ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. DustinB3403
    3. Posts
    • Profile
    • Following 21
    • Followers 20
    • Topics 938
    • Posts 25,974
    • Groups 0

    Posts

    Recent Best Controversial
    • RE: Miscellaneous Tech News

      @black3dynamite said in Miscellaneous Tech News:

      https://arstechnica.com/security/2024/08/shocker-french-make-surprise-arrest-of-telegram-founder-at-paris-airport/

      I saw that and just had to laugh, because these people and governments don't understand what encryption means and is meant to do.

      posted in News
      DustinB3403D
      DustinB3403
    • RE: CrowdStrike blames kernel level access on last month Microsoft outage, claims to

      @Obsolesce said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      @DustinB3403 said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      @Obsolesce said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      @DustinB3403 said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      want to find a non-kernel based solution and that the EU is at fault.

      https://www.csoonline.com/article/3483641/crowdstrike-backs-microsofts-demand-for-reducing-kernel-level-access.html

      I still say it could have been avoided if CrowdStrike had tested the change on a single device prior to releasing it publicly. It could have been a simple automated test as part of their release pipeline.

      Even a better rollout strategy could have prevented it from going too far.

      What's funny is that CS is now saying that they have decided to start testing their releases with the use of "besides showing interest in working with Microsoft to work on the “kernel-level restrictions” development, is also taking a new approach to certify each new sensor release through the “Windows Hardware Quality Labs."

      Whats also funny is that if you look at almost any open source software of similar caliber, they do all that stuff in their build and release pipelines or other work flows before public releases.

      Exactly!

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: CrowdStrike blames kernel level access on last month Microsoft outage, claims to

      @Obsolesce said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      @DustinB3403 said in CrowdStrike blames kernel level access on last month Microsoft outage, claims to:

      want to find a non-kernel based solution and that the EU is at fault.

      https://www.csoonline.com/article/3483641/crowdstrike-backs-microsofts-demand-for-reducing-kernel-level-access.html

      I still say it could have been avoided if CrowdStrike had tested the change on a single device prior to releasing it publicly. It could have been a simple automated test as part of their release pipeline.

      Even a better rollout strategy could have prevented it from going too far.

      What's funny is that CS is now saying that they have decided to start testing their releases with the use of "besides showing interest in working with Microsoft to work on the “kernel-level restrictions” development, is also taking a new approach to certify each new sensor release through the “Windows Hardware Quality Labs."

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • CrowdStrike blames kernel level access on last month Microsoft outage, claims to

      want to find a non-kernel based solution and that the EU is at fault.

      https://www.csoonline.com/article/3483641/crowdstrike-backs-microsofts-demand-for-reducing-kernel-level-access.html

      posted in IT Discussion crowdstrike azure kernel
      DustinB3403D
      DustinB3403
    • RE: Proxmox: iOS or Android tools

      @dbeato Yeah it does it has a webpage that is native to the solution. I don't know that it's optimized for mobile, but I doubt it.

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • Automated Log collection and Reporting for SOC2 Compliance Tools Search

      Hey all,

      Looking to see if anyone has any recommendations for a hosted solution for Policy Compliance and Reporting.

      Currently we use TugBoat Logic, and while it works, its way more focused on being a Vendor Risk management tool and is a wieldy tool that seems to just cover to much.

      I'm looking for something that would integrate with AWS/Azure/Google along with a few other vendors to automate the collection of logs.

      If you have any recommendations let me know.

      posted in IT Discussion compliance soc2 tugboat
      DustinB3403D
      DustinB3403
    • RE: Vulnerability Assessment and Alerting Solutions

      @IRJ Yeah I've tried openVAS in the past, it wasn't bad, but it also wasn't great.

      I've ended up making some changes to my firewall and using Wazuh to report on my endpoints that are remote to our datacenter.

      Which works well enough for our needs

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: What Are You Doing Right Now

      Call with new customer and support engineer who will be doing the work.

      Nothing fancy

      posted in Water Closet
      DustinB3403D
      DustinB3403
    • RE: ReadyNAS314: likely failing

      @gjacobse said in ReadyNAS314: likely failing:

      @DustinB3403 said in ReadyNAS314: likely failing:

      @gjacobse said in ReadyNAS314: likely failing:

      I do have a “backup” but, looks like it’s a month or so old.

      This is where you screwed up...

      You know what they say about people and glass houses?

      Hey I'm sure I'll have my own issue at some point.

      lol

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: ReadyNAS314: likely failing

      @gjacobse said in ReadyNAS314: likely failing:

      I do have a “backup” but, looks like it’s a month or so old.

      This is where you screwed up...

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: Vulnerability Assessment and Alerting Solutions

      So I've used qualys when I worked for an MSP and actually liked it, besides of a few things.

      Setting up networks sucked
      The interface generally was a bit confusing to get used to (infrequent customers)

      The reporting was incredibly in-depth, I can't say I ever saw remediated vulns being detected again

      We settled on Wazuh for now as it at least covers our needs and lists different vulnerabilities.

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: Vulnerability Assessment and Alerting Solutions

      @nadnerB said in Vulnerability Assessment and Alerting Solutions:

      Have a look at Rapid7 InsightVM

      Never heard of it, what makes it good?

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • Vulnerability Assessment and Alerting Solutions

      Hey All,

      I'm looking for a vulnerability assessment and alerting solution that is going to have to be agent based to alert for any OS vulnerabilities for a remote workforce.

      Wazuh is the top item that comes to mind, but I'm not a huge fan of its presentation, likely I just need to sort out the views.

      Does anyone else have any recommendations?

      The target group is endpoint devices (workstations) and datacenter equipment.

      TIA

      posted in IT Discussion siem vulnerability open source
      DustinB3403D
      DustinB3403
    • RE: Print Management: Export

      @gjacobse glad I could help

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: Print Management: Export

      @gjacobse If you open PM, select "Print Servers" > Expand the server > Select "Ports" and then select Export you'll get the port details (ip, WSD etc) into a txt file.

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: Astrophotography

      @Obsolesce so yes, Jupiter is at a 85% angle all of the time... right?

      posted in Water Closet
      DustinB3403D
      DustinB3403
    • RE: Astrophotography

      @Obsolesce Is Jupiter always at a 85% angle?

      Thats crazy, I would love to be able to see that myself but lord knows I wouldn't have the patience to source a telescope/camera and to figure out where another planet is...

      Good job man!

      posted in Water Closet
      DustinB3403D
      DustinB3403
    • RE: Meta Down: Facebook and Instagram Offline

      @scottalanmiller They aren't down here in the states as far as I can tell.

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: Zebra Direct thermal printer: Parts

      @gjacobse not off hand, but can you not make a new one of those with a 3d printer or just purchase a new printer... surely that zebra isn't more than the part alone...

      posted in IT Discussion
      DustinB3403D
      DustinB3403
    • RE: What Are You Doing Right Now

      @JoeLong said in What Are You Doing Right Now:

      Just got registered, and browsing around to get the lay of the land around here.

      Welcome

      posted in Water Closet
      DustinB3403D
      DustinB3403
    • 1
    • 2
    • 3
    • 4
    • 5
    • 1298
    • 1299
    • 2 / 1299