Live data from Hacker News

Iran-backed hackers claim wiper attack on medtech firm Stryker

krebsonsecurity.com

81–90 of 342 posts

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#81
post #72

Earlier quoted context omitted.

That ANY kind of config change should be rate-limited has been pretty obvious and hammered on in SRE manuals for at least 10 years.

And who sets the limits? MS? What if a company WANTS to wipe their entire fleet?

Require dual sign off

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#82

Earlier quoted context omitted.

I have no idea why you would assume Israel had to resort to extortion to get Trump to help them bomb Iran. We bombed Venezuela a few weeks ago, no extortion required. It's far more likely he was did it because Hegseth thought it would be more manly or something more ego driven than extortion. More likely it's just another example of flooding the zone to forget about the Epstein files and the stagnating economy

I am thinking the theories are true because of the must larger negative repercussions of that action. They are strengthening the regime (US intelligence services were aware of that before the attack and had informed the president), they are destabilizing all their oil producers, they are risking great economic cost.. It only makes sense if indeed they either extorted him, or if he is indeed demented / deranged.

You make it sound as if Trump is some kind of rational actor who would never willingly put his hand on the stove.

Indeed every negative repercussion you have mentioned has already been previously inflicted on us without any extortion required.

> They are strengthening the regime

Us action in Venezuela has only strengthened the PSUV's grip on the country.

> they are destabilizing all their oil producers, they are risking great economic cost.

Liberation day. Need I say more?

This administration is quite willing to risk stability and the economy to assuage Trump's ego.

I mean he campaigned on stuff like "the so-called enemy doesn’t respect our country any longer." Blaming "Kamala Harris’ weakness" for this loss of respect. What else shows strength like literally blowing up your adversary?

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#83

Earlier quoted context omitted.

The company should have known better than to trust their IT infrastructure to Microslop. This is their own fault.

[flagged]

Well, all the machines in the current outfit are Linux as far as I know. Services are self hosted. Seems to be fine, teams et al run adequately in a browser for talking to people on other stacks.

Previous place had a corporate controlled windows laptop that made a very poor thin client for accessing dev machines. One before that had a somewhat centrally managed macbook that made a very poor thin client for accessing dev machines.

You don't have to soul bond to Microsoft to get things done.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#84
post #24

Related: Iran warns U.S. tech firms could become targets as war expands https://news.ycombinator.com/item?id=47341007

Well, time to dust off anti-drone defense systems. Today on NPR they talked that Iran plans to launch drones from ships into California. https://www.10news.com/news/local-news/authorities-warn-of-p... Fox News drone expert: https://nypost.com/2026/03/11/us-news/iran-could-use-drones-...

'Drones from ships into California' is just a psi-op for manufacturing consent. This is not our first rodeo. By now, we should know how things work.

It's not in the strategic interest of Iran to do that, and they have been very strategic and rational. It's the Americans who have abandoned rationality. The Iranian goal is very clear: they don't want to sign an agreement and be attacked again in three months or one year.

In order to get that, they want a new security framework in its part of the world. They want Israel to suffer so its population think two times before doing this again. And they want to create enough economic pain to punish the current USA administration, again to teach a lesson.

Go beyond CNN or Fox News, listen to what the Iranians are saying (1).

1- https://www.youtube.com/watch?v=lNZ_nta8NRM

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#86

Earlier quoted context omitted.

The company should have known better than to trust their IT infrastructure to Microslop. This is their own fault.

My 95% bet is that the attacker just gained access to an account with suitable privileges and then went on to use existing automation. The fact that it’s intune is largely irrelevant - I’m not aware of any safeguards that any provider would implemen. So the options here are MDM or no MDM and that’s a hard choice. No MDM means that you have to trust all people to get things as basic as FDE or a sane password policy ri…

No MDM just isn’t an option for most enterprises but ideally the keys to the kingdom are properly secured.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#87

Earlier quoted context omitted.

I am thinking the theories are true because of the must larger negative repercussions of that action. They are strengthening the regime (US intelligence services were aware of that before the attack and had informed the president), they are destabilizing all their oil producers, they are risking great economic cost.. It only makes sense if indeed they either extorted him, or if he is indeed demented / deranged.

Or he's just a manchild who likes doing things that he thinks will make him look strong.

Picking on someone vastly weaker than you (especially while they're already getting beat up by somebody else) doesn't make you look strong, it mostly just makes you look like an asshole, and probably an asshole who is too scared or too weak to go after somebody who can actually fight back.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#88

Earlier quoted context omitted.

[flagged]

I have no idea why you would assume Israel had to resort to extortion to get Trump to help them bomb Iran. We bombed Venezuela a few weeks ago, no extortion required. It's far more likely he was did it because Hegseth thought it would be more manly or something more ego driven than extortion. More likely it's just another example of flooding the zone to forget about the Epstein files and the stagnating economy

Venezuela is in the eastern hemisphere, just like Cuba, and it seems they want to control that entire part of the world. Iran would be of no concern to the US if not for Israel.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#89

I'm trying to imagine the kind of response the USA would inflict on a country that wiped a girls school stateside.

They'd probably go all in, kill the leader of the nation, kill some of the successors in line, bomb the daylights out of a bunch of civillian sites, wipe out a girls school, sink a few ships... oh wait.

Re: Iran-backed hackers claim wiper attack on medtech firm Stryker

#90

So gain access to a machine that can ask microsoft intune to eviscerate the company, ask it to do so, done. Bit of a shame all the machines had that installed really. Reminds me of crowdstrike.

[flagged]

An alternative is people install the software they choose to on the machines they're using. Optionally write a list of suggested programs down somewhere.

In that world, there is no central IT team pushing changes to machines and arguing with developers about whether they really need to be able to run a debugger.

I don't know how to keep windows machines alive. It's probably harder.

Post reply on HN