Absolutely incredible stuff coming out of Bozo The Clown School of Economics. 1. convince everyone you're going to fix the economy by slapping tariffs on everything. 2. Tell Americans that other countries will pay the tariffs, even though tariffs are paid by importers (you). 3. Americans gets mad when beef prices go up because as it turns out, importers do in fact pay the tariffs. 4. That's ok, the tariffs were really about rewarding companies who produce goods locally, so at least the American farmers are happy. 5. Wait, never mind. Other countries have started importing beef from elsewhere because US beef is too expensive now. 7. Don't worry though, it's all part of the plan. We will fix this by simply giving $20 billion dollars of taxpayer money to Argentina. 8. Ok, that didn't seem to have worked. Maybe if we announce we're going to give them $40 billion dollars instead? 9. Hmmm, bailing out Argentina doesn't seem to have fixed the US economy. 10. Lower Argentina's beef import tax rate to less than it was before you got into office, costing US farmers even more money. 11. Somehow all of this is actually good and part of a completely sane economic policy, I'm just too dumb to understand the grand plan. MAGA - Make Argentina Great Again? image
Did you know that you can passively download malicious payloads onto target systems? Lots of software caches images locally to save bandwidth, often without stripping metadata. You can leverage this functionality to download payloads. Simply store your payload inside a valid image, then just have the target's web browser or email client download it for you. No more web requests to obtain follow-up payloads! https://malwaretech.com/2025/10/exif-smuggling.html?a=1
You know how billionaires end up with severe cognitive deficits as a result of becoming surrounded by yes men who constantly tell them their every idea is genius? What if we made a bot that just does that to everyone. I think that would be great.
We encountered a unique variant of the ClickFix malware technique. The catch? The user is social engineered into running a PowerShell script which downloads no files, makes no web requests, and embeds no payload. Regardless, it's still able to install a malicious loader to maintain a foothold on the infected system. Check out my latest blog post to find out more: https://expel.com/blog/cache-smuggling-when-a-picture-isnt-a-thousand-words/