←back to thread

193 points leymed | 3 comments | | HN request time: 0.603s | source
1. gred ◴[] No.44360663[source]
Why so many pages of "Recommendation: implement multi-factor authentication" and other IT security irrelevancies? Did they need to pad out the number of pages?
replies(2): >>44360691 #>>44361217 #
2. diggan ◴[] No.44360691[source]
> In the systems with network traffic evaluation probes, no records consistent with unauthorized activity have been observed, such as lateral movements, network traces or file movements for vulnerability exploitation or privilege escalation, among others.

> However, as is common in networks and information systems in any sector, other risks have been identified, such as vulnerabilities, deficiencies or inadequate configurations of security measures, which may expose networks and systems to potential risks, for which a series of measures are proposed.

3. rcxdude ◴[] No.44361217[source]
Infrastructure in general has pretty terrible security practices, so I won't bemoan someone finding a useful soapbox to remind them to shape up a bit, even if it isn't the core cause of this particular issue (and it's probably also a reaction to various rumours/speculation about a cyberattack).