https://www.theregister.com/2022/10/12/drone-roof-attack/?td=rt-3a
"the hacking incident was discovered when the financial firm spotted
unusual activity on its internal Atlassian Confluence page that
originated from within the company's network."
"The company's security team responded and found that the user whose MAC address was used to gain partial access to the company Wi-Fi network was
also logged in at home several miles away."
"The team then took steps to trace the Wi-Fi signal and used a Fluke
system to identify the Wi-Fi device."
"This led the team to the roof, where a 'modified DJI Matrice 600' and a 'modified DJI Phantom' series were discovered,"
"The Phantom drone was in fine condition and had a modified Wi-Fi
Pineapple device, used for network penetration testing"
"The Matrice drone was carrying a case that contained a Raspberry Pi,
several batteries, a GPD mini laptop, a 4G modem, and another Wi-Fi
device. It had landed near the building's heating and ventilation system
and appeared to be damaged but still operable."
"the tools on the drones were used to target the company's internal
Confluence page in order to reach other internal devices using the
credentials stored there"
""The attackers specifically targeted a limited access network, used by
both a third-party and internally, that was not secure due to recent
changes at the company"
(more in the article)
--
(aka 'Bombastic Bob' in case you wondered)
'Feeling with my fingers, and thinking with my brain' - me
'your story is so touching, but it sounds just like a lie'
"Straighten up and fly right"
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)