Hi everyone,

I’ve implemented strong security measures like 2FA, password managers, and even security keys to protect my accounts. Despite all this, I’ve still experienced hacking incidents that don’t seem to fit common explanations like session hijacking or phishing.

I’m trying to understand what advanced attack vectors or vulnerabilities might be at play here, and what steps I can take beyond the usual advice to secure myself better.

Has anyone faced similar issues or can share insights on deeper cybersecurity operations, attack methods, or advanced defenses? What should be the next steps when standard protections fail?

Thanks in advance for your expertise!

  • AA5B@lemmy.world
    link
    fedilink
    arrow-up
    1
    ·
    edit-2
    14 days ago

    Probably not. It’s an Apple thing that comes with iCloud. iPhones aren’t very popular here but maybe someone else can recommend generic/Android/Windows/Linux equivalents

    This might even require a specific level of iCloud subscription, I don’t know, but I use

    • password generator, including family sharing and cross device sharing. I believe even cross device passkeys but I’ve never tried
    • “Hide my email” generates a unique forwarding email per site
    • “private relay” maps me to a general location not tied to my mobile vendor

    Whether through an app or web browser on any Apple or windows device, it autofills a login with unique generated email, unique generated password or passkey, and anyone trying to find my location through my connection will get a regional answer

    For example, my login here is a unique address not used anywhere else and not tied to me any other way.