It's not behavior that makes any sense assuming even a semi-rational/intelligent actor.
It's not behavior that makes any sense assuming even a semi-rational/intelligent actor.
It has details of labor disputes. Which if you’re Russia who thrives on fostering conflict in the US would be an ideal data set.
> Why would DOGE be immediately leaking just-granted NLRB login credentials to Russian assets
Because they are young, highly inexperienced engineers who have been tasked with rolling out their LLM system as quickly as possible. Their priority is not security.
Furthermore, that the NLRB data would somehow be of sufficient value to Russian state actors to justify risking burning their access to DOGE employees/data/credentials through frankly idiotic OPSEC, despite there being much higher value targets than the NLRB?
This even remotely doesn't pass the smell test.
b) This system: https://www.wired.com/story/doge-is-just-getting-warmed-up-d...
c) DOGE under its current form will end in the next weeks/months as Musk moves on. So if you’re Russia the best bet is to get as much data now as you can.
Explains this:
> why would DOGE be immediately leaking just-granted NLRB login credential
The implication is that the credentials were for more than this specific system. It's entirely feasible that a bad actor would immediately try to vacuum up as much data from as many systems as possible, it's just that this system had a geo block that made it clear this was happening.
I don't think we need to assume that this was a targeted attack on this specific NLRB system, just that this specific NLRB system was the one that caught the attempts.
So, what systems DIDN'T block authentication?