Online discussion forum Reddit on Friday confirmed that its systems were hacked as a result of a sophisticated and highly-targeted phishing attack.
According to Reddit CTO Christopher Slowe, or KeyserSosa, the company became aware of the "sophisticated" attack targeting its employees on February 5.
"As in most phishing campaigns, the attacker sent out plausible-sounding prompts pointing employees to a website that cloned the behaviour of our intranet gateway, in an attempt to steal credentials and second-factor tokens," Slowe said.
After successfully obtaining a single employee's credentials, the attacker gained access to some internal documents, code, as well as some internal dashboards and business systems.
"We show no indications of breach of our primary production systems (the parts of our stack that run Reddit and store the majority of our data)," said the CTO.
Exposure included limited contact information for (currently hundreds of) company contacts and employees (current and former), as well as limited advertiser information.
"We have no evidence to suggest that any of your non-public data has been accessed, or that Reddit's information has been published or distributed online," Slowe wrote in a post.
The company is continuing to investigate and monitor the situation closely and working with its employees to fortify security skills.
"The most important (and simple) measure you can take is to set up 2FA (two-factor authentication) which adds an extra layer of security when you access your Reddit account," said Reddit.
--IANS
na/pgh
(Only the headline and picture of this report may have been reworked by the Business Standard staff; the rest of the content is auto-generated from a syndicated feed.)
You’ve hit your limit of {{free_limit}} free articles this month.
Subscribe now for unlimited access.
Already subscribed? Log in
Subscribe to read the full story →
Quarterly Starter
₹900
3 Months
₹300/Month
Smart Essential
₹2,700
1 Year
₹225/Month
Super Saver
₹3,900
2 Years
₹162/Month
Renews automatically, cancel anytime
Here’s what’s included in our digital subscription plans
Access to Exclusive Premium Stories Online
Over 30 behind the paywall stories daily, handpicked by our editors for subscribers


Complimentary Access to The New York Times
News, Games, Cooking, Audio, Wirecutter & The Athletic
Business Standard Epaper
Digital replica of our daily newspaper — with options to read, save, and share


Curated Newsletters
Insights on markets, finance, politics, tech, and more delivered to your inbox
Market Analysis & Investment Insights
In-depth market analysis & insights with access to The Smart Investor


Archives
Repository of articles and publications dating back to 1997
Ad-free Reading
Uninterrupted reading experience with no advertisements


Seamless Access Across All Devices
Access Business Standard across devices — mobile, tablet, or PC, via web or app