Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
Judge Schnoopy
Nov 2, 2005

dont even TRY it, pal

nielsm posted:

I'd probably put a couple different levels/flags for acting on a phishing test mail: Loading an image (pixel) in the HTML mail body, fetching the main web page linked, running JS on the webpage (letting it perform an XHR request), submitting the form, and submitting the form with working credentials.

Knowbe4 has a few options like this. They can attempt Java exploits on a click, you can add an attachment that checks macro exploits, you can add a phony portal and record who enters credentials. There are a lot of good options built in though you can probably do most of them with a raspberry pi and some spare time.

Adbot
ADBOT LOVES YOU

carry on then
Jul 10, 2010

by VideoGames

(and can't post for 10 years!)

nielsm posted:

I'd probably put a couple different levels/flags for acting on a phishing test mail: Loading an image (pixel) in the HTML mail body, fetching the main web page linked, running JS on the webpage (letting it perform an XHR request), submitting the form, and submitting the form with working credentials.

Not sure what the other ones are for, since in a proper phishing test, loading the image pixel will signal security to escort the employee from the premises.

Thanks Ants
May 21, 2004

#essereFerrari


We had a call out this week to a report of a poorly performing wireless network that we had installed a couple of years back. Nothing obviously wrong according to our management console, so somebody went over to see what was up. Turns out that at some point all of their access points have been replaced with a bunch of old ones, and the kit we installed has all disappeared - but it’s online still, presumably in the new location.

Current thinking is that another company has been in, sold their own WiFi kit and then generously offered to take a bunch of nearly new units away rather than leaving them for the owner of the business to dispose of, and then reuse them somewhere else. It’s completely the customer’s fault for just signing any old proposal, but it provided a needed laugh.

Samizdata
May 14, 2007

carry on then posted:

Not sure what the other ones are for, since in a proper phishing test, loading the image pixel will signal security to escort the employee from the premises.

Now there's a fun machine learning project: Creating a filter tool that can rewrite emails to remove webbugs but still leave stuff like legitimate product shots and such.

Well, someone that is not me...

Antioch
Apr 18, 2003
KnowBe4 is a lot of fun. My favorite part is coming up with campaigns and running a betting pool about click rates. Highest we've had this year is "Bonus payout structure 2017 CONFIDENTIAL HR ONLY" - 18% Click rate.
We've been really happy with the increase in awareness.

Sywert of Thieves
Nov 7, 2005

The pirate code is really more of a guideline, than actual rules.

It looks fun so I suggested Knowbe4 to our sysadmin and see if we can get it off the ground in secret. :getin:

Sirotan
Oct 17, 2006

Sirotan is a seal.


First ticket of the week just came in:

quote:

i need permission to the systems

do you now :allears:

iospace
Jan 19, 2038


How high up were they?

The Macaroni
Dec 20, 2002
...it does nothing.

Antioch posted:

KnowBe4 is a lot of fun. My favorite part is coming up with campaigns and running a betting pool about click rates. Highest we've had this year is "Bonus payout structure 2017 CONFIDENTIAL HR ONLY" - 18% Click rate.
We've been really happy with the increase in awareness.
18% is pretty good for a juicy subject like that.

In fairness, I loaded images on a phishing test about shipping. Didn't fall for the actual baited link but I wanted to confirm my suspicions.

seadweller
Mar 30, 2010

Sirotan posted:

First ticket of the week just came in:


do you now :allears:

Just do the needful Sirotan, don't slack in your last week! :tif:

Collateral Damage
Jun 13, 2009

We had a new user come in who started his first week strong by requesting admin access to almost every system in our catalog.

He didn't last long.

mllaneza
Apr 28, 2007

Veteran, Bermuda Triangle Expeditionary Force, 1993-1952




Not even noon on Monday and we already have the ticket of the week:

quote:

Subject: Laptop felt down and is broken.
I know just how it feels.

Zamboni Apocalypse
Dec 29, 2009

mllaneza posted:

Not even noon on Monday and we already have the ticket of the week:

I know just how it feels.

"Awww, did it faw down go "BOOM!" ?"

Paladine_PSoT
Jan 2, 2010

If you have a problem Yo, I'll solve it

Sirotan posted:

First ticket of the week just came in:


do you now :allears:

Fuckit, granted.

Sirotan
Oct 17, 2006

Sirotan is a seal.


Paladine_PSoT posted:

Fuckit, granted.

AlexDeGruven
Jun 29, 2007

Watch me pull my dongle out of this tiny box


Since I walked in the door as the lead AIX person, I was handed the keys on day 1. Feels good, man.

Edit: yes, I know it's because nobody else wants to touch it.

AlexDeGruven fucked around with this message at 02:49 on Nov 14, 2017

Zil
Jun 4, 2011

Satanically Summoned Citrus



Second ticket of the day:

"What is a bitcoin?"

BallerBallerDillz
Jun 11, 2009

Cock, Rules, Everything, Around, Me
Scratchmo

iospace posted:

How high up were they?

Neddy Seagoon
Oct 12, 2012

"Hi Everybody!"

Zil posted:

Second ticket of the day:

"What is a bitcoin?"

I hope you remotely locked their computer down airtight upon seeing that message. And started checking anything it's currently connected to.

spog
Aug 7, 2004

It's your own bloody fault.
Does anyone have a good 'complete idiot's guide to sharing folders/Onedrive?'

A client of mine uses a macbook and stores all her company docs in her personal Onedrive. She wanted to share them with another employee.

The 'good with computers' guy came up with the novel idea of simply using her login/password on the second computer and having it store them. Bang! Instant access to the company documents...and her private docs and photos.

Obviously I told her that this wasn't right and pointed her in the direction of the Right Way, but it would help if I could give a simple guide on how to do this type of thing correctly.

Should have big pictures and short words, if possible.

Thanks Ants
May 21, 2004

#essereFerrari


https://support.office.com/en-gb/ar...&rs=en-GB&ad=GB

Which is part of the quite good:

https://support.office.com/office-training-center

spog
Aug 7, 2004

It's your own bloody fault.

Perfect, thanks.

Corsair Pool Boy
Dec 17, 2004
College Slice

mllaneza posted:

Subject: Laptop felt down and is broken.

Weinstein, Spacey, Roy Moore, or has a new player entered?

anthonypants
May 6, 2007

by Nyc_Tattoo
Dinosaur Gum

MANime in the sheets posted:

Weinstein, Spacey, Roy Moore, or has a new player entered?
I don't know what this means, but Tom Sizemore

The Fool
Oct 16, 2003


While we're playing this game: Louis CK, Michael Oreskes

Malek
Jun 22, 2003

Shut up Girl!
And as always: Kill Hitler.
A Ticket came in for assistance with RHEL installation...

See an animated Jeeves whenever their workstation gets an Email.
Senior Linux Analysts adds "This looks like my Mom's computer"

Is this the 2017 Bonzai Buddy?

The Fool
Oct 16, 2003


Are they using incredimail?

Corsair Pool Boy
Dec 17, 2004
College Slice

anthonypants posted:

I don't know what this means, but Tom Sizemore

It is a crack about the laptop being 'felt down'

Bunni-kat
May 25, 2010

Service Desk B-b-bunny...
How can-ca-caaaaan I
help-p-p-p you?

MANime in the sheets posted:

It is a crack about the laptop being 'felt down'

Felt down is sad, felt UP is molested.

Arkanterian
Oct 1, 2013

The Fool posted:

Are they using incredimail?

Thy shal not speak that name out loud.

Irritated Goat
Mar 12, 2005

This post is pathetic.
A ticket didn't come in?

Lady calls complaining she can't get on the wireless but before I can even get 1 word in, she just says "Nevermind, I'll use my phone's hotspot" like that's supposed to make me feel bad? :shrug:

Crowley
Mar 13, 2003
Some goddamn idiot boss approved the purchase of a Mac. We don't support Macs.

Idiot-with-a-Mac creates a ticket to get shiny new iMac "Connected to the network".

I reply to ticket that as per [Company policy] we don't support Macs, and that he's welcome to use the BYOD WLAN and help himself. Then I close the ticket.

Today I see a new ticket in my queue. This time he's found a guide on how to join a Mac to Active Directory, and he's been trying to do that himself.. through the wired connection for his thin client, but he doesn't have "the password".

I reply that we still don't support Macs, and close the ticket. Then I write a mail to the network guys and my own boss informing them of the ticket. Network replies 20 seconds later that the network post has been closed for "security reasons due to suspicious network activity", and boss replies 10 minutes later by BCCing me in a letter to HR explaining that we've suspended his account due to breach of security protocols.

Idiot-with-a-Mac is fresh out of college, and still on his 3-month probationary period. I wonder if we'll get an account termination ticket tomorrow. (probably not. He'll likely get off with a note in his record and a stern talking to.)

Crowley fucked around with this message at 21:11 on Nov 15, 2017

GreenNight
Feb 19, 2006
Turning the light on the darkest places, you and I know we got to face this now. We got to face this now.

Is the idiot boss going to be given a talked to as well? The employee did get approval.

AlternateAccount
Apr 25, 2005
FYGM

GreenNight posted:

Is the idiot boss going to be given a talked to as well? The employee did get approval.

Yeah, this. He should have been set on the right path from the beginning. But then, once he received the WE DONT SUPPORT THIS, he should have at least tried the "Whoops, can I get something you do support, plz?"

Volguus
Mar 3, 2009

AlternateAccount posted:

Yeah, this. He should have been set on the right path from the beginning. But then, once he received the WE DONT SUPPORT THIS, he should have at least tried the "Whoops, can I get something you do support, plz?"

And then he would have to use the same kind of computer/OS like the plebs? This will not do!!!

MF_James
May 8, 2008
I CANNOT HANDLE BEING CALLED OUT ON MY DUMBASS OPINIONS ABOUT ANTI-VIRUS AND SECURITY. I REALLY LIKE TO THINK THAT I KNOW THINGS HERE

INSTEAD I AM GOING TO WHINE ABOUT IT IN OTHER THREADS SO MY OPINION CAN FEEL VALIDATED IN AN ECHO CHAMBER I LIKE

AlternateAccount posted:

Yeah, this. He should have been set on the right path from the beginning. But then, once he received the WE DONT SUPPORT THIS, he should have at least tried the "Whoops, can I get something you do support, plz?"

Ehhh I wouldn't expect that, especially out of a fresh grad, he should have been setup for success not for failure, his idiot boss is the one that needs talking to/disciplined.

Eletriarnation
Apr 6, 2005

People don't appreciate the substance of things...
objects in space.


Oven Wrangler
Yeah - in some companies "we don't support that" means "you are prohibited from doing that, do it our way" and in some it means "you can do it if you want, but you'll do it our way instead if you want any help." We have this with Macs at my company - you can get one if you want, but IT is going to mostly point you at internal wikis instead of holding your hand if you have issues. It sounds like you're somewhere in the middle and the manager who approved the Mac may need a clarification on policy themselves so they can guide their reports more effectively.

Blue_monday
Jan 9, 2004

mind the teeth while you're going down

Eletriarnation posted:

Yeah - in some companies "we don't support that" means "you are prohibited from doing that, do it our way" and in some it means "you can do it if you want, but you'll do it our way instead if you want any help." We have this with Macs at my company - you can get one if you want, but IT is going to mostly point you at internal wikis instead of holding your hand if you have issues. It sounds like you're somewhere in the middle and the manager who approved the Mac may need a clarification on policy themselves so they can guide their reports more effectively.

My bosses are finally onboard with Macs in a Windows environment being a spectacularly bad idea. This is after three years of me telling him this, and repeatedly being demonstrated by the litany of problems the Macs have caused over the years. They are also now finally onboard with wireless devices being a bad idea.

Crowley
Mar 13, 2003

GreenNight posted:

Is the idiot boss going to be given a talked to as well? The employee did get approval.

Doubtfully. People can (and do) use their own devices all day long.. on the BYOD WiFi. The problems start when
1) They want assistance with their out-of-scope machines.
2) They try to attach them to anything but the BYOD net.

(Security on the BYOD network is handled by requiring all devices to be logged in by a person's National Online ID. Effectively tying the device to an identified person. That's also why we let the BYOD network be open to the public.)

Adbot
ADBOT LOVES YOU

Zil
Jun 4, 2011

Satanically Summoned Citrus


The Fool posted:

Are they using incredimail?

*winces in pain*

  • Locked thread