• sp3ctr4l@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    2
    ·
    2 days ago

    It’s also probably the most common type of breach. It’s way easier to compromise tech support than find a vulnerability, so it makes a ton of sense for a company like Blizzard to have an auditing team to test the various attack vectors.

    Yep, absolutely.

    The uh, funniest one that sticks in my memory was the hack of basically an early build of GTA 6.

    Somebody social engineered their way into someone at Rockstar who had some level of admin acces, I think via fake / intercepted and reformed 2FA auths to the target’s phone, along with some spear phishing.

    Then, they were proficient enough to exploit thier way throughout the intranet… but not smart enough to cover all their tracks.

    A lot of roles like QA and cyber security sound glamorous, but that’s because people like glamorous titles. If you’ve spent even a tiny amount of time working in a relevant industry (in this case, anything touching computers), you should be able to read between the lines.

    You would think this, but everywhere I have worked in the industry… most people cannot infact read between the lines.

    I’ve attended and even spoken at some tech conferences, and they’re like 90% entry level stuff with a handful of interesting events and talks that actually break some new ground.

    Impressive!

    I’ve been to some, never spoken though… also, not DEFCON though.

    I imagine cyber security conferences are similar. (mostly exist for networking)

    I agree.

    But yeah, streamers like to appear like they know their stuff because that’s what gets people to watch.

    Yeah, but Thor takes it to an uncommon point of basically being a conman, with his so much of his reputation built, by himself, on vastly overstated credentials.

    Its like getting a 2 year nursing assistant degrer and then acting as if you can safely perform a brain surgery.

    • sugar_in_your_tea@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 days ago

      ve been to some, never spoken though… also, not DEFCON though.

      Yeah, I’ve spoken at local JS and Go confs with several hundred to a couple thousand attendees (my sessions were small, like 30 people), and attended a couple others.

      DEFCON is much larger, but looking at the schedule, it seems pretty similar, a mix of relatively entry level stuff and more advanced topics. So someone attending doesn’t say much other than that they’re interested in cyber security.

      Its like getting a 2 year nursing assistant degrer and then acting as if you can safely perform a brain surgery.

      Interesting. I haven’t watched enough of his stuff to know what claims he’s made.

      • sp3ctr4l@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        2
        ·
        edit-2
        1 day ago

        Interesting. I haven’t watched enough of his stuff to know what claims he’s made.

        As you seem to be an actual serious person who generally values their time:

        Probably don’t bother lol, unless you want to just watch multiple hours of youtubers going through his … literal decades long history of hyping himself up, lying or manipulating the context of what he says and does.

        I can best summarize it all as: He is a malignant narcissist sociopath, akin to a cult leader in terms of how charismatically skilled he is and how intricate his fabrications are.

        Specifically as it refers to his coding abilities, now, a number of other coders on youtube have done exhaustive breakdowns of his sloppy code, and also shown that he often acts like a seasoned expert in specific technical concepts that he is at best only vaguely familiar with at the level of a sky high overview.