Iran-linked hackers breach FBI director's personal email
121–130 of 591 posts
Re: Iran-linked hackers breach FBI director's personal email
#122Re: Iran-linked hackers breach FBI director's personal email
#123[flagged]
I see you updated your comment, but in a way that doesn't make any sense. Of course the pedophiles in the files will say it's a hoax.
Re: Iran-linked hackers breach FBI director's personal email
#124I'm sure it will be embarrassing for him personally, but not a breach of U.S. government systems. Kudos to CNN for publishing a balanced take on it.
Re: Iran-linked hackers breach FBI director's personal email
#125Earlier quoted context omitted.
Honeypot sure I didn't think of that.. But I was under the impression the FBI confirmed it ? So we can rule it out. Making the password impossible to guess - how could that not be? Since then you know you have a breach, as its randomised gibberish, if you then get the 2nd device asking " is this you trying to login " you can definitely know you are compromised.... I can't see your logic here, that isn't " theatre " ?…
Why would they willingly destroy their successful honeypot if the other party announced they've access to it? I haven't seen what's in it either though, but I would not rule it out yet, especially when the FBI is involved - which love those tactics When you're compromised, changing the password is obviously not theatre - but changing a password which is randomly generated with enough entropy is what's pointless theat…
So then you know that you have been rooted => If that fails to resolve it.
Reduce the number of vectors to know what you have to change asap. in this scenario you don't want to be guessing about how they did it.
The randomised gibberish just means you can rule out certain things. I can agree on part of what your saying but a string high entropy password, makes it harder to brute..
Many services don't really do that whole retries thing properly. So make it take as long as possible.
If you don't use a random gibberish your password can be cracked on any consumer device in a surprisingly short amount of time...
This way you can then focus on that a session token is probably how they got in.. It's the most common vector these days...
Re: Iran-linked hackers breach FBI director's personal email
#126Re: Iran-linked hackers breach FBI director's personal email
#127>“This isn’t an FBI compromise — it’s someone’s personal junk drawer,” he said. Eh, with how many people in the current administration seem to use out of band channels to communicate very important things who knows what else they located.
Most incompetent administration in the modern era.
Re: Iran-linked hackers breach FBI director's personal email
#128Re: Iran-linked hackers breach FBI director's personal email
#129Earlier quoted context omitted.
I forget all the details but a hacker group associated with Iran already hacked the infrastructure of a major US health care tech company
Stryker. FWIW a friend in ER medicine said it had very very limited effect.
Edit: apparently 80000 employee workstations got remotely wiped. So not so I guess I wouldn’t call that minor.
Also that’s what I get for commenting before reading the story, they mention the Styker incident in the story lol
Re: Iran-linked hackers breach FBI director's personal email
#130[flagged]