Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
devnull42
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
9 ms
·
1.
▲
by
devnull42
9y ago
I look forward to reading that as a fellow DNS Engineer that works at large scale and has a passion for security.
2.
▲
by
devnull42
9y ago
Sooo they are running RPZ and calling it a product....?
3.
▲
by
devnull42
9y ago
I saw a company asking for 10 years OpenStack development experience. The initial release of OpenStack was 7 years ago. Cant make this shit up.
4.
▲
by
devnull42
9y ago
.IO is historically terrible and seem to have no idea what they are doing. Being it downtime, security or general DNS policy.
5.
▲
by
devnull42
9y ago
nice but dig +trace would be really really nice to add since dig alone doesnt help much with troubleshooting.
6.
▲
by
devnull42
9y ago
Correct the actual key change isn’t until next month however yesterday there was a change in response size from the root servers.
7.
▲
by
devnull42
9y ago
It appears that the issue at first impacted all servers in the anycast pool however eventually it only impacted servers ns-a2 and ns-a4. Those servers started returning NXDOMAINs. I am wondering if this was related to the root server key ch
8.
▲
by
devnull42
9y ago
It appears that the issue at first impacted all servers in the anycast pool however eventually it only impacted servers ns-a2 and ns-a4. Those servers started returning NXDOMAINs. I am wondering if this was related to the root server key ch
9.
▲
by
devnull42
9y ago
This is a fantastic guide. Thanks for putting it up!
10.
▲
by
devnull42
9y ago
Whats the issue with that statement. It is early and I haven't had my coffee yet but I am a security researcher and while I have my questions about his past many of my counter parts in the UK have raised some very very valid questions
11.
▲
by
devnull42
9y ago
Probably wouldn’t be terribly hard to generate that data.
12.
▲
by
devnull42
10y ago
It would still just be ANY queries for cpsc.gov.
13.
▲
by
devnull42
10y ago
That isn't how the data sales work at all.
14.
▲
by
devnull42
10y ago
I ordered a System76 laptop about 4 years ago for work as my day to day machine. Almost immediately the HDMI port broke and I was pretty bummed out. I emailed their support hoping to get it repaired but they never actually fixed it. Sinc
15.
▲
by
devnull42
10y ago
Amazon is directly selling these not acting as a third party. They are the counterfeiters in this case totally different than buying something from someone on ebay and ebay facilitating the deal.
16.
▲
by
devnull42
10y ago
>Although Cloudflare recently suffered from a widely-reported security incident, their response was impressively fast and transparent. Really....seemed like they massively downplayed to me.
17.
▲
by
devnull42
10y ago
Yeah pretty much.
18.
▲
by
devnull42
10y ago
> got her salary adjusted to median position salary because she was a woman >>Really? Yes really. She said that there was a meeting where a manager actually made a comment about underpaying her because she was a women then they im
19.
▲
by
devnull42
10y ago
Wow this has been the opposite of my experience. I have seen many cases where women are fast tracked or given more opportunities as engineers because of diversity programs. There was one case where a female engineer got her salary adjuste
20.
▲
by
devnull42
10y ago
As a former support racker I can tell you that while those might have fall outside our offical spheres of support you would have had no issues getting support for cPanel or WHM. CloudLinux support is a different story.
21.
▲
by
devnull42
10y ago
I was recruited and almost joined up with them but didn't for this exact reason. Too much uncertainty and potential for it to be cut right after I joined.
22.
▲
by
devnull42
10y ago
Dyn reporting another attack started at 15:52 UTC.
23.
▲
by
devnull42
10y ago
This seems like a bad idea. It seems to be solving for a problem that doesn’t exist while introducing the potential for issues. If you want to prevent latency or lookups localhost should just live in the hosts file.
24.
▲
by
devnull42
10y ago
Or fibre that isnt on maps because it belongs to the government. At this point it has so many different meanings what is one more /s
25.
▲
by
devnull42
10y ago
THe DefCon talk on this two years ago was pretty good. http://www.computerworld.com/article/2966130/cybercrime-hack... Video of this talk: https://www.youtube.com/watch?v=9FdHq3WfJgs
26.
▲
by
devnull42
10y ago
Their quick install method makes me very sad. Never ever, ever curl redirect to bash.
27.
▲
by
devnull42
10y ago
Absolutely. Yeah that is kind of silly.
28.
▲
by
devnull42
10y ago
We use them all over my office because each team has their own metrics portal and we can just plug one into a big screen TV and have it run that portal. Cheaper than a full computer and just as effective.
29.
▲
by
devnull42
10y ago
This is pretty much the only part. The code from the live demo. I will try and find a place to get the slides up in the next few days if there is any interest: https://github.com/coryschwartz/dns_exfiltration
30.
▲
by
devnull42
10y ago
>The attackers used multiple interesting and unusual techniques, including: > Data exfiltration and real-time status reporting using DNS requests. Sorry to be more specific we spoke on DNS Base Exfil using base64 encoded strings in
More ›