• Leigh Weigh@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    ·
    1 day ago

    “The agency leadership is lost,” the former cyber investigator tells me.

    He says staff have been advised to sign up to a service called DeleteMe, which helps remove personal information from data broker websites - a response he feels is inadequate.

    Lmao. Wow. They’re really getting a taste of what they do to us every day.

    • IphtashuFitz@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 day ago

      I was impacted by the 2015 OPM data breach. The OPM is basically the HR department for the entire federal government. It has personnel records on everybody from federal employees in DC to CIA officers to military and everything in between.

      As a result of that breach I was given free top-notch credit monitoring for roughly ten years, and it served me pretty well. I guess it shows just how bad things have gotten in the federal government if the FBI is being told that they’re basically on their own.

  • Snarwin@fedia.io
    link
    fedilink
    arrow-up
    145
    ·
    3 days ago

    Wow that sucks. Imagine having your personal data exposed to people who might use it in malicious ways. It must be so hard for them.

    • TronBronson@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      arrow-down
      7
      ·
      3 days ago

      Damn you guys all got your identity stolen too? All of us??? WTF? These fuckers were filing my taxes and sniping the checks out of my mail. some sophisticated shit.

      • skulblaka@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        13
        ·
        3 days ago

        If you exist in the Social Security records then yes, your personally identifying information has been leaked to unknown actors a minimum of three times.

        Whether or not your identity has been properly stolen and used for illegal business is down to luck and pretty much nothing else.

        • TronBronson@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          arrow-down
          8
          ·
          2 days ago

          Oh lol, so you dont have a police report for ID theft, you have a notice of data breach and a ‘big balls’ problem too

  • Mihies@programming.dev
    link
    fedilink
    English
    arrow-up
    44
    ·
    3 days ago

    All praise the Orange’s cybersecurity cuts plus incompetent and corrupt leadership, wcgw, eh…

  • Jo Miran@lemmy.ml
    link
    fedilink
    English
    arrow-up
    32
    arrow-down
    1
    ·
    3 days ago

    Our IT infrastructure is woefully unprepared to guard against the frontier LLM models we have now. I cannot even imagine what the infosec landscape will look like in five years.

    Example: I built (as in me, by myself, on Vi) some scripts to backup my GOG library. I added alerts, throttles and a scheduler. All in all, pretty cool functionally but not at all user friendly. So, I asked Claude Fable 5.1 to build a gui app based on my script, and it did. It also tested it and verified it workes by login in and starting a few downloads from its sandbox. Except that I never gave it my GOG credentials. I’ve never logged into GOG from that environment. Claude went out, got someone else’s credentials from somewhere, and initiated a few downloads to make sure the app it built worked. Thank you, I guess??

      • Jo Miran@lemmy.ml
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 day ago

        It’s possible but very unlikely given that they were never given to it nor used in any system where LLMs were tested. My guess (pure guess) is that someone (probably thousands of people) asked Claude to build them something to interact with GOG and provided it with their credentials or a cookie. The LLM is probably sitting on a ton of those and it just used one to test it’s work.

    • TronBronson@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      3 days ago

      I cannot understate how erect i get at the thought of rogue AI’s just hacking into anything they want to do a better job at serving my needs and desires.

  • tal@lemmy.today
    link
    fedilink
    English
    arrow-up
    28
    ·
    3 days ago

    According to another former agent, there is widespread shock that such a breach could happen at one of the world’s best-resourced law enforcement agencies.

    “You would think this information would not be internet-exposed. It’s disturbing, actually,” he says.

    Maybe it’s time to start passing laws a la HIPAA that crank up handling standards for certain classes of data.

    • murph@lemmy.sdf.org
      link
      fedilink
      English
      arrow-up
      7
      ·
      3 days ago

      The have (and will again) pass them just for Law enforcement, judges and elected officials. The rest of us will continue to have no protection, because it’s good for business.

    • Doomsider@lemmy.world
      link
      fedilink
      English
      arrow-up
      1
      ·
      3 days ago

      According to another former agent, there is widespread shock that such a breach could happen at one of the world’s former best-resourced law enforcement agencies.

      FTFT

  • Doomsider@lemmy.world
    link
    fedilink
    English
    arrow-up
    18
    ·
    3 days ago

    The FBI is toast.Their leadership is a complete joke and they are running around doing the bidding of Nazi sympathizers. They have always been racist sacks of shit but now they have been reduced to brown shirts.

  • TronBronson@lemmy.world
    link
    fedilink
    English
    arrow-up
    7
    ·
    3 days ago

    Fuck if you guys actually did your job and took down these fucking cyber criminals this would have never happened. You gotta freeze that credit now boyo. Rest easy old sports!