Pricefield | Lemmy
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Nemeski to [email protected]English • 1 year ago

Over 5,300 GitLab servers exposed to zero-click account takeover attacks

www.bleepingcomputer.com

external-link
message-square
48
fedilink
301
external-link

Over 5,300 GitLab servers exposed to zero-click account takeover attacks

www.bleepingcomputer.com

Nemeski to [email protected]English • 1 year ago
message-square
48
fedilink
  • CubitOom
    link
    fedilink
    English
    1•1 year ago

    How does Microsoft’s implementation work?

    Is it possible to log into windows without a Microsoft account using that method?

    • @[email protected]
      link
      fedilink
      English
      6•1 year ago

      I don’t know about windows specifically, but for outlook they’re pushing their authenticator app (you can use any) and SMS or email one time links. I think it works really well, and almost all attempts to access my account have stopped tbh, they can’t phish for my password if I don’t have a password.

      • @[email protected]
        link
        fedilink
        English
        7•1 year ago

        Yeah this is being standardized at the mobile hardware level now with

        https://fidoalliance.org/passkeys/

        https://blog.google/technology/safety-security/the-beginning-of-the-end-of-the-password/

      • @[email protected]
        link
        fedilink
        English
        2•1 year ago

        That reverse-code thing is super annoying. The next vector is through the shitty app itself.

[email protected]

[email protected]
Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: [email protected]

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @[email protected]
  • @[email protected]
  • @[email protected]
  • @[email protected]
  • 1 user / day
  • 1.15K users / week
  • 4.68K users / month
  • 13.2K users / 6 months
  • 5 subscribers
  • 16.5K Posts
  • 675K Comments
  • Modlog
  • mods:
  • @[email protected]
  • enu
  • Technopagan
  • L4sBot
  • L3s
  • @[email protected]
  • UI: 0.18.4
  • BE: 0.18.2
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org