this post was submitted on 07 Sep 2023
989 points (99.0% liked)

Technology

59579 readers
6141 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 

More than $35 million has been stolen from over 150 victims since December — ‘nearly every victim’ was a LastPass user::Security experts believe some of the LastPass password vaults stolen during a security breach last year have now been cracked open following a string of cryptocurrency heists

you are viewing a single comment's thread
view the rest of the comments
[–] jarfil 1 points 1 year ago (1 children)

You can replace the OS with one you trust more. Can also replace the browser, and "irregular people" can fix stuff in OpenSource OSs and browsers. Malware is easy to avoid, just don't execute random stuff. Other people knowing the password to your PC, is up to you.

Hackers generally don't hack OSs, users are much easier to hack.

[–] [email protected] 1 points 1 year ago (1 children)

And what is your point?

That everyone should change to some Linux distro? First of all Linux is not immune, it only lacks interest from hackers. The second it's not adapted to everyone. Even I who likes open source and learning new stuff is too annoyed by Linux because of compatibility reasons (mostly gaming).

Just don't execute random stuff? Wake up, or I'll use only chrome and nothing else on my pc. You want open source you must execute random stuff.

And people cannot be at their 100% at all time. There is a possible chance that some, even trained user, slips and executes some malware. In that case, antimalware come into play, but it's not always the case. Companies still get hacked with ransomwares and data extractors.

And your solution to the issue is just replacing the browser, like it would make a difference? At that point just use another password manager online...

[–] jarfil 1 points 1 year ago* (last edited 1 year ago)

My point is you start by using whichever OS you trust most: there is Windows, Mac OS, Chrome OS, Android, a bunch of Linux distros, BSD... your choice.

If you don't trust any OS... sorry, you're SOL. Plug the thing off and smash it with a hammer, then dump into salt water to be safe.

You want open source you must execute random stuff

There are large OpenSource projects with security audits and security testing. There are random open and closed source projects with zero oversight by anyone.

Execute the former, not the latter.

people cannot be at their 100% at all time.

Executable signing, anti-malware systems, and people running tests to rubber-stamp stuff exist (like distro repos, or app stores). Use those.

Companies still get hacked with ransomwares and data extractors.

In most cases by hacking people, not software. Follow the above rules, don't trust that your CEO's nephew needs remote access to your PC... tell your coworkers not to trust that either... ... yeah, well, that's impossible, it takes only one to ransomware everyone... but you can keep yourself safe 🤷

Replacing the browser is optional, goes with the same trust issues as the OS.