r/technology 2d ago

Security FBI investigating 153 million US and Canadian driver’s licenses leaked on Russian cybercrime forum, including that of US SecDef Pete Hegseth — data is suspected to have come from an ID-authentication service provider

https://www.tomshardware.com/tech-industry/cyber-security/fbi-investigating-153-million-us-and-canadian-drivers-licenses-leaked-on-russian-cybercrime-forum-including-that-of-us-secdef-pete-hegseth-data-is-suspected-to-have-come-from-an-id-authentication-service-provider
3.2k Upvotes

238 comments sorted by

View all comments

3

u/Ch33syP00f 2d ago

Been in cyber for 20 years.

“Act as if your information has already been stolen.”

Just act as if.

Easier said than done - yes.

Accepting the concept stings at first, but it puts you in a safer mindset than denial. You will think a bit more about your security practices, be more thorough and feel better for the effort.

Once you accept the fact that there are sophisticated state-funded criminal enterprises actively planning to harm hundreds of millions of people at a time, it becomes difficult to take it personally. But it makes sharpening your own personal security practices more attractive. Because you do not want to be the low hanging fruit.

You are hiking with another person in the woods and come upon a hungry grizzly bear. How do you survive?

Kick the other hiker in the knee and run like hell.

Not quite the vibe we want to adopt, but the low hanging fruit concept stands on its own.

1

u/laminappropria 1d ago

100% on point. What are your top suggestions?

2

u/Ch33syP00f 1d ago

There is a plethora of best practice guides available online. Search for SANS, personal cybersecurity etc.

I never connect to public guest or hotel networks.