reddit General

Why call it a "security incident" instead of a security breach or anything else? The former makes it sound like "consent incident" , which makes it way funnier.

Probably because the post was written by a tranny and they cannot take an L, that would crush their already fragile ego and make them commit 41%. They have to frame it as "opssie, we did a fucky wucky. It was totally not our fault that some of us fell for a phishing scam".
gotta blame somebody.png
 
I love it when twox comes up in my feed
View attachment 4483916View attachment 4483920
I’d be willing to bet this a troon imagining things
You don't have to bet, you're correct.

"My autistic ass"
1676003155474.png


Ding ding ding.

OP is close to self awareness, but no cigar. Her next step is to recognize that her mental disorder is preventing her from viewing the world rationally and that the directionless anger and frustration she feel is the result of her own internal systems, not the systems of the patriarchy.
 
They probably linked some lookalike site that they built to look like reddit, then the admin entered their login info, and it was sent to the hackers.
Hackers then use that retard's security clearance to download documents/source code/employee personal info.
it said exactly what they did in the article

in your prior post and the next four posts after this you're making dumbass guesses while also making authoritative judgments of the level of sophistication based on your guesses for some reason

why the fuck wouldn't you just read the article
 
it said exactly what they did in the article

in your prior post and the next four posts after this you're making dumbass guesses while also making authoritative judgments of the level of sophistication based on your guesses for some reason

why the fuck wouldn't you just read the article
You mean the Reddit post? Because I read the post, and to me the explanation of what occurred uses a lot technical jargon most people can't follow. This is on purpose, it was wrote this way to downplay the severity of the situation. An Internet based company should not be falling for one of the most easily identifiable scams people perpetrate. If their explanation was "less dressed" (AKA simplified in a way anyone could follow it) then Reddit looks bad. I mean, they look bad anyway as most adults with computer literacy don't fall for phishing scams, but you get what I'm saying.

If you read what @Wendy's Chili posts he was just theorizing how the phishing scam worked, as there's a few different ways and the official Reddit post didn't clarify exactly what the spoof was/looked like. He was judging the level of sophistication because phishing scams aren't sophisticated and that's why they're so common. For example .RAT viruses are also common but much more sophisticated, they are basically the same as phishing except instead of tricking someone to give you their login information you have a program designed to force them to give you it. He wasn't being pompous, it's a fact phishing is the bottom of the totem pole when it comes to hacks.

Unless you are referring to an actual article that outlines what the phish was? If that's the case, no article was posted here. Maybe post the article instead of being a combative retard.
 
r/AskScienceFiction has updated their automod autopost to post Hogwarts Legacy spoilers to each thread:

It's would be funny what a hissy fit that the tranny jannies are throwing if it weren't so fucking vile that they're even still alive to post. What does one expect of petulant pedophiles in positions of puny power? I hope all the bullshit wakes a few more people up to the simple fact that NAMBLA was pretty clear about their goals, and is the one true voice of the modern left.

Omg. I got sucked into a Reddit hate-read here and I want to strangle every single one of these people. In a Christian manner of course. This shit is comedy gold.
 

Attachments

  • Screenshot_20230210-013253.png
    Screenshot_20230210-013253.png
    399.5 KB · Views: 90
  • Screenshot_20230210-013231.png
    Screenshot_20230210-013231.png
    446 KB · Views: 84
  • Screenshot_20230210-013159.png
    Screenshot_20230210-013159.png
    383.5 KB · Views: 73
  • Screenshot_20230210-013008.png
    Screenshot_20230210-013008.png
    245.6 KB · Views: 81
it said exactly what they did in the article

in your prior post and the next four posts after this you're making dumbass guesses while also making authoritative judgments of the level of sophistication based on your guesses for some reason

why the fuck wouldn't you just read the article
chrome_DKEcLLj1Fc.png

Nigger are you retarded? This is all the article says about how the attackers gained the login credentials, and it is vague.
All this shit says is basically "some dumb retard entered their login to a site that attackers made to look like ours."
That is it. This is very far from saying exactly what the attackers did.

Phishing is not sophisticated either, it is not even real hacking by any measure.
They're just saying it's sophisticated to try and save from embarrassment.
What they're doing is the equivalent of calling HTML a programming language.
My "dumbass guesses" are 100% possible and probable. You have no idea what you're talking about.
 
Last edited:
View attachment 4486800
Nigger are you retarded? This is all the article says about how the attackers gained the login credentials, and it is vague.
All this shit says is basically "some dumb retard entered their login to a site that attackers made to look like ours."
That is it. This is very far from saying exactly what the attackers did.

Phishing is not sophisticated either, it is not even real hacking by any measure.
They're just saying it's sophisticated to try and save from embarrassment.
What they're doing is the equivalent of calling HTML a programming language.
My "dumbass guesses" are 100% possible and probable. You have no idea what you're talking about.
The part that says "clones the behavior of our intranet gateway" makes me think that the actual payload site was actually meant to trick the browser into exposing login sessions and tokens of their internal admin pages. But even then, how did they know how to do it if it's a website that's supposedly unreachable from beyond their HQ?
 
  • Thunk-Provoking
Reactions: BrieLarsonFan2004
The part that says "clones the behavior of our intranet gateway" makes me think that the actual payload site was actually meant to trick the browser into exposing login sessions and tokens of their internal admin pages. But even then, how did they know how to do it if it's a website that's supposedly unreachable from beyond their HQ?
How do we know the website was supposed to be unreachable outside their HQ?
 
  • Like
Reactions: Humbert Humbert
The part that says "clones the behavior of our intranet gateway" makes me think that the actual payload site was actually meant to trick the browser into exposing login sessions and tokens of their internal admin pages. But even then, how did they know how to do it if it's a website that's supposedly unreachable from beyond their HQ?
This. For all the sperging about ip addresses and checks many corporate intranet sites are only available through their *intranet* meaning you are at their HQ or you are using the corp VPN to remote in.

Thats a better question is how an external entity got it. Either:

A. Reddit is retarded and exposes their internal sites externally
B. Reddit network security is retarded and this info was leaked via unauthorized access *and* the intranet has no dynamic content that can't be spoofed or changes so much you can throw shit on there or it was recent.
C. Someone priorly had/currently access to said intranet legitimately and scraped it to use.

My wager is on B personally.
 
Back