This Discord Zendesk compromise has gotten more silly.
Previously, the Threat Actors responsible for the Discord Zendesk compromise claimed they had gotten access by compromising a BPO (Business Process Outsource) employee.
They were not lying.
It turns out that in August the Threat Actors who compromised Discord began sending emails to Discord outsourced employees offering them money in exchange for access to Discords internals.
The people they emailed was a very small team located in Southeast Asia. This particular office only has a handful of employees assigned to working Discord helpdesk (including age verification). This team is assigned to primarily handle back log work. This team had a great deal of access and were believed to be "trusted".
One of the emails this small team received offered $500 compensation to prove they're a Discord BPO employee. They offered an additional "several thousand dollar" lump sum payment in exchange for giving them access.
The Discord BPO employees were told to ignore the emails. Unfortunately, it appears one of these BPO employees did not ignore the emails and accepted the bribe.
$500 in this Southeastern Asian country is an astronomical amount of money. The "several thousand dollar" lump sum payment would be enough for this person to live comfortably for several years in their country.
🚨EDR Telemetry website is live! 🥳
I hope this makes it even easier for folks to compare the telemetry of EDR vendors and visualize their visibility gaps 🙂
‣ Website🔗edr-telemetry.com
‣ GitHub 🔗github.com/tsale/edr-tele…
**Telemetry results reflect the most recent updates from the EDR Telemetry project.
I created the first draft of a website for the EDR telemetry project to help people quickly compare vendor telemetry visibility. What do you think about it? Are there any specific features you want to see for the website?
Built with ChatGPT 4o with canvas (wanted to test it
🤯 The level of sophistication of the XZ attack is very impressive! I tried to make sense of the analysis in a single page (which was quite complicated)!
I hope it helps to make sense of the information out there. Please treat the information "as is" while the analysis progresses! 🧐 #infosec#xz
You might need to check your Teams Admin Center.. 😩
It looks like the defaults for 3rd party apps changed so users can now add over 2300 apps to Teams without requiring approval
To change this, click Actions - Org-wide app settings, turn off 3rd party apps (more in next tweet)
5K Followers 338 FollowingHacker, Forensicator & OSINT practitioner. SANS Author and Senior Instructor, Blackhat speaker & OSCP holder. Featured in Wired and Founder at @ArgeliusLabs
3K Followers 2K FollowingResident snr fellow at the Australian Strategic Policy Institute;
Head of ASPI's AI & Security Program
https://t.co/WPIJr48Z9f
https://t.co/nhrNN6k2zT
@ASPI_org
16K Followers 9K FollowingSenior Analyst - Australian Strategic Policy Institute - focus on Defence Strategy and Capability issues including Space Policy and Space Security
89K Followers 18 FollowingTrendAI Zero Day Initiative™ (ZDI) is a program designed to reward security researchers for responsibly disclosing vulnerabilities.
8K Followers 4K FollowingIf you mention the tongue-eating seal one more time, I'm going to cunt-punch you so hard you're going to double as a hand puppet!
12K Followers 2K FollowingA joint initiative of the Aust. Government and ANU. Post-grad studies | Executive & professional development | Public policy. CRICOS provider 00120C.
56K Followers 1K FollowingThe Australian Strategic Policy Institute is an independent, non-partisan think tank focused on Australia's defence, cyber, tech and strategic policy.
45K Followers 3K FollowingProfessor Rory Medcalf AM | Head of the National Security College, Australian National University | Indo-Pacific strategy | An independent Australian worldview
29K Followers 3K Followingassociate editor (audio/visual) at Guardian Australia. author of Trivial Grievances (the book, not the whingy posts). you’re doing amazing sweetie. she/her
252K Followers 1K FollowingFounder & CEO of @haveibeenpwned, the most trusted name in data breach intelligence. Speaker, blogger, Microsoft Regional Director. Gold Coast, Australia.
125K Followers 1 FollowingTrue stories from the dark side of the Internet. Host @jackrhysider.
New episodes released on the first Tuesday of each month.
Discord: https://t.co/bZZRR8C59R
1.8M Followers 938 FollowingPAI enjoyer, OSINT guy @hntrbrkmedia, my views/freezing cold takes are my own. For full disclosures, visit https://t.co/JOtQx4pI3e.
97K Followers 3K FollowingWhite House and National Sec. Corresp., New York Times. Author of "Confront and Conceal," "The Inheritance," and “The Perfect Weapon." April 16: "New Cold Wars"
49K Followers 944 FollowingPodcasts: Missing Cryptoqueen, Believe in Magic, Very British Cult Books: People V Tech, Dark Net, Missing Cryptoqueen https://t.co/mB1qVsCvlt
39K Followers 3K FollowingTech Director / Threat Intelligence at Microsoft. Previously, Director of Incident Response & Intel Research at Mandiant. Former Chief Technical Analyst at CISA
32K Followers 369 FollowingOn-demand video training for IT pros.
Watch. Learn. Conquer.
Explore our entire training library for free: https://t.co/7sr65zHjgX