Ubiquiti developer charged with extortion, causing 2020 “breach”
krebsonsecurity.com
Ubiquiti developer charged with extortion, causing 2020 “breach”
1–10 of 239 posts
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#2Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#3Hopefully this gets upvoted more but it somewhat repairs my view of Ubiquiti's brand now that more details have come out about what actually happened. I hope the courts will determine the full extent of the truth
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#4Ouch! Opsec is very easy to screw up.
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#5> Investigators say they were able to tie the downloads to Sharp and his work-issued laptop because his Internet connection briefly failed on several occasions while he was downloading the Ubiquiti data. Those outages were enough to prevent Sharp’s Surfshark VPN connection from functioning properly — thus exposing his Internet address as the source of the downloads. Ouch! Opsec is very easy to screw up.
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#6Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#7> Investigators say they were able to tie the downloads to Sharp and his work-issued laptop because his Internet connection briefly failed on several occasions while he was downloading the Ubiquiti data. Those outages were enough to prevent Sharp’s Surfshark VPN connection from functioning properly — thus exposing his Internet address as the source of the downloads. Ouch! Opsec is very easy to screw up.
What is the proper way to ensure 100% bulletproof VPN connections without leakage?
https://beyondcorp.com/ https://cloud.google.com/beyondcorp/
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#8> Investigators say they were able to tie the downloads to Sharp and his work-issued laptop because his Internet connection briefly failed on several occasions while he was downloading the Ubiquiti data. Those outages were enough to prevent Sharp’s Surfshark VPN connection from functioning properly — thus exposing his Internet address as the source of the downloads. Ouch! Opsec is very easy to screw up.
What is the proper way to ensure 100% bulletproof VPN connections without leakage?
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#9> Investigators say they were able to tie the downloads to Sharp and his work-issued laptop because his Internet connection briefly failed on several occasions while he was downloading the Ubiquiti data. Those outages were enough to prevent Sharp’s Surfshark VPN connection from functioning properly — thus exposing his Internet address as the source of the downloads. Ouch! Opsec is very easy to screw up.
What is the proper way to ensure 100% bulletproof VPN connections without leakage?
And there are probably a dozen other ways to stop such leakage too.
Most commercial VPN providers these days offer something like this, usually branding a it “kill switch” or something.
Re: Ubiquiti developer charged with extortion, causing 2020 “breach”
#10Good summary of the whole saga by Crosstalk youtube channel which covers mostly Ubiquiti: https://www.youtube.com/watch?v=paLm0tP5GbI