chiefgyk3d, to infosec
@chiefgyk3d@social.chiefgyk3d.com avatar
gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

US insurance firms sound alarm after 66,000 individuals impacted by SIM swap attack.

Read more in my article on the Bitdefender blog: https://www.bitdefender.com/blog/hotforsecurity/us-insurance-firms-sound-alarm-after-66-000-individuals-impacted-by-sim-swap-attack/

itnewsbot, to cryptocurrency

SIM-swapping ring stole $400M in crypto from a US company, officials allege - Enlarge (credit: Wong Yu Liang | Moment)

The US may have uncov... - https://arstechnica.com/?p=1999957

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

The SEC 'fesses up. Its Twitter account was hacked due to a SIM swap attack.

Read more in my article on the Bitdefender blog:

https://www.bitdefender.com/blog/hotforsecurity/sec-twitter-hack-blamed-on-sim-swap-attack/

gcluley, to Cybersecurity
@gcluley@mastodon.green avatar

Twitter says, It’s not our fault the SEC’s account got hacked, and Investigation reveals SEC account did not have 2FA enabled. Wuh??

https://grahamcluley.com/twitter-says-its-not-our-fault-the-secs-account-got-hacked/

chiefgyk3d, to DEFCON
@chiefgyk3d@social.chiefgyk3d.com avatar

In case anyone has my burner number while I was at I plan to keep that number from @Efani active. I'm actively calling it the "DEFCON Phone" and just an FYI if you do sign up for Efani yourself please mention me, they were kind enough to provide a free month of service for my DEFCON needs and any purchase gives us both a free month from the most secure phone provider!

chiefgyk3d, to infosec
@chiefgyk3d@social.chiefgyk3d.com avatar

Just fixed my @Efani dashboard issues, support was great. So now that I have access to my dashboard some notes for

TOTP Code generation shouldn't just be QR, you should also allow the string of text to be manually input. I had to use zbarimg to convert the QR code to text to input into my @yubico security key and vault for TOTP generation.
You should also add FIDO/WebAuthn support. TOTP has a single seed, so if stolen they have access.

chiefgyk3d,
@chiefgyk3d@social.chiefgyk3d.com avatar

@Efani Now for my least favorite part of making new accounts. Grabbing ALL of my @yubico to add my TOTP of FIDO/WebAuthn for my 2FA for security. Well at least I have plenty of backups. Ones with stickers are for work and the ones on my keychain aren't pictured as they are plugged in

chiefgyk3d, to fediverse
@chiefgyk3d@social.chiefgyk3d.com avatar

Been using my status to pull companies to the . Managed to get @Efani to see the advantages for the and community. They are a great cell company I actually sought out to prevent my own SIM swap attacks. With Mastodon being more private it makes sense for them to be here

If you do switch to them let them know I sent you or use the link in my bio. You know my rules I will only promote things I actually will use.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • thenastyranch
  • magazineikmin
  • cisconetworking
  • tacticalgear
  • mdbf
  • rosin
  • Youngstown
  • slotface
  • khanakhh
  • GTA5RPClips
  • kavyap
  • ngwrru68w68
  • DreamBathrooms
  • megavids
  • everett
  • ethstaker
  • modclub
  • cubers
  • love
  • normalnudes
  • Durango
  • InstantRegret
  • provamag3
  • tester
  • Leos
  • osvaldo12
  • JUstTest
  • All magazines