probably much easier to phish
-
-
-
It also preserves cut-out deniability if you can do it without using proprietary GRU solutions.
End of conversation
New conversation -
-
-
Why burn an 0-day if phishing will work?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
gmail with 2 factor is damn good. 3rd party app auth is way easier and harder to attribute (dfir companies arent getting google logs)
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
neither side would want it to be known if Russia had root access
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
why burn a 0-day if you don't have to? Alternate theory: misattribution.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
.
@paulg Or maybe instead of Russia it's a kid in Azerbaijan just trying to steal credit cards and SSNs who only later realized what he had.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Better deniability via phishing? Use of a high value 0-day dramatically reduces set of plausible attackers.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Hackers sent dimple phishing link to DNC. And 1/3 or them clicked it.
@bozhobgThanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
without a phish how would they know the right machine to hack?
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.