4 ms·
Just to follow up on the point, here's a Bloomberg piece that states that Colonial Pipeline was because they didn't use 2FA to secure their VPN, which allowed t
by quanticle 5y ago
Just to follow up on the point, here's a Bloomberg piece that states that Colonial Pipeline was because they didn't use 2FA to secure their VPN, which allowed the hackers to compromise their network with a single cracked or sprayed password:
https://www.bloomberg.com/news/articles/2021-06-04/hackers-breached-colonial-pipeline-using-compromised-password https://www.bloomberg.com/news/articles/2021-06-04/hackers-b...
In terms of security best practices, this ranks right up there with not leaving your keys in the ignition while you go shopping. This is the world in which we live: multimillion dollar corporations being either too cheap, incompetent, or lazy to issue RSA tokens, Yubikeys or phone-based TOTP for their VPNs. And somehow this is the fault of Bitcoin?