westvirginiadigitalnews.com
Advertisement
No Result
View All Result
No Result
View All Result
westvirginiadigitalnews.com
No Result
View All Result
Home GADGET

It took a TikToker barely 30 minutes to doxx me

admin by admin
March 14, 2023
in GADGET
0
It took a TikToker barely 30 minutes to doxx me
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter


In 30 minutes or less, TikToker and Chicago-based server Kristen Sotakoun can probably find your birth date. She’s not a cybersecurity expert, despite what some of her followers suspect, but has found a hobby in what she calls “consensual doxxing.”

“My first thing is to be entertaining. My second thing is to show you cracks in your social media, which was the totally accidental thing that I became on TikTok,” Sotakoun, who goes by @notkahnjunior, told me.

It’s not quite doxxing, which usually refers to making private information publicly available with malicious intent. Instead, it’s known in the cybersecurity field as open-source intelligence, or OSINT. People unknowingly spell out private details about their lives as a bread crumb trail across social media platforms that, when gathered together, paint a picture of their age, families, embarrassing childhood memories and more. In malicious cases, hackers gather information based on what you or your loved ones have published on the web to get into your accounts, commit fraud, or even socially engineer a user to fall for a scam.

Sotakoun mostly just tracks down an anonymous volunteer’s birth date. She doesn’t have malicious intent or interest in a security career, she said she just likes to solve logic puzzles. Before TikTok, that was spending a ride home from a friend’s birthday dinner at Medieval Times discovering the day job of their “knight.” Sotakoun just happened to eventually go viral for her skills.

So, to show me her process, I let Sotakoun “consensually doxx” me. She found my Twitter pretty quickly, but because I keep it pretty locked down, it wasn’t super helpful. Information in author bios from my past jobs, however, helped her figure out where I went to college.

My name plus where I studied led her to my Facebook account, another profile that didn’t reveal much. It did, however, lead her to my sister, who had commented on my cover photo nine years ago. She figured out it was my sister because we shared a last name, and we’re listed as sisters on her Facebook. That’s important to note because I don’t actually share a last name with most of my other siblings, which could’ve been an additional roadblock.

My sister and I have pretty common names though, so Sotakoun also found my stepmom on my sister’s profile. By searching my stepmom’s much more unique name on Instagram, it helped lead Sotakoun to mine and my sister’s Instagram accounts, as opposed to one of the many other Malones online.

Still, my Instagram account is private. So, it was my sister’s Instagram account – that she took off “private” for a Wawa giveaway that ultimately won her a t-shirt – featuring years-old birthday posts that led Sotakoun to the day I was born. That took a ton of scrolling and, to correct for the fact that a birthday post could come a day late or early, Sotakoun relied on the fact that my sister once shared that my birthday coincided with World Penguin Day, April 25.

Then, to find the year, she cross-referenced the year I started college, which was 2016 according to my public LinkedIn, with information in my high school newspaper. My senior year of high school, I won a scholarship only available to seniors, Sotakoun discovered, revealing that I graduated high school in 2016. From there, she counted back 18 years, and told me that I was born on April 25, 1998. She was right.

“My goal is always to find context clues, or find people who care less about their online presence than you do,” Sotakoun said.

Many people will push back on the idea that having personal information online is harmful, according to Matt Edmondson, an OSINT instructor at cybersecurity training organization SANS Institute. While there are obvious repercussions to having your social security number blasted online, people may wonder what the harm is in seemingly trivial information like having your pet’s name easily available on social media. But if that also happens to be the answer to a security question, an attacker may be able to use that to get into your Twitter account or email.

In my case, I’ve always carefully tailored my digital footprint to keep my information hidden. My accounts are private and I don’t share a lot of personal information. Still, Sotakoun’s OSINT methods found plenty to work with.

Facebook and Instagram are Sotakoun’s biggest help for finding information, but she said she has also used Twitter, and even Venmo to confirm relationships. She specifically avoids resources like records databases that could easily give away information.

That means that there’s still a lot of data out there on each of us that Sotakoun isn’t looking for. Especially if you’re in the US, data like your date of birth, home address and more are likely already out there in some form, according to Steven Harris, an OSINT specialist that teaches at SANS.

“Once the data is out there, it’s very hard to take back,” Harris said. “What protects people is not that the information is securely locked away, it’s that most people don’t have the knowledge or inclination to go and find out.”

There are simple things you can do to keep attackers from using these details against you. Complex passwords and multi-factor authentication make it harder for unauthorized users to get into your account, even if they know the answers to your security questions.

That gets a bit more complicated, though, when we think about how much our friends and family post for us. In fact, Sotakoun said she noticed that even if a person takes many measures to hide themselves online, the lack of control over their social circle can help her discover their birth date.

“You have basically no control on your immediate social circle, or even your slightly extended social circle and how they present themselves online,” she said.

All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission. All prices are correct at the time of publishing.



Source link

RELATED POSTS

Framework refines its laptops and adds a cute way to reuse old parts

Twitter Blue subscriptions are now available worldwide

ShareTweetPin
admin

admin

Related Posts

Framework refines its laptops and adds a cute way to reuse old parts

Framework refines its laptops and adds a cute way to reuse old parts

by admin
March 25, 2023
0

Framework is one of a few companies leading the charge against disposable electronics, in particular laptops. It just showed off...

Twitter Blue subscriptions are now available worldwide

Twitter Blue subscriptions are now available worldwide

by admin
March 23, 2023
0

You no longer have to wonder whether or not the revived Twitter Blue subscription is available in your country. Twitter...

Europe tools up for the repairable future

Europe tools up for the repairable future

by admin
March 23, 2023
0

The European Commission has laid out another piece of its Circular Economy Action Plan today — adopting a proposal to...

Positive Grid unveils ultra-portable Spark Go enhanced guitar amp

Positive Grid unveils ultra-portable Spark Go enhanced guitar amp

by admin
March 22, 2023
0

Positive Grid has a new ultra-portable version of its high-tech Spark guitar amplifier. Designed for musicians seeking a versatile and...

Amazon kills DPReview, the best camera review site on the web

Amazon kills DPReview, the best camera review site on the web

by admin
March 22, 2023
0

After 25 years of extremely detailed reviews of digital cameras and accessories, the irreplaceable DPReview is being shut down by...

Next Post
Meizu 20, 20 Pro’s launch date revealed

Meizu 20, 20 Pro's launch date revealed

How to Lucid Dream (Even if You Think You Can’t)

How to Lucid Dream (Even if You Think You Can’t)

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Fivver Ads

RECOMMENDED

Just 7 days until the TC Early Stage early bird flies away

Just 7 days until the TC Early Stage early bird flies away

March 25, 2023
Jane Fonda Says J.Lo ‘Never Apologized’ For ‘Monster-In-Law’ Face Cut – Hollywood Life

Jane Fonda Says J.Lo ‘Never Apologized’ For ‘Monster-In-Law’ Face Cut – Hollywood Life

March 25, 2023
  • 647 Followers
  • 23.8k Followers

MOST VIEWED

  • Oil Rallies With OPEC+ Decision, G-7 Cap Plan Dominating Trading

    Oil Rallies With OPEC+ Decision, G-7 Cap Plan Dominating Trading

    0 shares
    Share 0 Tweet 0
  • Bed Bath & Beyond CFO Gustavo Arnal falls to his death from New York skyscraper

    0 shares
    Share 0 Tweet 0
  • No Escape From Biggest Bond Loss in Decades as Fed Keeps Hiking

    0 shares
    Share 0 Tweet 0
  • Trump wins special master ruling from federal judge over seized documents by FBI

    0 shares
    Share 0 Tweet 0
  • How much does the average Gen Z worker make? Results by state

    0 shares
    Share 0 Tweet 0
westvirginiadigitalnews.com

CATEGORY

  • APPS
  • ARTS & THEATER
  • BUSINESS
  • CELEBRITY
  • CRYPTO
  • CULTURE
  • ECONOMY
  • Education
  • ENTERTAINMENT
  • FASHION
  • FINANCE
  • FOOD
  • GADGET
  • Gambling
  • GAMING
  • HEALTH
  • HISTORY
  • LIFESTYLE
  • MARKET
  • MOBILE
  • MONEY
  • MOVIE
  • MUSIC
  • Nature
  • News
  • PRESS RELEASE
  • REAL ESTATE
  • Religion
  • SCIENCE
  • Shopping
  • SHOWS
  • SPORTS
  • TECH
  • TRAVEL

Just 7 days until the TC Early Stage early bird flies away

Jane Fonda Says J.Lo ‘Never Apologized’ For ‘Monster-In-Law’ Face Cut – Hollywood Life

Should Soy Sauce Be Refrigerated?

How Many Mortgages Can You Have?

Bank Turmoil Could Spark ‘Modest’ Recession In 2nd Half Of Year | Inman

Redmi A2 and Redmi A2+ quietly debut at the low-end

Framework refines its laptops and adds a cute way to reuse old parts

What Do You Prefer Pokemon Go Or Among Us? Games and Apps Edition

Visa stock is up 1,900% since its record-breaking IPO 15 years ago—what’s next?

2:00PM Water Cooler 3/24/2023 | naked capitalism

2022-10-07 | NEO:PLBL | Press Release

Onchain Sleuths Discover Funds Linked to Alameda Swapped for ETH, USDT, BTC by a Mysterious Entity – Bitcoin News

BlockFi gets court nod to sell crypto mining assets

Adam Greenway resigns as Southwestern Seminary president

Life With Relapsing-Remitting Multiple Sclerosis

Press Release – Albany Med Health System

The mixed messaging of mixed reality • TechCrunch

Entrepreneurs must learn to tackle business risks in the Metaverse

Samsung seeks smart TV growth with first Tizen OS licensing deals • TechCrunch

Indiana Sportsbook January Handle Down, AGR Up from Year Ago

© 2022 Westvirginiadigitalnews.com

No Result
View All Result

© 2022 Westvirginiadigitalnews.com