One Small Favour

From Jackpoint
Revision as of 13:28, 15 September 2017 by Revàn (talk | contribs)

(Will be written up in character later)

Selene gets a message from Gabrijel, sysop of Cloud9. Apparently some outsiders are trying to buy admin credentials and buy the host. She looks into it and finds the following:

  • Black Cat, a new admin, received spam on a new commcode very shortly after it was given admin and before it was released publicly.
  • George Maybury, a former tech worker at $CORP, heard about some of the admins of his host receiving similar messages about a month ago. When the messages failed to have any effect, the outside force compromised several accounts on the board of directors, seized majority, fired everyone else, and took over the company.
  • Possible evidence that the user database has been accessed illegally, or else someone on the inside is already compromised.
  • The messages were traced to a small-time corporate host which doesn't see much use.

Things we want to investigate:

  • The host which is the source of the latest messages. Who accesses it and why?
  • The $CORP host which was taken over. What are they using it for?
  • We set up a new admin account on a throwaway commcode. If anyone accesses that data, they are suspicious.