mastodon.gamedev.place is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server focused on game development and related topics.

Server stats:

5.1K
active users

#SOCRadar

0 posts0 participants0 posts today
Pyrzout :vm:<p>Russia’s Storm-2372 Hits Orgs with MFA Bypass via Device Code Phishing – Source:hackread.com <a href="https://ciso2ciso.com/russias-storm-2372-hits-orgs-with-mfa-bypass-via-device-code-phishing-sourcehackread-com/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">ciso2ciso.com/russias-storm-23</span><span class="invisible">72-hits-orgs-with-mfa-bypass-via-device-code-phishing-sourcehackread-com/</span></a> <a href="https://social.skynetcloud.site/tags/1CyberSecurityNewsPost" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>1CyberSecurityNewsPost</span></a> <a href="https://social.skynetcloud.site/tags/CyberSecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> <a href="https://social.skynetcloud.site/tags/CyberAttacks" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberAttacks</span></a> <a href="https://social.skynetcloud.site/tags/PhishingScam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PhishingScam</span></a> <a href="https://social.skynetcloud.site/tags/CyberAttack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberAttack</span></a> <a href="https://social.skynetcloud.site/tags/Storm2372" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Storm2372</span></a> <a href="https://social.skynetcloud.site/tags/Hackread" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hackread</span></a> <a href="https://social.skynetcloud.site/tags/Phishing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Phishing</span></a> <a href="https://social.skynetcloud.site/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://social.skynetcloud.site/tags/SOCRadar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOCRadar</span></a> <a href="https://social.skynetcloud.site/tags/Russia" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Russia</span></a> <a href="https://social.skynetcloud.site/tags/Scam" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Scam</span></a> <a href="https://social.skynetcloud.site/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a></p>
Gabriel N<p>This notification from HIPB about the Not SOCRadar breach made me think how damn hard of a job <span class="h-card" translate="no"><a href="https://infosec.exchange/@troyhunt" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>troyhunt</span></a></span> is doing.</p><p>My first reaction was "why would he load this" but after reading the <a href="https://infosec.exchange/tags/socradar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>socradar</span></a> report I think I understand.</p><p>But if my understanding is correct there is so many levels of infosec-meta here.</p><p>I think (correct me if I'm wrong) that this breach is actually a indication of the email being in a stealer log.</p><p>Which is bad.</p><p>And nither the SOCRadar writeup nor Troy's description of the breach explain this.</p><p>So I thought I would write up a suggestion for how to improve the <a href="https://haveibeenpwned.com/PwnedWebsites#NotSOCRadar" rel="nofollow noopener noreferrer" target="_blank">description</a> to include this.</p><p>But I very quickly got stuck because there is actually very little known about this and assumption and guesses are likely to add to the confusion.</p><p>We have no idea if the email/credentials was stolen last month, or five years ago, or if it was just in some random compilation of public emails in a telegram channel.</p><p>So in the end, I think keeping it to "known" facts like Troy does makes sense.</p><p>But... what is the value then? If the goal is to help people know if they are breached, knowing that it was in this report gives absolutely zero info to anyone.</p><p>Except if this is the ONLY breach the email was in. Because that might indicate the breach is actually recent.</p><p>But figuring this out is again so many levels down that I doubt many can draw that conclusion.</p><p>So was it worth loading this or not? I don't know. The fact that there was 19% new emails seems to indicate it was indeed worth it as those people have not previously received any notification. But for the 81% that were already in, the additional notification seems to provide very little value.</p><p>So in the end, I think where I'm ending up is that it would be useful if the notification email had a bit more information. That would save me having to HIPB, send verification, log-in, Ctrl+F the new breach and try to figure out if this is a new breach or a repacking.</p><p><a href="https://infosec.exchange/tags/HIPB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HIPB</span></a> <a href="https://infosec.exchange/tags/SOCRADAR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOCRADAR</span></a> <a href="https://infosec.exchange/tags/stealerlogs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>stealerlogs</span></a> <a href="https://infosec.exchange/tags/altertfatigue" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>altertfatigue</span></a></p><p><a href="https://infosec.exchange/@haveibeenpwned/112931402069232920" translate="no" rel="nofollow noopener noreferrer" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@haveibeenpwn</span><span class="invisible">ed/112931402069232920</span></a></p>
Pyrzout :vm:<p>More than 330 Million Email Addresses Allegedly Scraped from Security Platform SOCRadar.io Exposed Online <a href="https://thecyberexpress.com/330-million-email-ids-scraped-from-socradar-io/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thecyberexpress.com/330-millio</span><span class="invisible">n-email-ids-scraped-from-socradar-io/</span></a> <a href="https://social.skynetcloud.site/tags/TheCyberExpressNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TheCyberExpressNews</span></a> <a href="https://social.skynetcloud.site/tags/CybersecurityNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CybersecurityNews</span></a> <a href="https://social.skynetcloud.site/tags/CyberEssentials" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberEssentials</span></a> <a href="https://social.skynetcloud.site/tags/TheCyberExpress" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TheCyberExpress</span></a> <a href="https://social.skynetcloud.site/tags/DataBreachNews" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DataBreachNews</span></a> <a href="https://social.skynetcloud.site/tags/BreachForums" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BreachForums</span></a> <a href="https://social.skynetcloud.site/tags/DataScraping" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DataScraping</span></a> <a href="https://social.skynetcloud.site/tags/databreach" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>databreach</span></a> <a href="https://social.skynetcloud.site/tags/SOCRadario" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOCRadario</span></a> <a href="https://social.skynetcloud.site/tags/Hackread" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hackread</span></a> <a href="https://social.skynetcloud.site/tags/SOCRadar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOCRadar</span></a> <a href="https://social.skynetcloud.site/tags/USDoD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USDoD</span></a></p>
Tarnkappe.info<p>📬 Datenleck bei Microsoft: Interne Passwörter öffentlich zugänglich<br><a href="https://social.tchncs.de/tags/Datenschutz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Datenschutz</span></a> <a href="https://social.tchncs.de/tags/ITSicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITSicherheit</span></a> <a href="https://social.tchncs.de/tags/Azure" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Azure</span></a> <a href="https://social.tchncs.de/tags/BlueBleed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BlueBleed</span></a> <a href="https://social.tchncs.de/tags/CanYoleri" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CanYoleri</span></a> <a href="https://social.tchncs.de/tags/Datenleck" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Datenleck</span></a> <a href="https://social.tchncs.de/tags/EgemenKo%C3%A7hisarl%C4%B1" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EgemenKoçhisarlı</span></a> <a href="https://social.tchncs.de/tags/Microsoft" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Microsoft</span></a> <a href="https://social.tchncs.de/tags/Murat%C3%96zfidan" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MuratÖzfidan</span></a> <a href="https://social.tchncs.de/tags/SOCRadar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SOCRadar</span></a> <a href="https://sc.tarnkappe.info/dbc053" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">sc.tarnkappe.info/dbc053</span><span class="invisible"></span></a></p>