My official email is hacked

I got an email from my firms support email account address to itself today morning.

It has the usual, you watch a porn, we recorded the screen and webcam bullshit that asks to pay in Bitcoin.

But, this is an email configured on Redmine and Nextcloud to send out notification emails. The webcam in my laptop is physically closed. And I don’t watch pornography in work machines.

The interesting part is how they got access to my email and password to send it to myself.

The email is from godaddy. It has a reasonable password strength. If they got access to the email, they may have access to the sent items and thus have info of the recipients.

Any idea how I can secure further will be greatly appreciated.

submitted by /u/vijayrex
[link] [comments]

from hacking: security in practice
