Uhhoh!
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
Communist Capi ☭ 🇵🇸 🏳️‍🌈@midwest.social to 196@lemmy.blahaj.zoneEnglish · 3 years ago

I.T. 101

midwest.social

message-square
18
link
fedilink
494

I.T. 101

midwest.social

Communist Capi ☭ 🇵🇸 🏳️‍🌈@midwest.social to 196@lemmy.blahaj.zoneEnglish · 3 years ago
message-square
18
link
fedilink
alert-triangle
You must log in or # to comment.
  • hypnicjerk@lemmy.world
    link
    fedilink
    arrow-up
    107
    ·
    3 years ago

    if an end user can serve as an entry point to the entire domain for ransomware, the end user hasn’t failed, IT has.

    • 🐑🇸 🇭 🇪 🇪 🇵 🇱 🇪🐑@lemmy.world
      link
      fedilink
      English
      arrow-up
      73
      ·
      3 years ago

      Upper management: “GIVE ADMIN PRIVELEGES TO ALL ACCOUNTS TO STREAMLINE THINGS. I DON’T CARE IF ITS INSECURE DO IT!”

      • bleistift2@feddit.de
        link
        fedilink
        arrow-up
        30
        ·
        3 years ago

        • 🐑🇸 🇭 🇪 🇪 🇵 🇱 🇪🐑@lemmy.world
          link
          fedilink
          English
          arrow-up
          9
          ·
          3 years ago

          [Fired for noncompliance]

          Sad truth of IT. Being ordered around by tech illiterate bosses who refuse to listen. And they often don’t even seem to value their employees, thinking they’re easily replaced (they aren’t)

      • DoucheBagMcSwag@lemmy.dbzer0.comBanned from community
        link
        fedilink
        arrow-up
        21
        ·
        edit-2
        3 years ago

        But sire, our employees will be in potential violation of SOC 2 compliance should we be audit—- “JUST DO IT!”

  • jjagaimo@lemmy.ca
    link
    fedilink
    English
    arrow-up
    64
    ·
    3 years ago

    Today I got an email from management, something along the lines of “you didnt click the link in this email we sent as a required questionnaire about phishing, some people reported it as phishing: a reminder, all emails from IT@company.com are not phishing”

    There was no previous email

    I checked the message details and it said “THIS IS A PHISHING TEST BY external company”

    It was a phishing test disguised as an urgent reminder to answer a phishing questionnaire, replying to a nonexistent email. I can’t wait until Monday when they round up everyone who clicked the link

    • hardware26@discuss.tchncs.de
      link
      fedilink
      arrow-up
      19
      ·
      3 years ago

      deleted by creator

      • newIdentity@sh.itjust.works
        link
        fedilink
        arrow-up
        5
        ·
        3 years ago

        Not nessecarily. They only need one person to run the file

      • chiliedogg@lemmy.world
        link
        fedilink
        arrow-up
        4
        ·
        3 years ago

        I work for a small-ish but fast-growing municipality, and we’re getting increasingly well-targeted actual attacks. Instead of posing as “The IT department” they’re posing as my boss or the City Manager by name.

        This week they even started name-dropping the conference most of the directors were actually attending as an excuse why we wouldn’t be able to reach out and talk to them before the "request$ was due.

    • dditty@lemm.ee
      link
      fedilink
      arrow-up
      12
      ·
      3 years ago

      Wow damn that’d trick whole swaths of our org 🤦. Sad how many people we still get with the super obvious “Free $5 on Venmo” phishing tests…

    • newIdentity@sh.itjust.works
      link
      fedilink
      arrow-up
      9
      ·
      3 years ago

      That’s actually pretty smart.

    • miss_brainfart@lemmy.ml
      link
      fedilink
      arrow-up
      5
      ·
      3 years ago

      They did something similar at our university, I wonder how many fell for it. They never told us

    • pseudo@jlai.lu
      link
      fedilink
      English
      arrow-up
      3
      ·
      3 years ago

      deleted by creator

  • Uriel238 [all pronouns]@lemmy.blahaj.zone
    link
    fedilink
    arrow-up
    26
    ·
    3 years ago

    Usually a company needs a ransomware attack or some other digital tragedy before they learn the importance of security.

    Sometimes they need a few incidents, and need to be reminded when upper management deprioritizes IT security.

  • wabafee@lemm.ee
    link
    fedilink
    arrow-up
    22
    ·
    3 years ago

    Nothing like running a ransomware on a government computer causing huge leak on a government run health database exposing everyone to a potential security risk.

    Case in point: https://gulfnews.com/world/asia/philippines/philippines-hackers-reveal-hospital-bills-health-data-after-failed-ransomware-demand-1.1696339629351

  • Dekthro@lemm.ee
    link
    fedilink
    arrow-up
    16
    ·
    3 years ago

    And this is why I decided to not do IT.

    • newIdentity@sh.itjust.works
      link
      fedilink
      arrow-up
      18
      ·
      3 years ago

      She probably doesn’t do IT and that’s the problem.

  • gmtom@lemmy.world
    link
    fedilink
    arrow-up
    3
    ·
    3 years ago

    I don’t mind, that not the support departments job, probably more like Info sec or dev ops or something.

    • Robert7301201@slrpnk.net
      link
      fedilink
      arrow-up
      3
      ·
      3 years ago

      laughs in small company

  • RachelRodent@lemmy.dbzer0.com
    link
    fedilink
    arrow-up
    2
    ·
    3 years ago

    Mr.Robot.jpg

196@lemmy.blahaj.zone

196@lemmy.blahaj.zone

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !196@lemmy.blahaj.zone

Be sure to follow the rule before you head out.


Rule: You must post before you leave.



Other rules

Behavior rules:

  • No bigotry (transphobia, racism, etc…)
  • No genocide denial
  • No support for authoritarian behaviour (incl. Tankies)
  • No namecalling
  • Accounts from lemmygrad.ml, threads.net, or hexbear.net are held to higher standards
  • Other things seen as cleary bad

Posting rules:

  • No AI generated content (DALL-E etc…)
  • No advertisements
  • No gore / violence
  • Mutual aid posts are not allowed

NSFW: NSFW content is permitted but it must be tagged and have content warnings. Anything that doesn’t adhere to this will be removed. Content warnings should be added like: [penis], [explicit description of sex]. Non-sexualized breasts of any gender are not considered inappropriate and therefore do not need to be blurred/tagged.

If you have any questions, feel free to contact us on our matrix channel or email.

Other 196’s:

  • !196@lemmy.world
  • !onehundredninetysix@lemmy.blahaj.zone
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 569 users / day
  • 2.16K users / week
  • 3.61K users / month
  • 7.13K users / 6 months
  • 3 local subscribers
  • 19.5K subscribers
  • 3.18K Posts
  • 75.9K Comments
  • Modlog
  • mods:
  • Moss@lemmy.blahaj.zone
  • greembow@lemmy.blahaj.zone
  • moss@lemmy.world
  • Queue@beehaw.org
  • funky-rodent [he/him]@lemmy.blahaj.zone
  • Peachy [they/she] @lemmy.blahaj.zone
  • threegnomes@lemmy.blahaj.zonedeleted by creator
  • greembow@lemmy.world
  • remotelove@lemmy.ca
  • Roflmasterbigpimp@feddit.de
  • A_Very_Big_Fan@lemm.ee
  • qaz@lemmy.blahaj.zone
  • A_Very_Big_Fan@lemmy.world
  • qaz@lemmy.sdf.org
  • qaz@lemmy.world
  • qaz@sh.itjust.works
  • qaz@piefed.malplena.net
  • BE: 0.19.19
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org