this post was submitted on 14 Jul 2024
587 points (98.5% liked)

Technology

59405 readers
2702 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
 

In a significant data breach, hacktivist group NullBulge has infiltrated Disney's internal Slack infrastructure, leaking 1.2TB of sensitive data. This breach, posted on the cybercrime platform Breach Forums on July 12, 2024, exposes many of Disney's internal communications, compromising messages, files, code, and other proprietary information.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 22 points 4 months ago (1 children)

I think it would depend on the level of the account. They have that feature for compliance reasons in heavily regulated industries.

[–] [email protected] 2 points 4 months ago* (last edited 4 months ago) (4 children)

Kinda, but not even admin accounts can view/export private channels they are not a member of.

I don't think that's even a feature

[–] [email protected] 1 points 4 months ago

Definitely is a feature.. Have personally used it.

[–] [email protected] 11 points 4 months ago (1 children)

I had to manage a Slack migration to another org we were merging with. As the owner, normally I couldn't even see the names of private channels, but when it came down to the migration, upgrading the account to Business+ tier, the full export included everything (private channels and DMs), which we imported into the new org.

Slack sends notifications to all Admins that the export was happening, and i've only seen that notification once after using Slack for 10 years.

[–] [email protected] 1 points 3 months ago

😮I bet there is some spicy stuff in the DMs of companies with 1000+ people

[–] [email protected] 4 points 4 months ago

IIRC Admins can not, but Org owners can in certain situations.

[–] [email protected] 17 points 4 months ago

https://slack.com/intl/en-gb/help/articles/201658943-Export-your-workspace-data

It absolutely is.

Slack must have this for compliance issues, or they would be locked out of many industries (like banking and insurance)