Why Nostr? What is Njump?
2024-06-17 05:23:30
in reply to

JP on Nostr: Admin creds provided almost unlimited access, no MFA. No MFA on the VPN either. And ...

Admin creds provided almost unlimited access, no MFA. No MFA on the VPN either. And endpoint protection triggered alerts but no one noticed them or did anything about them. Medibank didn't notice 520 GB of data leaving their systems until after the external incident response team was engaged and one of their analysts figured it out a few days later.
Author Public Key
npub13evcur9gj746erucqf4xa50ya6nfe8rcxfdmagxyny5hluvqqjjs2ltfw5