Does the title bother anyone else? 1M what? People, records, a subsidiary of 3M.
Breach affecting 1M was caught only after hacker maxed out target’s storage
31–35 of 35 posts
Re: Breach affecting 1M was caught only after hacker maxed out target’s storage
#32Given the fair assumption that any piece of data you give to a third party system that has access to the internet will eventually be breached, I feel like we need an entirely new system for data sharing. The problem with most of these hacks isn't usually so much that the hacked system itself has lots of valuable data, but that the data from the hacked system can be used to hack into other systems that do have valuabl…
These breaches are the personal fault of many of the people who frequent this site. As the FTC says - the first step here should have been not warehousing data they didn't need for their business purposes. Which is the mandate of GDPR as well.
Re: Breach affecting 1M was caught only after hacker maxed out target’s storage
#33Does the title bother anyone else? 1M what? People, records, a subsidiary of 3M.
Re: Breach affecting 1M was caught only after hacker maxed out target’s storage
#34plaintext passwords in 2019 .. it hurts to read articles like these.
These are often found in log files when people get a bit to log happy. I've seen many smart developers accidentally log a request in an API that also happens to show the login credentials.
Re: Breach affecting 1M was caught only after hacker maxed out target’s storage
#35>full payment card numbers storing these in plain text violates PCI-DSS