@Turkleton_Cati
iAccount based inUnited States
About this account
- Account based in
- United States
- Connected via
- United States Android App
Account-level information from X, not a live location or the device used for a specific post.
Joined May 2023
- Tweets17.2K
- Following450
- Followers295
- Likes102K
Please don't throw me in the briar patch!
Major television networks will halt coverage of presidential events, according to a memo obtained by The Post, over the White House’s ban on CNN, which was barred alongside MS NOW and Politico in recent days.
Read more: wapo.st/3SZXGxH
It's the employees and food sitting out for hours. I'll take the check now.
This quoted post is unavailable.
For reference this is the FAA approved contingency landing area off the coast of South America likely to be used by Flight 14
password stealing isn't really a vector used very often in MFA environments. Session stealing is the new favorite. Revoking sessions and removing MFAs stops most routine attacks, undetected malware is still a risk though, as you explained.
The employee changed his Microsoft 365 password twice.
The attacker still logged back in.
That was the moment we knew we were not dealing with a normal stolen-password incident.
The first alert came from an impossible-travel sign-in. The employee had authenticated from Maryland, then the same account appeared from another country less than an hour later.
We reset the password.
Twenty minutes later, another suspicious session appeared.
So we reset it again and forced MFA re-registration.
The attacker came back.
At that point, I stopped looking at the account and started looking at the employee’s laptop.
Inside the Downloads folder was a file called:
Invoice_Viewer.exe
The employee remembered downloading it from a website that claimed he needed a special viewer to open an invoice.
Windows logs showed the file running at 9:14 AM.
Seconds later, it launched PowerShell in the background.
Then we found something else.
A scheduled task called MicrosoftEdgeUpdateCheck had been created on the machine.
The name looked legitimate enough to ignore if you were moving quickly, but it was not one of Microsoft Edge’s normal update tasks.
We also found an outbound HTTPS connection from the compromised host to an external IP address.
The file hash was submitted for malware analysis.
It came back as an information stealer.
That explained why changing the password had not solved the problem.
The malware had stolen browser data, including authentication cookies and active session information.
The attacker was not repeatedly discovering the employee’s new password.
They were reusing a session that had already been authenticated.
We revoked every active Microsoft 365 session, isolated the laptop from the network, removed the persistence, reset the credentials again, and rebuilt the endpoint.
The suspicious logins finally stopped.
A compromised account does not always mean the attacker still knows your password.
Sometimes you already changed the password.
The attacker is still inside because they stole the session.
Increase the tariffs until they stop this madness.
Temu brings you luxe car upgrades without the luxe price tag.
Readers added context they thought people might want to know
Devices like the exhaust whistle shown are banned by name in California under Vehicle Code 27150.3. Most other states prohibit exhaust modifications that create excessive or unusual noise, which these are designed to do.
law.justia.com/codes/californ…
findlaw.com/legalblogs/cri…
en.wikipedia.org/wiki/Whistle_t…
worldpopulationreview.com/state-rankings…
I just want to point out that @SpaceX definitely has external video from outside the ship of the last two Starlink V3's coming out of the bay for IFT-13.
Hope we get to see it!
Notice how even during an intense earthquake, there's no hysterical woman screaming "OH MY GAWWWDDDDD!". Everyone just patiently is waiting for the train.. we have a lot to learn from Japan.
As usual, these nearsighted analysts completely ignore that humans don't plan one action and follow it doggedly until the end.
This is why space datacenters will succeed and free up power demand for existing hardware.
For a reference point, one gigawatt is equivalent to the capacity of a traditional nuclear reactor ...estimates are 194 gigawatts needed. We do not have enough projects in the pipeline to cover this need >>>
Data Centers on Track to Suck Up a Fifth of US Power Use by 2035
Data centers in the US will account for about 20% of the nation’s electricity consumption in 2035, up from 5.9% today, according to BloombergNEF.
That compares with an estimated 12% in 2030, it said in a report Tuesday. In states such as Virginia and Texas where data centers are concentrated, their share of electricity use will be even higher.
Given the speed at which soaring demand from artificial intelligence is increasing, BNEF projects data center power needs to reach 194 gigawatts in the country by 2035. That’s a jump of 83% from its December forecast. The gain reflects a growing pipeline of AI facilities poised to be built within the next decade. (Bloomberg)