Ship attacked by Iran after possibly falling for safe passage crypto scam.

  • BeMoreCareful@lemmy.world
    link
    fedilink
    English
    arrow-up
    8
    ·
    14 hours ago

    I swear I was just thinking this the other day when there was all that confusion and some ran for it and got caught.

    Like how do you know you’re bringing the right people.

    Fortunately, then just kind of turned them back.

    Also, shocking how many sailors were apparently in those ports and working. I heard 20,000 as that number.

  • quick_snail@feddit.nl
    link
    fedilink
    English
    arrow-up
    8
    arrow-down
    1
    ·
    15 hours ago

    I don’t understand why y’all are surprised.

    This is a targeted social engineering campaign. Did you not get training by your company’s security team on what well engineered, targeted social engineering attacks like this look like?

    Always verify the authenticity of your comms. And certainly verify the address to which you’re sending (be it swift wire, IBAN, or a crypto public key) before sending a dime!

    • Pommes_für_dein_Balg@feddit.org
      link
      fedilink
      English
      arrow-up
      11
      ·
      edit-2
      11 hours ago

      Our Head of Accounting got an e-mail to his private mail address with just a link to a Word document on some random OneDrive.
      It contained an invoice over $4000 for “AI services”, payable via money transfer.

      He sent it to the accounting department and told them to pay it.
      Luckily, one of the accountants actually had a brain, and she forwarded it to IT.

      • quick_snail@feddit.nl
        link
        fedilink
        English
        arrow-up
        7
        ·
        14 hours ago

        God. I hope they got a very stern lecture from their superiors and mandatory retraining from their security team.

        Also their laptop should be wiped and rebuilt from opening a word document from “some random OneDrive”

        • Pommes_für_dein_Balg@feddit.org
          link
          fedilink
          English
          arrow-up
          6
          ·
          edit-2
          14 hours ago

          Everyone gets yearly mandatory training. And every time you open Outlook, you get a reminder to stay vigilant, with a fun cartoon from the graphics department that changes daily to keep peoples’ attention.

          Last year someone in the upper half of the food chain fell for a phishing mail. We nuked his account and recreated it with “p.lastname” instead of the usual scheme “peter.lastname” .
          He had to inform all his contacts about his new e-mail address, and his coworkers called him pee-dot behind his back for a while.
          After that, people got a lot more careful, it was better than any training.

          But somehow, it’s usually upper management that’ll call the IT lead and demand to unblock a website RIGHT NOW because they need it, and when you check it out, it’s a phishing link.

  • red_green_black@slrpnk.net
    link
    fedilink
    English
    arrow-up
    16
    arrow-down
    3
    ·
    1 day ago

    I do wonder if it’s plausible that Iran doing some of the scamming. I mean Crypto currency is netorotious in being hard to trace making it perfect for criminal activities

    • Chozo@fedia.io
      link
      fedilink
      arrow-up
      30
      arrow-down
      1
      ·
      23 hours ago

      It seems more like an Israel-level of cruelty to me. Especially because it makes Iran the bad guy, by making them open fire first.