Uber got hacked by an 18 year old using social engineering and a multi-factor authentication fatigue attack, Morgan Stanley has been auctioning off hard drives holding sensitive client data since 2015, and why is it so hard for social networks to remove personal data when deleting your user account.
** Links mentioned on the show **
Uber was breached to its core, purportedly by an 18-year-old. Here’s what’s known
https://arstechnica.com/information-technology/2022/09/uber-was-hacked-to-its-core-purportedly-by-an-18-year-old-here-are-the-basics/
MITRE ATT&CK Mapping of the Uber breach
https://twitter.com/MichalKoczwara/status/1571432800787759104/photo/1
Same hacker also claims he hacked Rockstar Games
https://www.esquire.com/entertainment/a41292914/gta-6-leak-videos-rockstar-hacker/
Multi-factor Authentication Fatigue Attack – How to prevent being a victim
https://sharedsecurity.net/2022/08/22/multi-factor-authentication-fatigue-attack-signal-account-twilio-hack-facebook-and-instagram-in-app-browser/
https://attack.mitre.org/techniques/T1621/
‘Astonishing.’ Morgan Stanley hard drives holding sensitive client data got auctioned off online
https://www.cnn.com/2022/09/20/business/morgan-stanley-fine-customer-data/index.html
35 Best Free Data Destruction Software Programs
https://www.lifewire.com/free-data-destruction-software-programs-2626174
Why deleting something from the internet is ‘almost impossible’
https://www.cnn.com/2022/09/18/tech/deleting-data/index.html
** Watch this episode on YouTube **
** Thank you to our sponsors! **
SLNT
Visit slnt.com to check out SLNT’s amazing line of Faraday bags and other products built to protect your privacy. As a listener of this podcast you receive 10% off your order at checkout using discount code “sharedsecurity”.
Click Armor
To find out how “gamification” of security awareness training can reduce cyber risks related to phishing and social engineering, and to get a free trial of Click Armor’s gamified awareness training platform, visit: https://clickarmor.ca/sharedsecurity
** Subscribe and follow the show **
Join the Shared Security Community on Reddit: https://www.reddit.com/r/SharedSecurityShow/
Subscribe on YouTube: https://www.youtube.com/c/SharedSecurityPodcast
Follow us on Twitter: https://twitter.com/sharedsec
Website: https://sharedsecurity.net
Subscribe on your favorite podcast app: https://sharedsecurity.net/subscribe
Sign-up for our email newsletter to receive updates about the show, contest announcements, and special offers from our sponsors: http://eepurl.com/dwcc8D
Leave us a rating and review: https://ratethispodcast.com/sharedsecurity
Contact us: https://sharedsecurity.net/contact