr 2026 17:34:57 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!E2JX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!E2JX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!E2JX!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!E2JX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1441046,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!E2JX!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!E2JX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8833d3cc-6d99-413c-b84d-3fd70133ac08_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p></p><p>I get asked why use the term black team instead of red team &#8230; and, well, this post will hopefully answer that question.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Let&#8217;s start off by addressing that in the security industry, we basically already have too many colors to play with.  For those who don&#8217;t believe me, what follows describes a potentially real situation:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4gRp!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4gRp!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4gRp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/afa65875-406b-42ad-917e-942bd445a397_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2400921,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4gRp!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!4gRp!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fafa65875-406b-42ad-917e-942bd445a397_1536x1024.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>You are a white hat hacker who has been contracted to work with a group of grey hat hackers for a simulated purple team engagement during a black box network pentest.</p><p>So then, why did I add another color to the list? By the end of the article I hope you will understand why.</p><p><em><strong>BIG DISCLAIMER</strong></em></p><p><em>I have had the privilege to work besides some extremely talented physical red teamers throughout my career, and this article in no way is saying that everyone on a red team doesn&#8217;t know physical pentesting, far from it.  This article (and the term black team) is more for an  industry standardization and I hope that is clear throughout this article.</em></p><h1>What a Red Team Usually Is</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!PNdX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!PNdX!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!PNdX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png" width="506" height="506" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:506,&quot;bytes&quot;:1991922,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!PNdX!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!PNdX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa5174148-7a67-47c7-9f7a-39c8f10c4d3e_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Red teaming effectively means the simulated bad guys, and on paper, that&#8217;s exactly right, but now lets look at industry.</p><p>Look for &#8220;red team&#8221; job listings and you will come up with a very specific skill set &#8230; cyber</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!7k2t!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!7k2t!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 424w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 848w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 1272w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!7k2t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png" width="748" height="538" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:538,&quot;width&quot;:748,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:89974,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!7k2t!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 424w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 848w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 1272w, https://substackcdn.com/image/fetch/$s_!7k2t!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F9bf8d90f-7572-4331-bdde-bcd73a8f5140_748x538.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Having glanced over a dozen or so &#8220;red team&#8221; job listings while making this post, they were all the same.  </p><p>Asking AI to describe how to get onto a red team, and you get something like:</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Ya3P!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Ya3P!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 424w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 848w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 1272w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Ya3P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png" width="1019" height="606" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:606,&quot;width&quot;:1019,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:157090,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Ya3P!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 424w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 848w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 1272w, https://substackcdn.com/image/fetch/$s_!Ya3P!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0aa80984-9895-4c23-a5bd-151c0fcfd133_1019x606.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>In general, this isn&#8217;t a problem because the overwhelming majority of red teams are running some form of cyber pentesting, so it makes sense to require these skills.</p><p>But that brings me to the very first major distinction, which is that the skills to hack a website are not the same to crack a safe.</p><p></p><h1>Skills Are Not Interchangeable</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!xrqx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!xrqx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 424w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 848w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 1272w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!xrqx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png" width="565" height="563.2947686116701" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:991,&quot;width&quot;:994,&quot;resizeWidth&quot;:565,&quot;bytes&quot;:1614048,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!xrqx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 424w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 848w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 1272w, https://substackcdn.com/image/fetch/$s_!xrqx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fef074477-8c8e-4a5e-9e15-77e2aeb43265_994x991.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Being able to pop a web application does not mean you can work a door, or even a person. Knowing how to deauth Wi-Fi does not mean you can crawl up the side of a building. These are simply different disciplines. They overlap in mindset, not in execution.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!2maS!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!2maS!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!2maS!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!2maS!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!2maS!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!2maS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png" width="513" height="513" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:513,&quot;bytes&quot;:1463007,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!2maS!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!2maS!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!2maS!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!2maS!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5c5b6201-5c8c-421e-a8a2-d25933c13d62_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>A lot of firms still sell them as if they are interchangeable. This makes sense because sales are often told to say yes to any client request. The client asks for a physical intrusion. Someone looks around the room, finds the cyber pentester, and asks a version of the same stupid question: you hack websites, right, so can you break into the bank?</p><p>Unfortunately for the client, the answer to that question, is that the hacker, and indeed the salesman could likely break into the bank successfully.  That&#8217;s not because either are trained or incredibly skilled at covert intrusion, but because the bank&#8217;s physical security, like many organizations, is terrible.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;0ca1988a-89ba-4833-b0ae-65352aeda10f&quot;,&quot;duration&quot;:null}"></div><p>If you want to understand the state of many organizations&#8217; physical security, think of it this way, </p><p>Most untrained, or minimally trained, people can breach most buildings and gain access to sensitive or even critical areas.  If we said the same thing about cyber security, everyone would freak out.</p><p>Your cyber security is so bad that someone with a few hours of hack the box training can take over your network and do anything they want &#8230; yep, its pretty bad.</p><h1>You Cannot Test What You Do Not Recognize</h1><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;8e736d11-69cb-4dea-931c-a168be1e7510&quot;,&quot;duration&quot;:null}"></div><p>The next problem is even simpler. If the team does not know what a physical vulnerability looks like, they will not test it.</p><p>A web app hacker might walk past a euro cylinder sticking too far out of a door and not even register it as a weakness. They may not see a badly fitted strike plate, a misaligned latch, a reader mounted in a stupid place, a reception process that can be manipulated, or an access control system that still runs Wiegand on the back end.</p><p>Nobody in cyber knows every path in, just like nobody in physical knows every bypass route &#8230; that&#8217;s not the point here.  Its that if someone who only knows the basics, then they will only test the basics.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!H8RP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!H8RP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!H8RP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png" width="510" height="510" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:510,&quot;bytes&quot;:1152522,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!H8RP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!H8RP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F27281393-bf3c-4b90-b15b-e854dc1f743c_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Lets put this a different way. If the only thing you know in cyber is how to exploit an IDOR, then IDOR is what you will look for. That is what you will test. That is what will end up in the report.  And that is the ONLY thing that will be in the report.</p><p>If the only thing you know in physical is how to use a Flipper or tailgate, then badge cloning and tailgating is what you will test, and it will be the only thing tested.</p><p>Everything else gets missed.</p><p>In a cyber pentest, you don&#8217;t stop until all objectives are achieved and all potential vulnerabilities checked.  </p><p>But in a physical pentest, all too often, the engagement stops as soon as a single objective is accomplished and no further vulnerabilities are checked.  </p><h1>Why Clients Get Confused</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!sGJ4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!sGJ4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!sGJ4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png" width="561" height="561" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:561,&quot;bytes&quot;:2120669,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!sGJ4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!sGJ4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F78c685f1-af8a-4812-8dc5-be87433f4d55_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><blockquote><p><em>Client: &#8220;We already hired a red team this year.&#8221;</em></p><p><em>You: &#8220;What was the scope of the project?&#8221;</em></p><p><em>Client: &#8220;Network and wifi pentesting.&#8221;</em></p></blockquote><p>The problem is the label does too much work. &#8220;Red team&#8221; sounds comprehensive. Buyers hear it and assume somebody tested the whole attack surface. </p><p>In reality, most engagements are still roughly ninety-five percent cyber and five percent physical, if physical appears at all. </p><p>So the client locks down their network security and assumes they are safe and covered, when in reality anyone off the street could likely walk in and do anything they wanted.  Which of course includes cyber based hacking.</p><p></p><h1>Yes, It Really Is That Bad</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!jUUZ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!jUUZ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!jUUZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2437799,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!jUUZ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!jUUZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F31117d73-1687-4a5b-9ef1-5788ea20f273_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>One of the most common objections in physical pentesting is some version of this: </p><blockquote><p><em>We already know you can get inside, so why should we pay you to prove it?</em></p></blockquote><p>That is the same logic as saying: </p><blockquote><p><em>We already know you can get into our servers through the internet, so why test them?</em> </p></blockquote><p>Nobody serious says that in cyber, but its an all too common statement in physical.</p><p>The reason most untrained or minimally trained people can breach buildings and gain access to sensitive areas is because the buildings security is just that bad.</p><p>Now realize that your job is not to get inside, it&#8217;s to help secure them.  </p><p>On a cyber pentest, you will check as many potential vulnerabilities as possible, which you can only do if you know what they are and how to test them.</p><p>The same thing holds for physical pentesting.  You need to study all possible vulnerabilities and at least know how to recognize and test them.</p><p></p><h1>Why We Use Black Team Instead of Red Team</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!eep8!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!eep8!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!eep8!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!eep8!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!eep8!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!eep8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png" width="576" height="576" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:576,&quot;bytes&quot;:1435383,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194621514?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!eep8!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!eep8!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!eep8!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!eep8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F71980bf8-3571-49d6-b4e8-5c908e856c72_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>We use <strong>black team</strong> because the client should not have to guess whether the people showing up are cyber experts who occasionally tailgate, or physical experts who live in this space.</p><p>Black team says the focus is physical. It tells the buyer the engagement is built around the real-world attack surface of places, people, procedures, and protective systems. It tells them the report will not stop at &#8220;we cloned a badge&#8221; because cloning a badge is not a methodology, it&#8217;s one move.</p><p>A physical engagement can and should be just as thorough and robust as their cyber counterpart.  And just as importantly, it should add the same level of value to the client after completion.  </p><p>When a cyber pentest concludes, everyone understands how it helped the client&#8217;s security, but if on a physical pentest all you do is tailgate into the building, what value have you brought them?</p><p>The naming also fixes expectations internally. It stops firms from quietly pushing undertrained cyber staff into physical jobs because the paperwork says &#8220;red team&#8221; and everyone hopes for the best. That protects the client, and it protects the team.</p><p>For the same reason why if you hire a cyber pentester, you don&#8217;t want 95% of their job to be web design. You want them to be a dedicated cyber pentesting team.  For this same reason, you want the team you hire, ideally, to be a dedicated black team.</p><h1>Conclusion</h1><p>The market uses red team to mean offensive cyber almost by default, and the evidence is right there in the hiring language and certification ecosystem.</p><p>That is fine, as long as people stop pretending the label automatically covers physical tradecraft.</p><p>It does not.</p><p>Physical intrusion work deserves its own lane, its own standards, and its own name. Black team tells the client that physical security is being treated as a discipline in its own right, not as a side quest for whoever on the cyber team happened to say yes.</p><h1></h1><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[The Man Hunting Project]]></title><description><![CDATA[This is going to be an article for all you OSINTers out there who want a potentially lucrative hobby that also helps bring justice to the world.]]></description><link>https://covertaccessteam.substack.com/p/the-man-hunting-project</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/the-man-hunting-project</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Thu, 16 Apr 2026 17:55:37 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!bBEI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!bBEI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!bBEI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 424w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 848w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 1272w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!bBEI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png" width="1013" height="788" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:788,&quot;width&quot;:1013,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:484635,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!bBEI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 424w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 848w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 1272w, https://substackcdn.com/image/fetch/$s_!bBEI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F451e4d7e-cb86-40e5-8c44-9f418cbbcc94_1013x788.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This is going to be an article for all you OSINTers out there who want a potentially lucrative hobby that also helps bring justice to the world.</p><p>Most people are aware of things like the FBI Most Wanted, and some people may even know that such organizations sometimes offer rewards for the capture of these people &#8230; But not many people apparently know that sometimes law enforcement will offer rewards (sometime very large rewards) for information about only the location of such wanted people &#8230; and thats where this article is going to be discussing.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Now before we really get into this, for obvious reasons I must state,</p><blockquote><p>This article and topic are for lawful investigations only.  Use legal OSINT and investigation techniques with the goals to assist law enforcement.</p></blockquote><p>Also, while I will focus on rewards, due note that helping to catch criminals or even helping to locate and save a missing person can be their own reward, but thats obviously an individual motivator </p><h2>Read the Reward Language Like a Contract</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!JzKq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!JzKq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 424w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 848w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 1272w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!JzKq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png" width="1456" height="615" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:615,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:3336331,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!JzKq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 424w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 848w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 1272w, https://substackcdn.com/image/fetch/$s_!JzKq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe91634a1-dc38-4031-aacc-04d49b2562fc_5081x2145.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>On the <a href="https://www.fbi.gov/wanted">FBI</a> most wanted page for example, you can find all kinds of criminals from: kidnappers, terrorists or just fugitives, but for our purposes we are interested in those cases that have both active rewards &amp; where the agencies are only interested in location information, not arrest.</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!9r5K!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!9r5K!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 424w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 848w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 1272w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!9r5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png" width="1456" height="92" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:92,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:30830,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!9r5K!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 424w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 848w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 1272w, https://substackcdn.com/image/fetch/$s_!9r5K!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F97e58bcd-2a1e-452d-a756-c53dda5cef1c_2036x129.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!MpoM!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!MpoM!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 424w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 848w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 1272w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!MpoM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png" width="1456" height="99" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:99,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:32422,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!MpoM!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 424w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 848w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 1272w, https://substackcdn.com/image/fetch/$s_!MpoM!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff7793004-deb5-4147-aa56-15c4f06c8ec4_2036x138.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p>Looking at the two cases above we can see that while both offer rewards, one gives you a payout only if the person is arrested, while the other only requires location information.</p><p>Due note that the rewards can range from a few thousand to &#8230; a bit more</p><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!sc_Y!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!sc_Y!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 424w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 848w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 1272w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!sc_Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png" width="992" height="83" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:83,&quot;width&quot;:992,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:16668,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!sc_Y!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 424w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 848w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 1272w, https://substackcdn.com/image/fetch/$s_!sc_Y!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc9a277f5-a1f2-42e8-9ad5-a967d4be4aba_992x83.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p></p><p><a href="https://eumostwanted.eu/leijdekkers-joseph-johannes-jos">The Europe&#8217;s Most Wanted </a>side makes this problem even more obvious. On Joseph Johannes Leijdekkers&#8217; page, the reward is for the decisive tip leading to his arrest, and the page says the reward will be paid several days after his arrest.  This is obviously not what we are looking for.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Fa1u!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Fa1u!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 424w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 848w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 1272w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Fa1u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png" width="1456" height="710" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:710,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:351930,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Fa1u!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 424w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 848w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 1272w, https://substackcdn.com/image/fetch/$s_!Fa1u!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F87d8c024-43f7-48e0-9402-ea282a7fbd91_1680x819.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>So the first step is simple, only begin your search for people who have both rewards &amp; require only location based information.</p><h2>No Reward Is Guaranteed</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!63Mx!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!63Mx!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2598906,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!63Mx!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!63Mx!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa1c8299b-5c7f-43e8-9576-99540add0714_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Next comes one of the biggest things to keep in mind before you commit to these searches, and that is even if you locate the person, there is still no guarantee of payment.  Thats right kids, sometimes the government can be liars &#8230; better you learn that life lesson now.</p><p>Further, make sure you read the wanted poster like a contract, because if it says payment  &#8220;up to&#8221; a certain amount, does not mean the entire amount. </p><p>It may tie payment to a specific result. It may leave room for agency discretion, joint rewards with competing tipsters, internal validation standards, or disputes over what actually caused the outcome. </p><h2>Where to Look First</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!VYJL!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!VYJL!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 424w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 848w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 1272w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!VYJL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png" width="1187" height="784" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:784,&quot;width&quot;:1187,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:564875,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!VYJL!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 424w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 848w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 1272w, https://substackcdn.com/image/fetch/$s_!VYJL!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F66fdd053-54b8-4bdc-abe8-5566bd6e8add_1187x784.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.fbi.gov/wanted">The FBI</a> is usually the easiest place to start because the wanted pages are structured and readable.</p><p>Its wanted index lets you browse major buckets, including Terrorism, Kidnappings/Missing Persons, and Seeking Information. </p><p>The Terrorism section itself also separates entries such as &#8220;Most Wanted Terrorists&#8221; and &#8220;Seeking Information - Terrorism,&#8221; which is worth paying attention to before you even open the poster.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!d1_g!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!d1_g!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 424w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 848w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 1272w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!d1_g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png" width="1023" height="469" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:469,&quot;width&quot;:1023,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:234824,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!d1_g!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 424w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 848w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 1272w, https://substackcdn.com/image/fetch/$s_!d1_g!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbb6f2c45-c3fb-43f3-a90b-4fa86a079232_1023x469.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.interpol.int/What-you-can-do/Help-us-find">INTERPOL</a> works differently. It is not a global arrest squad, and it says that openly. Some Red Notices are public, most are not, and the public is told not to approach wanted persons and to report information to local or national police, or through the notice channel where available. That makes INTERPOL useful as a source of targets and identifiers, but not as a place where you should imagine some direct freelance role in the apprehension side.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!y8vw!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!y8vw!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 424w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 848w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 1272w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!y8vw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png" width="1456" height="616" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/bc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:616,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1040828,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!y8vw!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 424w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 848w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 1272w, https://substackcdn.com/image/fetch/$s_!y8vw!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbc9edcff-e014-4cca-861e-7b5af2d1ea9a_1606x680.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://eumostwanted.eu/">Europe&#8217;s Most Wanted</a> sits somewhere in between. It is public-facing, built to receive information, and explicit that dangerous subjects should not be approached. But many of its rewards are still tied to arrest, not just location. </p><p>That means it is useful for lead development, but not always ideal if your goal is specifically to focus on &#8220;location-only&#8221; reward language.</p><p>Given that, I would suggest starting with the FBI :D</p><p></p><h2>The Play-by-Play</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!E8Pz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!E8Pz!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!E8Pz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png" width="445" height="445" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:445,&quot;bytes&quot;:2305569,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!E8Pz!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!E8Pz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc4b2ea5f-c490-47ac-8cff-3b0311e5be00_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Obviously we all have our own method for OSINT, and I am not going to tell you what tools or methods to follow, but I do want to give a general overview and some things to consider if you decide to take up a search.</p><h3>1. Start with the notice, not the hunt</h3><p>Open the FBI, INTERPOL, or Europe&#8217;s Most Wanted site and pick a case. Read the poster first. Do not start searching blind.</p><p>Go straight to the reward language, the ask, and the identifiers.  Note that the reward is only necessary if thats what you&#8217;re interested in.  If you want to simply do a good deed, help save a missing person, or whatever your motivation is, you can look for anyone on the wanted / missing person lists (lawfully and legally of course).</p><h3>2. Screen the case before you waste time</h3><p>You want notices asking for <strong>information leading to location, whereabouts, etc</strong>.</p><p>Be careful with notices that say:</p><ul><li><p>information leading to arrest</p></li><li><p>information leading to conviction</p></li></ul><p>If the reward depends on arrest or conviction, your OSINT alone likely will not qualify even if you find the person.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!hrGk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!hrGk!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 424w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 848w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 1272w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!hrGk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png" width="535" height="530.2608267716536" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1007,&quot;width&quot;:1016,&quot;resizeWidth&quot;:535,&quot;bytes&quot;:325306,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!hrGk!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 424w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 848w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 1272w, https://substackcdn.com/image/fetch/$s_!hrGk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F648bde60-c368-4ad5-a943-de4f341429f9_1016x1007.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Also note that some of the cases are decades old, and as such you may have little hope of finding the person, especially if they have lived their entire life in some tiny third world village and only came to the first world to commit terrorism then immediately ran home.  Tiny third world villages can be extremely difficult to penetrate via the internet</p><h3>3. Build a clean target sheet</h3><p>Pull out:</p><ul><li><p>full name</p></li><li><p>aliases</p></li><li><p>date of birth</p></li><li><p>place of birth</p></li><li><p>nationality</p></li><li><p>languages</p></li><li><p>physical traits</p></li><li><p>associates</p></li><li><p>last known locations</p></li><li><p>photos</p></li><li><p>etc</p></li></ul><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!pYJY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!pYJY!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 424w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 848w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 1272w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!pYJY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png" width="1131" height="840" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:840,&quot;width&quot;:1131,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:496118,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!pYJY!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 424w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 848w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 1272w, https://substackcdn.com/image/fetch/$s_!pYJY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F5a8e23b0-213a-4440-94f7-9bc2890c40e2_1131x840.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Note that on many cases there is a lot of useful info on the pages about the target, including potential locations, what they may look like today, etc</p><h3>4. Work outward from the official details</h3><p>Start with the easiest pivots:</p><ul><li><p>aliases</p></li><li><p>family </p></li><li><p>associates</p></li><li><p>old cities</p></li><li><p>schools</p></li><li><p>jobs</p></li><li><p>businesses</p></li><li><p>social accounts</p></li><li><p>old media coverage</p></li></ul><p>The goal is not to &#8220;solve&#8221; the case in one jump. The goal is to shrink the subject&#8217;s world.  Basically use your very best OSINT techniques here to start tracking </p><h3>5. Narrow location in layers</h3><p>Move from broad to specific.</p><p>Country first. Then city. Then neighborhood. Then contact network. Then routine.</p><p>Remember that your tip needs to be so specific and exact that someone looking at your report can literally find this person with no other details.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!hXYA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!hXYA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 424w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 848w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!hXYA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg" width="468" height="468" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1456,&quot;width&quot;:1456,&quot;resizeWidth&quot;:468,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Crayons In The Morning T-Shirt | Marine Corps Gift Shop&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Crayons In The Morning T-Shirt | Marine Corps Gift Shop" title="Crayons In The Morning T-Shirt | Marine Corps Gift Shop" srcset="https://substackcdn.com/image/fetch/$s_!hXYA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 424w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 848w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!hXYA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccdb900e-be57-46be-aacf-448ae14fdb9e_2250x2250.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Also realize that the people who may be reading your report may, or may not, be the brightest bulbs in the box &#8230; so write your report accordingly</p><h3>6. Corroborate before you tip</h3><p>One clue is not enough.</p><p>You want multiple points lining up:</p><ul><li><p>same alias</p></li><li><p>same face</p></li><li><p>same associates</p></li><li><p>same region</p></li><li><p>recent timestamps</p></li><li><p>matching background details</p></li></ul><p>A useful lead is specific and current.  Also realize that while a good lead goes cold fast, people are creatures of habit.  So while you likely will not be able to say exactly where a person will be at 4pm thats not really the goal here.  You simply need to give LE enough intel to locate the person.</p><h3>7. Do not cross into hands-on activity</h3><p><strong>This is really important</strong> as most of the people on these lists are dangerous, and people who know that they are wanted can act extremely violently if confronted or threatened &#8230; even if they think they&#8217;re threatened, so play it safe and stay home.</p><p>Your role is to develop information, not make the arrest.  </p><h3>8. Submit a tight package</h3><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!h2be!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!h2be!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!h2be!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!h2be!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!h2be!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!h2be!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png" width="494" height="494" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/aeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:494,&quot;bytes&quot;:2284749,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194416069?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!h2be!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!h2be!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!h2be!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!h2be!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Faeea529d-b054-403f-a45c-5f9ca81e0150_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Send the tip through the official channel.</p><p>Include:</p><ul><li><p>the official notice</p></li><li><p>why you think it is the same person</p></li><li><p>where you think they are</p></li><li><p>what evidence supports that</p></li><li><p>dates, usernames, screenshots, links, and image comparisons</p></li></ul><p>Keep fact separate from inference.</p><h3>9. Stop there</h3><p>Once the tip is in, you&#8217;re done.</p><p>At this point, ALL of your work is finished and your only further action is to watch your email or phone for any updates.  Note that sometimes these updates can take &#8230; well lets just say a while, as LE can be extremely busy and they get A LOT of tips on any given day.</p><p>Be patient and realize that your work is finished.</p><h2>Other Organizations To Search</h2><p>Realize that most law enforcement organizations, local and international have similar programs, though not all offer rewards, so obviously if this is something that is of interest to you, don&#8217;t stop with just the ones I listed above.  Check your countries LE and investigative organizations and see whats out there.  That said, here are some useful links (though in my opinion I would start with the FBI)</p><ul><li><p>INTERPOL Help us find<br>https://www.interpol.int/What-you-can-do/Help-us-find</p><p></p></li><li><p>INTERPOL Red Notices<br>https://www.interpol.int/How-we-work/Notices/Red-Notices/View-Red-Notices</p><p></p></li><li><p>Europe's Most Wanted<br>https://eumostwanted.eu/</p><p></p></li><li><p>FBI Most Wanted<br>https://www.fbi.gov/wanted</p><p></p></li><li><p>FBI Fugitives<br>https://www.fbi.gov/wanted/fugitives</p><p></p></li><li><p>FBI Terrorism<br>https://www.fbi.gov/wanted/terrorism</p><p></p></li><li><p>FBI Seeking Information<br>https://www.fbi.gov/wanted/seeking-information</p><p></p></li><li><p>U.S. Marshals<br>https://www.usmarshals.gov/what-we-do/fugitive-investigations/15-most-wanted-fugitive</p><p></p></li><li><p>U.S. DOJ Wanted Fugitives hub (link to links)<br>https://www.justice.gov/action-center/identify-our-most-wanted-fugitives</p><p></p></li><li><p>DEA</p><p>https://www.dea.gov/fugitives</p><p></p></li><li><p>ICE Most Wanted<br>https://www.ice.gov/most-wanted</p><p></p></li><li><p>Global Criminal Justice Rewards Program - Current Reward Offers<br>https://2021-2025.state.gov/global-criminal-justice-rewards-program/current-reward-offers/</p><p></p></li><li><p>UK National Crime Agency Most Wanted<br>https://www.nationalcrimeagency.gov.uk/most-wanted</p><p></p></li><li><p>Dutch Police - Nationale Opsporingslijst<br>https://www.politie.nl/gezocht/nationale-opsporingslijst</p><p></p></li><li><p>Germany BKA wanted pages (English examples vary by case PDF)</p><p>https://www.bka.de/</p><p></p></li><li><p>Australian Federal Police - Crime Stoppers<br>https://www.afp.gov.au/about-us/contact-us/crime-stoppers</p><p></p></li><li><p>NSW Police Rewards<br>https://www.police.nsw.gov.au/can_you_help_us/rewards</p><p></p></li><li><p>New Zealand Police online options<br>https://www.police.govt.nz/advice-services/all-online-options</p><p></p></li><li><p>Canada CBSA Border Watch Line<br>https://www.cbsa-asfc.gc.ca/security-securite/bwl-lsf-eng.html</p></li></ul><h2>Conclusion</h2><p>While this sort of work obviously isn&#8217;t for everyone, it is something that I realized most people aren&#8217;t aware of.  </p><p>If you are the kind of person who is into OSINT and potentially want a new hobby, this is something that may be up your ally.  While there is obviously a financial incentive with this type of work, it certainly isn&#8217;t the only motivator.  </p><p>Bringing criminals to justice or even locating and saving a missing person are certainly their own reward.  </p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Another Idiot Breaches "High Security" Airport]]></title><description><![CDATA[A man got onto the airfield at Shannon Airport, climbed onto a parked U.S.]]></description><link>https://covertaccessteam.substack.com/p/another-idiot-breaches-high-security</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/another-idiot-breaches-high-security</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Thu, 16 Apr 2026 14:35:47 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!VYvz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!VYvz!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!VYvz!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 424w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 848w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 1272w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!VYvz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png" width="756" height="489" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/be3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:489,&quot;width&quot;:756,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:317380,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194404329?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!VYvz!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 424w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 848w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 1272w, https://substackcdn.com/image/fetch/$s_!VYvz!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fbe3d9d3f-1550-420f-ab3c-47cb59196ec3_756x489.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.theguardian.com/uk-news/2026/apr/11/man-arrested-for-allegedly-damaging-us-military-aircraft-in-shannon-airport">A man got onto the airfield</a> at Shannon Airport, climbed onto a parked U.S. Air Force C-130, and started hitting the aircraft in broad daylight.</p><p><a href="https://www.thejournal.ie/us-aircraft-shannon-attacked-7009833-Apr2026/">Local reporting</a> said he reached the aircraft on a remote taxiway, got up onto the wing, and struck the wing and fuselage with what was described as a hatchet or similar tool before responders pulled him off and arrested him. </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>The Operation</h2><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;9f716637-29f3-4bcf-92e9-a704cd0fddfc&quot;,&quot;duration&quot;:null}"></div><p>The breach happened at about 9:45 a.m. at Shannon Airport in County Clare. According to local reporting, airport staff spotted a person inside a restricted area near a parked U.S. Air Force C-130 Hercules on a remote taxiway. </p><p>Airport police, Shannon Airport fire and rescue, Garda units, and Irish Defence Forces personnel all responded. Additional armed Garda personnel were also reported at the scene.  Shannon suspended operations at about 9:50 a.m. and resumed them at 10:15 a.m. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;e7537d95-e6f7-423c-9f93-c226a261d75a&quot;,&quot;duration&quot;:null}"></div><p>The extent of the aircraft damage is less cleanly established. Local reporting said the damage was &#8220;extensive,&#8221; but that description appears to come from unnamed sources, not a formal U.S. Air Force damage assessment released on the record. </p><h2>The Actors</h2><p>Irish police did not initially name the suspect. Court reporting later identified him as Daith&#237; O&#8217;Corrain, 47, of Blarney Street, Cork City. He appeared before Limerick District Court charged with criminal damage to the C-130 Hercules, criminal damage to a perimeter fence, and trespass at a taxiway. He was refused bail and remanded in custody. On the reporting available so far, police and court coverage have not publicly laid out a full motive statement from O&#8217;Corrain.</p><h2>Similar Breaches, Same Pattern</h2><p>This is not a one-off. It fits a pattern that I have been writing about for a while, people with no elite training, no advanced kit, and no serious tradecraft getting onto airfields and reaching aircraft anyway. The common thread is not sophistication, it is weak perimeter control, bad response, complacency, and the fact that large airfields create dead ground and assumptions that people stop challenging.</p><p>We covered that in the <a href="https://covertaccessteam.substack.com/p/teenager-bypasses-airport-security">Avalon Airport case in Australia</a>. A 17-year-old got through a hole in the perimeter fence, used a high-visibility vest and tool belt to look like he belonged there, and reached a Jetstar aircraft carrying a loaded shotgun before crew and passengers stopped him. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;0f92de02-4823-40d3-a099-a46cfa724090&quot;,&quot;duration&quot;:null}"></div><p><a href="https://covertaccessteam.substack.com/p/the-raf-brize-norton-breach-what">The Brize Norton breach</a> in June 2025 was even more embarrassing for the people responsible for protecting military aircraft. Palestine Action activists entered the RAF base, reached two Voyager aircraft, and damaged them with paint and crowbars after moving across the site on electric scooters. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;d58b5945-ca2b-4c2e-9997-382e0ead48ea&quot;,&quot;duration&quot;:null}"></div><p><a href="https://covertaccessteam.substack.com/p/when-security-gets-embarrassing-mikey">The Andrews case</a> was even worse because it stripped away any illusion that only activist cells or politically motivated groups do this. In 2021, a civilian with no credentials was waved through a gate at Joint Base Andrews, wandered around for hours, slipped past another access point, and boarded a C-40 used by senior U.S. officials. The detail everybody remembers is that he was reportedly wearing a hat that looked like Mickey Mouse ears. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!s5ho!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!s5ho!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 424w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 848w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 1272w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!s5ho!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp" width="498" height="498" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:844,&quot;width&quot;:844,&quot;resizeWidth&quot;:498,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Image&quot;,&quot;title&quot;:&quot;Image&quot;,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Image" title="Image" srcset="https://substackcdn.com/image/fetch/$s_!s5ho!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 424w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 848w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 1272w, https://substackcdn.com/image/fetch/$s_!s5ho!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F405fa100-d4fc-4303-b436-ca4042c4819d_844x844.webp 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Shannon sits cleanly inside that same line of failure. A lone man got through the perimeter, reached a parked U.S. military C-130, climbed onto it, and began striking the aircraft with a handheld tool. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;3ce27417-edb5-441a-8eed-bd7319442da5&quot;,&quot;duration&quot;:null}"></div><p>In every one of these cases, there was no James Bond level of infiltration.  No high tech gadgets or state level actors breaching security, it was simply untrained idiots with a will to commit crime and the courage to follow through with it.  </p><h2></h2><h2>Conclusion</h2><p>For any readers of this blog, instances like this one shouldn&#8217;t be a surprise and the fact that untrained, low skill attacks worked to infiltrate, what should be, high security facilities or areas is almost expected.  </p><p>So the next time someone tells you that &#8220;this area is high security&#8221;, make sure that you respond with, &#8220;Ya, but did you test it?&#8221;</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Gone In 60 Seconds ... But For Real]]></title><description><![CDATA[Its been a long time since I have watched the movie &#8220;Gone in 60 Seconds&#8221; but this story is effectively taken directly from it.]]></description><link>https://covertaccessteam.substack.com/p/gone-in-60-seconds-but-for-real</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/gone-in-60-seconds-but-for-real</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Wed, 15 Apr 2026 10:06:44 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!p-lk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!p-lk!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!p-lk!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!p-lk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2067069,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194277202?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!p-lk!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!p-lk!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd1284ff3-c3c9-4fa1-9e0a-2ae13555ad43_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Its been a long time since I have watched the movie &#8220;Gone in 60 Seconds&#8221; but this story is effectively taken directly from it.  Apparently 400 high end vehicles, worth around $40 million were stolen out of Michigan.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!WNnK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!WNnK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 424w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 848w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!WNnK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg" width="474" height="471" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/abb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:471,&quot;width&quot;:474,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Gone in 60 Seconds (2000) is a overlooked gem of a film. Cool car chases,  exciting fights, and Nic Cage as the lead. Surprised more people don't  bring this movie up when&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Gone in 60 Seconds (2000) is a overlooked gem of a film. Cool car chases,  exciting fights, and Nic Cage as the lead. Surprised more people don't  bring this movie up when" title="Gone in 60 Seconds (2000) is a overlooked gem of a film. Cool car chases,  exciting fights, and Nic Cage as the lead. Surprised more people don't  bring this movie up when" srcset="https://substackcdn.com/image/fetch/$s_!WNnK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 424w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 848w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!WNnK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fabb125f6-2e04-4536-85c3-3ea1cf81f56f_474x471.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Prosecutors say eight men in southeast Michigan ran a scheme that moved stolen cars from local pickup points into shipping containers, then sent those containers by freight or rail to port cities for export overseas. The case started with Dearborn police and grew into a multi-agency federal investigation.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>Federal authorities have publicly said the investigation recovered more than 350 stolen vehicles. </p><h2>The Operation</h2><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;56db1d97-de47-47ca-9e51-2b794ba8dfbb&quot;,&quot;duration&quot;:null}"></div><p>According to the indictment unsealed on September 4, 2025, the conspiracy ran from July 2023 through August 2025. Prosecutors say the group received stolen vehicles at one of four commercial or industrial lots, loaded multiple vehicles into shipping containers, and arranged onward movement to port cities by freight or rail. </p><p>As I have mentioned <a href="https://covertaccessteam.substack.com/p/the-port-problem-tiny-checks-huge">previously</a>, one of the easiest ways that smugglers use to get illicit goods in and out of countries are through ports, simply because of the high volume and low inspection rate.  <a href="https://covertaccessteam.substack.com/p/the-port-problem-tiny-checks-huge">In Europe for instance</a>,</p><blockquote><p>OECD and Europol are clear that trying to &#8220;inspect everything&#8221; would gridlock ports, yet the current equilibrium leaves inspection rates around 1&#8211;2% in many contexts.</p></blockquote><p><a href="https://www.fox2detroit.com/news/8-men-charged-metro-detroit-international-auto-theft-smuggling-ring">FOX 2 Detroit</a>, citing Dearborn police Cpl. Daniel Bartok, reported that many of the vehicles were shipped to the Middle East, including Iraq and Dubai. </p><p>The official Justice Department release is more restrained on destination, saying only that the containers were shipped overseas from port cities if not interdicted. Taken together, the picture is straightforward, local theft, staging at lots, containerization, domestic transport, then export.</p><h2>The Actors</h2><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;4af79e7e-12c3-44a2-8e3e-f37dc9d9426f&quot;,&quot;duration&quot;:null}"></div><p>The Justice Department identified the defendants as </p><ul><li><p>Haydar Al Haydari, 41, of Garden City</p></li><li><p>Karar Alnakash, 43, of Detroit</p></li><li><p>Abbas Al Othman, 42, of Dearborn Heights</p></li><li><p>Mohammed Al Hilo, 36, of Detroit</p></li><li><p>Moustapha Al Fetlawi, 46, of Dearborn Heights</p></li><li><p>Terrill Davis, 33, of Detroit</p></li><li><p>David Roshinsky Williams, 32, of Harper Woods</p></li><li><p>Mohammed Al Abboodi, 35, of Detroit. </p></li></ul><p>All were charged with conspiracy to transport stolen vehicles, and each also faces one or more counts of transportation of a stolen vehicle.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;01ca36f1-4e50-465a-a497-9a9ef1fc173c&quot;,&quot;duration&quot;:null}"></div><p>The charging documents released publicly do not spell out the full division of labor in detail, but the structure is obvious enough. Someone had to source vehicles, someone had to receive and hold them, someone had to pack containers, and someone had to push those containers into legitimate transport channels without drawing immediate scrutiny. </p><p></p><h2>Tactics and Tradecraft</h2><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;93d24d67-037b-4461-a5c2-938ef79a803a&quot;,&quot;duration&quot;:null}"></div><p>First its important to understand <a href="https://covertaccessteam.substack.com/p/time-on-target">time on target</a>, and unfortunately for general theft, that time is incredibly limited.</p><p>So when attempting to protect merchandise, and yes cars are in this category, understand that the amount of time thieves need to actually be around the car can be seconds to minutes depending on the car make and model due to vulnerabilities differences.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;dfdf9afd-77a3-4d1c-92fa-471b060f1b10&quot;,&quot;duration&quot;:null}"></div><p>The above is a simple relay attack, often used on high end cars, that relies on one attacker having an antenna near the car keys and the other attacker have a receiver / transmitter near the car.  The idea is simply to trick the car into thinking the keys / owner are standing next to the car, and thus allowing the car to open and drive off.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!qMEI!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!qMEI!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 424w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 848w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!qMEI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg" width="800" height="533" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/dca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:533,&quot;width&quot;:800,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Wat is relay attack? En hoe beveilig ik de auto daartegen?&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Wat is relay attack? En hoe beveilig ik de auto daartegen?" title="Wat is relay attack? En hoe beveilig ik de auto daartegen?" srcset="https://substackcdn.com/image/fetch/$s_!qMEI!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 424w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 848w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!qMEI!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fdca1bf59-7be9-447b-a688-c16a62ca9ab1_800x533.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Of course, like all things, there are many different vulnerabilities for different cars, some mechanical, some technological, and some simple human error but all have vulnerabilities.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;defdb481-f433-4c1a-a6e0-dfa025fb7382&quot;,&quot;duration&quot;:null}"></div><p>Stealing high end cars from lots implies your standard security suite: fences, alarms, cameras, etc.  However, its obvious that these didn&#8217;t actually prevent the thieves from either getting access, nor getting away with the cars. </p><p>And while i have my suspicions on how the bad guys eventually got caught, I will leave it to you to formulate your own opinions on how the police pulled it off.</p><h2>Conclusion</h2><p>This is an example of an intelligent, well planned out criminal enterprise that was thankfully taken down by law enforcement.  However, as security personnel, and security conscious people, we can learn from them on how to better secure our clients and ourselves. </p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[A Single Pylon Strike in Italy Put Southern Germany’s Fuel Supply at Risk]]></title><description><![CDATA[An attack on infrastructure feeding the Transalpine Pipeline in Italy briefly threatened fuel supplies across southern Germany and showed, again, how little force it can take to jam a major European energy artery.]]></description><link>https://covertaccessteam.substack.com/p/a-single-pylon-strike-in-italy-put</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/a-single-pylon-strike-in-italy-put</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Mon, 13 Apr 2026 07:54:12 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!B9iX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!B9iX!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!B9iX!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!B9iX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png" width="547" height="547" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/f5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:547,&quot;bytes&quot;:1646668,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!B9iX!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!B9iX!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ff5524e72-0af2-49fb-8e58-c45fa79ebb48_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>An attack on infrastructure feeding the Transalpine Pipeline in Italy briefly threatened fuel supplies across southern Germany and showed, again, how little force it can take to jam a major European energy artery. </p><p>Italian police are investigating damage to a transmission pylon near Udine that disrupted operations tied to the TAL crude route in late March. </p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>MiRO, one of Germany&#8217;s largest refineries, said it received no crude through TAL for three days and had to run on stored stock. Reuters reported the disruption put gasoline, diesel, and jet fuel supplies in southern Germany at risk.</p><p>TAL carries crude from the Adriatic terminal at Trieste through Austria into Germany. That makes this more than a local Italian infrastructure incident. A strike on a support asset in northeast Italy was enough to put pressure on refinery operations deeper inside Central Europe.</p><h1>The Attack</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!Zoc1!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!Zoc1!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 424w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 848w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 1272w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!Zoc1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png" width="1283" height="422" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:422,&quot;width&quot;:1283,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:84954,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!Zoc1!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 424w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 848w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 1272w, https://substackcdn.com/image/fetch/$s_!Zoc1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffe40159a-b68e-4953-813b-0c1b767c64c2_1283x422.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.reuters.com/business/energy/italian-police-investigate-pylon-damage-that-disrupted-transalpine-pipeline-2026-04-11/">According to Reuters,</a> the damage happened on March 25 near Udine. The affected asset was a Terna transmission pylon, not a refinery, terminal, or obvious pipeline control point. Repairs were completed four days later, but the interruption was still enough to cut off crude deliveries to MiRO for roughly three days through March 30. </p><p>TAL pushed back on reports of confirmed third-party action against its own facilities, but Italian police opened an investigation after media reports raised possible sabotage.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!3HTj!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!3HTj!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 424w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 848w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 1272w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!3HTj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png" width="467" height="437.6025179856115" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1042,&quot;width&quot;:1112,&quot;resizeWidth&quot;:467,&quot;bytes&quot;:1610637,&quot;alt&quot;:&quot;&quot;,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" title="" srcset="https://substackcdn.com/image/fetch/$s_!3HTj!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 424w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 848w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 1272w, https://substackcdn.com/image/fetch/$s_!3HTj!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa56d252c-63be-45af-b0a4-cd330a224922_1112x1042.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>This type of attack is what we see over and over again; find the weakest point along the supply chain and attack there.  As I have written about <a href="https://covertaccessteam.substack.com/p/unplugging-cities-the-fragile-nature">many times</a>, removing power from a city or location is rarely done at the power plant, but instead, attackers will target substations, pylons or anywhere that security is weakest.  </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!023b!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!023b!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 424w, https://substackcdn.com/image/fetch/$s_!023b!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 848w, https://substackcdn.com/image/fetch/$s_!023b!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!023b!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!023b!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg" width="1456" height="1092" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1092,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Substation - Wikipedia&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Substation - Wikipedia" title="Substation - Wikipedia" srcset="https://substackcdn.com/image/fetch/$s_!023b!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 424w, https://substackcdn.com/image/fetch/$s_!023b!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 848w, https://substackcdn.com/image/fetch/$s_!023b!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!023b!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F742bc32f-a02d-41c7-9933-5e887adc4397_4000x3000.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>MiRO was able to stay online by burning through stored crude only underlines the point that attacks like this have an extremely limited buffer before everything shuts off.  To put this into perspective</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!6NYq!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!6NYq!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 424w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 848w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 1272w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!6NYq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png" width="1456" height="565" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:565,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:2044401,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!6NYq!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 424w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 848w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 1272w, https://substackcdn.com/image/fetch/$s_!6NYq!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F75d1af04-b31e-4048-ae55-020e2329bf20_2255x875.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.miro-ka.de/en/about-miro/understanding-a-refinery">Based on MiRO&#8217;s published crude tank capacity</a> and its reported 310,000 barrel-per-day throughput, the refinery <a href="https://www.bundeswirtschaftsministerium.de/Redaktion/EN/Artikel/Energy/petroleum-emergency-oil-supply-and-oil-crisis-management.html?">appears to have</a> enough on-site crude storage for roughly two weeks at full runs, at least on paper. </p><p>The real buffer is probably smaller. Tank capacity is not the same as usable emergency reserve, especially at a refinery running dozens of crude grades through a fixed process slate. Germany&#8217;s national emergency oil stocks sit behind that, but those are state reserves, not barrels waiting inside MiRO&#8217;s fence.</p><p>Put a different way, this simple attack was able to disrupt supply for 3 days, and if we assume a 14 day reserve (before hitting Germany&#8217;s national strategic reserve) this attack was able to use up ~21% of their reserve.</p><h1>The Actors</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!fuY1!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!fuY1!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!fuY1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png" width="615" height="615" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/b06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:615,&quot;bytes&quot;:1890369,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!fuY1!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!fuY1!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fb06fb702-3247-4fcb-ad0e-426f4644bdd8_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Right now, the actors are unknown.</p><p>Reuters reported that Italian police are investigating the incident, that Terna said the damage was caused by unknown parties, and that TAL denied confirmed third-party action against its own infrastructure. That leaves a serious infrastructure attack under investigation, but no public attribution and no public claim of responsibility.</p><h1>Why pylon damage disrupted the pipeline</h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!VyT8!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!VyT8!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!VyT8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png" width="548" height="548" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:548,&quot;bytes&quot;:1714907,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!VyT8!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!VyT8!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F8e3b4c34-1dc8-41ae-8e6b-b3768eb13ec0_1024x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>TAL depends on electrically powered pumping infrastructure to push crude from Trieste across the Alps and into Central Europe. Reuters reported that damage to a transmission pylon near Udine temporarily disrupted TAL operations in March, even though the public reporting did not indicate the pipeline itself was physically hit.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!DSyH!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!DSyH!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!DSyH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png" width="1456" height="971" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:971,&quot;width&quot;:1456,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1886578,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/194043018?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!DSyH!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 424w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 848w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!DSyH!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F998ccd80-2e56-4079-bd44-8e7ccbfd7e98_1536x1024.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>That relationship is straightforward. A long-distance crude pipeline is not a passive tube. It needs pumping stations to maintain pressure and keep flow moving. TAL&#8217;s own material says the system uses pump stations and that parts of the line are tied directly into the power system, including energy infrastructure built around the flow of crude through the route. If power feeding those operations is interrupted, throughput can drop or stop even when the steel line remains intact.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CJOu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CJOu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CJOu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg" width="519" height="519" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:519,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Discover Essential Types of Pump Stations for Your Needs - Pump Technology&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Discover Essential Types of Pump Stations for Your Needs - Pump Technology" title="Discover Essential Types of Pump Stations for Your Needs - Pump Technology" srcset="https://substackcdn.com/image/fetch/$s_!CJOu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 424w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 848w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!CJOu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F70ec8b54-f74f-42db-aeed-b691e6c93136_1024x1024.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>As I have harped on many times, everything is downstream of electricity, even things like water, gas an oil.  If you cut off electricity, everything else will fail and thats exactly why its so important to protect it.</p><p>Also realize that this is the exact type of attack / incident that took out power to the entire <a href="https://covertaccessteam.substack.com/p/iberian-peninsula-blackouts">Iberian Peninsula</a> last year, a single, seemingly tiny point of failure has a cascading effect on everything downstream.</p><h1>Conclusion</h1><p>These styles of attacks are things that have become trends across Europe, and the West and are something that will likely continue into the future.  </p><p>From <a href="https://covertaccessteam.substack.com/p/terrorists-black-out-parts-of-berlin">Berlin</a>, <a href="https://covertaccessteam.substack.com/p/heathrow-power-outage-and-airport">Heathrow</a>, <a href="https://covertaccessteam.substack.com/p/iberian-peninsula-blackouts">Iberian Peninsula</a>, <a href="https://covertaccessteam.substack.com/p/unplugging-cities-the-fragile-nature">Fort Bragg</a>, only to name a few recent incidents, these attacks are not slowing down, but they continue to show just how fragile infrastructure is and how with the removal of a single piece, everything can come tumbling down.</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Dunwoody Records Dispute Fuels Allegations Over Flock Camera Access]]></title><description><![CDATA[A Dunwoody records dispute has produced allegations that Flock Safety personnel may have accessed live camera feeds tied to sensitive locations, including spaces reportedly used by children.]]></description><link>https://covertaccessteam.substack.com/p/dunwoody-records-dispute-fuels-allegations</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/dunwoody-records-dispute-fuels-allegations</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Sun, 12 Apr 2026 13:30:59 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!D3hA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!D3hA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!D3hA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 424w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 848w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 1272w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!D3hA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png" width="954" height="589" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/c82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:589,&quot;width&quot;:954,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:118901,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193953258?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!D3hA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 424w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 848w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 1272w, https://substackcdn.com/image/fetch/$s_!D3hA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fc82421d2-69e4-4292-a591-1a6fc47321bd_954x589.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.jkheneghan.com/city/meetings/2026/03/03232026_Dunwoody_IT_Security_Assessment_Flock_Safety.pdf">A Dunwoody records dispute</a> has produced allegations that Flock Safety personnel may have accessed live camera feeds tied to sensitive locations, including spaces reportedly used by children. </p><p>Flock Safety is an Atlanta-based public safety technology company that sells automated license plate readers, camera systems, and related surveillance tools to police agencies, neighborhoods, and businesses.</p><p>I want to make a point that, the claims described in this article remain disputed and unproven based on the public record currently available.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><p>The allegation comes out of a <a href="https://atlpresscollective.com/2026/02/25/dunwoody-flock-contract-911/">real records fight in Dunwoody</a> over audit logs, access controls, and who allegedly entered the city&#8217;s Flock environment. </p><p>Note that the public material currently available does not support stating the allegations are established fact.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!nVIu!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!nVIu!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 424w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 848w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 1272w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!nVIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png" width="507" height="453.88009313154834" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:769,&quot;width&quot;:859,&quot;resizeWidth&quot;:507,&quot;bytes&quot;:186257,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193953258?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!nVIu!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 424w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 848w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 1272w, https://substackcdn.com/image/fetch/$s_!nVIu!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F478a0434-b4d3-4c1c-8c38-4a7d0953944f_859x769.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.jkheneghan.com/city/meetings/2026/03/03232026_Dunwoody_IT_Security_Assessment_Flock_Safety.pdf">Dunwoody officials publicly</a> questioned Flock&#8217;s contract, access practices, and policy terms in early 2026. The city&#8217;s own security review also identified concerns around non-police logins, audit oversight, and misuse-detection controls. </p><p>Separately, a local records-based analysis claimed that audit logs appeared to show Flock employees accessing feeds associated with locations including a pool, library, and gymnastics area.</p><h2>The Case</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!QYvY!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!QYvY!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 424w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 848w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 1272w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!QYvY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png" width="508" height="558.0760095011876" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/ccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:925,&quot;width&quot;:842,&quot;resizeWidth&quot;:508,&quot;bytes&quot;:526424,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193953258?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!QYvY!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 424w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 848w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 1272w, https://substackcdn.com/image/fetch/$s_!QYvY!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fccbc35d5-2d11-425f-a000-4d09b7251dc5_842x925.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The core allegation appears to come from Dunwoody resident <a href="https://jasonhunyar.substack.com/p/why-are-flock-employees-watching-720">Jason Hunyar</a>, who published an April 8, 2026 post claiming records obtained through open-records requests purported to show Flock employees allegedly opening feeds tied to several locations at the Marcus Jewish Community Center and other sites in Dunwoody. Hunyar claimed the logs allegedly reflected access by named Flock employees.</p><p>According to Jason, <br></p><blockquote><p>Flocks &#8216;audits&#8217; only show when a person<strong> initiated </strong>a liveview camera. They do not show the duration of the liveview, or when it ended. This is a fundamental issue with the auditing of the system, and thus we do not know when someone stops looking at a camera. All of the claims below come with that caveat.</p></blockquote><div class="captioned-image-container"><figure><a class="image-link image2" target="_blank" href="https://substackcdn.com/image/fetch/$s_!5w_4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!5w_4!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 424w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 848w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 1272w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!5w_4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png" width="1332" height="188" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:188,&quot;width&quot;:1332,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;https://substackcdn.com/image/fetch/$s_!5w_4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="https://substackcdn.com/image/fetch/$s_!5w_4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png" title="https://substackcdn.com/image/fetch/$s_!5w_4!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png" srcset="https://substackcdn.com/image/fetch/$s_!5w_4!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 424w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 848w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 1272w, https://substackcdn.com/image/fetch/$s_!5w_4!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0d41e1c4-d32a-44ea-9e6d-3223c2fafcdf_1332x188.png 1456w" sizes="100vw" loading="lazy"></picture><div></div></div></a></figure></div><p><a href="https://jasonhunyar.substack.com/p/why-are-flock-employees-watching-720">Hunyar claimed</a> that, in his view, the audit records were incomplete and that he believed they indicated repeated access by Flock employees. </p><p>CAT has not independently reviewed the complete underlying log set, and these claims remain disputed.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!eKJ5!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!eKJ5!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 424w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 848w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 1272w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!eKJ5!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png" width="468" height="440.7378640776699" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:582,&quot;width&quot;:618,&quot;resizeWidth&quot;:468,&quot;bytes&quot;:null,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!eKJ5!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 424w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 848w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 1272w, https://substackcdn.com/image/fetch/$s_!eKJ5!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd7b99b10-4708-4579-a33c-fd61f18c6748_618x582.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.youtube.com/shorts/YwVBsFD7v84">The following video clip</a> discusses the allegations surrounding the dispute and should not be treated as independent proof of the underlying claims.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;5e313331-a626-4617-b57f-da988c900887&quot;,&quot;duration&quot;:null}"></div><p></p><p>Dunwoody&#8217;s March 23, 2026 IT security assessment identified &#8220;Non-PD direct logins&#8221; as a risk item and also flagged concerns involving audit-log review, supervisory oversight, and misuse-detection documentation. That city document does not prove Hunyar&#8217;s interpretation of any specific access event. It does, however, verify that Dunwoody itself was already examining access and audit-control issues inside the Flock environment.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!khWQ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!khWQ!,w_424,c_limit,f_webp,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 424w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_848,c_limit,f_webp,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 848w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_1272,c_limit,f_webp,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 1272w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_1456,c_limit,f_webp,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!khWQ!,w_1456,c_limit,f_auto,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif" width="1262" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1262,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Flock Exposed Its AI-Powered Cameras to the Internet. We Tracked Ourselves&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Flock Exposed Its AI-Powered Cameras to the Internet. We Tracked Ourselves" title="Flock Exposed Its AI-Powered Cameras to the Internet. We Tracked Ourselves" srcset="https://substackcdn.com/image/fetch/$s_!khWQ!,w_424,c_limit,f_auto,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 424w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_848,c_limit,f_auto,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 848w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_1272,c_limit,f_auto,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 1272w, https://substackcdn.com/image/fetch/$s_!khWQ!,w_1456,c_limit,f_auto,q_auto:good,fl_lossy/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd4660b8c-2342-41f9-a719-1f9b04f38725_1262x720.gif 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>In December 2025, <a href="https://www.404media.co/flock-exposed-its-ai-powered-cameras-to-the-internet-we-tracked-ourselves/">404 Media reported</a> that dozens of Flock Condor PTZ camera feeds were exposed to the open internet, allegedly allowing unauthorized viewing of live streams, archived footage, and certain administrative functions. That incident does not prove the Dunwoody allegation, but it does indicate that Flock&#8217;s video-access controls were already under public scrutiny before the Dunwoody records fight intensified.</p><p><a href="https://www.flocksafety.com/faq">Flock&#8217;s offical FAQ</a>, states that company personnel do not access or monitor customer footage in the manner alleged here.</p><p> The company states, &#8220;Nobody from Flock Safety is accessing or monitoring your footage,&#8221; and separately states, &#8220;Flock will not share, sell, or access your data.&#8221; On the same page, Flock also says it does not access or monitor footage without an explicit request from the customer, while noting that its team has software in place to measure camera performance and image capture quality.</p><h2></h2><h2>Conclusion</h2><p>While this is a serious accusation, based on the public record currently available, it remains disputed and unproven.  </p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[Hacker Claims 10 Petabytes Stolen From Chinese Supercomputing Hub]]></title><description><![CDATA[A hacker using the name &#8220;FlamingChina&#8221; claims to have pulled more than 10 petabytes of data out of China&#8217;s National Supercomputing Center in Tianjin, a state-run high performance computing hub that supports thousands of research, industrial, and government users.]]></description><link>https://covertaccessteam.substack.com/p/hacker-claims-10-petabytes-stolen</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/hacker-claims-10-petabytes-stolen</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Sun, 12 Apr 2026 09:24:05 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!BMWD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!BMWD!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!BMWD!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!BMWD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png" width="1024" height="1024" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1024,&quot;width&quot;:1024,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1381759,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193950552?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!BMWD!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 424w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 848w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 1272w, https://substackcdn.com/image/fetch/$s_!BMWD!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F0112f787-1548-4cc0-8dba-cae4bc0b964e_1024x1024.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>A hacker using the name &#8220;<a href="https://www.techradar.com/pro/security/flamingchina-hacker-claims-to-have-stolen-over-10-petabytes-of-advanced-military-data-from-chinas-national-supercomputing-center-in-possibly-the-biggest-hack-of-all-time">FlamingChina</a>&#8221; claims to have pulled more than 10 petabytes of data out of China&#8217;s National Supercomputing Center in Tianjin, a state-run high performance computing hub that supports thousands of research, industrial, and government users. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;675d3063-ee79-4ac8-a2b4-5d1675f1b529&quot;,&quot;duration&quot;:null}"></div><p><a href="https://securityaffairs.com/190536/hacking/the-alleged-breach-of-chinas-national-supercomputing-center-can-have-serious-geopolitical-consequences.html">Multiple outlets</a> reporting on the leak say the claim is still unverified, but analysts who reviewed sample files told CNN the material looks consistent with the kind of work run through the facility.</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><h2>The Operation</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!_TGA!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!_TGA!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 424w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 848w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!_TGA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg" width="899" height="558" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:558,&quot;width&quot;:899,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&#22269;&#20135;&#30334;&#20159;&#20159;&#27425;&#36229;&#31639;&#25216;&#26415;&#23454;&#29616;&#26032;&#31361;&#30772; &#8220;&#22825;&#27827;&#19977;&#21495;&#8221;&#65317;&#32423;&#21407;&#22411;&#26426;&#23436;&#25104;&#30740;&#21046;&#37096;&#32626;-&#26032;&#21326;&#32593;&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="&#22269;&#20135;&#30334;&#20159;&#20159;&#27425;&#36229;&#31639;&#25216;&#26415;&#23454;&#29616;&#26032;&#31361;&#30772; &#8220;&#22825;&#27827;&#19977;&#21495;&#8221;&#65317;&#32423;&#21407;&#22411;&#26426;&#23436;&#25104;&#30740;&#21046;&#37096;&#32626;-&#26032;&#21326;&#32593;" title="&#22269;&#20135;&#30334;&#20159;&#20159;&#27425;&#36229;&#31639;&#25216;&#26415;&#23454;&#29616;&#26032;&#31361;&#30772; &#8220;&#22825;&#27827;&#19977;&#21495;&#8221;&#65317;&#32423;&#21407;&#22411;&#26426;&#23436;&#25104;&#30740;&#21046;&#37096;&#32626;-&#26032;&#21326;&#32593;" srcset="https://substackcdn.com/image/fetch/$s_!_TGA!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 424w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 848w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!_TGA!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7cd1c8ae-763c-4384-9638-a265dd84f5e5_899x558.jpeg 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Reporting around the case points to the <a href="https://edition.cnn.com/2026/04/08/china/china-supercomputer-hackers-hnk-intl">National Supercomputing Center in Tianjin</a>, often shortened to NSCC-TJ, as the likely source of the stolen material. Official descriptions of the center say it serves roughly 6,000 clients across China, including research institutes, businesses, and government agencies. That client base helps explain why the leaked samples reportedly cut across aviation, weapons work, scientific modeling, and other technically different but compute-heavy disciplines.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!d87h!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!d87h!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 424w, https://substackcdn.com/image/fetch/$s_!d87h!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 848w, https://substackcdn.com/image/fetch/$s_!d87h!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 1272w, https://substackcdn.com/image/fetch/$s_!d87h!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!d87h!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png" width="911" height="374" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:374,&quot;width&quot;:911,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:195276,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193950552?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!d87h!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 424w, https://substackcdn.com/image/fetch/$s_!d87h!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 848w, https://substackcdn.com/image/fetch/$s_!d87h!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 1272w, https://substackcdn.com/image/fetch/$s_!d87h!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F888ef9a2-b4b6-43ff-8ed2-15c1579e1d9d_911x374.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>The seller posted the data for sale on February 6, 2026, according to reporting cited by <a href="https://www.techradar.com/pro/security/flamingchina-hacker-claims-to-have-stolen-over-10-petabytes-of-advanced-military-data-from-chinas-national-supercomputing-center-in-possibly-the-biggest-hack-of-all-time">TechRadar</a> and <a href="https://securityaffairs.com/190536/hacking/the-alleged-breach-of-chinas-national-supercomputing-center-can-have-serious-geopolitical-consequences.html">Security Affairs</a>. Limited samples were allegedly offered for smaller amounts, while full access was marketed for hundreds of thousands of dollars in cryptocurrency. Analysts cited in that reporting said the samples included schematics and renderings tied to aircraft, missiles, bombs, and other high-end research outputs.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!GyBt!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!GyBt!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 424w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 848w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 1272w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!GyBt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png" width="1337" height="718" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:718,&quot;width&quot;:1337,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;https://i0.wp.com/securityaffairs.com/wp-content/uploads/2026/04/image-18.png?ssl=1&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="https://i0.wp.com/securityaffairs.com/wp-content/uploads/2026/04/image-18.png?ssl=1" title="https://i0.wp.com/securityaffairs.com/wp-content/uploads/2026/04/image-18.png?ssl=1" srcset="https://substackcdn.com/image/fetch/$s_!GyBt!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 424w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 848w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 1272w, https://substackcdn.com/image/fetch/$s_!GyBt!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbe3486e-f58a-41ec-a866-ed3e809e8a56_1337x718.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>A supercomputing center brings together computing workloads, stored data, and research outputs from multiple users in one environment. </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;c9d21c28-9346-4620-a1f9-94cd2fba6ef0&quot;,&quot;duration&quot;:null}"></div><p>If that environment is compromised, the exposure may extend beyond final documents to include simulation files, draft models, test results, and other working material. In practice, that can provide a more detailed view of a program&#8217;s development than polished public or internal summaries alone.</p><h2>The Actors</h2><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!gxSB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!gxSB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 424w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 848w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!gxSB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg" width="1424" height="746" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:746,&quot;width&quot;:1424,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;&#1055;&#1088;&#1086;&#1076;&#1072;&#1078; &#1073;&#1072;&#1079;&#1080; &#1076;&#1072;&#1085;&#1080;&#1093; &#1053;&#1072;&#1094;&#1110;&#1086;&#1085;&#1072;&#1083;&#1100;&#1085;&#1086;&#1075;&#1086; &#1089;&#1091;&#1087;&#1077;&#1088;&#1082;&#1086;&#1084;&#1087;&#8217;&#1102;&#1090;&#1077;&#1088;&#1085;&#1086;&#1075;&#1086; &#1094;&#1077;&#1085;&#1090;&#1088;&#1091; &#1050;&#1080;&#1090;&#1072;&#1102; &#1091; dark net. 2026 &#1088;&#1110;&#1082;. &#1044;&#1078;&#1077;&#1088;&#1077;&#1083;&#1086;: NetAskari&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="&#1055;&#1088;&#1086;&#1076;&#1072;&#1078; &#1073;&#1072;&#1079;&#1080; &#1076;&#1072;&#1085;&#1080;&#1093; &#1053;&#1072;&#1094;&#1110;&#1086;&#1085;&#1072;&#1083;&#1100;&#1085;&#1086;&#1075;&#1086; &#1089;&#1091;&#1087;&#1077;&#1088;&#1082;&#1086;&#1084;&#1087;&#8217;&#1102;&#1090;&#1077;&#1088;&#1085;&#1086;&#1075;&#1086; &#1094;&#1077;&#1085;&#1090;&#1088;&#1091; &#1050;&#1080;&#1090;&#1072;&#1102; &#1091; dark net. 2026 &#1088;&#1110;&#1082;. &#1044;&#1078;&#1077;&#1088;&#1077;&#1083;&#1086;: NetAskari" title="&#1055;&#1088;&#1086;&#1076;&#1072;&#1078; &#1073;&#1072;&#1079;&#1080; &#1076;&#1072;&#1085;&#1080;&#1093; &#1053;&#1072;&#1094;&#1110;&#1086;&#1085;&#1072;&#1083;&#1100;&#1085;&#1086;&#1075;&#1086; &#1089;&#1091;&#1087;&#1077;&#1088;&#1082;&#1086;&#1084;&#1087;&#8217;&#1102;&#1090;&#1077;&#1088;&#1085;&#1086;&#1075;&#1086; &#1094;&#1077;&#1085;&#1090;&#1088;&#1091; &#1050;&#1080;&#1090;&#1072;&#1102; &#1091; dark net. 2026 &#1088;&#1110;&#1082;. &#1044;&#1078;&#1077;&#1088;&#1077;&#1083;&#1086;: NetAskari" srcset="https://substackcdn.com/image/fetch/$s_!gxSB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 424w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 848w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!gxSB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F88863df5-51ee-48e8-ba97-54e6a1fbe4a4_1424x746.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Very little is firmly established about FlamingChina beyond the handle itself. Public reporting does not identify a known crew, a leadership structure, or a confirmed state sponsor. Right now, &#8220;FlamingChina&#8221; is best understood as the name attached to the sale and leak operation, not a fully attributed threat actor with a proven history. Multiple reports describe it as either a single hacker or a small group, which is another way of saying nobody credible has pinned down the real size of the operation yet.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!frJB!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!frJB!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 424w, https://substackcdn.com/image/fetch/$s_!frJB!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 848w, https://substackcdn.com/image/fetch/$s_!frJB!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!frJB!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!frJB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg" width="455" height="525" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:525,&quot;width&quot;:455,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Image&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Image" title="Image" srcset="https://substackcdn.com/image/fetch/$s_!frJB!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 424w, https://substackcdn.com/image/fetch/$s_!frJB!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 848w, https://substackcdn.com/image/fetch/$s_!frJB!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!frJB!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe3306a47-caae-49f5-8005-ebfa8f5f8a1d_455x525.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.kq2.com/cnn/cnn-world/2026/04/07/a-hacker-has-allegedly-breached-one-of-chinas-supercomputers-and-is-attempting-to-sell-a-trove-of-stolen-data">The first public trace</a> appears to be in early February 2026. Reporting says an account calling itself FlamingChina posted sample material from the alleged Tianjin haul on an anonymous Telegram channel on February 6. SpyCloud&#8217;s February cybercrime roundup says the same leak was offered for sale on February 4 on a BreachForums successor by a user named <strong>airborneshark1</strong>, and adds that the actor releasing the data appeared to run the FlamingChina Telegram channel as well. That does not prove FlamingChina is an established group with multiple operators, but it does suggest the persona was active across at least two distribution channels, a forum sales post and a Telegram leak channel.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!NXDZ!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!NXDZ!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 424w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 848w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!NXDZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg" width="411" height="602.6369047619048" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1478,&quot;width&quot;:1008,&quot;resizeWidth&quot;:411,&quot;bytes&quot;:null,&quot;alt&quot;:&quot;Image&quot;,&quot;title&quot;:null,&quot;type&quot;:null,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:null,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="Image" title="Image" srcset="https://substackcdn.com/image/fetch/$s_!NXDZ!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 424w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 848w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 1272w, https://substackcdn.com/image/fetch/$s_!NXDZ!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F7a7e302a-eddc-4886-87ec-2033385f0fbe_1008x1478.jpeg 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>On manpower, there is no reliable public number. No outlet I found gives a confirmed member count, and no threat-intelligence reporting in the public domain ties the name to a known roster, affiliate network, or broader criminal ecosystem.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;c3281dd3-1aa2-437c-858f-c1604829c8f5&quot;,&quot;duration&quot;:null}"></div><p>Location is also unresolved. The target was in Tianjin, but that says nothing about where the operator sat. The infrastructure discussed in reporting, Telegram, crypto payment, breach-market sales, and a claimed botnet-assisted exfiltration route, points to a remote actor with access to standard cybercrime channels, not to a physically proximate penetration team. </p><h2>Conclusion</h2><p>If the leak is real, this was not just theft of stored data. It was access to a national-level research and simulation backend that appears to have pooled work from defense, aerospace, science, and government clients in one place. </p><p>That is the kind of compromise that lets an adversary map programs, dependencies, timelines, and weak points across sectors at once. </p><p></p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item><item><title><![CDATA[When Police Won’t Act, Your Security Is Just Expensive Theater]]></title><description><![CDATA[People talk about cameras, access control, reinforced doors, alarms, glazing, fences, fog systems, analytics, and AI.]]></description><link>https://covertaccessteam.substack.com/p/when-police-wont-act-your-security</link><guid isPermaLink="false">https://covertaccessteam.substack.com/p/when-police-wont-act-your-security</guid><dc:creator><![CDATA[Brian Harris]]></dc:creator><pubDate>Tue, 07 Apr 2026 10:59:45 GMT</pubDate><enclosure url="https://substackcdn.com/image/fetch/$s_!LlG-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png" length="0" type="image/jpeg"/><content:encoded><![CDATA[<div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!LlG-!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!LlG-!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 424w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 848w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 1272w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!LlG-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png" width="1178" height="765" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/a657e7e6-92f9-43f3-9694-cada36651328_1178x765.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:765,&quot;width&quot;:1178,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1029928,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:true,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!LlG-!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 424w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 848w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 1272w, https://substackcdn.com/image/fetch/$s_!LlG-!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fa657e7e6-92f9-43f3-9694-cada36651328_1178x765.png 1456w" sizes="100vw" fetchpriority="high"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>People talk about cameras, access control, reinforced doors, alarms, glazing, fences, fog systems, analytics, and AI. All of that matters, but only up to a point. In the end, physical security still comes down to one thing: can armed forces get to the problem in time and actually stop it.  </p><p>Now I know some of you may disagree with me about guns, but realize that if the criminals know that nobody with one is going to try and stop them, than you regularly see scenes like this</p><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;bf82e9a1-4a18-4cc1-8a4b-3a2e3e3f11d0&quot;,&quot;duration&quot;:null}"></div><p>Now obviously the police response time was faster than the criminals could rob the store and get away &#8230; but it simply didn&#8217;t matter because the police decided not to get involved, and therefore, all the security features this store had put in place were irrelevant. </p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!AVTh!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!AVTh!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!AVTh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png" width="1280" height="720" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/e4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:720,&quot;width&quot;:1280,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1098778,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:false,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!AVTh!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 424w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 848w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 1272w, https://substackcdn.com/image/fetch/$s_!AVTh!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fe4127963-378e-4211-80b5-5a8340d94c3f_1280x720.png 1456w" sizes="100vw"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>When it comes to armed security, that might be you, a private security team, or the police. Remember that security barriers can buy you time, but that time should be a countdown until armed police arrive to stop and arrest the bad guys.  But again, if the police refuse to get involved than, as I mentioned in <a href="https://covertaccessteam.substack.com/p/no-guns-means-no-security">this video</a>, you ultimately don&#8217;t have any security.</p><p>That said, and because many countries do not allow for citizens to be armed, or defend themselves, a eager little meat missile can also be very useful at deterring crime  </p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;e11f87ff-2685-46d6-a47f-f9fef4223eaf&quot;,&quot;duration&quot;:null}"></div><h1><strong>The Numbers</strong></h1><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!CMp_!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!CMp_!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 424w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 848w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 1272w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!CMp_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png" width="1123" height="718" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:718,&quot;width&quot;:1123,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:1014692,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!CMp_!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 424w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 848w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 1272w, https://substackcdn.com/image/fetch/$s_!CMp_!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F443292ce-bb3c-45a2-8c86-0094cef69cce_1123x718.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>Start with the <a href="https://www.telegraph.co.uk/news/2024/03/03/police-fail-to-solve-single-burglary-in-half-of-country/">United Kingdom</a>, because one of the most common lines pushed in online arguments is that domestic burglary there is &#8220;basically always solved.&#8221; The specific claim you flagged, that roughly <a href="https://www.youtube.com/watch?v=yjEd6KcLQsE">92 percent </a>of home invasions are solved in the UK, does not survive contact with official data.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!4ADP!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!4ADP!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 424w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 848w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 1272w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!4ADP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png" width="1194" height="795" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:795,&quot;width&quot;:1194,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:155140,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!4ADP!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 424w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 848w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 1272w, https://substackcdn.com/image/fetch/$s_!4ADP!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F83a72797-304e-4da7-91ad-97f9e28c2628_1194x795.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.gov.uk/government/statistics/crime-outcomes-in-england-and-wales-2024-to-2025/crime-outcomes-in-england-and-wales-2024-to-2025">For the year ending March 2025</a>, the government said the charge rate for residential burglary was 4.7 percent, and the charge rate for home burglary was 5.5 percent. </p><p>In the same release, <a href="https://www.gov.uk/government/statistics/crime-outcomes-in-england-and-wales-2024-to-2025/crime-outcomes-in-england-and-wales-2024-to-2025">the government said</a> 69.6 percent of burglary offences were closed with no suspect identified. That is not a 92 percent solve rate. It is the opposite story.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!k884!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!k884!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 424w, https://substackcdn.com/image/fetch/$s_!k884!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 848w, https://substackcdn.com/image/fetch/$s_!k884!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 1272w, https://substackcdn.com/image/fetch/$s_!k884!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!k884!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png" width="1162" height="1185" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1185,&quot;width&quot;:1162,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:219549,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!k884!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 424w, https://substackcdn.com/image/fetch/$s_!k884!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 848w, https://substackcdn.com/image/fetch/$s_!k884!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 1272w, https://substackcdn.com/image/fetch/$s_!k884!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2F73c5608f-6dd2-4e85-bfb1-e70c3b26f060_1162x1185.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>By Contrast, lets pivot over to <a href="https://www.nyc.gov/assets/operations/downloads/pdf/mmr2025/nypd.pdf">the NYPD&#8217;s official clearance</a> reporting for Q2 2025 showed a citywide burglary clearance rate of 38.3 percent for complaints made in that quarter. Using the broader accounting method that includes older complaints cleared during the quarter, the figure was 52.5 percent. </p><p>That said, even on the friendlier metric, nearly half of burglary complaints were not cleared. On the tighter same-quarter measure, well over sixty percent were not. The New York City Council&#8217;s own review of 2024 NYPD data put average citywide burglary clearance at 33 percent for complaints made and cleared in the same quarter, or 43 percent using the broader all-complaints-cleared measure. Different methodologies move the number around, but none of them describe a system that reliably catches burglars.</p><p>When you are assessing security recommendations for clients, these are numbers that you certainly want to keep in mind an research.</p><h1><strong>The Delay</strong></h1><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;c881f695-4b1c-4143-aa4d-693b104307a7&quot;,&quot;duration&quot;:null}"></div><p>Police response time matters because it gives you the minimum delay budget your site has to create.</p><p>If your realistic police arrival time is seven minutes, then your perimeter, doors, windows, internal compartmentation, safe room, and alarm chain need to keep the intruder from reaching people or target assets for at least that long. </p><p>That said, I strongly encourage everyone to know what the police response time is for your area, for example, here is the <a href="https://www.nyc.gov/assets/operations/downloads/pdf/mmr2025/nypd.pdf">NYPD&#8217;s</a>.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!l-Ns!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!l-Ns!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 424w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 848w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 1272w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!l-Ns!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png" width="972" height="672" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/d170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:672,&quot;width&quot;:972,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:50024,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!l-Ns!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 424w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 848w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 1272w, https://substackcdn.com/image/fetch/$s_!l-Ns!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Fd170fca1-2802-43ac-94f1-b2c03fd0a9da_972x672.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p><a href="https://www.london.gov.uk/sites/default/files/mqt/Appendix%20MQ%202102_2.pdf">London&#8217;s published police performance data</a> says forces aim to answer 90 percent of 999 calls within ten seconds. The Met&#8217;s own FOI material shows an immediate-grade target response time of 15 minutes. That target matters because it is the clock a burglary victim is really designing against, not the fantasy number.</p><div class="captioned-image-container"><figure><a class="image-link image2 is-viewable-img" target="_blank" href="https://substackcdn.com/image/fetch/$s_!LJVK!,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png" data-component-name="Image2ToDOM"><div class="image2-inset"><picture><source type="image/webp" srcset="https://substackcdn.com/image/fetch/$s_!LJVK!,w_424,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 424w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_848,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 848w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_1272,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 1272w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_1456,c_limit,f_webp,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 1456w" sizes="100vw"><img src="https://substackcdn.com/image/fetch/$s_!LJVK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png" width="814" height="1042" data-attrs="{&quot;src&quot;:&quot;https://substack-post-media.s3.amazonaws.com/public/images/fbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png&quot;,&quot;srcNoWatermark&quot;:null,&quot;fullscreen&quot;:null,&quot;imageSize&quot;:null,&quot;height&quot;:1042,&quot;width&quot;:814,&quot;resizeWidth&quot;:null,&quot;bytes&quot;:179266,&quot;alt&quot;:null,&quot;title&quot;:null,&quot;type&quot;:&quot;image/png&quot;,&quot;href&quot;:null,&quot;belowTheFold&quot;:true,&quot;topImage&quot;:false,&quot;internalRedirect&quot;:&quot;https://covertaccessteam.substack.com/i/193448702?img=https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png&quot;,&quot;isProcessing&quot;:false,&quot;align&quot;:null,&quot;offset&quot;:false}" class="sizing-normal" alt="" srcset="https://substackcdn.com/image/fetch/$s_!LJVK!,w_424,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 424w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_848,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 848w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_1272,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 1272w, https://substackcdn.com/image/fetch/$s_!LJVK!,w_1456,c_limit,f_auto,q_auto:good,fl_progressive:steep/https%3A%2F%2Fsubstack-post-media.s3.amazonaws.com%2Fpublic%2Fimages%2Ffbea0eb4-5484-4fbb-9399-763c468b3d9f_814x1042.png 1456w" sizes="100vw" loading="lazy"></picture><div class="image-link-expand"><div class="pencraft pc-display-flex pc-gap-8 pc-reset"><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container restack-image"><svg role="img" width="20" height="20" viewBox="0 0 20 20" fill="none" stroke-width="1.5" stroke="var(--color-fg-primary)" stroke-linecap="round" stroke-linejoin="round" xmlns="http://www.w3.org/2000/svg"><g><title></title><path d="M2.53001 7.81595C3.49179 4.73911 6.43281 2.5 9.91173 2.5C13.1684 2.5 15.9537 4.46214 17.0852 7.23684L17.6179 8.67647M17.6179 8.67647L18.5002 4.26471M17.6179 8.67647L13.6473 6.91176M17.4995 12.1841C16.5378 15.2609 13.5967 17.5 10.1178 17.5C6.86118 17.5 4.07589 15.5379 2.94432 12.7632L2.41165 11.3235M2.41165 11.3235L1.5293 15.7353M2.41165 11.3235L6.38224 13.0882"></path></g></svg></button><button tabindex="0" type="button" class="pencraft pc-reset pencraft icon-container view-image"><svg xmlns="http://www.w3.org/2000/svg" width="20" height="20" viewBox="0 0 24 24" fill="none" stroke="currentColor" stroke-width="2" stroke-linecap="round" stroke-linejoin="round" class="lucide lucide-maximize2 lucide-maximize-2"><polyline points="15 3 21 3 21 9"></polyline><polyline points="9 21 3 21 3 15"></polyline><line x1="21" x2="14" y1="3" y2="10"></line><line x1="3" x2="10" y1="21" y2="14"></line></svg></button></div></div></div></a></figure></div><p>All of that said, delaying bad guys is only useful under the assumption that there is a finish line for delaying them, meaning that eventually when the timer runs out, good guys with guns will show up to stop them &#8230; But as we have seen, this sadly isn&#8217;t always the case, and unfortunately, is some cities and areas, this is becoming the norm.</p><h1><strong>The Failure Point</strong></h1><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;907a272f-67e9-48a5-b514-1b4b185cde05&quot;,&quot;duration&quot;:null}"></div><p>In the end, this often isn&#8217;t the fault of the police themselves, as they are always given directives on how to handle various situations and crime.  </p><p>While this fact is incredibly frustrating, to see police officers standing by watching crime happen, remember that they aren&#8217;t the ones who decide policy, they are simply enforcing the policy, but you should ALWAYS know what the policy is in the areas that you and your clients are operating in, because it can make a huge difference.</p><div class="native-video-embed" data-component-name="VideoPlaceholder" data-attrs="{&quot;mediaUploadId&quot;:&quot;68da638d-1b80-4147-9fa2-2d9999c57ce8&quot;,&quot;duration&quot;:null}"></div><h1><strong>Conclusion</strong></h1><p>I highly encourage everyone from the security expert, to the client to understand these numbers and what they mean for your security requirements.  </p><p>My recommendation is to always give an extra 25 - 50% on security delaying for police response time.  So if the average police response time for a burglary is 10 min in your area, i recommend a minimum delay of 12 - 15 min, because remember, thats the average and on busy nights it may be much longer. </p><p>Also know the criminal outcomes in your areas, if very few crimes are ever solved in your area, this is information that is invaluable to you because it means that there is an almost guarantee that the people who broke into your office / home / etc will not be caught. </p><p>Stay safe out there</p><h1>Training Resources:</h1><p>For individuals looking for a hands on training that includes all of the above topics, Covert Access Team (<a href="https://www.covertaccessteam.com/courses">covertaccessteam.com</a>) provides training courses focused on physical penetration testing, lockpicking, bypassing techniques, social engineering and other essential skills.</p><ul><li><p><a href="https://www.covertaccessteam.com/covert-access-training-course">Covert Access Training</a> - 5 day hands on course designed to train individuals and groups to become Covert Entry Specialists</p></li><li><p><a href="https://www.covertaccessteam.com/physical-audit-certification-training-course">Physical Audit Training</a> - 2 day course on how to setup and run a physical security audit</p></li><li><p><a href="https://www.covertaccessteam.com/elicitation-toolbox-course">Elicitation Toolbox Course</a> - 2 day course of that primarily focuses on elicitation and social engineering as critical aspects of Black Teaming</p></li><li><p><a href="https://www.covertaccessteam.com/strategic-operations-for-lone-operators">Strategic Operations for Lone Operators</a> - Advanced course for those who are interested in learning how to become a one man infiltration team.</p></li><li><p><a href="https://www.covertaccessteam.com/counter-elicitation-techniques-training">Counter Elicitation</a> - 2 day course on how to recognize and prevent elicitation attempts, and safegaurd your secrets.</p></li><li><p><a href="https://www.covertaccessteam.com/cyber-bootcamp-black-teams-course">Cyber Bootcamp for Black Teams</a> - 2 day course designed explicitly for physical penetration testers who need vital cyber skills to add to their toolbox.</p></li><li><p><a href="https://www.covertaccessteam.com/private-instruction">Private Instruction</a> - Focused learning &amp; training based on your needs .</p></li></ul><div class="subscription-widget-wrap-editor" data-attrs="{&quot;url&quot;:&quot;https://covertaccessteam.substack.com/subscribe?&quot;,&quot;text&quot;:&quot;Subscribe&quot;,&quot;language&quot;:&quot;en&quot;}" data-component-name="SubscribeWidgetToDOM"><div class="subscription-widget show-subscribe"><div class="preamble"><p class="cta-caption">Covert Access Team is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber.</p></div><form class="subscription-widget-subscribe"><input type="email" class="email-input" name="email" placeholder="Type your email&#8230;" tabindex="-1"><input type="submit" class="button primary" value="Subscribe"><div class="fake-input-wrapper"><div class="fake-input"></div><div class="fake-button"></div></div></form></div></div>]]></content:encoded></item></channel></rss>