Reddit discloses security breach: what you need to know
#1
Exclamation 
Quote:Reddit disclosed a security breach today on the site stating that a malicious actor managed to gain access to internal servers.


[Image: reddit-security-incident-phishing.png]

The company became aware of a phishing campaign that targeted Reddit employees specifically on February 5, 2023. The campaign used "plausible sounding prompts" to get employees of the site to a phishing website that looked like the company's intranet gateway.

Employees who entered their login credentials on that fake website would provide the attackers with the credentials and also second-factor tokens.

At least one employee of the site feel for the phishing ruse, giving the attacker access to "some internal docs, code, as well as some internal dashboards and business systems". Investigators of the incident found no evidence that the attacker managed to gain access to "primary production systems", which hold the majority of data, including Reddit user data. No evidence has been found up to this point that suggests that the attacker managed to gain access to non-public user data, such as email addresses, saved posts or conversations, or the "Reddit information has been published or distributed".

The employee who fell for the phishing attack reported the incident to the Security team, according to Reddit "soon after being phished". Reddit's security team changed the status of the account, removing access to systems. The attacker could no longer access Reddit systems after the change was made.

The investigation is still ongoing and Reddit did not provide details on the information that the attacker managed to obtain while having access to company servers.

Reddit suggests that users of the site enable two-factor authentication, if they have not done so already. The post links to a support article that explains how Reddit users may enable the extra layer of protection on the site.

It needs to be noted that two-factor authentication did not prevent the phishing attack against the Reddit employee. If specifically targeted, two-factor authentication does not provide 100% protection. The security feature helps, however, when user databases with passwords are copied by attackers, as the attackers would need to obtain two-factor authentication codes from particular users if they manage to break the passwords of the database.

Closing Words

It remains to be seen if Reddit's initial assessment of the security breach holds. The company analyzed the security incident for several days already, but there is always a chance that additional evidence is found at a later stage in the investigation.

Now You: do you use Reddit?
...
Continue Reading
Reply


Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Trying out EaseUS Video Downloader Pro
This is a very g...masonwright757 — 21:58
XYplorer
XYplorer (64-bit) v2...jAcos — 17:39
RAM Booster for PC
harlan4096 — 10:23
RAM Booster for PC
Hello, Plz Sugges...alina104 — 09:34
Microsoft Retires Standalone SharePoint ...
Microsoft Is Ending...harlan4096 — 08:29

[-]
Birthdays
Today's Birthdays
avatar (49)zamokpluff
avatar (30)sarapelon21
avatar (51)FrankNub
Upcoming Birthdays
avatar (47)hapedDow
avatar (46)komriwat
avatar (48)Michaelecozy
avatar (38)showercurtains
avatar (49)PeterWhink
avatar (50)neuthrusBub
avatar (30)script6027529171
avatar (46)delsreehRob
avatar (44)pyotrded
avatar (41)oecmecodo
avatar (40)ShakitaSmobe
avatar (49)tsorenHievy
avatar (46)myhotseeve
avatar (46)Edwinmub
avatar (46)dimaWeami
avatar (41)svoyaEnuct
avatar (39)TranoTymn
avatar (39)MezirLal
avatar (50)listfquoto
avatar (46)dima6sarPrave
avatar (38)Michaelaburi
avatar (46)dpascoal
avatar (51)Ronaldduh
avatar (39)legalgauch
avatar (41)yposegij
avatar (44)Baihu
avatar (27)RaseinsLikes

[-]
Online Staff
There are no staff members currently online.

>