Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


Rust Martialis posted:

If you have developers, etc who live to stay bleeding edge...

Why call me out like this

Adbot
ADBOT LOVES YOU

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there

Cup Runneth Over posted:

Why call me out like this

Because you make everyone else in IT miserable every day.

based64
Feb 15, 2024

:question:

based64 fucked around with this message at 03:48 on Apr 8, 2024

Takes No Damage
Nov 20, 2004

The most merciful thing in the world, I think, is the inability of the human mind to correlate all its contents. We live on a placid island of ignorance in the midst of black seas of infinity, and it was not meant that we should voyage far.


Grimey Drawer

based64 posted:

drink the LTS juice it's good for you, nummy nummy

Yeah I'm not great with keeping everything up to date anyway, but even so all my stuff seems to be at 5.4.x levels, which ~might be OK? It sounds like we're still trying to figure out exactly when the well got poisoned. Pretty lucky too, since I didn't realize just running xz -v actually executed the program and is a very bad way to check the version of something you suspect might be compromised :sweatdrop:

some kinda jackal
Feb 25, 2003

 
 
I just run a linux distro from 1996 to be safe. No one will think to try exploits that old

evil_bunnY
Apr 2, 2003

Rescue Toaster posted:

Yeah looking back at some of the clues that this person wasn't legit seem obvious, but it was basically only dumb luck and mistakes on their part that this didn't totally explode in our faces. Hopefully OSS at large does some reflection on this and what to do going forward.
I, too, would like a pet unicorn

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there
Update: vulnerable versions are 5.6.0 and 5.6.1

https://www.cisa.gov/news-events/al...y-cve-2024-3094

Pablo Bluth
Sep 7, 2007

I've made a huge mistake.
Easy to understand timeline
https://research.swtch.com/xz-timeline

Kibner
Oct 21, 2008

Acguy Supremacy

I don’t think I could be as devious with social engineering like this if I tried.

BlankSystemDaemon
Mar 13, 2009



Kibner posted:

I don’t think I could be as devious with social engineering like this if I tried.
PHK, who's responsible for Varnish and significant parts of FreeBSD, kinda predicted it back in 2014:
https://www.youtube.com/watch?v=3jQoAYRKqhg

Also, someone noticed that Jia Cheong Tan, which appears some places, anagrams to CIA Agent John.

flakeloaf
Feb 26, 2003

Still better than android clock

It also anagrams to A GOTHIC JENNA, so I choose to blame Wednesday Addams.

spankmeister
Jun 15, 2008






BlankSystemDaemon posted:

Also, someone noticed that Jia Cheong Tan, which appears some places, anagrams to CIA Agent John.

Smoking gun right there. Pack it up Langlailures.

Cup Runneth Over
Aug 8, 2009

She said life's
Too short to worry
Life's too long to wait
It's too short
Not to love everybody
Life's too long to hate


All my linux VMs are running 5.2.2-5.2.5. Wooo!

post hole digger
Mar 21, 2011

some kinda jackal posted:

I just run a linux distro from 1996 to be safe. No one will think to try exploits that old

same, its called centos 7

some kinda jackal
Feb 25, 2003

 
 
I don't know if "lollers I spit coffee all over my monitor goon sir" is still probe worthy or whatever but I honest to god choked on my tea when I read that trying not to laugh lmao

Boris Galerkin
Dec 17, 2011

I don't understand why I can't harass people online. Seriously, somebody please explain why I shouldn't be allowed to stalk others on social media!

post hole digger posted:

same, its called centos 7

lmao

Dirt Road Junglist
Oct 8, 2010

We will be cruel
And through our cruelty
They will know who we are

flakeloaf posted:

It also anagrams to A GOTHIC JENNA, so I choose to blame Wednesday Addams.

Lol, solid future username for someone

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there

post hole digger posted:

same, its called centos 7

Release Release date End of life
CentOS 8 September 24, 2019 December 31, 2021
CentOS 7 July 7, 2014 June 30, 2024
CentOS 6 July 10, 2011 November 30, 2020
CentOS 5 April 12, 2007 March 31, 2017

It's still a supported OS so nyahhhh

Potato Salad
Oct 23, 2014

nobody cares


it's 2007 somewhere

DoctorWhat
Nov 18, 2011

A little privacy, please?
Why is 7 still supported when 8 went EOL years ago?

spankmeister
Jun 15, 2008






DoctorWhat posted:

Why is 7 still supported when 8 went EOL years ago?

Because 7 8 9. :dadjoke:

Kazinsal
Dec 13, 2011


DoctorWhat posted:

Why is 7 still supported when 8 went EOL years ago?

Because 8 just was not that good, and 9 wasn't really ready yet to replace it when it was decided that 8 wasn't cutting it. Making 7 last longer in support was a good stopgap because there wasn't really anything wrong with 7.

some kinda jackal
Feb 25, 2003

 
 
Because we all know no enterprise has an upgrade policy or process that works and will just keep handing RedHat money for extended support.

Blinkz0rz
May 27, 2001

MY CONTEMPT FOR MY OWN EMPLOYEES IS ONLY MATCHED BY MY LOVE FOR TOM BRADY'S SWEATY MAGA BALLS

DoctorWhat posted:

Why is 7 still supported when 8 went EOL years ago?

Because redhat screwed the pooch

Boris Galerkin
Dec 17, 2011

I don't understand why I can't harass people online. Seriously, somebody please explain why I shouldn't be allowed to stalk others on social media!
Starting to see a few explainers linked from places like HN. I'm sure these people know and mean well but to me it's all just a bunch of random names so I'm still waiting for an "official" institution to throw their weight behind a deep dive.

It's gonna be hilarious though if it turns out that this wasn't a nation state actor like everyone is angling at, but was just someone trying to read their ex's DMs.

based64
Feb 15, 2024

:question:

based64 fucked around with this message at 03:47 on Apr 8, 2024

corgski
Feb 6, 2007

Silly goose, you're here forever.

Boris Galerkin posted:

[...] just someone trying to read their ex's DMs.

That's literally all international espionage.

CommieGIR
Aug 22, 2006

The blue glow is a feature, not a bug


Pillbug

corgski posted:

That's literally all international espionage.

"No no no, I want to read YOUR ex's DMs, not mine."

MustardFacial
Jun 20, 2011
George Russel's
Official Something Awful Account
Lifelong Tory Voter

Boris Galerkin posted:

It's gonna be hilarious though if it turns out that this wasn't a nation state actor like everyone is angling at, but was just someone trying to read their ex's DMs.

An Office Space style screenplay where some CS student wants to win a local CTF and backdoors xz, unintentionally kicking off a global infosec meltdown.

Cannon_Fodder
Jul 17, 2007

"Hey, where did Steve go?"
Design by Kamoc
I would love to know what a cyber attack triage specialist consultant costs because I'm sure these guys are making stupid money.

post hole digger
Mar 21, 2011

Cannon_Fodder posted:

I would love to know what a cyber attack triage specialist consultant costs because I'm sure these guys are making stupid money.

You need to apply strategic defenses to your perimeter to maximize your security ROI and strengthen your overall security posture in alignment with NIST 800-53 best practices. Do you have XDR? SOAR? CSPM? CNAPP? MDR? ZTNA? Let me set up a few calls with vendors. I won’t be able to attend due to scheduling conflicts but these guys are great, you’re in good hands. That will be $95,000.

Cannon_Fodder
Jul 17, 2007

"Hey, where did Steve go?"
Design by Kamoc

post hole digger posted:

You need to apply strategic defenses to your perimeter to maximize your security ROI and strengthen your overall security posture in alignment with NIST 800-53 best practices. Do you have XDR? SOAR? CSPM? CNAPP? MDR? ZTNA? Let me set up a few calls with vendors. I won’t be able to attend due to scheduling conflicts but these guys are great, you’re in good hands. That will be $95,000.

An hour, I presume.

I mean the hands on keyboard "unfuck your poo poo" mercenaries that batman in during an ongoing security event

Kazinsal
Dec 13, 2011


Last time I encountered Cisco's ransomware response team, the bill was somewhere around $25k/day. And that was five or so years ago.

Kesper North
Nov 3, 2011

EMERGENCY POWER TO PARTY

Cannon_Fodder posted:

An hour, I presume.

I mean the hands on keyboard "unfuck your poo poo" mercenaries that batman in during an ongoing security event

My firm bills my time at $450 an hour; my salary is unexceptional and I'm probably making a lot less than someone at one of the big players in the field.

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there
The Internet Oracle is still around.

The Internet Oracle has pondered your question deeply. Your question was:
> Please explain (or unexplain) why I tend to write parenthetical remarks
> (like I just did (and am doing now)) in all the supplicatitive
> questions that I send to your Vast (And Overflowing) Oracular
> In-Basket. It's almost as if I have the opposite of a one-track mind,
> where I am unable to keep onto (Look! A Squirrel!!!) one idea, but must
> divert (or divide) my own attention (or lack of attention) (or
> whatever) elsewhere.
>
> Your (not you're) thoughts, please.

And in response, thus spake the Oracle:
} I'm tempted to say you have a Lisp.

:dadjoke:

https://internetoracle.org/

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there
New XZ backdoor scanner detects implant in any Linux binary
https://www.bleepingcomputer.com/news/security/new-xz-backdoor-scanner-detects-implant-in-any-linux-binary/

WattsvilleBlues
Jan 25, 2005

Every demon wants his pound of flesh
Anyone got any idea when Bitwarden will support passkeys on its mobile apps? It's been on the roadmap for a couple of years now but isn't there yet. I'm assuming it's pretty close, since the desktop app launched the feature in November 2023.

MustardFacial
Jun 20, 2011
George Russel's
Official Something Awful Account
Lifelong Tory Voter
This is a brand new project, but it actually looks pretty cool. The less people rely on MS tools to manage MS infra, the better imo:

https://maester.dev/

Subjunctive
Sep 12, 2006

✨sparkle and shine✨

MustardFacial posted:

The less people rely on MS tools to manage MS infra, the better imo:

Why is that? I’m curious.

Adbot
ADBOT LOVES YOU

Rust Martialis
May 8, 2007

At night, Bavovnyatko quietly comes to the occupiers’ bases, depots, airfields, oil refineries and other places full of flammable items and starts playing with fire there

MustardFacial posted:

This is a brand new project, but it actually looks pretty cool. The less people rely on MS tools to manage MS infra, the better imo:

https://maester.dev/

Or don't use Azure because it's noncompliant with GDPR.

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply