this post was submitted on 08 Apr 2025
97 points (100.0% liked)

Cybersecurity

7975 readers
77 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities !databreaches@lemmy.zip !netsec@lemmy.world !securitynews@infosec.pub !cybersecurity@infosec.pub !pulse_of_truth@infosec.pub

Notable mention to !cybersecuritymemes@lemmy.world

founded 2 years ago
MODERATORS
top 3 comments
sorted by: hot top controversial new old
[–] Maeve@kbin.earth 16 points 3 months ago
[–] N0body@lemmy.dbzer0.com 10 points 3 months ago (1 children)

I don’t understand how the timing of these announcements work. Do they wait for all their richest clients to pay the ransom money first? Explore every avenue of deniability until they’re exhausted?

[–] gwilikers@lemmy.ml 6 points 3 months ago

They definitely do a risk assessment on the possible costs of announcing a breach vs the costs of hiding one. I've seen a talk where it was pointed out that one of America's biggest vulnerabilities in its tech sector and general cyber infrastructure is the fact that companies are not legally obliged to announce a leak when it happens.