5 ms·
One big problem is that there's no way of knowing what other holes/backdoors were introduced during the period when the attacker had all those credentials. Mayb
by nerdbert 3y ago
One big problem is that there's no way of knowing what other holes/backdoors were introduced during the period when the attacker had all those credentials. Maybe they are immediately able to get the new key.
- jl6 3y agoLet's hope someone has spent the last 3 months reinstalling Azure from the original CD.
- garganzol 3y ago"MSN Limited Edition Gold CD" is actually a thing.
- juancampa 3y agoFCKGW-RHQQ2-YXRKT-8TG6W-2B7Q8
- gorlilla 3y agoThanks. I used to have that on a piece of paper taped to my tower. I don't have that tower but instantly recognized it.
- no_identd 3y ago[Laughs in Trusting Trust Problem]
- quickthrower2 3y agoYou can but you need to install NT4 first, then do all the upgrades
- mycall 3y agoWhy is there no way of knowing? I would think Microsoft is able to do forensic snapshot comparisons for their datacenters -- at least, I would assume a trillion dollar company does.
- eqvinox 3y agoEstablishing that ability costs money (i.e. having snapshots & co.), and actually executing it costs further money. Absent either customers paying for it, or regulations requiring it, Microsoft certainly won't sink money out of the goodness of their heart. I don't believe there are a lot of regulations for this — and how many customers do you think would pay for something like this? Realistically? :-(
- insanitybit 3y agoI mean, they at least have SOC2 compliance, and obviously a lot more (FEDRAMP). To get those certifications an auditor is going to make sure you have basic shit in place like logging, etc.
- nerdbert 3y agoThey're not going to make sure of anything, in my experience, except that an org's IT management had a disappointing conversation with their team and then aspirationally checked boxes claiming to have things in place.
- notnmeyer 3y agoyeah, but SOC auditors barely understand the stuff you’re providing as proof.
- insanitybit 3y agoIt's gonna depend on the auditor, but yeah of course SOC2 doesn't mean "you're secure" but unless you actively lie to your auditor you're going to have some basic stuff in place.
- Deathcrow 3y agono one can do what you suggest. it's nonsense.