4 ms·
Unfortunately, getting breached is not a sign a person or organization is incompetent. All getting breached means is someone decided to attack and organization
by StressedDev 3y ago
Unfortunately, getting breached is not a sign a person or organization is incompetent. All getting breached means is someone decided to attack and organization and found one or more holes in the organizations services.
- Veserv 3y agoShooting a hole in a bulletproof vest with a slingshot is not a sign the bulletproof vest is garbage. All shooting a hole in a bulletproof vest with a slingshot means is someone decided to shoot a bulletproof vest with a slingshot and found one or more weak points in the bulletproof vest. Sounds pretty stupid, right? Okay, now replace slingshot with tank. Now it does not sound so stupid. Turns out you can learn something based on the effort needed to breach a defense. As it turns out, the entire commercial IT industry is basically incapable of stopping small teams of moderately skilled attackers as has been demonstrated to death. A team with just 1-2 M$ of resources is basically unstoppable even with 100 M$- 1 G$ budgets. That is the definition of gross inadequacy.
- xctr94 3y ago‘Click Here to Kill Everybody’ talks in great detail about the asymmetry of defending against attacks. We are in a timeline where this is getting worse over time. A 100x or even 1000x budget/effort is now required to defend against some attack vectors. This isn’t fair, but it’s the state if affairs. My point being: you’re right, but tanks are now orders of magnitude cheaper than anti-tank defenses.
- AtlasBarfed 3y agoIs that why corp.it is replacing ssh with shit like teleport?
- NicoJuicy 3y agoThe only ones competent here are Cloudflare for detecting it earlier and informing Okta.
- computerfriend 3y agoYes, but they lose competency points for sharing a HAR file with an active Okta session token.
- NicoJuicy 3y agoIf you have a problem and your provider asks for the active HAR file. It seems a problem with the provider. You're problem is probably not even going to be checked without fulfilling their request. Okta should have revoked the token after the file was no longer needed. Should I remind you that multiple customers were compromised because of this and that Cloudflare was probably the only one that wasn't breached AND notified Okta...