In August, I found 60 Trello boards, a public Jira and bunch of Google Docs of UN which were containing credentials to multiple FTP servers, social media & email account, lots of internal comm. and documents. @micahflee wrote an excellent article about it https://t.co/5nHWitM2lw
@joehelle@SecGus@huntrdev Totally agree with @SecGus. To add regarding the "NIST score", I'll let this speak for itself.
It requires an attacker to already have access to the application in order to change the password...
@releehwnalyd .@freeCodeCamp (https://t.co/14JoZsekZj) is great for programming and best thing is it's free! And for CS, https://t.co/VreC5z6C5D (again, free).
@jonathandata1@s1guza Main question: how can it impact a user? can you steal user backup? can you access the files on your malicious site's users? please explain, I really want to understand your side to this. Thanks!
@jonathandata1@s1guza >If you see this image, and compare it to the video above. (...) when I triggered the backup from my website...
2. The way someone *authenticated* to the phone clicks on a website, is same as how they'll click on a "backup now" button in settings. What impact does it have?
3/n
@sudosev So sorry for your loss. I canβt imagine what you must be feeling right now. You have my deepest sympathy and unwavering support. Wishing you peace, comfort, courage, and lots of love at this time of sorrow. Take care and feel free to message me if you wanna talk. <3 *hugs*
@GossiTheDog Google Cloud incident page still marks it as an ongoing outage: https://t.co/NZ0zjQZ3LY.
I think Spotify and Discord did some fix on their end for it since they are up again.