Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
EAtmULFO
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
7 ms
·
31.
▲
by
EAtmULFO
3y ago
Knew the full extent of the attack and exfiltrated data, yet took no action to re-secure systems that could be exploited using this information. Negligence?
32.
▲
by
EAtmULFO
3y ago
404
33.
▲
by
EAtmULFO
3y ago
Agreed, it feels like a potential minefield until case law catches up so we can really figure out the ground rules.
34.
▲
Rouute Net Zero technology (borrows energy from rolling vehicles)
(rouute.com)
1 points
by
EAtmULFO
3y ago
|
1 comments
35.
▲
by
EAtmULFO
3y ago
How do they think zero carbon is equivalent to taking energy from vehicles on the roadway?
36.
▲
by
EAtmULFO
3y ago
"...growing demand for Tyler clients and public sector agencies to move to the cloud." I assume they mean sell-side demand. Lock those customers in.
37.
▲
by
EAtmULFO
3y ago
For the risk averse, do not jump the roped off road shoulder and instead cross at the crosswalk per local law?
38.
▲
by
EAtmULFO
3y ago
Only $5k per vuln? Am I the only one that thinks that is an insulting amount for the capabilities one could unleash by leveraging the exploit?
39.
▲
by
EAtmULFO
3y ago
Nope.
40.
▲
by
EAtmULFO
3y ago
Please google "CAA DNS record"
41.
▲
by
EAtmULFO
3y ago
Best practice is to use CAA records, which would help reduce the impact unless the CAA specifies letsencrypt.
42.
▲
by
EAtmULFO
3y ago
Yes, it's pickleball country.
43.
▲
by
EAtmULFO
3y ago
So much has, um, changed since that memo was written. Right Microsoft?
44.
▲
by
EAtmULFO
3y ago
Okay, bypass by using dry contacts. This proprietary ecosystem stuff drives me bananas.
45.
▲
by
EAtmULFO
3y ago
Exactly. I imagine most of the benefit of the new 3nm process is related to power draw. I'll bet the memory is the same stuff as the prior generation though, given those specs haven't seemed to change at all.
46.
▲
by
EAtmULFO
3y ago
https://www.cloudflare.com/trust-hub/reporting-abuse/ plus the domain registrar They can both help and generally will if proper supporting info is provided.
47.
▲
by
EAtmULFO
3y ago
Me thinks white supremacists, or any other hate group for that matter, are simply not that well organized. These folks are mentally disturbed and looking for attention (or possibly crying for help in the most inappropriate ways). We have
48.
▲
by
EAtmULFO
3y ago
All of Hetzner's ASNs had to be blocked at our perimeter due to rampant, unenforced malicious use.
49.
▲
by
EAtmULFO
3y ago
Duplicate. The actual story behind the EPA's decision: https://www.documentcloud.org/documents/23863526-epa-hq-oppt...
50.
▲
by
EAtmULFO
3y ago
The actual process followed and the EPA's summary of the decision: https://www.documentcloud.org/documents/23863526-epa-hq-oppt...
51.
▲
by
EAtmULFO
3y ago
I assume they are forcefully resetting MFA tokens for folks who did not read the full details of the hack and took appropriate action? One of the later iterations of the advisory regarding the hack stated token data was taken, requiring yo
52.
▲
Fortigate SSLVPN RCE posted online before Fortinet
(bleepingcomputer.com)
1 points
by
EAtmULFO
3y ago
|
1 comments
53.
▲
by
EAtmULFO
3y ago
Charles Fol posted to Twitter to let everyone know he found a critical RCE for the SSLVPN service on Fortigate hardware without giving Fortinet time to post notice to their customers. Emergency patch time, everyone.
54.
▲
by
EAtmULFO
3y ago
That's a pretty brutal bit of public shaming. Would it not have been better for the security community at large to instead reach out to Sven and have him address the issue privately?
55.
▲
by
EAtmULFO
3y ago
https://www.bis.doc.gov/index.php/policy-guidance/encryption...
56.
▲
by
EAtmULFO
3y ago
Sounds like software piracy if they were sharing copies.