Live data from Hacker News

The M.T.A. Is Breached by Hackers as Cyberattacks Surge

nytimes.com

31–40 of 75 posts

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#31
post #9

Earlier quoted context omitted.

The primary thing to help randsomemware would be to have tested backups, where you can reimage the computers and restore from backups reasonably quickly.

And offline backups

And to add to that, offline backups that go back 90+ days. Ransomware gangs frequently use time bombs to deploy their encryption after sitting within a system for a month or two. If you get hit by one of those gangs and only keep backups for 45 days, you're screwed, because your backup is still infected.

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#32

Cyberattack day! This one happened over a month ago, its obvious this is a trending headline likely not organically, so make sure to separate the dates before thinking we are under a coordinated attack all at once right now

The media needs something to scream about after corona is over. It looks like Russian and Chinese hackers are on the menu.

Corona isn't over and we should still be screaming at the top of our lungs at the Chinese for answers. Instead of going out to the shops and buying brooms to sweep the topic under the carpet (which are also recent buys).

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#33
post #18

Is there any group at all lobbying our limpwrist Congress to do something about these?

> limpwrist Congress That's quite the choice of adjective given the month.

That doesn't necessarily have to be a gay slur. Could refer to somewhere sitting around all day doing...that.

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#34
Just like Klauss Schwab from the World Economic Forum says the "cyber pandemic" is coming.

First they test the idea at Cyber Polygon (similar to event 201 which simulated a virus pandemic just before the fake "cov1d" outbreak)

https://cyberpolygon.com/

And then they will just do it. Problem is, just like cov1d - IT'S ALL FAKE

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#35
post #19

Is there any group at all lobbying our limpwrist Congress to do something about these?

National Defense is the realm of the Executive.

The executive branch using a crises to seize power is dubious. In the US the legislative branch has the authority to declare war, make laws, create, and direct agencies. Power is delegated to the President by congress (a progressively more common occurrence)

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#36
post #9
post #3

Perhaps a pentester or security person can help answer this. Could a list of minimum network safety standards be made that: a) would help the ransomware & hacking crisis, and, b) is practically enforcable at scale?

The primary thing to help randsomemware would be to have tested backups, where you can reimage the computers and restore from backups reasonably quickly.

But first you have to figure out how you got owned the first time and fix the issue. Otherwise you'll just get owned the next day again...

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#37
post #27
post #5

Earlier quoted context omitted.

> Perhaps a pentester or security person can help answer this Not one of those but since they are [apparently] inadequate anyway... I read an analogy that pinning this on "cyber security" is like accusing a mugging victim of having a lack of personal security guards. That's just not how civil society works. Minimum safety standards: laws and ability to enforce them. This is a short-term win for the bad actors. Just w…

A better analogy would be an armored truck full of cash parking overnight in a bad neighborhood with the doors unlocked, then crying to the media about how they were robbed by criminals. There has to be some level of personal responsibility; it's foolish to expect people to not do bad things just because the law says they shouldn't.

> it's foolish to expect people to not do bad things just because the law says they shouldn't

The parent comment:

> Minimum safety standards: laws and ability to enforce them.

So it's not just the law but also the potential for repercussions, of which there are currently zero.

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#38

Just curious if "ties to China" means "an IP address that may or may not be allocated to Chinese geography, and may or may not simply be a Tor exit node or a VPN service." People are far too trusting of these claims of where these attacks originated. Very few people in the world, including journalists, know how IP networks work.

Crowdstrike attributed the 2015/2016 DNC "Hacks" to Russia based solely on a file creation timestamp in the same timezone as Moscow and the presence of Cyrillic in a Word document's metadata, and the western world ran with it for years. Don't expect much.

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#39
post #29
post #9

Earlier quoted context omitted.

The primary thing to help randsomemware would be to have tested backups, where you can reimage the computers and restore from backups reasonably quickly.

I think the perpetrators are now taking data "hostage", and threatening to release it publically unless the ransom is paid - in this case backups don't help, though it depends on how sensitive your data is.

In any case, that type of attack wont disrupt the business (in the short term)

Re: The M.T.A. Is Breached by Hackers as Cyberattacks Surge

#40

Just curious if "ties to China" means "an IP address that may or may not be allocated to Chinese geography, and may or may not simply be a Tor exit node or a VPN service." People are far too trusting of these claims of where these attacks originated. Very few people in the world, including journalists, know how IP networks work.

Crowdstrike attributed the 2015/2016 DNC "Hacks" to Russia based solely on a file creation timestamp in the same timezone as Moscow and the presence of Cyrillic in a Word document's metadata, and the western world ran with it for years. Don't expect much.

Is there a source for this? If true, this is a new low for all these "cybersecurity" firms even though I already took their claims as a pinch of salt.
Post reply on HN