MOVEit breach delivers bundle of 3.4 million baby records

state of mind

...we've taken additional measures to further strengthen...

I'm inclined to think they just started taking their first measures, not adding new ones.

Then the question comes to mind: why didn't they think of these "measures" previously? Were they just not imaginative enough? Or in too much of a hurry to care?

One obvious measure is to limit the list of acceptable IP addresses to avoid a compromise by rando hackers.

If you expect your software to be vulnerable, you can take better care of your data. Simple.

