@jerry@infosec.exchange

Cloud CISO
Podcast: https://defensivesecurity.org
Blog: https://infosec.engineering
Twitter: https://infosec.exchange/@maliciouslink
https://Infosec.Exchange Admin
#infosec #security #cybersecurity #risk #fedi22
…and for fucks sake, be nice to each other. We are only here for a brief time. Make it enjoyable.

To help support the costs associated with running this instance, please consider donating. You can set up recurring donations here:

Patreon: https://www.patreon.com/infosecexchange

Ko-Fi: https://ko-fi.com/infosecexchange

Liberapay: https://liberapay.com/Infosec.exchange/

You can also support with a one-time donation using PayPal to "[email protected]".

This profile is from a federated server and may be incomplete. Browse more on the original instance.

jerry, to random
@jerry@infosec.exchange avatar

It sure is a good thing people chased away CISA last year. I mean, look at the propaganda they post. I’m super glad we made people stay on the other site to access this filth.

Yes, I’m having a moment of bitterness

jerry, to random
@jerry@infosec.exchange avatar

Looks like mastodon.social has a spam attack happening. Stay calm and report them please.

jerry, to random
@jerry@infosec.exchange avatar

I continue to be squeezed by both sides of the threads situation. I am operating on the premise that people who think I’m a terrible person and this is a terrible instance for allowing any interaction with threads have left and/or blocked, those remaining seem to want to either have nothing to do with threads at all and are mainly concerned with their data, and those who want to seamlessly interact with threads. I have threads limited/silenced on Infosec.exchange, but that isn’t seamless, and it’s also not fully blocking. So, here’s my proposal:
I remove the limit from threads, and run a job to domain block threads for each account. Any account who chooses can undo the block (or ask me to do it) and then they can seamlessly interact with threads, and those who want nothing to do with them get their way.

Thoughts?

jerry, to random
@jerry@infosec.exchange avatar

But what is web 4.0?

jerry,
@jerry@infosec.exchange avatar

The mean value theorem predicts there should be a web for workgroups 3.11. Or something.

jerry, to random
@jerry@infosec.exchange avatar

contempating noforn.infosec.exchange for the vehemently opposed 🤔​ Then again, I think they all left already.

jerry,
@jerry@infosec.exchange avatar

@Viss I lost a bunch of members yesterday because I didn't fully ban threads. I also lost about the same number because I limited threads instead of allowing them

jerry, to random
@jerry@infosec.exchange avatar

So, do we still love Firefox because it’s not chrome or do we hate it because Mozilla is now in the AI business?

jerry, to random
@jerry@infosec.exchange avatar

@happyborg the instance you are on does not block threads, so yes, you’re going to see it. If you are on an instance that blocks it, my expectation is that you will not see it. In any event, I am done with this discussion.

jerry, to random
@jerry@infosec.exchange avatar

To those leaving due to my “heavy handed”, “ethically questionable,” and “morally bankrupt” decision to let people decide whether to interact with Threads: I am sorry it didn’t work out.

To people on instances who will soon block me/us because I did not block Threads, thanks for being there, I wish you all well.

💕

jerry, to random
@jerry@infosec.exchange avatar

Super excited excited to watch the fediverse start eating itself again over Threads :blobsadleft:​

jerry,
@jerry@infosec.exchange avatar

@bughuntercat Threads is testing out their activitypub gateway that will allow interoperability with the rest of the fediverse.

jerry, to random
@jerry@infosec.exchange avatar

It is hard to describe, in words, the level of not being ready to go back to work tomorrow morning after a four-day weekend

jerry, to random
@jerry@infosec.exchange avatar

I think firefish needs a DBA to help with optimize some queries. I am running into issues on both fedia.social and infosec.town with accounts that have a lot of follows causing their home timelines to timeout - and be completely unviewable.

jerry,
@jerry@infosec.exchange avatar

regarding firefish - in case anyone else runs into the problem, running ANALYZE and then VACUUM on the database seems to set things right. I am going to be creating a cron job to do this on my firefish instance databases on a daily basis.

jerry, to random
@jerry@infosec.exchange avatar

Shower thought: current AI buzz is filling the GPU demand gap left by the falloff from crypto mining

jerry, to random
@jerry@infosec.exchange avatar

Today was a long week

jerry, to random
@jerry@infosec.exchange avatar

Is there a book for organizational behavioral problems? I want to learn more about Agile.

jerry, to random
@jerry@infosec.exchange avatar

Sometimes I hate looking at the news

jerry, to random
@jerry@infosec.exchange avatar

I hope y'all in the US find a productive way to spend the extra hour tonight. I will be teaching myself to use podman

jerry, to random
@jerry@infosec.exchange avatar

My mortgage provider just called and basically said: “We noticed you have a very low interest rate. Have you considered refinancing to our new higher rate loans?”

jerry, to random
@jerry@infosec.exchange avatar

I am almost done with the fedia. io database repairs. Not sure I’ll be able to finish tonight, but the end is in sight.

jerry,
@jerry@infosec.exchange avatar

Hello everyone. If you care about fedia.io, please read this: https://fedia.io/m/fedia/t/350673

Note: it’s good news-ish

jerry, to random
@jerry@infosec.exchange avatar

I’ve decided to throw my hat into the ring for Speaker of The House. Do I get lobbyist money now?

jerry,
@jerry@infosec.exchange avatar

I cleaned out a spot in my bathroom to store boxes of classified documents. I feel like I have a real chance here

jerry,
@jerry@infosec.exchange avatar

@artcollisions “dress for the office you want” and all that

jerry,
@jerry@infosec.exchange avatar

@vcsjones I don’t have much else to spend money on

jerry,
@jerry@infosec.exchange avatar

@_alice well, I need street cred if I’m going to be a politician

jerry,
@jerry@infosec.exchange avatar

@resonancewright I don’t think the George Soros checks count, do they?

jerry,
@jerry@infosec.exchange avatar

@fugueish I will admit I’m a little weak in this area, but I assumed this was one of those things you learn when on the job

jerry,
@jerry@infosec.exchange avatar

@PeoriaBummer @fugueish 😅 that’s a good point. I almost made a mistake

jerry,
@jerry@infosec.exchange avatar

@breadandwater oh absolutely

jerry, to random
@jerry@infosec.exchange avatar

OoooOOooo Hetzner may have my new servers ready by the weekend 🎉

jerry,
@jerry@infosec.exchange avatar

I’m gonna sit and stare at all those cores in htop for hours

jerry,
@jerry@infosec.exchange avatar

@avrin I spend about $3000/month today. These new servers are about $1200 a month. After I migrate to the new servers and shut down the old, it should be close to the same spend but lots faster with less overhead and complexity

jerry,
@jerry@infosec.exchange avatar

@avrin thanks. It takes a surprising amount of processing power to handle 18000 people using a social media site. The logistics of the big commercial services seems mind blowing to me

jerry,
@jerry@infosec.exchange avatar

@geekgrrl

You nerd!

Guilty as charged

jerry, to random
@jerry@infosec.exchange avatar

Well, after enabling captcha and watching spam registrations continue + a bit of taunting from the newly registered spam accounts, I feel confident that this is, in fact, not driven by bots. Yet there are aspects that still look like they are.

jerry,
@jerry@infosec.exchange avatar

@hayo many

jerry,
@jerry@infosec.exchange avatar

@hayo @phpete there are certain instances that believe Infosec.exchange is basically the FBI surveillance van sitting in the parking lot of the Fediverse identifying LGBT people for ICE to detain and torture at CIA black sites. Oh, and I apparently also work for the CIA, which on some level is good news if I get the government retirement benefits.

jerry,
@jerry@infosec.exchange avatar

@siguza that is my best guess

jerry,
@jerry@infosec.exchange avatar

@GuillaumeRossolini its had no perceptible impact on either human or spam signups.

jerry, to random
@jerry@infosec.exchange avatar

Ok. I am tired of Infosec.exchange being sluggish. I just submitted a crazy order with Hetzner to upgrade the instance. Hopefully the last time for a while. I ordered a dell AMD Genoa 48 core server with 256 GB of ram to act as a database and redis server, a dell 64 core sapphire rapids server with 256gb of ram to act as the single front end/puma/streaming server, and an amd 7950 with 128gb of ram to run minio (insourcing from Backblaze).

I ordered all with 10g network interfaces to be connected to the same switch.

I continue to see issues with Backblaze performance causing issues with posting.

This will consolidate the environment down from about 13 servers to 4 (I will keep using less expensive servers on 1G networks for Sidekiq if it can’t run on the sapphire rapids server.

I will be putting that behind Fastly for global distribution and ddos mitigation. I don’t know whether I’ll keep serving media via bunny.net or try to do that with Fastly also. Bunny works pretty well and is cost effective for media delivery.

Anyhow, changes are coming. Thanks for patience.

jerry,
@jerry@infosec.exchange avatar

@ludiusvox also it uses Postgres and Redis databases

jerry,
@jerry@infosec.exchange avatar

@ludiusvox the good news is that my new server will be able to handle about 30000 requests per second, then

jerry,
@jerry@infosec.exchange avatar

@ludiusvox the new servers will cost about $1100 per month. I am already spending about $3000 per month and getting about $3000 per month in donations. I will be able to shut down most of the 13 servers that makes up the current instance, and that should let me stay close to $3000 per month

jerry,
@jerry@infosec.exchange avatar

@ludiusvox many thanks for that!

jerry,
@jerry@infosec.exchange avatar

@dezz :blobheartcat:​ thank you!

jerry,
@jerry@infosec.exchange avatar

@avoidthehack this instance ran I. A single VPS for about 5 years prior to the Twitter meltdown. So I know what you mean

  • All
  • Subscribed
  • Moderated
  • Favorites
  • uselessserver093
  • random
  • Food
  • aaaaaaacccccccce
  • test
  • CafeMeta
  • testmag
  • MUD
  • RhythmGameZone
  • RSS
  • dabs
  • KamenRider
  • Socialism
  • KbinCafe
  • oklahoma
  • TheResearchGuardian
  • SuperSentai
  • feritale
  • All magazines