Crony's Dungeon
  • Communities
  • Create Post
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
return2ozma@lemmy.world to Technology@lemmy.worldEnglish · 1 month ago

St. Paul, MN, was hacked so badly that the National Guard has been deployed

arstechnica.com

external-link
message-square
49
link
fedilink
226
external-link

St. Paul, MN, was hacked so badly that the National Guard has been deployed

arstechnica.com

return2ozma@lemmy.world to Technology@lemmy.worldEnglish · 1 month ago
message-square
49
link
fedilink
“A deliberate, coordinated digital attack.”…
alert-triangle
You must log in or register to comment.
  • Treczoks@lemmy.world
    link
    fedilink
    English
    arrow-up
    87
    arrow-down
    5
    ·
    1 month ago

    Oh wonderful. Replacing all IT because they were hacked? Let me guess, they will use Windows, Exchange, and MS Office again on the new system. The software triumvirate screaming “please hack me”.

    • downvote_hunter@midwest.social
      link
      fedilink
      English
      arrow-up
      25
      ·
      1 month ago

      Project manager: at least I can blame the vendor

    • CallMeAnAI@lemmy.world
      link
      fedilink
      English
      arrow-up
      11
      arrow-down
      49
      ·
      edit-2
      1 month ago

      🤣 should we get a list of foss projects that have had security issues? Or how about how someone slips some shit in upstream every few weeks it seems?

      Stop this nonsense. You can hate Microsoft for legitimate reasons.

      • toothpaste_ostrich@feddit.nl
        link
        fedilink
        English
        arrow-up
        20
        arrow-down
        3
        ·
        1 month ago

        I mean… For real, I’ve never heard of Linux systems being hacked this way. I’m sure it’s possible, but it certainly seems rarer.

        Slipping shit in upstream also certainly doesn’t happen "that* often. It takes effort to become recognised enough as a developer to be allowed access to the upstream code, meaning you can’t automate those kinds of attacks. (I imagine. Correct me if I’m wrong.)

        • CallMeAnAI@lemmy.world
          link
          fedilink
          English
          arrow-up
          10
          arrow-down
          6
          ·
          1 month ago

          Absolute opposite. The majority of successful attacks you see today are identity management and supply chain attacks. If you walk into any OCIO office supply chain will be a top 3 concern.

          • msage@programming.dev
            link
            fedilink
            English
            arrow-up
            6
            ·
            1 month ago

            I know of one successful supply chain attack in FOSS.

            So still points for using it.

            • SheeEttin@lemmy.zip
              link
              fedilink
              English
              arrow-up
              2
              arrow-down
              2
              ·
              1 month ago

              AUR has had multiple Trojans just this week

              • msage@programming.dev
                link
                fedilink
                English
                arrow-up
                2
                arrow-down
                1
                ·
                1 month ago

                I’m sorry, Dave, but AUR does not count.

                • sugar_in_your_tea@sh.itjust.works
                  link
                  fedilink
                  English
                  arrow-up
                  2
                  ·
                  1 month ago

                  Precisely. The AUR is just a somewhat organized script dump. There’s no release process, and any user can upload any script they want. If you’re not capable of auditing scripts yourself, don’t use the AUR, there’s no expectation of quality or safety at all.

          • toothpaste_ostrich@feddit.nl
            link
            fedilink
            English
            arrow-up
            1
            arrow-down
            1
            ·
            1 month ago

            I… Don’t understand what you said here 🫤

      • disco@lemdro.id
        link
        fedilink
        English
        arrow-up
        11
        arrow-down
        3
        ·
        1 month ago

        Microsoft is getting hacked every other week.

        • CallMeAnAI@lemmy.world
          link
          fedilink
          English
          arrow-up
          6
          arrow-down
          17
          ·
          1 month ago

          As well as FoSS projects.

      • trolololol@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 month ago

        Mate have a look at the SharePoint vulnerability. It’s embarrassingly bad. Like really really bad, and btw so bad that it’s very easy to understand and exploit. And prevent too, if a jr in my team did this I’d get them in trouble.

  • dumples@midwest.social
    link
    fedilink
    English
    arrow-up
    44
    ·
    1 month ago

    The national guard here is looking around for men in black masks in front of computers throughout the city. Its crazy

    • prole@lemmy.blahaj.zone
      link
      fedilink
      English
      arrow-up
      27
      arrow-down
      1
      ·
      1 month ago

      Is this a joke or are you serious?

      Goddamn it, I can’t tell anymore

      • dumples@midwest.social
        link
        fedilink
        English
        arrow-up
        16
        arrow-down
        2
        ·
        1 month ago

        They found him

        Hackerman

        It’s a joke…

  • SlartyBartFast@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    24
    arrow-down
    4
    ·
    1 month ago

    What’s Saint Paul gonna do about it?

    Complain to Jesus?

    • WaffleWarrior@lemmy.zip
      link
      fedilink
      English
      arrow-up
      8
      arrow-down
      3
      ·
      1 month ago

      🙄

      • notsure@fedia.io
        link
        fedilink
        arrow-up
        1
        arrow-down
        1
        ·
        1 month ago

        …your lack of faith is, disturbing…

    • Etterra@discuss.online
      link
      fedilink
      English
      arrow-up
      4
      arrow-down
      1
      ·
      1 month ago

  • justlemmyin@lemmy.world
    link
    fedilink
    English
    arrow-up
    13
    arrow-down
    3
    ·
    1 month ago

    Had to read the article to realise st Paul is a city name. 😅

    Also, could it be a 'the call is coming from inside the house " situation?

    I remember pedo party hating this mayor. It was all over lemmy during simpler times.

    • Chulk@lemmy.ml
      link
      fedilink
      English
      arrow-up
      10
      ·
      1 month ago

      Also, could it be a 'the call is coming from inside the house " situation?

      I think this is far more likely than China, North Korea, Iran or Russia having a sudden interest in St Paul Minnesota (a city that most people in the US don’t even think about).

      Who benefits more from the crippling of city-level liberal governments and stealing their data, Trump or China? If we see ICE conducting surgical raids within St Paul in the coming months, I think we’ll have our answer.

    • JaymesRS@piefed.world
      link
      fedilink
      English
      arrow-up
      6
      ·
      1 month ago

      Probably not the mayor, the governor of the state was the VP candidate for Kamala Harris.

  • disco@lemdro.id
    link
    fedilink
    English
    arrow-up
    10
    arrow-down
    1
    ·
    1 month ago

    Isn’t there an upcoming election in St. Paul?

    • JaymesRS@piefed.world
      link
      fedilink
      English
      arrow-up
      14
      ·
      edit-2
      1 month ago

      Minneapolis and St Paul (Cross-River sister cities, St Paul is the State Capital) both have mayoral elections on November 4, 2025. The one you’ve been seeing mentioned more likely is the Minneapolis one where the DFL (State Democratic Party) endorsed a candidate for the first time in a bit and it was the challenger to the incumbent Democratic candidate, so it’s been in the news.

  • Hegar@fedia.io
    link
    fedilink
    arrow-up
    9
    arrow-down
    7
    ·
    1 month ago

    With no ransom demand it’s gotta be a state actor probing defenses and testing responses, right? I think first guesses would be Russia, China, Iran or maybe North Korea.

    • piecat@lemmy.world
      link
      fedilink
      English
      arrow-up
      3
      ·
      1 month ago

      Or some bored teenager somewhere

      • sugar_in_your_tea@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 month ago

        That sounds much more likely. I don’t care about St. Paul and I’m American, why would China or Russia care? Also, state and city governments all handle things differently, so the only takeaway is that St Paul’s IT is probably incompetent.

  • notsure@fedia.io
    link
    fedilink
    arrow-up
    3
    arrow-down
    2
    ·
    1 month ago

    …perhaps the U nited S tates should handle that…

  • Ilovethebomb@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    10
    arrow-down
    13
    ·
    1 month ago

    What are the chances this took place during working hours in China?

    • setsubyou@lemmy.world
      link
      fedilink
      English
      arrow-up
      24
      arrow-down
      2
      ·
      1 month ago

      The article says it started on a Friday morning in Minnesota. It’s clear that that’s when the attack started and not a case of the first guy starting work that day discovering that it happened, because the article also says that they tried to contain it as it was going on, but ultimately failed.

      Minnesota is at UTC-5 and China is at UTC+8, meaning when it’s morning in Minnesota, it’s already 13 hours later in China, i.e. middle of the night.

      • Nimrod@lemmy.world
        link
        fedilink
        English
        arrow-up
        22
        arrow-down
        2
        ·
        1 month ago

        I don’t see anything in the article that states the attack started that morning. It says that i was “first noticed” early Friday morning:

        According to remarks by St. Paul Mayor Melvin Carter, the attack was first noticed early in the morning of Friday, July 25.

        I’m not arguing it’s China, just that I didn’t see anything indicating they know when the attack started

      • sugar_in_your_tea@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 month ago

        It’s probably a local.

  • Zombie@feddit.uk
    link
    fedilink
    English
    arrow-up
    9
    arrow-down
    34
    ·
    1 month ago

    Loving the completely unfounded speculation that it must be Eurasia Russia or Eastasia China in this thread.

    Y’all are so deep in propaganda you don’t even know it.

    https://en.m.wikipedia.org/wiki/Political_geography_of_Nineteen_Eighty-Four

    • Ilovethebomb@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      24
      arrow-down
      5
      ·
      1 month ago

      https://www.bbc.com/news/articles/c2kgndwwd7lo

      https://www.bbc.com/news/articles/ce8vedz4yk7o

      https://www.ncsc.gov.uk/news/uk-condemns-chinese-cyber-attacks-against-businesses-governments

      https://thesoufancenter.org/intelbrief-2025-january-10/

      https://cybermagazine.com/articles/chinas-cyber-espionage-surges-150-says-crowdstrike

      Yeah. Definitely propaganda.

      You poor thing.

      • Lemminary@lemmy.world
        link
        fedilink
        English
        arrow-up
        25
        arrow-down
        5
        ·
        edit-2
        1 month ago

        Also:

        https://www.nbcnews.com/tech/security/chinese-hackers-cisa-cyber-5-years-us-infrastructure-attack-rcna137706

        https://www.reuters.com/technology/cybersecurity/fbi-says-chinese-hackers-preparing-attack-us-infrastructure-2024-04-18/

        https://www.bbc.com/news/world-us-canada-68659095

        https://www.usatoday.com/story/news/nation/2024/03/25/china-hack-sanctions-politicians-us-uk/73099882007/

        https://www.semafor.com/article/07/23/2025/chinese-state-hackers-breach-us-nuclear-agency

        https://www.ted.com/talks/laura_galante_how_and_why_russia_hacked_the_us_election

        https://cyber-peace.org/wp-content/uploads/2018/11/rpt-apt28.pdf

        https://services.google.com/fh/files/misc/rpt-redline-drawn-china-espionage-en.pdf

        https://en.wikipedia.org/wiki/Cyberwarfare_and_China

        I guess it’s all just propaganda, huh. We’re just a bunch of gullible buffoons.

      • Zombie@feddit.uk
        link
        fedilink
        English
        arrow-up
        8
        arrow-down
        18
        ·
        1 month ago

        Oh honey, don’t you see the irony of posting the BBC and the government’s cyber security centre to refute claims of propaganda?

        Do you believe the most technologically advanced country in the world, with the power of silicon valley, an unlimited budget for the military and CIA, currently being run by an outright fascist, is innocent?

        https://en.wikipedia.org/wiki/Operation_Olympic_Games

        https://www.independent.co.uk/news/world/americas/us-politics/donald-trump-us-hacking-china-b2779104.html

        “We have stated our position many times regarding such groundless accusations that lack evidence,” ministry spokesperson Mao Ning was quoted as saying by the AFP news agency.

        A spokesperson for the Chinese embassy in the US, Liu Pengyu, denied the department’s allegations. “We hope that relevant parties will adopt a professional and responsible attitude when characterising cyber-incidents, basing their conclusions on sufficient evidence rather than unfounded speculation and accusations,” he said, according to a BBC report.

        “The US needs to stop using cybersecurity to smear and slander China and stop spreading all kinds of disinformation about the so-called Chinese hacking threats.”

        https://www.aljazeera.com/news/2025/1/1/us-treasury-hacked-are-china-and-the-us-stepping-up-their-cyberwar

        It’s always China, Russia, North Korea, and Iran that is jumped to because that is the main adversaries of the west. Never India, or Brazil, or Israel, or Saudi Arabia, all capable countries. With not a shred of evidence it’s always China, Russia, North Korea, and Iran that are speculated.

        No speculation that perhaps Mexico and Canada, two countries currently having beef with the US could be to blame. No speculation that it’s a false flag by the US federal government. No, straight to China.

        When the Spanish power grid went down straight away the speculation was to Russian or Chinese hacking, investigations aren’t finished yet but it appears to have been nothing of the sort, but instead frequency oscillations in the power lines.

        https://en.wikipedia.org/wiki/2025_Iberian_Peninsula_blackout#Misinformation

        It could very well be China etc but straight away with no evidence there’s comments like “What are the chances this took place during working hours in China?”.

        At best it’s bigoted, at worst it’s U.S. sponsored Lemmy propaganda.

      • Allero@lemmy.today
        link
        fedilink
        English
        arrow-up
        5
        arrow-down
        21
        ·
        edit-2
        1 month ago

        Yes. There are quite a few completely unfounded pieces stating it is Russia or China or North Korea behind thing X with no proofs whatsoever.

        These do not go to prove your point.

        Now, there were some proven cases, but attributing every attack to one of these now without judge and jury is nothing but blatant and bold propaganda.

        • Ilovethebomb@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          19
          arrow-down
          6
          ·
          1 month ago

          Did you get lost on the way to Lemmy.ml?

          1.5 billion in crypto isn’t something you can spend without attracting attention, of course it was them.

          • Allero@lemmy.today
            link
            fedilink
            English
            arrow-up
            7
            arrow-down
            14
            ·
            edit-2
            1 month ago

            People got so deep into their allegiance games that they cannot comprehend anyone standing for the truth.

            Fuck .ml China fappers, and fuck .world Russia-guilty-of-everything fans. You’re equally terrible in enabling atrocities.

            As I said, some cases are confirmed, some are wild speculations. And latter are commonly used in future arguments as confirmations, despite them being mere speculated assumptions.

            You can have a barrage of “something-bad” confirmations like these out of thin air, and this is a common propaganda tactic.

    • AwesomeLowlander@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      18
      arrow-down
      4
      ·
      1 month ago

      Would you like to name other likely suspects? It’s not standard criminals, there have been no ransom demands. And they’re unlikely to piss off the govt to this extent. Which leaves state actors. Gee, wonder who it might be.

      • Allero@lemmy.today
        link
        fedilink
        English
        arrow-up
        8
        arrow-down
        22
        ·
        1 month ago

        Literally anyone until proven guilty?

        • Lemminary@lemmy.world
          link
          fedilink
          English
          arrow-up
          16
          arrow-down
          3
          ·
          edit-2
          1 month ago

          So we can’t guess who’s responsible? Not even the most prominent ones?

          • WindyRebel@lemmy.world
            link
            fedilink
            English
            arrow-up
            8
            arrow-down
            2
            ·
            1 month ago

            Nope, guess not. Trump’s Lemmy account is here to gaslight us.

        • AwesomeLowlander@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          14
          arrow-down
          2
          ·
          1 month ago

          Nobody’s passing sentence, it’s just speculation about guilty parties. Last I checked that was legal and in fact common discussion.

        • Deceptichum@quokk.au
          link
          fedilink
          English
          arrow-up
          16
          arrow-down
          6
          ·
          1 month ago

          Checks out, it was probably New Zealand.

          Fucking dumbarse.

    • JohnnyFlapHoleSeed@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      ·
      edit-2
      1 month ago

      How long does it take you to put on your clown make up every morning? Attack was made possible with info stolen by doge, which was handed over to Russia, at that point they probably worked with North Korea for the operation

      • Zombie@feddit.uk
        link
        fedilink
        English
        arrow-up
        1
        arrow-down
        9
        ·
        1 month ago

        How long does it take you to put on your clown make up every morning? Attack was made possible with info stolen by doge, which was handed over to Russia, at that point they probably worked with North Korea for the operation

        • DrFistington@lemmy.world

        Saving this for posterity. Hahahaha. And I’m the supposed clown!

        Fucking hell.

        Can I see your evidence or do you just telepathically know these things?

    • shortwavesurfer@lemmy.zip
      link
      fedilink
      English
      arrow-up
      5
      arrow-down
      1
      ·
      1 month ago

      We’re at war with East Asia. We’ve always been at war with East Asia. George Orwell, 1984.

Technology@lemmy.world

technology@lemmy.world

Subscribe from Remote Instance

Create a post
You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !technology@lemmy.world

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


  • @L4s@lemmy.world
  • @autotldr@lemmings.world
  • @PipedLinkBot@feddit.rocks
  • @wikibot@lemmy.world
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 2.49K users / day
  • 6.75K users / week
  • 14K users / month
  • 34.7K users / 6 months
  • 1 local subscriber
  • 75K subscribers
  • 13.2K Posts
  • 449K Comments
  • Modlog
  • mods:
  • L3s@lemmy.world
  • enu@lemmy.world
  • Technopagan@lemmy.world
  • L4sBot@lemmy.world
  • L3s@hackingne.ws
  • L4s@hackingne.ws
  • BE: 0.19.11
  • Modlog
  • Legal
  • Instances
  • Docs
  • Code
  • join-lemmy.org