this post was submitted on 19 Jun 2023
3 points (100.0% liked)

Asklemmy

43535 readers
1969 users here now

A loosely moderated place to ask open-ended questions

Search asklemmy 🔍

If your post meets the following criteria, it's welcome here!

  1. Open-ended question
  2. Not offensive: at this point, we do not have the bandwidth to moderate overtly political discussions. Assume best intent and be excellent to each other.
  3. Not regarding using or support for Lemmy: context, see the list of support communities and tools for finding communities below
  4. Not ad nauseam inducing: please make sure it is a question that would be new to most members
  5. An actual topic of discussion

Looking for support?

Looking for a community?

~Icon~ ~by~ ~@Double_A@discuss.tchncs.de~

founded 5 years ago
MODERATORS
top 18 comments
sorted by: hot top controversial new old
[–] const_void@lemmy.ml 6 points 1 year ago (1 children)

Probably should've invested in better security instead of trying to chase tech trends like NFTs.

[–] gkd@lemmy.ml 4 points 1 year ago (1 children)

You mean the 100th award I could buy was starting to be overkill? /s

[–] const_void@lemmy.ml 4 points 1 year ago* (last edited 1 year ago) (1 children)

Thanks for the gold kind stranger! 🤮

[–] Luccajan@sh.itjust.works 1 points 1 year ago (1 children)

Thanks for the puke kind strager

[–] Royalish@lemmy.ml 1 points 1 year ago (1 children)

Thanks for the thanks thanks thanks.

[–] FixedFun@kbin.social 1 points 1 year ago

May I gift you a Guilded Reddit Gold NFT Snoo Platinum Anniversary edition for only 50 USD?

[–] gentleman@kbin.social 2 points 1 year ago

@Phoeniqz If Reddit is only announcing the hack now then that is very likely going to be a legal problem in a number of US jurisdictions, not to mention EU and others.

[–] FarceMultiplier@lemmy.ca 2 points 1 year ago

No website is invulnerable. Since we know from Reddit's godawful official app they don't do development very well, no doubt the website also has vulnerable holes.

[–] PascalSausage@beehaw.org 2 points 1 year ago* (last edited 1 year ago)

If you think this will change anything at Reddit, think again.

Reddit will not pay them or meet their demands. If they do reverse any of their API changes, it won't be because of this. Businesses can't been seen to be caving to ransomware groups and rightly so, as it just encourages more of these types of attacks. ALPHV is 100% trying to cash in on the current resentment towards Reddit and it shows.

We also don't know what exactly has been accessed, as neither the group nor Reddit will confirm beyond Reddit stating that no production systems or user data was accessed. It could be 80GB of cat GIFs for all we know - I'm going to need more evidence that they have something big than a screenshot of the attacker saying "trust me bro".

[–] CookieJarObserver@feddit.de 1 points 1 year ago (1 children)

Great. Fuck em and if they leak it EU citizens can sue the shit out of them :)

[–] PascalSausage@beehaw.org 1 points 1 year ago (2 children)

No user data was accessed according to Reddit.

[–] DoucheAsaurus@kbin.social 1 points 1 year ago

according to Reddit

A super trustworthy source as we all know.

[–] CookieJarObserver@feddit.de 0 points 1 year ago (1 children)

See, there is the problem, "according to reddit" they probably don't even know themselves currently. I don't believe them anyway.

[–] PascalSausage@beehaw.org 1 points 1 year ago

They can 100% know what was accessed and what wasn’t. This didn’t just happen, it happened in February and their SOC team or an external company would have conducted a full sweep as they’re legally required to disclose what was breached in many of the territories they operate in, which they did four days after the incident took place. I know it’s on trend to hate Reddit right now, but it’s not some one man operation running on a dusty old server in a garage, it’s something like the 20th most visited website on the entire internet, and that comes with certain legal obligations. They know what they’re doing and clearly take this kind of thing seriously.

You don’t have to believe them, but there’s no proof that any user data was breached and they seem to have followed the proper protocols so far. Unless anything else comes out, I’m inclined to believe that they’re telling the truth, or at least not lying.

[–] njinx@lemmy.world 0 points 1 year ago (1 children)

Sucks that they lumped API changes into their demands. This is going to make good-faith protestors look bad.

[–] SpaceNoodle@lemmy.world 1 points 1 year ago

Crackpot idea: it's a false flag operation by reddit admins trying to sour protest support

[–] farizer@kbin.social 0 points 1 year ago (1 children)

Hopefully they publish the data so we can add to the fediverse

[–] Phoeniqz@lemmy.dbzer0.com 1 points 1 year ago

The article says, the data supposedly contains information about Reddit's tracking system. I don't think we want that in the FediVerse