HN user

dsr12

37,039 karma
Posts5,054
Comments100
View on HN
www.1x.tech 12d ago

NEO's Hands – An API to the Physical World

dsr12
3pts0
twitter.com 15d ago

Why "a nice place to work" doesn't just happen

dsr12
4pts0
twitter.com 16d ago

Getting Started with Loops

dsr12
2pts1
www.conception.bio 21d ago

The first early human eggs from stem cells

dsr12
178pts139
twitter.com 25d ago

Mythos available for select organisations

dsr12
1pts1
www.semafor.com 1mo ago

White House's export limits on Anthropic linked to concerns about Chinese access

dsr12
3pts2
www.youtube.com 1mo ago

The Lorem Ipsum Mystery [video]

dsr12
2pts0
mysk.blog 1mo ago

Breaking macOS App Sandbox Data Containers, TCC, and Hijacking Apps

dsr12
1pts0
www.anthropic.com 1mo ago

How we contain Claude across products

dsr12
2pts0
ni5arga.com 1mo ago

Exposing Critical Vulnerabilities in CBSE's On-Screen Marking Portal

dsr12
48pts15
www.aikido.dev 2mo ago

Google API keys keep working after you delete them

dsr12
3pts0
www.youtube.com 2mo ago

An Infinitely Long Sentence Made of Just One Word [video]

dsr12
1pts0
twitter.com 2mo ago

Warp is now open-source

dsr12
1pts1
twitter.com 3mo ago

Using Claude Code: Session Management and 1M Context

dsr12
4pts0
github.com 3mo ago

Claude Code – Disabling telemetry also disables 1-hour prompt cache TTL

dsr12
7pts0
huggingface.co 3mo ago

The Open-Source Recipe for Teaching a Robot to Fold Your Clothes

dsr12
3pts0
www.wsj.com 3mo ago

Inside a Corporate Retreat That Went Very Badly Wrong

dsr12
44pts10
twitter.com 3mo ago

India Starts Advanced Reactor That Makes More Fuel Than It Uses

dsr12
2pts0
www.anthropic.com 3mo ago

Emotion concepts and their function in a large language model

dsr12
3pts0
code.claude.com 3mo ago

Fullscreen Rendering

dsr12
1pts0
socket.dev 3mo ago

Supply Chain Attack on Axios Pulls Malicious Dependency from NPM

dsr12
2pts0
twitter.com 3mo ago

Fake website scam leads to founders' arrest

dsr12
2pts0
philfung.github.io 3mo ago

An open-source workflow for producing a personalized mRNA cancer vaccine

dsr12
3pts0
github.com 3mo ago

CLI proxy that reduces LLM token consumption by 60-90% on common dev commands

dsr12
4pts0
www.youtube.com 3mo ago

Mixture of Experts (Moe), Visually Explained

dsr12
3pts0
old.reddit.com 3mo ago

Your huge token usage might have been just bad luck on your side

dsr12
2pts0
ramimac.me 3mo ago

A multi-week, multi-ecosystem attack chain spanning GitHub Actions, npm, PyPI

dsr12
3pts0
twitter.com 4mo ago

The Unusual Billboard Strategy That Got Us Our First Contract

dsr12
2pts0
substack.com 4mo ago

Delve – Fake Compliance as a Service

dsr12
31pts6
www.anthropic.com 4mo ago

What 81,000 people want from AI

dsr12
202pts190

This is the way it happens in India. We have to enter an OTP to authenticate the transaction. The OTP comes as a SMS and it tells the amount.Some merchants tie up with bank and we can enter the OTP on the merchant's site or choose to go to the bank's site to enter OTP. In any case the OTP page is a new page and the amount is displayed.

With the info we have it looks like hackers changed the email id of the accounts and then used forgot password to reset the password. What’s concerning is that they were able to do it for accounts with 2FA enabled. I think disabling 2FA should be extremely privileged actions and should not accessible to most employees.

If it’s really a social engineering attack then I think it happened because everyone is working remotely and it is easier to perform social engineering attacks. Maybe this incident will have impact on their long term remote work plans.

“We detected what we believe to be a coordinated social engineering attack by people who successfully targeted some of our employees with access to internal systems and tools.”

I think it happened because everyone is working remotely and it is easier to perform social engineering attacks. Maybe this incident will have impact on their long term remote work plans.

I have always wondered how could the world allow the genocide of the Jews during the Holocaust. Now I understand. It's all about financial gains. No one will speak out against such atrocities if it's against their financial interest. In today's world, no one will speak against China due to their selfish interests.

You can append ?mod=rsswn at the end of WSJ urls to get non-paywall links. I submitted the story with this param but for some reason it's missing. Maybe I made some mistake in copy/pasting. I learnt about this trick from a HN comment in the past.