[AusNOG] Optus Hack

Jim Woodward jim at alwaysnever.net
Tue Sep 27 11:07:22 AEST 2022



In fairness, it is hard to mention undetected breaches by their very 
nature, the data equivalent of Schrodinger's cat.

Jim.

On 27-09-2022 11:03, Giles Pollock wrote:

> In my position (formal and informal) I know full well these sorts of 
> breaches are constant and pervasive, and the only reason we're seeing 
> all the noise about Optus is because its in the media... Nobody 
> mentions the dozen other breaches which never got detected!
> 
> On Tue, Sep 27, 2022 at 10:49 AM Damien Gardner Jnr 
> <rendrag at rendrag.net> wrote:
> Personally, I find putting Authentication on my API endpoints to be a 
> FANTASTIC first step towards API security.  And then not even using 
> public IP addresses in test environments is a pretty good second step.. 
>  </onlyhalfsarcasticherewhydoesthiskeephappening>
> 
> On Tue, 27 Sept 2022 at 10:46, Bevan Slattery <bevan at slattery.net.au> 
> wrote:
> 
> Hi everyone,
> 
> Obviously a big week in telco and cybersecurity.  As part of my work I 
> am on the Australian Cyber Security Industry Advisory Committee as an 
> industry representative.
> 
> I am keen to look at opening up a dialogue with more and more telco, DC 
> and Cloud CISO's on what they are doing around this issue and looking 
> to take a proactive step towards best practice on customer data and 
> system security.
> 
> There will be some pretty serious consequences of this hack on the 
> industry and importantly we need to make sure we are as best placed to 
> help each other continually increase in security posture through best 
> practice, but also working with each other as an industry.
> 
> Are people keen on having a online/VC session sometime in the next few 
> weeks where like-minded industry participants get together and discuss 
> security, retention, encryption, threat detection etc.?  If so, just 
> ping me directly and if there is enough interest I will send out an 
> invitation to the list for a call.
> 
> Cheers
> 
> [b]
> 
> _______________________________________________
> AusNOG mailing list
> AusNOG at ausnog.net
> https://lists.ausnog.net/mailman/listinfo/ausnog
> --
> 
> Damien Gardner Jnr
> VK2TDG. Dip EE. GradIEAust
> rendrag at rendrag.net -  http://www.rendrag.net/
> --
> We rode on the winds of the rising storm,
> We ran to the sounds of thunder.
> We danced among the lightning bolts,
> and tore the world asunder 
> _______________________________________________
> AusNOG mailing list
> AusNOG at ausnog.net
> https://lists.ausnog.net/mailman/listinfo/ausnog

_______________________________________________
AusNOG mailing list
AusNOG at ausnog.net
https://lists.ausnog.net/mailman/listinfo/ausnog
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ausnog.net/pipermail/ausnog/attachments/20220927/b6920d35/attachment.htm>


More information about the AusNOG mailing list