home.social

#bruteforce — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #bruteforce, aggregated by home.social.

  1. Microsoft 365 users and admins, beware! There's a specific IPv6 range (2a0a:d683::/32) operated by a provider called LSHIY that is engaging in password spraying / brute force login attempts against Microsoft accounts with old, previously leaked credentials that were disclosed as part of prior breaches.

    The attack bypasses MFA and SSO because it uses the deprecated (but still functional) OAuth Resource Owner Password Credentials 2.0 flow. But it works because some people still use creds that were stolen years ago and were never changed. So change your passwords, people!

    huntress.com/blog/lshiy-passwo

    #M365 #bruteforce #passwordspray #compromise #weakpasswords

  2. #Untersuchung zeigt:

    So schnell #knackt aktuelle #Hardware #Passwörter

    Wie schnell sich ein #Passwort per #BruteForce knacken lässt, hängt von mehreren Faktoren ab. Forscher haben mit aktuellen #Nvidia-GPUs den Test gemacht.

    Ebenso wie 2024 haben die #Sicherheitsexperten von Hive Systems auch in diesem Jahr wieder untersucht, wie schnell sich #Passwörter unterschiedlicher Komplexität mit der Leistung aktueller Hardware per #Brute-Force-Angriff knacken lassen.

    golem.de/news/untersuchung-zei