Hacker News new | ask | show | jobs
by closeparen 2946 days ago
You say that, but what are the attack vectors in these high-profile breaches?

- Unpatched, publicly documented vulnerabilities.

- Unauthenticated S3 buckets.

- Unencrypted laptops.

- Default passwords.

This isn't subtle crypto weaknesses or attack vectors missed in the security assessment of protocol designs. It's carelessness. It's stuff that any high school kid who's good with computers will tell you about, let alone any IT professional or software engineer.

1 comments

And the entrypoint when Google got hacked by the Chinese was Internet Explorer 6.

People who think defending networks is merely a matter of choosing not to get hacked have clearly never tried to do it.