@jbaggs@infosec.exchange

I've been in and out of information security professionally, but somehow always have related projects. Mainly working with zeek and network level detection at the moment. SDR, cycling, and climbing enthusiast.

I boost a lot. Topics range far and wide from security and "the cybers" and may include politics, food, humor, science, law, nature, art, and other sundry unsavories. I occasionally post my own projects and thoughts.

This profile is from a federated server and may be incomplete. Browse more on the original instance.

mattblaze, to random
@mattblaze@federate.social avatar

I had a meeting today in which it was brought home to me that there are senior security people who don't remember the Morris worm because they were like eight years old when it happened.

You can get off my lawn now.

jbaggs,
@jbaggs@infosec.exchange avatar

@mattblaze I recommend staying away from "Oldies" or "Classic Rock" radio station as well, for fear of what you may find playing on them now.

jerry, to random
@jerry@infosec.exchange avatar

Ok. I am tired of Infosec.exchange being sluggish. I just submitted a crazy order with Hetzner to upgrade the instance. Hopefully the last time for a while. I ordered a dell AMD Genoa 48 core server with 256 GB of ram to act as a database and redis server, a dell 64 core sapphire rapids server with 256gb of ram to act as the single front end/puma/streaming server, and an amd 7950 with 128gb of ram to run minio (insourcing from Backblaze).

I ordered all with 10g network interfaces to be connected to the same switch.

I continue to see issues with Backblaze performance causing issues with posting.

This will consolidate the environment down from about 13 servers to 4 (I will keep using less expensive servers on 1G networks for Sidekiq if it can’t run on the sapphire rapids server.

I will be putting that behind Fastly for global distribution and ddos mitigation. I don’t know whether I’ll keep serving media via bunny.net or try to do that with Fastly also. Bunny works pretty well and is cost effective for media delivery.

Anyhow, changes are coming. Thanks for patience.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry

That's one way to make the orchid and lens spend columns look significantly smaller by comparison.

I jest. I'm honestly amazed and very grateful for what you can and do put into keeping this place running.

jerry, to random
@jerry@infosec.exchange avatar

Ok, so what are we naming the curl vulnerability?

jbaggs, (edited )
@jbaggs@infosec.exchange avatar

@jerry Stop trying to make fetch happen.

jerry, to random
@jerry@infosec.exchange avatar

I should clearly not be left alone with just my thoughts.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry I'd lend you mine, but you'd probably be worse off.

jerry, to random
@jerry@infosec.exchange avatar

I had a pretty bad day today, but at least I wasn’t kicked out of office by my own political party.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Ousted by Mr. SCIF pizza party, no less. (Sorry to hear about your day.)

jerry, to random
@jerry@infosec.exchange avatar

One of the backlog items we all took on during the pandemic was replacing the saying “avoid it like the plague” with something more reflective of modern day views on such things.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry I still use "avoid it like the plague". I just follow it with a long pause and a glare now.

jerry, to random
@jerry@infosec.exchange avatar

Should we even let married people who have consensual sex with each other run for public office? Seems kind of risky https://apnews.com/article/susanna-gibson-virginia-house-of-delegates-sex-acts-9e0fa844a3ba176f79109f7393073454

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry The puritanical bent of some in this country that even makes this "newsworthy" is really something.

jerry, to random
@jerry@infosec.exchange avatar

My late entry. Thor fell asleep with his mom on the couch watching some HGTV show.

Which reminds me, there are a growing number of houses around the country (world?) that were remodeled in under a day/week/whatever. I am not sure that’s such a great thing.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Were they remodeled with the hammer of Thor? It does cut down on demolition time.

jerry, to random
@jerry@infosec.exchange avatar

Apparently today’s mood

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Today seems like it's been a bit more than a bit for a lot of people.

jerry, to random
@jerry@infosec.exchange avatar

I am going to be disabling image uploads and image serving, moving to moderated signups, and instituting some extensive block lists on infosec.pub due to the pervasive problems with CSAM attacks on lemmy instances.

No, it’s not happened to any of our instances yet, but I don’t need that headache. And if anyone does, I promise you that I will make it my life’s mission to see that those responsible are convicted and rotting in prison where they belong. ❤️

Edit: h/t to @infosec_jcp for pointing out the problem to me.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry @infosec_jcp "Rotting in prison" isn't my favorite outcome for anyone, but I agree this needs to be nipped in the bud. As far as tech solutions to social problems, moderation and block-lists I'm entirely behind. (And moderation is honestly a social solution to a social problem, at its core.)

jerry, to random
@jerry@infosec.exchange avatar

In other news, Infosec.exchange dropped over 2000 monthly active users in the past 60 days. SELL SELL SELL

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Is this why you wanted an exit survey?

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Ah. Any correlation with age of account?

jerry, to random
@jerry@infosec.exchange avatar

I partially solved an Infosec mystery recently. The mystery is “why do most incidents always happen on a Friday? And especially the Friday before a long weekend?”

Well friends, after a lot of empirical data gathering I can announce that it’s because people who realized something was wrong had been sitting on the knowledge of something being wrong, but didn’t want to let it sit through a weekend, and especially not a long weekend.

So like that last push to production on the way out the door Friday afternoon, people are often submitting incident reports as they take off for the weekend with a clear conscience and a spring in their step.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Patch Tuesday, Incident Friday, Skatin' Saturday.

https://www.youtube.com/watch?v=9S5lTgyfT2c

jerry, to random
@jerry@infosec.exchange avatar

Oh shoot. I just boosted something from CISA and the FBI.

Then again, it is the fed-iverse.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry @binsk lol at outside.

tracketpacer, to random
@tracketpacer@infosec.exchange avatar

im starting another new video series where i post cybersecurity facts. you’re welcome

video/mp4

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry @tracketpacer We used to run a white-noise generator to jiggle the packets and keep them flowing.

jerry, to random
@jerry@infosec.exchange avatar

Request: before accusing your instance admin of shadow banning you, or of trying to spy on you, or of trying to install malware in your browser, or of deleting your posts, please take a moment to try a "normal" browser that doesn't have all the security and privacy gunk.

thx

video/mp4

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry :blobfacepalm:​

jerry, to random
@jerry@infosec.exchange avatar

I studied hard for this test but I still failed 😕

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry Boo. Hope it is mild and you recover quickly.

jbaggs,
@jbaggs@infosec.exchange avatar

@jerry You say "burn a test" but honestly the shelf life on them is a hot minute as well.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • uselessserver093
  • Food
  • aaaaaaacccccccce
  • test
  • CafeMeta
  • testmag
  • MUD
  • RhythmGameZone
  • RSS
  • dabs
  • KamenRider
  • Ask_kbincafe
  • TheResearchGuardian
  • KbinCafe
  • Socialism
  • oklahoma
  • SuperSentai
  • feritale
  • All magazines