Social engineering man. One nice thing about my company: We're still small, and everyone except the SWE team works in one place. Far less likely to fall for this stuff.
Today in data breaches
Posted: Thu Sep 14, 2023 9:52 am
by Leisher
SMBs definitely have a huge advantage in this area.
Today in data breaches
Posted: Thu Sep 14, 2023 9:57 am
by TheCatt
Leisher wrote: ↑Thu Sep 14, 2023 9:52 am
SMBs definitely have a huge advantage in this area.
We've been getting the "I need to change my payroll information" emails, and, they are obviously fake - But the COO can just yell "Hey, Bob, you send this?" "No" The end.
Leisher wrote: ↑Thu Sep 14, 2023 9:52 am
SMBs definitely have a huge advantage in this area.
We've been getting the "I need to change my payroll information" emails, and, they are obviously fake - But the COO can just yell "Hey, Bob, you send this?" "No" The end.
Can you fish them in reverse, get some identifying info, and turn them in?
Leisher wrote: ↑Thu Sep 14, 2023 9:52 am
SMBs definitely have a huge advantage in this area.
We've been getting the "I need to change my payroll information" emails, and, they are obviously fake - But the COO can just yell "Hey, Bob, you send this?" "No" The end.
Can you fish them in reverse, get some identifying info, and turn them in?
I wish. If they're half-smart, they're 1) international and 2) using VPNs.
Today in data breaches
Posted: Thu Sep 14, 2023 10:42 am
by GORDON
Can you send the phone spiders?
Today in data breaches
Posted: Sun Sep 17, 2023 7:36 pm
by Leisher
Transunion. The most insidious part of these hacks isn't the actual hacker, it's the company not telling employees, vendors, and customers their PI has been compromised.
Leisher wrote: ↑Tue Sep 26, 2023 11:53 pm
How many times do you think they've been hacked since 2018?
Google: # of days since 2018
That's funny.
It's 8 times. 8 fucking times for a big corporation!
1. At some point it would really be great if those worthless bags of mostly water in DC would start treating hacks seriously. This is not a D or R thing. Resolving this should have bipartisan support, and Wall St support.
2. Can any IT department really protect themselves? Is anyone "hack proof"?
Today in data breaches
Posted: Wed Sep 27, 2023 11:40 am
by TheCatt
Leisher wrote: ↑Wed Sep 27, 2023 11:06 am
2. Can any IT department really protect themselves? Is anyone "hack proof"?
I figure it's like secrets. 3 people can keep a company secure, if 2 of them are dead.
Social engineering is harder with fewer people. And that's a primary vector.
Today in data breaches
Posted: Wed Sep 27, 2023 12:32 pm
by GORDON
Air gap everything so in order to access data you need an air duct, pulleys, and Tom Cruise.
Today in data breaches
Posted: Wed Sep 27, 2023 12:37 pm
by TheCatt
GORDON wrote: ↑Wed Sep 27, 2023 12:32 pm
Air gap everything so in order to access data you need an air duct, pulleys, and Tom Cruise.