Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Post
  • Reply
Diva Cupcake
Aug 15, 2005

wrong thread

Adbot
ADBOT LOVES YOU

Diva Cupcake
Aug 15, 2005

15 bits/hour lol. I guess it can be added to a threat model like way at the bottom.

Diva Cupcake
Aug 15, 2005

vomit
https://twitter.com/duosec/status/1024989452031143936

Diva Cupcake
Aug 15, 2005

Features and product innovation go down.
Security goes down.
Support goes down.
Prices go up.

Diva Cupcake
Aug 15, 2005

wait, so this is basically single factor auth? does the bifti device itself hold no purpose? lol

Diva Cupcake
Aug 15, 2005

Anyone deployed or played around with Vera for DRM? If so, thoughts?

It’s one of the options we’re looking to deploy along with AIP. Vera seems more attractive without having a mature classification and labeling system in place as a functional prerequisite.

Diva Cupcake
Aug 15, 2005

It’s the 10 year anniversary of MS07-067.

https://twitter.com/Trustwave/status/1054842313955074053

Diva Cupcake
Aug 15, 2005

astral posted:

Don't you have to go out of your way to enable the hardware encryption on Samsung SSDs, anyway? If you/they didn't take the time to enable it, Bitlocker just uses software encryption.

And afaik even if it is enabled on the drive, if you chose a cipher/strength via group policy that the drive doesn't natively support, Bitlocker uses software encryption.

Yes. We have roughly 300 EVO 850s in the environment and none are vulnerable. The encryption process done during imaging (Lenovo firmware) defaults to software encryption.

Pretty sure you have explicitly enable hardware encryption via Samsung Magician and then do a full re-install.

Diva Cupcake
Aug 15, 2005

Here is that process:
https://www.itsupportguides.com/knowledge-base/tech-tips-tricks/how-to-enable-disk-encryption-on-samsung-evo-ssd-hard-drive/

What Astral said. It's a big pain in the rear end that I can't imagine too many enterprises have gone through just for a mild performance increase.

Diva Cupcake
Aug 15, 2005

Just use the Official CISSP Practice Tests book. It’s like $20 for 2000 questions in all domains. Track your results. If you’re getting in the 75-80% range over a large enough sample size you’ll be fine.

Diva Cupcake
Aug 15, 2005

lol at the CPEs too. I watched 25 sales pitch webinars and listened to 15 hours of Security Weekly on my commute this year. I get to retain my certification.

Diva Cupcake
Aug 15, 2005

This is a pretty great Humble Bundle for security books.

https://www.humblebundle.com/books/cybersecurity-packt-books

Diva Cupcake
Aug 15, 2005

lol at being a shithead on Facebook with your real name. Good opsec.

quote:

One female member of the Facebook group who asked to remain anonymous in order to avoid retaliation told Motherboard she monitors illmob as a way to avoid hiring questionable individuals.

“I’ve chosen to remain a member of the group to see who not to hire in the future,” she said.

Diva Cupcake
Aug 15, 2005

Mr. Crow posted:

What CVE scanner are yall running at home? I've just been using nmap --script vuln, but want to update to something more proactive; buddy recommended Qualys Community Edition?

I also had bookmarked openvas from a while back but now that I'm looking at it I dunno where I got that or why it's not on the owasp site... anybody use it?

Nessus Home and OpenVAS. Nessus is obviously a bit more user friendly.

You will find different vuln scanners yield different results so I find it better to use both.

Diva Cupcake
Aug 15, 2005

Good write-up on TPM sniffing. Or why pre-boot auth PINs are necessary with BitLocker.

https://pulsesecurity.co.nz/articles/TPM-sniffing

Diva Cupcake
Aug 15, 2005

AES128 is stupidly strong and effectively unbreakable unless we're talking about theoretical quantum computers in the hands nation states.

It should have always been the recommendation for just about every reasonable BitLocker use case.

Diva Cupcake
Aug 15, 2005

Pretty sure there’s some declared mental health issues and a proclamation to quit the industry in there as well.

Fun times. I hope she gets the help she needs prior to getting arrested.

Diva Cupcake
Aug 15, 2005

I say "sim" and I have no idea if it's correct but I've gone too far to stop now.

Diva Cupcake
Aug 15, 2005

If you thought the CISSP fee was high, check out the CEH lol. $1200 for that piece of poo poo.

I didn't think the exam was particularly tough although I might have barely passed and I'll never know since they dont tell you your score. I spent about a month studying 11th Hour CISSP and the Official ISC2 Practice Tests book. Just pull the trigger. It's a good/great resume signal.

Diva Cupcake
Aug 15, 2005

Anyone have experience with PentesterLab and how it compares to HackTheBox? I’ve had HTB VIP for the past year or so when I started OSCP and I’m looking for new service, good variety of platforms, more up to date vulns, etc.

https://pentesterlab.com/pro

Diva Cupcake
Aug 15, 2005

siggy2021 posted:

I don't have any personal experience with it, but I know I've seen it mentioned in an Infosec/oscp prep discord I'm in and it has always received positive reviews.

I just bought it. Hope it doesn’t suck.

Diva Cupcake
Aug 15, 2005

https://twitter.com/KringleCon/status/1205491010958020608

Diva Cupcake
Aug 15, 2005

Now now, the CIO and some other manager level guy got 4 months home confinement and had to relinquish their profits from insider trading.

Diva Cupcake
Aug 15, 2005

Anyone use Rumble.run and have any thoughts? Distributed asset discovery service by HD Moore. I really only need it for a bridged wifi audit across ~50 sites.

https://www.rumble.run

Diva Cupcake
Aug 15, 2005

Related, the 3rd edition of Security Engineering is online and free until he actually finishes it.

https://www.cl.cam.ac.uk/~rja14/book.html

Diva Cupcake
Aug 15, 2005

Do not use 3rd party EDR either. Defender ATP owns plenty.

Diva Cupcake
Aug 15, 2005

They’re selling ATP ala carte now. We have an E3 enterprise and paid for it separately.

Diva Cupcake
Aug 15, 2005

I’m corona.bat

Diva Cupcake
Aug 15, 2005

Those of you who manage BitLocker within an organization, do you also prevent access to manage-bde? Curious about compensating controls.

Diva Cupcake
Aug 15, 2005

The Fool posted:

Doesn't doing anything with manage-bde require elevation?
Probably. We also do Splunk-based alerting of encrypted devices so if someone gets out of line we should at least know.

Only 3 more years until the Intune rollout and we can get rid of MBAM.

Diva Cupcake
Aug 15, 2005

Zoom hired a new CISO from SalesForce.

https://twitter.com/ryanaraine/status/1275866120361144320

Diva Cupcake
Aug 15, 2005

lol
https://twitter.com/FCC/status/1278009203228098562

Diva Cupcake
Aug 15, 2005

https://twitter.com/yashar/status/1281634348639244288

Meh. Deleted but said that an Amazon company-wide email went out requiring TikTok be removed from any device which accesses their corporate email account.

e: Other source:
https://twitter.com/nytimes/status/1281639684691636224

Diva Cupcake fucked around with this message at 18:33 on Jul 10, 2020

Diva Cupcake
Aug 15, 2005

Most of Garmin services are coming back online. Pretty decent chance they paid the $10m or a negotiated amount.
https://twitter.com/BleepinComputer/status/1287805598801768450

Diva Cupcake
Aug 15, 2005

Garmin paid the ransom

https://twitter.com/BleepinComputer/status/1289641485873209344

Diva Cupcake
Aug 15, 2005

fun
https://twitter.com/wdormann/status/1305564045282598912

Diva Cupcake
Aug 15, 2005

:stare:
https://twitter.com/briankrebs/status/1321554013226209287

Diva Cupcake
Aug 15, 2005

super happy for the next 3 pages of password manager chat.

Diva Cupcake
Aug 15, 2005

Here's a fun read.

https://twitter.com/i41nbeer/status/1333885229086412801?s=20

Adbot
ADBOT LOVES YOU

Diva Cupcake
Aug 15, 2005

https://twitter.com/thegrugq/status/1336468185244045312

  • 1
  • 2
  • 3
  • 4
  • 5
  • Post
  • Reply