12 points

Probably should’ve invested in better security instead of trying to chase tech trends like NFTs.

permalink
report
reply
4 points

You mean the 100th award I could buy was starting to be overkill? /s

permalink
report
parent
reply
7 points
*

Thanks for the gold kind stranger! 🤮

permalink
report
parent
reply
0 points

Thanks for the puke kind strager

permalink
report
parent
reply
2 points

Sucks that they lumped API changes into their demands. This is going to make good-faith protestors look bad.

permalink
report
reply
1 point

Crackpot idea: it’s a false flag operation by reddit admins trying to sour protest support

permalink
report
parent
reply
1 point

as it happened in February, I’m not so sure…

permalink
report
parent
reply
1 point
*

If you think this will change anything at Reddit, think again.

Reddit will not pay them or meet their demands. If they do reverse any of their API changes, it won’t be because of this. Businesses can’t been seen to be caving to ransomware groups and rightly so, as it just encourages more of these types of attacks. ALPHV is 100% trying to cash in on the current resentment towards Reddit and it shows.

We also don’t know what exactly has been accessed, as neither the group nor Reddit will confirm beyond Reddit stating that no production systems or user data was accessed. It could be 80GB of cat GIFs for all we know - I’m going to need more evidence that they have something big than a screenshot of the attacker saying “trust me bro”.

permalink
report
reply
1 point

Yeah, since the attack already happened in February, they just used this opportunity to make them look good (“they are doing something for the community”). However, I don’t know, but it might affect stock when Reddit goes public.

permalink
report
parent
reply
3 points

No website is invulnerable. Since we know from Reddit’s godawful official app they don’t do development very well, no doubt the website also has vulnerable holes.

permalink
report
reply
2 points

They didn’t access the data through a vulnerability in the code, they phished some employee credentials and access it that way.

permalink
report
parent
reply
2 points

That in itself is a vulnerability. In my company we check for impossible travel, browser variance, etc. Credentials are only one aspect of this.

permalink
report
parent
reply
2 points
*

True, I just interpreted your comment differently to that.

permalink
report
parent
reply
5 points

Hopefully they publish the data so we can add to the fediverse

permalink
report
reply
2 points

The article says, the data supposedly contains information about Reddit’s tracking system. I don’t think we want that in the FediVerse

permalink
report
parent
reply

Asklemmy

!asklemmy@lemmy.ml

Create post

A loosely moderated place to ask open-ended questions

Search asklemmy 🔍

If your post meets the following criteria, it’s welcome here!

  1. Open-ended question
  2. Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
  3. Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
  4. Not ad nauseam inducing: please make sure it is a question that would be new to most members
  5. An actual topic of discussion

Looking for support?

Looking for a community?

Icon by @Double_A@discuss.tchncs.de

Community stats

  • 10K

    Monthly active users

  • 5.9K

    Posts

  • 319K

    Comments