this post was submitted on 06 Jan 2024
274 points (97.2% liked)

Technology

59377 readers
4562 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
all 25 comments
sorted by: hot top controversial new old
[–] JaymesRS@literature.cafe 71 points 10 months ago (2 children)

That’s why I only use “hunter2” for mine. With the number, it’s more secure.

[–] laurelraven@lemmy.blahaj.zone 48 points 10 months ago (1 children)

Just looks like a bunch of stars to me

[–] TimeSquirrel@kbin.social 36 points 10 months ago (3 children)

40 years from now when our devices just encode encrypted keys into our brains directly to identify us, we'll still be making this joke.

[–] Steak@lemmy.ca 11 points 10 months ago (1 children)

40 years from now and I will finally be hunter2. My dream.

[–] billwashere@lemmy.world 7 points 10 months ago

Hey that’s my password!! Get outta my head.

[–] theherk@lemmy.world 9 points 10 months ago* (last edited 10 months ago)

Damn skippy; as we put on our robes and wizard hats.

—-

OMG! Days after I made this post it seems bash.org is no more. End of an era.

[–] eronth@lemmy.world 5 points 10 months ago

I think we'll have moved on to hunter3 by then.

[–] sawdustprophet@midwest.social 26 points 10 months ago

That’s why I only use “*******” for mine. With the number, it’s more secure.

I guess it works because I can't see the password.

[–] yuki2501@lemmy.world 34 points 10 months ago (1 children)

His password may be ripeadmin, but that admin looked pretty green to me.

[–] Shadow@lemmy.ca 30 points 10 months ago* (last edited 10 months ago) (1 children)

In a post, the security firm said the username and “ridiculously weak” password were harvested by information-stealing malware that had been installed on an Orange computer since September.

So the password being weak was actually irrelevant here, even if it was 32 random characters they would have pulled it off that pc.

[–] cley_faye@lemmy.world 7 points 10 months ago

Depending on the attack vector it could also have pulled it out of other things, but that's exactly why we have 2FA. And I mean real 2FA, on two different channels, that should be harder to compromise simultaneously.

[–] FartsWithAnAccent@lemmy.world 28 points 10 months ago

H A C K E R M A N

[–] AdamEatsAss@lemmy.world 15 points 10 months ago (1 children)

A far more secure password would have been RipeAdmin1$. Gotta get those capitals, lowercases, numbers, and special characters.

[–] billwashere@lemmy.world 1 points 10 months ago

It should be

r!p3adm!n

[–] Nurse_Robot@lemmy.world 13 points 10 months ago (4 children)

Where did the P come from?

[–] JaymesRS@literature.cafe 13 points 10 months ago* (last edited 10 months ago) (1 children)

A different language: Réseaux IP Européens (or “European IP Networks” in the language of Freedom)

[–] billwashere@lemmy.world -1 points 10 months ago

So that’s why they’re call Freedom Fries… mystery explained. 🤣

[–] Chozo@kbin.social 12 points 10 months ago

The admin drinks a lot of water.

[–] Aatube@kbin.social 11 points 10 months ago* (last edited 10 months ago)

Réseaux IP Européens (European IP Networks)

The article said that RIPE was one of five Regional Internet Registry, not the one. Big HAL fail

Also, apparently RIPE NCC (which was hacked) and RIPE are different entities. The former is a Regional Internet Registry, and the latter is a forum hosted by RIPE NCC.

[–] camelbeard@lemmy.world 1 points 10 months ago

The p is for password

[–] stardreamer@lemmy.blahaj.zone 3 points 10 months ago

according to a detailed writeup of the event by Doug Madory, a BGP expert at security and networking firm Kentik.

What's a ”BGP expert”? Most of this stuff is covered in an undergraduate networking course. Wouldn't just "networking expert" do?

[–] autotldr@lemmings.world 3 points 10 months ago

This is the best summary I could come up with:


Orange España, Spain’s second-biggest mobile operator, suffered a major outage on Wednesday after an unknown party obtained a “ridiculously weak” password and used it to access an account for managing the global routing table that controls which networks deliver the company's Internet traffic, researchers said.

The password came to light after the party, using the moniker Snow, posted an image to social media that showed the orange.es email address associated with the RIPE account.

In a post, the security firm said the username and “ridiculously weak” password were harvested by information-stealing malware that had been installed on an Orange computer since September.

Once logged into Orange’s RIPE account, Snow made changes to the global routing table the mobile operator relies on to specify what backbone providers are authorized to carry its traffic to various parts of the world.

All but one of them also originated with the Orange AS, and once again had no effect on traffic, according to a detailed writeup of the event by Doug Madory, a BGP expert at security and networking firm Kentik.

The creation of the ROA for 149.74.0.0/16 was the first act by Snow to create problems, because the maximum prefix length was set to 16, rendering any smaller routes using the address range invalid


The original article contains 516 words, the summary contains 211 words. Saved 59%. I'm a bot and I'm open source!

[–] macaroni1556@lemmy.ca -2 points 10 months ago