• A jetlagged Troy Hunt accidentally clicked a link and logged into an account only to realise he had been phished.
  • Despite reacting quickly, attackers were able to export a mailing list for Hunt’s personal blog.
  • Hunt has detailed the attack and warned his subscribers in a timely fashion.
  • heavy@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    2
    ·
    9 days ago

    Solving the “being human” part of security will probably never happen, which is why you’re encouraged to do stuff like use 2FA, different passwords, service isolation and stuff like that.

    Anyone and everyone can be fooled at some point, best to try and limit the damage.

        • Matt/D@programming.dev
          link
          fedilink
          English
          arrow-up
          1
          ·
          7 days ago

          Unfortunately the article said he just put in his credentials anyway, even though his password manager wouldn’t autofill for him. Pretty stupid, but at least he acknowledges it