6 ms·
> At one point during the exfiltration of Company-1 data, SHARP’s home IP address became unmasked following a temporary internet outage at SHARP’s home. This s
by phnofive 5y ago
> At one point during the exfiltration of Company-1 data, SHARP’s home IP address became unmasked following a temporary internet outage at SHARP’s home.
This seems to explain how this comes down after less than a year since the incident. Surfshark now supports an outage related kill switch, not sure if that's a new feature.
- rmahan 5y agoSeems like he probably would have been caught either way, but would have costed and taken longer if he didn’t drop his VPN. Being one person in a closed room of people knowing about the ransom, and using PayPal over crypto to pay for a VPN seems like it would leave a trail. Eventually would’ve narrowed it down, hopefully. Edit: oh, and using his own keys that were tied to him as an employee while he was being the attacker.