167
classic opsec mistake (discuss.tchncs.de)
submitted 7 months ago by [email protected] to c/[email protected]

so, the company was Vastaamo. was because it got bankrupt after the breach, and GDPR violations.

the "hacker"(or rather cracker) was extradited from France to Finland.
you can read about how terrible the company's security was here: https://tietosuoja.fi/en/-/administrative-fine-imposed-on-psychotherapy-centre-vastaamo-for-data-protection-violations

or watch mental outlaw's video on the matter, or the Wikipedia article on the breach.

now there are several things that shouldn't have happened (e.g.: don't do these things on your main OS, have root access disabled, etc.), but I'll leave that to you experts.

you are viewing a single comment's thread
view the rest of the comments
[-] [email protected] 4 points 6 months ago

As soon as I first heard about services like betterhelp and their competitors, I knew it was a terrible idea.

Therapists have to keep records of everything you say to them, and if it's a big-tech owned service like that that's already getting hacked every other hour, do you think it's safe to have intimate details of your personal problems in a database like that?

this post was submitted on 11 Feb 2024
167 points (97.7% liked)

Cybersecurity - Memes

1910 readers
3 users here now

Only the hottest memes in Cybersecurity

founded 1 year ago
MODERATORS