this post was submitted on 08 Apr 2025
97 points (100.0% liked)

Cybersecurity

6970 readers
154 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 2 years ago
MODERATORS
top 3 comments
sorted by: hot top controversial new old
[–] [email protected] 16 points 5 days ago
[–] [email protected] 10 points 5 days ago (1 children)

I don’t understand how the timing of these announcements work. Do they wait for all their richest clients to pay the ransom money first? Explore every avenue of deniability until they’re exhausted?

[–] [email protected] 6 points 5 days ago

They definitely do a risk assessment on the possible costs of announcing a breach vs the costs of hiding one. I've seen a talk where it was pointed out that one of America's biggest vulnerabilities in its tech sector and general cyber infrastructure is the fact that companies are not legally obliged to announce a leak when it happens.