Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
Powered Descent
Jul 13, 2008

We haven't had that spirit here since 1969.

Shuu posted:

How will we ever stop these highly sophisticated attacks??

Watch for hackers by vigilantly using Tracer T.

https://www.youtube.com/watch?v=SXmv8quf_xM

Adbot
ADBOT LOVES YOU

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug
Fun talk from DEFCON 29 I was waiting to watch. Its good stuff

https://www.youtube.com/watch?v=7DXF7YDBf-g

Happiness Commando
Feb 1, 2002
$$ joy at gunpoint $$

Ian Coldwater is a pro follow

The Fool
Oct 16, 2003


Happiness Commando posted:

Ian Coldwater is a pro follow

honk

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

honk the planet.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


https://twitter.com/pancak3lullz/status/1425221181058306050

jaegerx
Sep 10, 2012

Maybe this post will get me on your ignore list!


https://twitter.com/atrupar/status/1425495109798354951?s=20

jaegerx
Sep 10, 2012

Maybe this post will get me on your ignore list!


Which of you hackers made a batch file and boot rom?

Internet Explorer
Jun 1, 2005





What are you, a cop?

Defenestrategy
Oct 24, 2010

Internet Explorer posted:

What are you, a cop?

Good play, if he's a cop now he has to tell us.

jaegerx
Sep 10, 2012

Maybe this post will get me on your ignore list!


A cop can’t write batch files

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug
Please speak into my beautiful lapel flower so I can hear you better.

cage-free egghead
Mar 8, 2004
https://twitter.com/ErrataRob/status/1424878450867847181?s=20

Edit: this whole thing is batshit insane. It's like some dystopian sideshow playing out in Branson.

cage-free egghead fucked around with this message at 05:48 on Aug 12, 2021

Jowj
Dec 25, 2010

My favourite player and idol. His battles with his wrists mirror my own battles with the constant disgust I feel towards my zerg bugs.

Defenestrategy posted:

Good play, if he's a cop now he has to tell us.

yeah, if you ask a cop his favorite movie he has to tell you it’s entrapment (1999)

CLAM DOWN
Feb 13, 2007




cage-free egghead posted:

https://twitter.com/ErrataRob/status/1424878450867847181?s=20

Edit: this whole thing is batshit insane. It's like some dystopian sideshow playing out in Branson.

holy poo poo, this is unreal

Achmed Jones
Oct 16, 2004



goddamn rob graham is tedious

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

he is so so bad

CLAM DOWN
Feb 13, 2007




jaegerx
Sep 10, 2012

Maybe this post will get me on your ignore list!


if only they knew that infosec jobs was basically to stop us looking at porn

BlankSystemDaemon
Mar 13, 2009



jaegerx posted:

A cop can’t write batch files
All Cops Actualize Batchfiles

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

Achmed Jones posted:

goddamn rob graham is tedious

Yeah, he is an expert in the field, but he's also a centrist to a fault. But yeah he's tearing this apart really well.

Catatron Prime
Aug 23, 2010

IT ME



Toilet Rascal
Print Nightmare is back, and it does indeed bypass EDR controls

https://twitter.com/GossiTheDog/status/1425193153691279365?s=20

Sickening
Jul 16, 2007

Black summer was the best summer.
I had every leader in operations fight me tooth and nail over my request for long term planning of turning off print spoolers.

This is never going away.

some kinda jackal
Feb 25, 2003

 
 
If you loved the original you'l go nuts over the sequel.

CLAM DOWN
Feb 13, 2007




OSU_Matthew posted:

Print Nightmare is back, and it does indeed bypass EDR controls

https://twitter.com/GossiTheDog/status/1425193153691279365?s=20

lol

Internet Explorer
Jun 1, 2005





I for one am really shocked that Windows printing is a nightmare.

Signed,
A Citrix Admin

Thanks Ants
May 21, 2004

#essereFerrari


Simply don't print :smuggo:

Achmed Jones
Oct 16, 2004



Thanks Ants posted:

Simply don't

Potato Salad
Oct 23, 2014

nobody cares


Internet Explorer posted:

I for one am really shocked that Windows printing is a nightmare.

Signed,
A Citrix Admin

sup EUC buddy :hfive:

your euc product is way more loving stable than mine!

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

Thanks Ants posted:

Simply don't print :smuggo:

I was promised a paperless office, time to deliver.

DrDork
Dec 29, 2003
commanding officer of the Army of Dorkness

CommieGIR posted:

I was promised a paperless office, time to deliver.

But I NEEEEEED to be able to print from my domain controller! It's the only system we have hooked up to the Fujitsu copier we bought in 2004, after all!

Tryzzub
Jan 1, 2007

Mudslide Experiment
Exchange On-prem exploit chain being actively scanned for and targeted.

Happy Friday!

Craptacular!
Jul 9, 2001

Fuck the DH
Dumb question from a mostly naive person: Is DNS over HTTPS/TLS worth it? I've heard conflicting reports that it should either be considered a necessity in 2021 or that it's mostly just smoke and mirrors that creates a lot of headaches.

Klyith
Aug 3, 2007

GBS Pledge Week

Craptacular! posted:

Dumb question from a mostly naive person: Is DNS over HTTPS/TLS worth it? I've heard conflicting reports that it should either be considered a necessity in 2021 or that it's mostly just smoke and mirrors that creates a lot of headaches.

Depends on context, are you asking about personal / home setups, or the corporate networking security perspective?

Craptacular!
Jul 9, 2001

Fuck the DH

Klyith posted:

Depends on context, are you asking about personal / home setups, or the corporate networking security perspective?

Personal setups. I've taken to running Pi-Hole recently, but when you talk in communities around that app you eventually reach the people who think that simply filtering out bad requests isn't enough and that you should take extra steps to route everything as discreetly as possible.

Sickening
Jul 16, 2007

Black summer was the best summer.

Craptacular! posted:

Personal setups. I've taken to running Pi-Hole recently, but when you talk in communities around that app you eventually reach the people who think that simply filtering out bad requests isn't enough and that you should take extra steps to route everything as discreetly as possible.

Are the same people asking you to install the brave browser?

Impotence
Nov 8, 2010
Lipstick Apathy
I use it, it's not a requirement, but I don't see why not. Multiple US providers currently do or previously have hijacked port 53 and transparently redirect traffic toward their own spam resolvers that redirect you to ad filled fake search pages. IIRC, T-Mobile used to static route 8.8.8.8 to their own resolver.

Klyith
Aug 3, 2007

GBS Pledge Week

Craptacular! posted:

Personal setups. I've taken to running Pi-Hole recently, but when you talk in communities around that app you eventually reach the people who think that simply filtering out bad requests isn't enough and that you should take extra steps to route everything as discreetly as possible.

On your own home network, if you aren't super concerned about your ISP seeing which websites you visit*, it's a question of do you want to do the effort for a good setup. It definitely makes stuff like the PiHole more complicated. And you're not really gaining anything security-wise.

*which is like, they can figure out even with DoH if they really wanted to. if you're :tinfoil: you need a VPN.

On a public/unsecured network that you don't control, secure DNS is an extremely good idea. Spoofing DNS to redirect you to a fake website is an easy attack.


Personally, at home I run DNS-over-TLS from my router to the outside world, and the router provides regular unencrypted DNS caching to the network. That was about as much :effort: as I felt like it warranted. It works with the router-based adblock I use, and the way I've got it set is pretty transparent for setup -- guests don't have to configure anything, and when I take my laptop elsewhere it'll try to use DoH. I know the pihole can be set up to do DoH to the inside of the network as well if you want, but I kinda don't see the point on a home net.

I don't think I've gained much security from this setup, and what privacy I've gained is mostly a "lol gently caress ISPs" because google sees everything I do. I mostly did it because I wanted to figure it out.

Craptacular!
Jul 9, 2001

Fuck the DH

Sickening posted:

Are the same people asking you to install the brave browser?

Brave is actually my "backup browser" option to Vivaldi right now, since I want to use Chromium but don't want to be rolled into FLoC.


Klyith posted:

Personally, at home I run DNS-over-TLS from my router to the outside world, and the router provides regular unencrypted DNS caching to the network. That was about as much :effort: as I felt like it warranted. It works with the router-based adblock I use, and the way I've got it set is pretty transparent for setup -- guests don't have to configure anything, and when I take my laptop elsewhere it'll try to use DoH. I know the pihole can be set up to do DoH to the inside of the network as well if you want, but I kinda don't see the point on a home net.

I don't think I've gained much security from this setup, and what privacy I've gained is mostly a "lol gently caress ISPs" because google sees everything I do. I mostly did it because I wanted to figure it out.

I'm not comfortable replacing the firmware on my router because it costs too much for me to be willing to gently caress up, but it doesn't have any kind of encrypted DNS rolled into the factory settings. I run Pi-Hole in a container already, and by making Podman's ability to run Kubernetes-style pods I can run it and cloudflared with shared networking and do public DNS with 1.1.1.1 over HTTPS instead of HTTP.

I was trying to gauge how important this is, since I've seen a few Linux sysadmin guide types roll their eyes at going as far to install a DNS adblock and then not bother to encrypt it. I have it up and running right now as a trial and it seems stable enough and doesn't seem to have slowed anything down. I just wanted to find out whether it's totally worthless concept before deciding whether it's worth using permanently.

Craptacular! fucked around with this message at 00:10 on Aug 15, 2021

Adbot
ADBOT LOVES YOU

Klyith
Aug 3, 2007

GBS Pledge Week

Craptacular! posted:

I'm not comfortable replacing the firmware on my router because it costs too much for me to be willing to gently caress up,

Yeah if you have the Pi and don't have a fancy router it's easier to just use the Pi. I do it on my router because
a) I've got an asus router and can do asus-merlin firmware, which installs just like stock and has extra poo poo built in
b) this way I don't need another pi

Craptacular! posted:

I was trying to gauge how important this is, since I've seen a few Linux sysadmin guide types roll their eyes at going as far to install a DNS adblock and then not bother to encrypt it. I have it up and running right now as a trial and it seems stable enough and doesn't seem to have slowed anything down. I just wanted to find out whether it's totally worthless concept before deciding whether it's worth using permanently.

I think it's worth doing primarily because browsers are moving in that direction and I fully expect that at some point if you aren't doing DoH or DNS-TLS then the browser will bypass it and you won't have the pihole adblock.

But the pihole & adblock community also has a lot of people who take a super dogmatic approach where any form of data collection is a violation. Calibrate your own scale for privacy, ignore the people who say things like "you don't block all microsoft telemetry? why do you even have a pihole then!"

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply