4 ms·
Amazing; I hadn't seen that story. Vox doesn't prove that this particular phishing attack was the way the attackers got access to Podesta's email, but what an u
by hackuser 9y ago
Amazing; I hadn't seen that story. Vox doesn't prove that this particular phishing attack was the way the attackers got access to Podesta's email, but what an unbelievable failure by their IT team. Who would fall for this?
The phishing email claims to be from from Google support, and tells the user:
> CHANGE PASSWORD: <https://bit.ly/[deleted]> https://bit.ly/[deleted]>
That should be enough red flags. Also, the bitly address expands to one in the domain, myaccount.google.com-securitysettingpage.tk
- Natsu 9y ago> Vox doesn't prove that this particular phishing attack was the way the attackers got access to Podesta's email If you visit the stats page for that bitly link by adding a + to the end, you'll find that it was visited exactly twice, both visits at the right time for the hack, and you'll find that the Wikileaks data cuts off soon after the hack, probably when they set up 2FA as suggested. While that doesn't technically prove that they're related, it's better evidence than we have for any other theories. Sources: Bitly stats page: https://bitly.com/1PibSU0+ https://bitly.com/1PibSU0+ Phishing email: https://wikileaks.org/podesta-emails/emailid/34899 https://wikileaks.org/podesta-emails/emailid/34899