A lot of hacking is actually social engineering. It’s not hard to get a tech-illiterate person to give up their password, and that’s the softest target for an attack.
I prefer the old “drop a usb in the parking lot”
Be sure to put a label on it that says “secrets!”
Nowadays you’d probably be more likely to get a hit by putting an “Anime titties” label on the drive
Why would you drop a drive full of world news?
I’m interested.
Just put the CEO’s name on it and a very recent date. They’ll be dying to know what secret information the CEO was carrying around.
I prefer a label that says, “Warning: USB stick contains scary virus. Do not plug into a computer”
I bet someone still would
It’s what sandboxes are for.
There are usb sticks that can kill your pc by getting charged and then discharging all the electricity at once to your pc so no sandbox will save you in situations like those.
Me: Plugs USB into throwaway computer. Computer: dies. Me: “well that’s a pretty boring virus!”
deleted by creator
Or even jaded tech savvy people. I work in IT and there have been a number of times that I have witnessed or heard about people who know better causing an incident because they’re burnt out or irate.
“Wait a second…I don’t give a shit about this company.”
This seems like there is an idea for a joke or a comic here somewhere…
Happy employees are less likely to be socially engineered? Wow shocker
deleted by creator
deleted by creator
Managment taking notes:
That’s a good point! I like the way you think! What is your password?
It’s *******, what’s yours?
Edit: that’s cool, Lemmy blocks it out!
Ah, cool, let me try:
iWantToSuckFrozengyro’sToes69
Oh so that’s why Lemmy sensors my f words
hunter2
deleted by creator
I am so sick of everyone asking me for my password with no spaces or capitals.
W h A t I s Y o U r P a S s W o R d ?
5
Hacker voice: “I’m in”
Looks at overly complicated industry software he’s never even heard of before
“I’m out”
“Looks like these guys have already been hit with ransomware.”
So SAP.
Wait, I have an idea! Yes, just as I thought, I can overlay their proprietary operating system with this fancy looking graphical interface that resembles nothing and gain full control of their system. I’m back in!
That sounds like Grafana with extra steps.
I was thinking of the James Bond movies where they show hacking to be a guy wearing glasses looking for a glowing ball in a flashing GUI that he rotates around somehow by typing really fast.
So they have a fancy representation of … something with a hex table, that then transforms into a map of London given the right key?
We have these obligatory online seminars about web security /privacy at work.
Turns out that for some reason, with Privacy Badger enabled, they appear as “passed” instantly. I never saw a single second of these endless seminars.
I tried to tell the IT guy but he couldn’t care less and I suspect he didn’t even know what Privacy Badger actually is
“Working as intended” - the dev who loves Privacy Badger.
Or maybe he feels that these seminars are for people who don’t use things like privacy badger.
It seems like you don’t need Training then (:
now I want to know what privacy badger is amd I’m too lazy to google it…
deleted by creator
Its like the only accurate part of hackers
And sadly, hackers is like the most accurate hacking in any movie.
The books that Cereal Killer pulls out are all legit also. The titles at least are all real books.
Untrue, we also have a functioning Gibson screensaver.
(Opens DOS, frantically types)
“Heh. I was able to SSH right into their jpg with nothing but an Ethernet cable and router grease.”router grease
I don’t think that’s what you think it is sir carefully hides tissues
Nah, this isn’t cool. Fuck the company, but this will fuck over the users more than anyone.
If company does not give a crap about employee then they don’t about customer
companies care about money everything else is means for the purpes
"I wonder why they’d need my 2FA too, but oh, well… "
You get a duo push! And you get a duo push! …
Duo push more like duo push you off a cliff because you forgot to do your Spanish lessom
I might care if they paid me a living wage.
I’m all for acting your wage, but I don’t want to make victims of anyone who is interacting with my company simply because I was feeling spiteful. The company will be fine, the tons of people who just had their information leaked are the ones who are truly inconvenienced and may face financial repercussions later on when their information is distributed. Just something to consider
I have to care about mine. If I cause a security breach, I can be sent to prison.
A good portion of the movie Hackers was social engineering. That’s how Mitnick got into a lot of systems as well. Why search for vulnerabilities in apps when people are much easier to manipulate.
HACK THE PLANET
Loved that movie. That has been a fallback movie for so long now.
I wonder if that’s how my old job had 780 gb of source stolen though social engineering.
780 gb of source code? Sounds a bit overengineered, I bet that was hard to audit for security flaws
If there’s 780 gb of source code, I doubt anyone there has the wherewithall to do security audits
Pay people enough and this is less likely to happen.
As somone in IT who has to deal with executives I can assure you that high compensation has no correlation with good security practices :(