• Home
  • Privacy Policy
  • Terms and Conditions
  • DMCA
  • Disclaimer
  • Contact us
Tuesday, June 17, 2025
No Result
View All Result
NEWSLETTER defal
Lebanon Hub
NEWSLETTER
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up
No Result
View All Result
Lebanon Hub
No Result
View All Result

Mandiant, SEC Lose Control of X Accounts Without 2FA

January 12, 2024
in Cyber Security
0
Home Cyber Security
0
VIEWS
Share on FacebookShare on Twitter


Upon evaluate, Google’s cybersecurity operation at Mandiant has decided it quickly misplaced management of its X account to cryptocurrency drainer malware operators on Jan. 3 as a result of it did not have two-factor authentication arrange.

Efficient March 20, 2023, solely paid, premium subscribers to X (formerly Twitter) have access to 2FA.

It is an embarrassing admission that consultants say is an indication of the pressure cybersecurity groups are underneath to maintain a crushing onslaught of cyberattacks at bay with a shrinking pool of assets and expertise to satisfy the problem. If it will possibly occur to Mandiant, it will possibly occur anyplace, they warn.

“Usually, 2FA would have mitigated this, however on account of some workforce transitions and a change to X’s 2FA coverage, we weren’t adequately protected,” is an announcement the Mandiant workforce actually by no means wished to must compose, however nonetheless it was posted on X on Jan. 10. “We have made modifications to our course of to make sure this does not occur once more.”

X’s 2FA Upcharge

In a separate high-profile incident on Jan. 9, the X account operated by the Securities and Alternate Fee (SEC) was hijacked to submit a pretend announcement that the regulator had authorised trade traded funds (ETFs), which regardless of being taken down in lower than 20 minutes gained 1 million views and drove the worth of Bitcoin up by 5%.

On this occasion, X put out an announcement that the @SECGov account was accessed by a compromised telephone quantity related to the account. The assertion additionally famous the SEC didn’t have 2FA enabled on the account.

Whereas cybersecurity groups are centered on defending enterprise “crown jewels” menace actors have pounced on the tweak to X’s 2FA premium pricing.

“It’s clear that cybercriminals are taking benefits of the X modifications in 2023 to multifactor authentication (MFA) through SMS, which compelled customers to pay for this safety performance or use app-based MFA,” Claude Mandy, chief evangelist, knowledge safety, at Symmetry Techniques explains. “Sadly, as I predicted on the time, it’s clear that organizations will not be ready to pay to make use of a much less safe type of authentication like SMS MFA but additionally can’t be bothered to obtain a free authentication app for his or her social media administration accounts.”

Lacking the Small Stuff is Simple

Whereas enterprise safety groups are centered on stopping subtle assaults, it may be simple for even the sharpest groups to miss the easy stuff, in keeping with Bud Broomhead, Viakoo’s CEO.

“The scarcity of cybersecurity professionals at a time when threats are rising in quantity and velocity is probably going inflicting organizations to take shortcuts,” Broomhead says. Much like how cybersecurity corporations typically have extra vulnerabilities of their code than different types of software program, on account of time pressures and cutting-edge code improvement, safety companies like Mandiant could also be so centered on extra critical or complicated exploits that the fundamentals — like establishing 2FA on an X account — merely is missed.”





Source link

Tags: 2FAaccountsControlLoseMandiantSEC
Next Post
Quordle today – hints and answers for Friday, January 12 (game #718)

Quordle today – hints and answers for Friday, January 12 (game #718)

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Beirut, LB
14°
Cloudy / Wind
05:4017:50 EET
Feels like: 13°C
Wind: 34km/h SW
Humidity: 65%
Pressure: 1012.19mbar
UV index: 0
FriSatSun
14°C / 9°C
16°C / 11°C
18°C / 12°C
powered by Weather Atlas

Recent News

PS Plus Extra & Premium Games Leaving In July 2025 Have Been Confirmed, Includes Dying Light 2: Stay Human

PS Plus Extra & Premium Games Leaving In July 2025 Have Been Confirmed, Includes Dying Light 2: Stay Human

June 17, 2025
How to neutralize corrupted items in FBC: Firebreak

How to neutralize corrupted items in FBC: Firebreak

June 17, 2025
Firebreak review – Dreary, dull multiplayer in need of a remedy

Firebreak review – Dreary, dull multiplayer in need of a remedy

June 17, 2025
Katie Boulter says death threats and abuse highlight dark side of tennis betting

Katie Boulter says death threats and abuse highlight dark side of tennis betting

June 17, 2025
Google to scale up AI-powered fraud detection and security operations in India

Google to scale up AI-powered fraud detection and security operations in India

June 17, 2025
Andy Robertson transfer saga begins with planned fee and alternative target – Liverpool FC

Andy Robertson transfer saga begins with planned fee and alternative target – Liverpool FC

June 17, 2025
Operation 999: Ransomware tabletop tests cyber execs’ response

Operation 999: Ransomware tabletop tests cyber execs’ response

June 17, 2025
5 Must-Watch Netflix Miniseries You Should Binge in June 2025

5 Must-Watch Netflix Miniseries You Should Binge in June 2025

June 17, 2025
Lebanon Hub

Get the Latest Lebanon News and world News on LebanonHub.com. Local News, Sports, Technology, Music, Celebrity, Gaming News and Cryptocurrency Updates.

Category

  • Altcoin
  • Australia
  • Bitcoin
  • Blockchain
  • Celebrity
  • Cyber Security
  • Ethereum
  • Exchange
  • Litecoin
  • Local News
  • Mobile
  • Movies
  • Music
  • New Released
  • PC
  • PlayStation
  • Popular
  • Reviews
  • Sports
  • Startups
  • Technology
  • TV
  • XBOX

Recent News

PS Plus Extra & Premium Games Leaving In July 2025 Have Been Confirmed, Includes Dying Light 2: Stay Human

PS Plus Extra & Premium Games Leaving In July 2025 Have Been Confirmed, Includes Dying Light 2: Stay Human

June 17, 2025
How to neutralize corrupted items in FBC: Firebreak

How to neutralize corrupted items in FBC: Firebreak

June 17, 2025
  • Home
  • DMCA
  • Disclaimer
  • Privacy Policy
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2022 - Lebanon Hub.

No Result
View All Result
  • Home – Lebanon hub
    • About us
    • Radio & Live Hosting
      • Home
      • Podcast
      • About us
      • Contact us
  • Blog
    • Submit Blog
  • News
    • International
      • Lebanon
      • Australia
      • Sports
      • Tech
      • Cyber Security
      • Music
      • Celebrity
      • TV
      • Movies
    • Gaming
      • Reviews
      • XBOX
      • PlayStation
      • PC
      • Mobile
      • New Released
      • Popular
    • Cryptocurrency
      • Blockchain
      • Bitcoin
      • Altcoin
      • Exchange
      • Startups
      • Ethereum
      • Litecoin
  • Business
    • Business Dashboard
    • Add New Business
  • Events
    • Event Dashboard
  • Apply Job
    • All Jobs
    • All Resumes
  • Contact us
  • Sign in
  • Sign up

Copyright © 2022 - Lebanon Hub.