by James Cavenaugh | May 20, 2026 | Endpoint & Network Security
The 2022 Uber breach that I’ve mentioned in other posts is usually talked about as an MFA story. It’s also an endpoint story. The attacker didn’t compromise an Uber-managed laptop. He compromised a contractor’s personal device. The password...
by James Cavenaugh | Mar 30, 2026 | Endpoint & Network Security
In 2022, Uber’s entire internal network was compromised by an 18-year-old. Not through some exotic zero-day exploit. The attacker bought stolen credentials on the dark web, MFA-bombed an employee with push notifications until they accepted one, and then moved...