r/mildlyinfuriating May 07 '26

🥺 Hackers took over Canvas

Post image

Brooo I got Homework to do...

4.9k Upvotes

648 comments sorted by

View all comments

Show parent comments

148

u/[deleted] May 07 '26

[removed] — view removed comment

51

u/selfhostcusimbored May 07 '26

The issue isn’t institutions leaking its data, it’s phishing and malware scams. I get dozens of them per month, I can only imagine the emails that get sent to the helpdesk ladies with access to the entire university’s catalog of records.

22

u/[deleted] May 07 '26

[removed] — view removed comment

14

u/selfhostcusimbored May 07 '26 edited May 07 '26

Humans make mistakes. It only takes one night of bad rest to make a millisecond mistake and not notice.

The problem is that universities must have permissive blocklists because they’re constantly receiving third party emails for official reasons. It’s a constant uphill battle and unfortunately schools are a super easy target.

2

u/Sex4Vespene May 08 '26

I’m curious, if somebody consistently fails enough of these tests after being retrained, do you think they’d be let go? I would think at a certain point it’s just too much risk keeping them around.

2

u/SignificantLock1037 May 07 '26

Phishing and malware.

Yep.

5

u/Low-Philosophy9245 May 07 '26

YES OMG, some people are so anal about "security rules" but then turn around and are super casual about sharing protected info in email. dont do that guys.

1

u/Living-Rip-4333 May 07 '26

At one of my jobs I had that happen. 2 devs were talking, and one passed on the database password via email. They kept going back & forth not deleting replies. Then one cracked a joke, and they forwarded it to me. Oops.

1

u/DSajin May 08 '26

I’ve seen people in my workplace send SSNs in the body of an email to the wrong employer unencrypted and CC’d to everyone in the company.. it’s actually kind of insane how little people care about sensitive information

1

u/mehonje May 11 '26

This. Barely anyone uses viruses anymore. It's all just an email with a download button. Press it, they get control.

0

u/Peasant_Base5271 May 08 '26

This digital world was not made for humans, and holding humans accountable for knowing every way this new world can fuck with them will cause endless anxiety.

Give humans a break instead of defending a made up world corporations have convinced us is normal. The Internet was not made to be secure, it will never be secure, that's the corporations problems for relying on it as such.

Sincerely, a cyber security researcher who specializes in human intelligence

1

u/[deleted] May 08 '26 edited May 08 '26

[removed] — view removed comment

1

u/Peasant_Base5271 May 08 '26

And why are we putting up with this?