Hacking email accounts doesn't have video sex rusianto be a sophisticated affair.
We are reminded once again of this fact thanks to a report released Friday by the Microsoft Threat Intelligence Center detailing how a group of hackers targeted the email accounts of journalists, government officials, and the campaign of a U.S. presidential candidate. And here's the thing, the bad actors didn't use some fancy 1337computer skills, but rather employed the oldest trick in the book: the password reset.
According to Microsoft, over a 30-day period in August and September of this year, hackers likely affiliated with the Iranian government went after 241 email accounts and successfully compromised four. The MTIC dubbed the group Phosphorous, and explained how the team operated.
"Phosphorous used information gathered from researching their targets or other means to game password reset or account recovery features and attempt to take over some targeted accounts," reads the blog post. "For example, they would seek access to a secondary email account linked to a user’s Microsoft account, then attempt to gain access to a user’s Microsoft account through verification sent to the secondary account."
Importantly, MTIC writes that the four compromised accounts were not tied to the U.S. presidential campaign. But, still, this isn't good.
Password-reset features come in many forms, from questions about where you went to high school or your mother's maiden name to sending a link or code to a secondary email address or phone number. The former opens victims up to attack by anyone who knows how Google works, while the latter makes your primary email only as secure as your linked secondary email or cell phone.
A prominent abuse of this feature came in 2008, when a 20-year-old college student accessed Sarah Palin's Yahoo email account. He used information like Palin's ZIP code and birthday to reset her account password and gain access to the email account.
"While the attacks we’re disclosing today were not technically sophisticated," explain MTIC, "they attempted to use a significant amount of personal information both to identify the accounts belonging to their intended targets and in a few cases to attempt attacks."
SEE ALSO: How to find stalkerware on your smartphoneThis warning from Microsoft should serve as a reminder to everyone online that a password alone isn't enough to protect your email — especially if someone is motivated to hack the account. Instead, use multi-factor authentication and for the love of god create a unique password.
Oh, and consider ditching those password-reset questions altogether.
Topics Cybersecurity
Jack Dorsey's wild beard at the Senate hearing on Section 230 is being memedDavid Opdyke by Yevgeniya Traps“Hooray for Santy Claus!” by Sadie SteinTaylor Swift lends 'Only the Young' to powerful political ad condemning TrumpPapa's Cats, and Other News by Sadie SteinWhoopi Goldberg urges Blizzard Entertainment to release 'Diablo 4' on MacKanye's birthday present to Kim Kardashian has gifted us with a holographic dad memeTaylor Swift lends 'Only the Young' to powerful political ad condemning TrumpThings Behind the Sun by Brian CullmanThe newest Google Doodle is, unsurprisingly, about votingGoblincore's feral coziness will get you through the rest of the year'Quordle' today: See each 'Quordle' answer and hints for June 8Trump spends final day of campaign trashing Lady Gaga and 'Beyonsee'Obama sank a perfect three'The Little Mermaid' livePornhub says it's reserved for voters only on Election DayTinder's Ghosting Graveyard helps you craft a text to the person you ghostedJack Dorsey's wild beard at the Senate hearing on Section 230 is being memedScott and Longfellow: Partners in the Long, Mild Twilight by Micki MyersRaising sim 'Volcano Princess' lets you minmax your daughter NYT Connections hints and answers for April 17: Tips to solve 'Connections' #676. Today's Hurdle hints and answers for April 16, 2025 Best Kindle deal: Get a refurbished 2021 Kindle Paperwhite for $85 Best iPad deal: Save $20 on Apple Magic Keyboard 'Mario Kart World' Nintendo Direct: 3 takeaways The Made in America iPhone: How much would it cost? 4chan down, reportedly hacked as of April 15 Best Sony deal: Sony’s WF Nvidia RTX 5060 GPUs: Release date, price, more Nintendo Switch 2 preorder just days away, per leak Macbook Pro M3 deal: Save $400 at Best Buy's Spring Sale Spotify is down right now Best Apple deal: Save 10% on Apple accessories when trading in a device in Best TV deal: Save $30 on Amazon Fire TV 2 Doom + Doom II Will It Run? Edition preorder: $666.66 on April 18 NYT Strands hints, answers for April 16 NYT Connections Sports Edition hints and answers for April 16: Tips to solve Connections #205 Barcelona Open 2025 livestream: Watch live tennis for free How to unblock xHamster for free Best robot vacuum deal: Save 51% on the Roborock Q8 Max+ robot vacuum and mop
2.7108s , 10504.578125 kb
Copyright © 2025 Powered by 【video sex rusian】,New Knowledge Information Network