5

Hackers Threaten To Leak 80GB of Confidential Data Stolen From Reddit - Slashdot

 1 year ago
source link: https://it.slashdot.org/story/23/06/19/1332223/hackers-threaten-to-leak-80gb-of-confidential-data-stolen-from-reddit
Go to the source link to view the article. You can view the picture content, updated content and better typesetting reading experience. If the link is broken, please click the button below to view the snapshot at that time.
neoserver,ios ssh client

Hackers Threaten To Leak 80GB of Confidential Data Stolen From Reddit

Follow Slashdot stories on Twitter

binspamdupenotthebestofftopicslownewsdaystalestupid freshfunnyinsightfulinterestingmaybe offtopicflamebaittrollredundantoverrated insightfulinterestinginformativefunnyunderrated descriptive typodupeerror

Do you develop on GitHub? You can keep using GitHub but automatically sync your GitHub releases to SourceForge quickly and easily with this tool so your projects have a backup location, and get your project in front of SourceForge's nearly 30 million monthly users. It takes less than a minute. Get new users downloading your project releases today!

Sign up for the Slashdot newsletter! or check out the new Slashdot job board to browse remote jobs or jobs in your area
×
Hackers are threatening to release confidential data stolen from Reddit unless the company pays a ransom demand -- and reverses its controversial API price hikes. From a report: In a post on its dark web leak site, the BlackCat ransomware gang, also known as ALPHV, claims to have stolen 80 gigabytes of compressed data from Reddit during a February breach of the company's systems. Reddit spokesperson Gina Antonini declined to answer TechCrunch's questions but confirmed that BlackCat's claims relate to a cyber incident confirmed by Reddit on February 9.

At the time, Reddit CTO Christopher Slowe, or KeyserSosa, said that hackers had accessed employee information and internal documents during a "highly-targeted" phishing attack. Slowe added that the company had "no evidence" that personal user data, such as passwords and accounts, had been stolen. Reddit didn't share any further details about the attack or who was behind it. However, BlackCat over the weekend claimed responsibility for the February intrusion and threatened to leak "confidential" data stolen during the breach. It's unclear exactly what types of data the hackers have stolen, and BlackCat hasn't shared any evidence of data theft.
  • The first season or two are kinda bland, but recently it sure picked up steam.

    • Stock up the pop-corn.
      Will Reddit tank fast like Nokia, or slowly ?

      • The narrative certainly has changed to when and how rather then if in regards to reddit imploding up its own arsehole
          • Re:

            Probably passwords, which could be harmful if people reuse them. Aren't there also people who pay them? So probably also credit card numbers and other personal info.
      • Re:

        Definitely.. this is pretty bad.
        I really disliked the 'community' AKA some pissed of mods (who really are only trying to defend a guy making $$ from a 3rd party app, so not sure why all the fuss) response to this, as if Reddit belonged to them. Its systems, hosting etc are owned by a corporation, just like slashdot, facebook and all.

        This is very bad, but hopefully Reddit will not succumb to blackmail, and somehow come out of it OK.
        Reddit isn't everyone's cup of tea, I'm not a major fan, but like it or n

        • Would you be happier with a no warning Mass Exodus?

          Seems like the content providers that Reddit depends on are being nice giving Reddit a chance to prove themselves worthy of retaining their audience.

          Reddit's relevancy is dependent on the informational charity of their content and activity providers.

          It is not wise to bite the hand that feeds you. Reddit needs it's users more than the users have any specific need for Reddit. Best to keep them happy.

          • Re:

            You mean content editors right? The mods aren't the ones creating most of the content. The users who do create it couldn't care less about API pricing.

        • Re:

          The mods rely on 3rd party tools because reddit's mod tools are apparently the same kind of hot garbage the user app or new reddit interface is. Nobody believes they're suddenly going to fix it all now after all these years no matter what they say.
          And everywhere I've seen the userbase asked, the blackouts have commanded majority support (of those who weighed in during the appropriate window, but I find complaints about that silly given *that's how voting works*).
    • Re:

      pffff... nah, it's been going downhill steadily since the opening with that app guy's manifesto. subs are coming back online which is kind of embarrassing, these kids have no clue how to build proper narrative tension. and now this blackcat thing clearly jumps the shark...

    • It is like an opera: the audience knows that the character is already dead, but the song of dying always takes a very long time.
      • Re:

        An opera is where in the third act the hero gets stabbed and then rather sings than bleeds.

    • Re:

      Are you saying it picked up STEAM in the THIRD SEASON?!

      Half-Life 3 confirmed, everyone!

    • Re:

      >the mods who ban from Reddit everyone who disagrees with them now disagree with Reddit and are banning it.

      Until I read your post, I hadn't considered it that way... +infinity insightful. Reddit mods are paid with 'power' over their little fiefdoms and rewarded with an ego stroke as a result. They absolutely are the kind of people who would burn the place down around them if they felt they were losing their grip on power.

      You know what? Fire is useful for popping popcorn.

    • Re:

      >the modding should OF COURSE be independent of his or anyone else's personal opinion.

      This is something I think Slashdot has the best answer to short of paying for professional human moderation - the random mod points and meta-moderation are a decent hedge against a small coordinated group controlling the site via moderation abuse.

    • Re:

      Anything with to much of a global appeal isn't going to workout because to many people will make anything toxic given time. Slashdot is a spectacular example. We use to have some really good nerdy technical discussions on here in the early 00s.

      Now, we barely get anything about tech or science but we get a whole lot of politics and advertisement or we focus on tech companies that are actually advertisement companies...

      • Re:

        Slashdot also has the right idea of you can either post, or you can moderate, but you can't do both on the same story. Reddit's moderation system allows people to post back and forth, disagreeing with one another, while both modding down each other on every comment in the chain. Simultaneously modding up people in the chain that agree with them

  • All the smart people have left, it's only strike breakers and people who stumble across it on google left now. You don't see articles about myspace or bebo anymore because no one cares and have moved on. Spez has decided to kill his golden egg. The knowledge lost will eventually move on to other sites, and the losers that still use reddit will be laughed at by the rest of the internet just liked they do with twitter. I have added Reddit to my hosts file and haven't looked back.
    • Re:

      Love reddit myself, been using it all morning, looks like everything's back to normal!

    • Re:

      Spez doesn't care what happens down the road. As long as the site looks good for the IPO he's going to be make a bunch of money from whoever buys this even if it creates so much ill will that everyone is actively looking for a way to jump ship as soon as a viable alternative shows up. That's someone else's problem and even better for him if the new majority shareholders want to bring in a new CEO afterwards since it gives him the perfect excuse to unload all of his own stock. If he's enough of a villain now
    • Re:

      So... you just described Slashdot a decade ago?

  • In a twist of events, the hackers release 80gb of cute animal pics, completely destabilizing the market

    • Re:

      but, but... the memes!
      is nobody going to think of the memes?

  • This just shows how quickly social media sites can implode. I've read that Reddit is looking at an IPO soon. Who in their right mind would be willing to throw cash into this dumpster fire? I truly hope 20 years from now we can look back and remember the "anti-social" years of the Internet before all the implosions.

    • I will say this as someone who enjoys reddit or is part of a few reddit communities and mostly stick to 3-4 subs. I have no clue who would invest in reddit. The site was started in 2005 its nearly 20 years old! If it has not figured out how to make money in the past 20 years what hope is it to become profitable ?
      • Re:

        chatgpt and derivatives. they could make a shit ton of money selling just the material they already have, at least while the hype lasts.

        so they probably could afford to lose some moderators. in fact, they could probably afford to lose them all, they already own the content. long term is moot because the chatgpt mining craze will subside anyway, but pretty sure there's some cash to be made before that happens.

        • Re:

          ChatGPT and every major IT company currently playing catch-up has no doubt already scraped the site, especially given the warning time about changes. There's not a whole lot of value in the marginal set of new posts. Some, but not enough to justify the exorbitant price they're asking, which is far higher than any other comparable API.
    • Re:

      can't blame you for not rtfa, this story is getting boring.

      but it's company confidential data, namely "documents and source code". also reddit said explicitly that no user data was compromised (although the odds that they would say that regardless if it was or not are like 0.988).

  • So... you have my alias and my registered email address (which is probably Hotmail or GMail if not a temporary address that no longer exists). Maybe you get my recent IPs and can geolocate me to a city or something.

    Wow. It's not like my real name is in there, nor my credit card info, nor my street address. In terms of blackmail/extortion material, Reddit's user data is worth nothing.

    Now the employee info... that could be interesting.

    • Re:

      ... and the article summary said the crackers have employee data.

      The only reason I can think people would want that is to harass people. I think that is morally wrong, even if people used it to egg Spez's house.

      I am glad that years ago I took the time to give each social media account I had a unique autogenerated password and a throwaway email address.

      • Re:

        I agree, but as their business is harvesting every bit of information they can about people and selling it wherever they can make a buck without any ethical concerns of their own... I can only agree reluctantly.

        • Re:

          I mean, if the hackers stole everything of value and just released it for free, that's probably going to really hurt the IPO. Why pay reddit for data for your AI training when you can just download it for free?


Recommend

About Joyk


Aggregate valuable and interesting links.
Joyk means Joy of geeK