The newest Instagram “exploit” is the goofiest I've seen
391–400 of 528 posts
Re: The newest Instagram “exploit” is the goofiest I've seen
#392Support requests have always been the weakest link in the security chain for big corps. I've had accounts of mine turned over with 2FA disabled by humans before. I guess we shouldn't be surprised that the LLMs are doing the same thing. The simple fact that 2FA can be removed by low level support staff drives me mad. It defeats the whole purpose of the process.
Re: The newest Instagram “exploit” is the goofiest I've seen
#393Earlier quoted context omitted.
Malware on your phone can reroute your calls to the attacker. So you think you're calling the official number at the correct institution, but you're actually talking to the attacker.
What kind of malware are we talking about here? On a non-rooted phone?
Re: The newest Instagram “exploit” is the goofiest I've seen
#394Re: The newest Instagram “exploit” is the goofiest I've seen
#395Earlier quoted context omitted.
You mean admin or Administrator ? Horrific, people should be jailed for cyberattacks when they carelessly just give out this word. The experiences I meant were mostly - password reset requests (admittedly, we had a protocol even then to strictly require a "physical signature", normally meaning Fax or internal snail mail) - medical protocols: don't wanna go into too much detail here, but: 1) Windows requires a lot of…
I support radiologies...I have seen things, patients wouldn't believe. MRI in helium off the shoulder of the CS student. I watched DICOMs corrupt in the dark near the PACS gateway. All those moments will be lost in time...like unsaved reports in rain. Time to reboot
Re: The newest Instagram “exploit” is the goofiest I've seen
#396Re: The newest Instagram “exploit” is the goofiest I've seen
#397Or maybe even more sad, this is what a FAANG product manager is able to pass through layers of "are you mad"
Re: The newest Instagram “exploit” is the goofiest I've seen
#398Who looked at password resets and went “yeah, let the chatbot handle that one”
It had real, slap some duct tape on it and say, “Yeah that should hold” energy.
Re: The newest Instagram “exploit” is the goofiest I've seen
#399Earlier quoted context omitted.
This is actually what microsoft does for microsoft accounts If you recover a microsoft account / submit a ticket to recover it and provide correct information, the active email gets an email letting them know about the request You can deny it, or if you ignore it for 30 days the request goes through Seems to be the best system IMO
Someone has been trying to hack into my MSFT account for years. I constantly get the notifications. I can not see where they are trying from (unlike some other services that give you info about failed login attempts) nor add more security measures. I worry one day I will accidentally hit "Approve" or they will guess the 6 digit code they have tried thousands of times. The fun part is that you can't disable OneDrive.…