Brdsnest Lemmy
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
floofloof@lemmy.ca to Cybersecurity@sh.itjust.worksEnglish · 3 days ago

Lawsuit says Clorox hackers got passwords simply by asking

www.nbcnews.com

external-link
message-square
12
fedilink
92
external-link

Lawsuit says Clorox hackers got passwords simply by asking

www.nbcnews.com

floofloof@lemmy.ca to Cybersecurity@sh.itjust.worksEnglish · 3 days ago
message-square
12
fedilink
Clorox was one of several major companies hit in August 2023 by the hacking group dubbed Scattered Spider, which specializes in tricking IT help desks into handing over credentials.
  • expatriado@lemmy.world
    link
    fedilink
    English
    arrow-up
    24
    ·
    3 days ago

    jee… is that easy? what’s your password OP?

    • floofloof@lemmy.caOP
      link
      fedilink
      English
      arrow-up
      45
      ·
      edit-2
      3 days ago

      hunter2, but don’t tell anyone because it’s a secret.

      • milkisklim@lemmy.world
        link
        fedilink
        English
        arrow-up
        39
        ·
        3 days ago

        All I see is ******2

        • Apollo98@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          28
          ·
          3 days ago

          Ahh, I’m home finally

          • treadful@lemmy.zip
            link
            fedilink
            English
            arrow-up
            8
            ·
            edit-2
            3 days ago

            RIP bash.org

            EDIT: Nice, there’s a bunch of mirrors.

        • Zier@fedia.io
          link
          fedilink
          arrow-up
          12
          ·
          3 days ago

          Weird, because all I see is hunter*

    • onslaught545@lemmy.zip
      link
      fedilink
      English
      arrow-up
      20
      ·
      3 days ago

      Yup, it is. Social engineering is by far the most effective means of gaining unlawful access to any system.

      Humans are always the weakest link.

      • sugar_in_your_tea@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        11
        ·
        3 days ago

        Exactly. Many breaches follow this pattern:

        1. Learn the name and some basic details about the secretary or something
        2. Call corporate tech support asking for a password reset claiming to be the secretary
        3. Access important stuff since secretaries have a surprising amount of access

        Replace “secretary” with some other relevant individual who has a surprising amount of access and wouldn’t attract attention.

    • limer@lemmy.ml
      link
      fedilink
      English
      arrow-up
      9
      ·
      3 days ago

      correcthorsebatterystaple

    • RandomStickman@fedia.io
      link
      fedilink
      arrow-up
      3
      ·
      3 days ago

      deleted by creator

Cybersecurity@sh.itjust.works

cybersecurity@sh.itjust.works

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !cybersecurity@sh.itjust.works

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

  • Be respectful. Everyone should feel welcome here.
  • No bigotry - including racism, sexism, ableism, homophobia, transphobia, or xenophobia.
  • No Ads / Spamming.
  • No pornography.

Community Rules

  • Idk, keep it semi-professional?
  • Nothing illegal. We’re all ethical here.
  • Rules will be added/redefined as necessary.

If you ask someone to hack your “friends” socials you’re just going to get banned so don’t do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 72 users / day
  • 548 users / week
  • 1.27K users / month
  • 4.76K users / 6 months
  • 1 local subscriber
  • 7.9K subscribers
  • 3.36K Posts
  • 5.92K Comments
  • Modlog
  • mods:
  • Kid@sh.itjust.works
  • Lanky_Pomegranate530@midwest.social
  • BE: 0.19.5
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org