3 ms·
"Adam says the attacker(s) had access to privileged credentials that were previously stored in the LastPass account of a Ubiquiti IT employee, and gained root a
by caseysoftware 6y ago
"Adam says the attacker(s) had access to privileged credentials that were previously stored in the LastPass account of a Ubiquiti IT employee, and gained root administrator access to all Ubiquiti AWS accounts, including all S3 data buckets, all application logs, all databases, all user database credentials, and secrets required to forge single sign-on (SSO) cookies."
Holy...
Wow. That is catastrophic. Everything is compromised. That's a complete rebuild.
- jandrese 6y agoOr they'll just change their passwords and pretend to have solved the problem.