From aa6754a2c4c29b78df99589752f6d00617dc0a6c Mon Sep 17 00:00:00 2001 From: Jet Hughes Date: Fri, 14 Oct 2022 15:07:41 +1300 Subject: [PATCH] vault backup: 2022-10-14 15:07:41 --- content/notes/ass03-security-flaws-essay.md | 13 ++++++++----- 1 file changed, 8 insertions(+), 5 deletions(-) diff --git a/content/notes/ass03-security-flaws-essay.md b/content/notes/ass03-security-flaws-essay.md index ba8d8ee5b..f47d64440 100644 --- a/content/notes/ass03-security-flaws-essay.md +++ b/content/notes/ass03-security-flaws-essay.md @@ -33,13 +33,16 @@ Although the events describes in these articles are unfortunate to put it midly, # Which C.I.A Dimensions are affected? Confidentiality, Integrity and availablility are all affected -C - attackers were able to access private information -I - attackers were able to change information -A - attackers were able to block victims from accessing their accounts +## Confidentiality +Attackers were able to access private information. Eve gained access to his emails, phone calls, twitter, and any information stored on his cryptocurrency accounts. Phobia also gained access to all of Honan's emails, and any information stored on his twitter, iCloud, iPad, iPhone or macbook. + +## Integrity +Attackers were able to change information. + +## Availability +Attackers were able to block victims from accessing their accounts. # Case - -## lessons learned - large attack surface is bad - value security over convenience/customer service - try to prevent information leaks