TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Scaleway: Incident SSD was stolen during a secure transport between datacenters

99 点作者 mot2ba将近 4 年前

11 条评论

Moonlight_TC将近 4 年前
Scaleway&#x27;s claim that customers were immediately informed («prévenu la clientèle potentiellement impactée») appears to be false. Affected customers were not notified until June 2021. [1]<p>Scaleway did not publish their blog post until after the 3 part video series by Micode, despite being aware of the incident since May 2021. [2]<p>[1] <a href="https:&#x2F;&#x2F;www.lowendtalk.com&#x2F;discussion&#x2F;172819&#x2F;scaleway-ssd-with-customer-data-purchased-on-classified-ads-website-by-french-vlogger" rel="nofollow">https:&#x2F;&#x2F;www.lowendtalk.com&#x2F;discussion&#x2F;172819&#x2F;scaleway-ssd-wi...</a><p>[2] <a href="https:&#x2F;&#x2F;twitter.com&#x2F;Micode&#x2F;status&#x2F;1395640486715662336" rel="nofollow">https:&#x2F;&#x2F;twitter.com&#x2F;Micode&#x2F;status&#x2F;1395640486715662336</a>
zenexer将近 4 年前
I’m having a little trouble following since I don’t speak French, but based on other comments here, it sounds like:<p>1. French YouTuber Micode bought a used SSD from leboncoin.<p>2. Micode wanted to demonstrate that data should always be properly wiped from used drives.<p>3. The SSD Micode obtained had been quick-formatted and was never encrypted, so it was trivial to recover the data on it.<p>4. Micode asked his followers on Twitter to try to identify the source of the drive.<p>5. It was eventually identified as belonging to Scaleway, and it contained important data from a Scaleway customer’s VM, including an SSH key, source code, and an S3 secret.<p>6. Scaleway threatened Micode, who now claims to have wiped the data.<p>7. Scaleway published a blog post claiming the drive was stolen while being transported between datacenters.<p>Unless I’m missing something that was lost in translation, I call bullshit on #7. They also seem to be claiming customers were notified immediately, but it that doesn’t appear to be the case. This just seems like they sold an old drive that should’ve been encrypted (it wasn’t) and wiped (it wasn’t). Whether that sale was authorized is a matter of debate—one former employee said they wouldn’t be surprised if someone just decided to walk out of the building with decommissioned hardware.
评论 #27958170 未加载
评论 #27983164 未加载
adriancarrieres将近 4 年前
They collaborated so much with Micode that they threatened him when he disclosed the SSD was from a cloud provider (without giving away its name)<p>As for the other things, at the end of the 2nd video he did succeed on extracting and gaining access to the data, with full code source, AWS and Facebook (bot account) credentials (among others).<p>The exploration of the (redacted) data is in part 3
KronisLV将近 4 年前
Google Translate link into English: <a href="https:&#x2F;&#x2F;translate.google.com&#x2F;translate?sl=auto&amp;tl=en&amp;u=https:&#x2F;&#x2F;blog.scaleway.com&#x2F;incident-securitaire-video-youtube&#x2F;" rel="nofollow">https:&#x2F;&#x2F;translate.google.com&#x2F;translate?sl=auto&amp;tl=en&amp;u=https...</a><p>Edit: seems like the blog itself can be read in English with the button at the bottom, yet the articles themselves aren&#x27;t necessarily translated after clicking on it. Localization is hard.
formerly_proven将近 4 年前
And why exactly is the bare storage of these not encrypted? I would expect, at the very least, that the data is encrypted using customer-specific keys.
评论 #27957698 未加载
评论 #27957692 未加载
dsign将近 4 年前
They ublish all their blog entries in English, but this one is in French. Why? I would understand if the information were addressed to French stakeholders, but this information is most relevant to (perhaps international, perhaps prospective) customers.
belter将近 4 年前
File Carving: <a href="https:&#x2F;&#x2F;resources.infosecinstitute.com&#x2F;topic&#x2F;file-carving&#x2F;" rel="nofollow">https:&#x2F;&#x2F;resources.infosecinstitute.com&#x2F;topic&#x2F;file-carving&#x2F;</a>
jve将近 4 年前
So, did the YouTuber extract any data from that drive or not? If not, I suspect there wouldn&#x27;t be a headline? + The text starts with: &quot;Over a year ago, an SSD was stolen...&quot;.<p>I may be wrong of course. But would gladly know more info, if anyone has it.
评论 #27957582 未加载
评论 #27957606 未加载
评论 #27957630 未加载
评论 #27957552 未加载
评论 #27957549 未加载
malka将近 4 年前
Now this has utterly disappeared from the front page. wtf happened ?
MisterTea将近 4 年前
Sounds like someone forgot to run &#x27;dd if=&#x2F;dev&#x2F;zero of=&#x2F;dev&#x2F;sdX&#x27;
angauber将近 4 年前
This raise a question, why weren&#x27;t they using encryption on their qcow2 volumes ?