Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
haveblue
Aug 15, 2005



Toilet Rascal

spankmeister posted:

Sure, but specifically cloudflare can eat a dick because they protect 8chan and other hate speech sites and they don't take responsibility for the hateful content being hosted there. Content that inspired the right wing terror attack in New Zealand. gently caress them.

didn't cloudflare make a big deal out of agonizing over dropping stormfront at one point? and then it turned out stormfront was pretty tame by alt-right breeding ground standards

Adbot
ADBOT LOVES YOU

Shaggar
Apr 26, 2006

Shame Boy posted:

while on the topic of easy to remember upstream DNS servers, is there any reason not to use the goog's 8.8.8.8 / 8.8.4.4

i mean i know it's google and their promise not to mine it for personal data or w/e means absolutely nothing but other than that

I think its entirely about how much you want to give that data to goog and give them control over your dns.

Perplx
Jun 26, 2004


Best viewed on Orgasma Plasma
Lipstick Apathy

Shame Boy posted:

while on the topic of easy to remember upstream DNS servers, is there any reason not to use the goog's 8.8.8.8 / 8.8.4.4

i mean i know it's google and their promise not to mine it for personal data or w/e means absolutely nothing but other than that

years ago you could get connected to a slower cdn for netflix and youtube with 3rd party dns but I dont think thats a problem anymore

BangersInMyKnickers
Nov 3, 2004

I have a thing for courageous dongles

jit bull transpile posted:

I use 1.1.1.1 for my routers dns and it works great

I prefer quad9 for some amount of malicious domain filtering

Your ISPs local DNS resolver might be a bit faster than google/cloudflare/ibm/whatever, you can benchmark your options if you want https://www.grc.com/dns/benchmark.htm

BangersInMyKnickers fucked around with this message at 18:02 on Apr 2, 2019

Wiggly Wayne DDS
Sep 11, 2010



2019, grc still being linked

BangersInMyKnickers
Nov 3, 2004

I have a thing for courageous dongles

its a good tool and works fine just don't go anywhere else on that website

flakeloaf
Feb 26, 2003

Still better than android clock

lovingly handcrafted with assembly, because simplicity is good as i explain with no fewer than twenty-three different typefaces

The Fool
Oct 16, 2003


ill massage your sectors

post hole digger
Mar 21, 2011

steve gibson is cool.

BangersInMyKnickers posted:

I prefer quad9 for some amount of malicious domain filtering

going to check this out tonight neat


edit hmm windows only i hate steve gibson now.

Ulf
Jul 15, 2001

FOUR COLORS
ONE LOVE
Nap Ghost
oh no i missed the sex page

https://twitter.com/xargsnotbombs/status/1113133314817241088

The MUMPSorceress
Jan 6, 2012


^SHTPSTS

Gary’s Answer

BangersInMyKnickers posted:

I prefer quad9 for some amount of malicious domain filtering

Your ISPs local DNS resolver might be a bit faster than google/cloudflare/ibm/whatever, you can benchmark your options if you want https://www.grc.com/dns/benchmark.htm

my isp is Comcast so gently caress that

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

my bitter bi rival posted:

steve gibson is cool.


going to check this out tonight neat


edit hmm windows only i hate steve gibson now.

its designed to run fully under WINE on other oses

post hole digger
Mar 21, 2011

fishmech posted:

its designed to run fully under WINE on other oses

yeah let me go ahead and use wine.

Celexi
Nov 25, 2006

Slava Ukraini!

BangersInMyKnickers posted:

I prefer quad9 for some amount of malicious domain filtering

Your ISPs local DNS resolver might be a bit faster than google/cloudflare/ibm/whatever, you can benchmark your options if you want https://www.grc.com/dns/benchmark.htm

That only does ipv4 resolvers.

Rufus Ping
Dec 27, 2006





I'm a Friend of Rodney Nano

Perplx posted:

years ago you could get connected to a slower cdn for netflix and youtube with 3rd party dns but I dont think thats a problem anymore

supposed to be fixed these days thanks to edns client subnet

BangersInMyKnickers
Nov 3, 2004

I have a thing for courageous dongles

Celexi posted:

That only does ipv4 resolvers.

yeah I've seen some python monstrosities that are ip version agnostic feel free to knock yourself out with those if you really care but its the same server infrastructure as the v4 resolvers and assuming you don't see any appreciable ping different between your v4 and v6 route to those it likely won't matter

Dylan16807
May 12, 2010

haveblue posted:

didn't cloudflare make a big deal out of agonizing over dropping stormfront at one point? and then it turned out stormfront was pretty tame by alt-right breeding ground standards
the cloudflare CEO got mad that stormfront admins claimed he agreed with them, so he pulled the plug for that reason

otherwise their statement is that they are not hosting it, go talk to the host, they really don't want to filter anything

goddamnedtwisto
Dec 31, 2004

If you ask me about the mole people in the London Underground, I WILL be forced to kill you
Fun Shoe

fishmech posted:

its designed to run fully under WINE on other oses

would "days of WINE and oses" be a bit too much of a tryhard username?

Varkk
Apr 17, 2004

Shame Boy posted:

while on the topic of easy to remember upstream DNS servers, is there any reason not to use the goog's 8.8.8.8 / 8.8.4.4

i mean i know it's google and their promise not to mine it for personal data or w/e means absolutely nothing but other than that

There was mentioned some time ago that they are often targeted by BGP attacks. Although ISPs should be well aware of it by now and have protection in place for popular targets like that.

Partycat
Oct 25, 2004

It uses geodns as well as far as I am aware. the Outages list always has level 1 administrators posting that their WAN links failed over because they set their probes to Google DNS.

For home use it’s probably fine save for using Google products and services.

ate shit on live tv
Feb 15, 2004

by Azathoth

ErIog posted:

Or maybe don't use a lovely free VPN or any public VPN provider anyway because as Lain Iwakura pointed out on Twitter recently it's literally just an ISP. If you send enough packets through it you will eventually be identifiable.

The key thing VPN's are useful for is making law enforcement apply for search warrants on foreign poo poo to decrease the chance they'd want to bother with your dumb rear end surfing asstr.org

wait asstr.org is illegal? Why would you need a vpn for it.

ate shit on live tv
Feb 15, 2004

by Azathoth

spankmeister posted:

Sure, but specifically cloudflare can eat a dick because they protect 8chan and other hate speech sites and they don't take responsibility for the hateful content being hosted there. Content that inspired the right wing terror attack in New Zealand. gently caress them.

Censorship is fascist. gently caress off Fascist.

Captain Foo
May 11, 2004

we vibin'
we slidin'
we breathin'
we dyin'

ate poo poo on live tv posted:

Censorship is fascist. gently caress off Fascist.

you're trying too hard, dipshit

Lutha Mahtin
Oct 10, 2010

Your brokebrain sin is absolved...go and shitpost no more!

spankmeister posted:

Sure, but specifically cloudflare can eat a dick because they protect 8chan and other hate speech sites and they don't take responsibility for the hateful content being hosted there. Content that inspired the right wing terror attack in New Zealand. gently caress them.

if you submit a complaint to cloudflare saying "hey this site is run by nazis who target activists", cloudflare passes your contact information on to the nazis that you are complaining about

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

ate poo poo on live tv posted:

Censorship is fascist. gently caress off Fascist.

says the fascist, lmao


goddamnedtwisto posted:

would "days of WINE and oses" be a bit too much of a tryhard username?

nahh

ate shit on live tv
Feb 15, 2004

by Azathoth

fishmech posted:

says the fascist, lmao

you’re a cop, lmbo

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

ate poo poo on live tv posted:

you’re a cop, lmbo

says the member of the cop association, lmao

rjmccall
Sep 7, 2007

no worries friend
Fun Shoe

Lutha Mahtin posted:

no, i remember "The DAO" too. but i admit that i very well might be misremembering the specifics of the "our online keygen site went defunct and is now 404" or however that silly debacle worked out. i am pretty sure a smart contract was involved in that one somehow, but i don't remember enough to go search for it

i think it was a bitcoin wallet generator

smart contracts can’t do web requests (or anything else that depends directly on external information sources)

fishmech
Jul 16, 2006

by VideoGames
Salad Prong

rjmccall posted:

i think it was a bitcoin wallet generator

smart contracts can’t do web requests (or anything else that depends directly on external information sources)

several different bitcoin and other cryptocurrency services all used the same (non-https connection) page/site for getting info for a random seed, and all of them broke when the site went https only

that they were using said site and thus using consistent seeds after that point was revealed at different times, typically after someone'd already used it to rob said services. but only the ~smart contract~ built services had it unfixable due to the contract.

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

rjmccall posted:

i think it was a bitcoin wallet generator

smart contracts can’t do web requests (or anything else that depends directly on external information sources)

yeah, but you could probably have a smart contract that expects new data pushed to the blockchain by some authenticated client that everyone just has to trust

I think? I don’t pay attention to etherium because I know I’m bad at security and programming

rjmccall
Sep 7, 2007

no worries friend
Fun Shoe

Cocoa Crispies posted:

yeah, but you could probably have a smart contract that expects new data pushed to the blockchain by some authenticated client that everyone just has to trust

I think? I don’t pay attention to etherium because I know I’m bad at security and programming

yeah, you can get information in to the system passively that way, but i don’t why a url would be involved

ErIog
Jul 11, 2001

:nsacloud:

ate poo poo on live tv posted:

wait asstr.org is illegal? Why would you need a vpn for it.

Child pornography laws encompass textual description in some jurisdictions outside the US. Also, trap sprung, you have outed yourself whereas I, the person who cleverly laid this trap have... oh, it turns out I also hosed myself.

Cocoa Crispies
Jul 20, 2001

Vehicular Manslaughter!

Pillbug

rjmccall posted:

yeah, you can get information in to the system passively that way, but i don’t why a url would be involved

idk but this famous fuckup has a url in it at line 1110 (after 600 lines of code to handle a url)

https://www.reddit.com/r/ethtrader/comments/6w5wcn/important_update_mayweathermcgregor_smart_contract/

https://etherscan.io/address/0x7a2770fc68c659b0255d6d80bed82c7b0f163d6b#code

Soricidus
Oct 21, 2010
freedom-hating statist shill

rjmccall posted:

yeah, you can get information in to the system passively that way, but i don’t why a url would be involved

i believe there are oracle services such that you specify a url and pay them to put the content of the url somewhere the smart contract can access it

this obviously solves none of the actual problems with basing smart contract oracles on urls

Midjack
Dec 24, 2007



Cocoa Crispies posted:

yeah, but you could probably have a smart contract that expects new data pushed to the blockchain by some authenticated client that everyone just has to trust

I think? I don’t pay attention to etherium because I know I’m bad at security and programming

that’s never stopped anyone from getting involved with “crypto””currency” before!

CmdrRiker
Apr 8, 2016

You dismally untalented little creep!

BangersInMyKnickers posted:

yeah it sucks rear end and the industry is a joke

For those of us not in infosec and are just the regular programmers that are super annoying about security, why is it a joke?

e: My security training is self taught from reading the owasp wiki, pci compliance docs, reading code changes for security patches, and constantly trying to break my own code. Any other sources I should know about?

CmdrRiker fucked around with this message at 14:21 on Apr 3, 2019

champagne posting
Apr 5, 2006

YOU ARE A BRAIN
IN A BUNKER

CmdrRiker posted:

For those of us not in infosec and are just the regular programmers that are super annoying about security, why is it a joke?

afaik the problem is taking iot but made in the 90s and putting them online

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

CmdrRiker posted:

For those of us not in infosec and are just the regular programmers that are super annoying about security, why is it a joke?

PLCs and most SCADA/Industrial Automation has little to nothing in the way of actual security, and tends to utilize outdated OSs and Software to handle the backend.

Right now, the best way to secure a PLC/SCADA network is to not let it touch the internet or corporate network. At all.

champagne posting
Apr 5, 2006

YOU ARE A BRAIN
IN A BUNKER

CommieGIR posted:

PLCs and most SCADA/Industrial Automation has little to nothing in the way of actual security, and tends to utilize outdated OSs and Software to handle the backend.

Right now, the best way to secure a PLC/SCADA network is to not let it touch the internet or corporate network. At all.

too bad the large actors in the field desperately want your production data and to sell you smart devices

see also: industri 4.0

Adbot
ADBOT LOVES YOU

Shifty Pony
Dec 28, 2004

Up ta somethin'


Facebook got caught demanding people give Facebook their email passwords


https://twitter.com/originalesushi/status/1112496649891430401

apparently if you have an adblocker running it shows a phone verification page instead.

Shifty Pony fucked around with this message at 14:54 on Apr 3, 2019

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply