news.volyx.in

Hoax email blast abused poor coding in FBI website (krebsonsecurity.com)

431 points by todsacerdoti · 1772 days ago · 100 comments on HN

Article summary

The FBI's website was exploited to send fake emails due to poor coding. The emails were able to pass DKIM checks, adding to their legitimacy. The incident highlights the importance of proper coding and security measures. The perpetrator's motivations and goals are unclear, but the incident has sparked discussion about the potential consequences of such actions.

Main themes

  • FBI website exploit
  • poor coding and security
  • government agency culture
  • hacking and surveillance
  • DKIM and security protocols
  • social engineering risks

What commenters say

  • The FBI's poor coding and security measures made it vulnerable to exploitation.
  • The perpetrator's decision not to use the exploit for financial gain is surprising and potentially indicative of their motivations.
  • The US government's ability to track and catch hackers is limited, and they often rely on backdoors and surveillance.
  • The culture and incentives within government agencies can lead to laziness and incompetence among employees.
  • Paying market rates and introducing accountability measures could improve the performance of government agencies.
  • The use of DKIM and other security protocols can be effective, but only if implemented and maintained properly.
  • The incident highlights the potential risks and consequences of social engineering attacks.
  • The effectiveness of the FBI's response to the incident is unclear, and some commenters question their ability to handle such situations.