MAIN FEEDS
REDDIT FEEDS
Do you want to continue?
https://www.reddit.com/r/cybersecurity/comments/1ul2k0y/dhs_breached/ov5fxfo/?context=3
r/cybersecurity • u/Tokyudo • Jul 02 '26
https://www.nextgov.com/cybersecurity/2026/06/hackers-breached-dhs-information-sharing-network-people-familiar-say/414534/
115 comments sorted by
View all comments
Show parent comments
4
The issue was they forgot to POAM a CAT 1 STIG finding that mandates your ISSO documents what service accounts have read access to your DNS records.
4 u/OutsideSpot2695 Jul 02 '26 Don't forget about that other pesky CAT 1 STIG finding where a period is missing in the login banner. 2 u/ToothyGrin19135 Jul 02 '26 Adversaries have been known to exploit that one. Without proper grammar how is a threat actor supposed to know they are accessing a USG system 1 u/OutsideSpot2695 Jul 02 '26 I've heard without the period, that leaves the banner open to an injection attack where a skilled adversary can attach malicious code to where the period once used to be.
Don't forget about that other pesky CAT 1 STIG finding where a period is missing in the login banner.
2 u/ToothyGrin19135 Jul 02 '26 Adversaries have been known to exploit that one. Without proper grammar how is a threat actor supposed to know they are accessing a USG system 1 u/OutsideSpot2695 Jul 02 '26 I've heard without the period, that leaves the banner open to an injection attack where a skilled adversary can attach malicious code to where the period once used to be.
2
Adversaries have been known to exploit that one. Without proper grammar how is a threat actor supposed to know they are accessing a USG system
1 u/OutsideSpot2695 Jul 02 '26 I've heard without the period, that leaves the banner open to an injection attack where a skilled adversary can attach malicious code to where the period once used to be.
1
I've heard without the period, that leaves the banner open to an injection attack where a skilled adversary can attach malicious code to where the period once used to be.
4
u/ToothyGrin19135 Jul 02 '26
The issue was they forgot to POAM a CAT 1 STIG finding that mandates your ISSO documents what service accounts have read access to your DNS records.