Lemmy.one
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
floofloof@lemmy.ca to Cybersecurity@sh.itjust.worksEnglish · 17 hours ago

Lawsuit says Clorox hackers got passwords simply by asking

www.nbcnews.com

external-link
message-square
11
fedilink
81
external-link

Lawsuit says Clorox hackers got passwords simply by asking

www.nbcnews.com

floofloof@lemmy.ca to Cybersecurity@sh.itjust.worksEnglish · 17 hours ago
message-square
11
fedilink
Clorox was one of several major companies hit in August 2023 by the hacking group dubbed Scattered Spider, which specializes in tricking IT help desks into handing over credentials.
  • expatriado@lemmy.world
    link
    fedilink
    English
    arrow-up
    20
    ·
    17 hours ago

    jee… is that easy? what’s your password OP?

    • floofloof@lemmy.caOP
      link
      fedilink
      English
      arrow-up
      41
      ·
      edit-2
      17 hours ago

      hunter2, but don’t tell anyone because it’s a secret.

      • milkisklim@lemmy.world
        link
        fedilink
        English
        arrow-up
        33
        ·
        17 hours ago

        All I see is ******2

        • Apollo98@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          25
          ·
          17 hours ago

          Ahh, I’m home finally

          • treadful@lemmy.zip
            link
            fedilink
            English
            arrow-up
            5
            ·
            edit-2
            14 hours ago

            RIP bash.org

            EDIT: Nice, there’s a bunch of mirrors.

        • Zier@fedia.io
          link
          fedilink
          arrow-up
          11
          ·
          17 hours ago

          Weird, because all I see is hunter*

    • onslaught545@lemmy.zip
      link
      fedilink
      English
      arrow-up
      17
      ·
      17 hours ago

      Yup, it is. Social engineering is by far the most effective means of gaining unlawful access to any system.

      Humans are always the weakest link.

      • sugar_in_your_tea@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        9
        ·
        16 hours ago

        Exactly. Many breaches follow this pattern:

        1. Learn the name and some basic details about the secretary or something
        2. Call corporate tech support asking for a password reset claiming to be the secretary
        3. Access important stuff since secretaries have a surprising amount of access

        Replace “secretary” with some other relevant individual who has a surprising amount of access and wouldn’t attract attention.

    • limer@lemmy.ml
      link
      fedilink
      English
      arrow-up
      9
      ·
      17 hours ago

      correcthorsebatterystaple

    • RandomStickman@fedia.io
      link
      fedilink
      arrow-up
      3
      ·
      17 hours ago

      deleted by creator

Cybersecurity@sh.itjust.works

cybersecurity@sh.itjust.works

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !cybersecurity@sh.itjust.works

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 212 users / day
  • 590 users / week
  • 1.33K users / month
  • 4.36K users / 6 months
  • 53 local subscribers
  • 7.87K subscribers
  • 3.38K Posts
  • 5.81K Comments
  • Modlog
  • mods:
  • Kid@sh.itjust.works
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.7
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org