Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
jimsi
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
Ask HN: How do you get security advisories?
4 points
by
jimsi
5y ago
|
1 comments
2.
▲
by
jimsi
5y ago
I think that providing API to be used by standalone clients is far more better approach
3.
▲
Collaboratively Combatting DDoS Attacks
(github.com)
2 points
by
jimsi
5y ago
|
0 comments
4.
▲
by
jimsi
5y ago
I would recommend to use borgbackup - it is very convenient for security (it provides very flexible encryption options with safe defaults) and efficiency (deduplication)
5.
▲
by
jimsi
5y ago
I can't remember any recent good news about 0click mitigation
6.
▲
by
jimsi
5y ago
I use KeePassDX on Android and KeePassXC on a laptop, and they are synced with Syncthing. I have no issues with this setup
7.
▲
by
jimsi
5y ago
This might be a way better solution in terms of performance, but I cannot imagine way to run more complicated stuff rather only blocking IP in the firewall using iptables
8.
▲
by
jimsi
5y ago
This ratio is only applied if there are more than 1000 SYNs, forgot to mention that in the README ( https://git.encryp.ch/g00g1/no-portscan/src/branch/master/cm... )
9.
▲
Show HN: No PortScan
(git.encryp.ch)
36 points
by
jimsi
5y ago
|
19 comments
10.
▲
Ask HN: Complaint from Proton AG – what should I do?
49 points
by
jimsi
5y ago
|
15 comments
11.
▲
Multiple Accounts with Mutt
(github.com)
2 points
by
jimsi
5y ago
|
0 comments
12.
▲
Grub 2.06 and the “error: verification requested but nobody cares”
(wejn.org)
2 points
by
jimsi
5y ago
|
0 comments
13.
▲
by
jimsi
5y ago
My OpenSSH is located on a non standard port, 22/tcp is going to the endlessh honeypot.
14.
▲
by
jimsi
5y ago
How did you discover this? Anyway thanks for additional information
15.
▲
by
jimsi
5y ago
I have asked Cloudflare about this traffic, but support says "Cloudflare helps protect sites, and accelerate them. We do not attack sites, and our network can't be used to generate attack traffic." They deny any malicious out
16.
▲
by
jimsi
5y ago
I think single SYN packet would be enough to know whether this port open or not, but they trying to gather full banner.
17.
▲
by
jimsi
5y ago
I expect to hear who (and why) generates that kind of traffic from cloudflare owned subnets.
18.
▲
by
jimsi
5y ago
Probably yes, but hey! Why do Cloudflare Worker would need SSH connection establishment? I do not asking Cloudflare to block 22/tcp entirely, but all this situation is very odd - I am seeing anomaly, reported abuse to them, but no expl
19.
▲
by
jimsi
5y ago
Maybe that's a case, but their abuse team hasn't replied anything in a 2 weeks about that after I gave them all timestamps and both source/destination IP addresses
20.
▲
by
jimsi
5y ago
Previously this post was named in such way, but post get flagged... So I removed its mentioning and replaced with ASN
21.
▲
AS13335 doing SSH scanning
(encryp.ch)
166 points
by
jimsi
5y ago
|
102 comments
22.
▲
by
jimsi
5y ago
https://github.com/xmikos/cryptboot/blob/master/README.md
23.
▲
Cloudflarenet Scanning for SSH
(blocklist.de)
3 points
by
jimsi
5y ago
|
0 comments
24.
▲
EndlesshX: A bit improved endlessh (original repo seems to be dead)
(git.encryp.ch)
1 points
by
jimsi
5y ago
|
0 comments
25.
▲
by
jimsi
5y ago
> In addition to offer encrypted connections, each publicly available SMTP server must accept unencrypted connections according to RFC 2487 as well. So while Amazon SES should definitely support common ciphers, its current configuration
26.
▲
Amazon SES and Postfix's no shared cipher warning
(encryp.ch)
1 points
by
jimsi
5y ago
|
2 comments