ML
    • Recent
    • Categories
    • Tags
    • Popular
    • Users
    • Groups
    • Register
    • Login
    1. Topics
    2. Tags
    3. security
    Log in to post
    • All categories
    • gjacobseG

      Flter: Privacy & Security Router

      IT Discussion
      • vpn tor encryption security flter router privacy • • gjacobse
      24
      1
      Votes
      24
      Posts
      2.9k
      Views

      DustinB3403D

      I've used tor, it's functional, but removes a lot of what most people consider useful from most websites.

    • nadnerBN

      Check your Gmail security settings

      IT Discussion
      • gmail security • • nadnerB
      1
      0
      Votes
      1
      Posts
      645
      Views

      No one has replied

    • JaredBuschJ

      Google accounts being signed out

      News
      • google security problems • • JaredBusch
      19
      2
      Votes
      19
      Posts
      2.2k
      Views

      Deleted74295D

      4 different Google accounts have asked me to sign in again on my android device over the past week-end. Still get occasional blips.

    • A

      Cloudflare Reverse Proxy Bug Leaked Uninitalised Memory

      News
      • cloudflare security • • aidan_walsh
      11
      4
      Votes
      11
      Posts
      1.8k
      Views

      scottalanmillerS

      @NetworkNerd said in Cloudflare Reverse Proxy Bug Leaked Uninitalised Memory:

      I am wondering...if you use CloudFlare for public DNS record hosting only and chose not to accelerate any of your records across their CDN, would you be at risk based on what was discovered in their "leak?"

      No

    • JaredBuschJ

      The SHA1 hash function is now completely unsafe

      IT Discussion
      • sha1 cryptography encryption security • • JaredBusch
      7
      5
      Votes
      7
      Posts
      1.4k
      Views

      Reid CooperR

      @Breffni-Potter said in The SHA1 hash function is now completely unsafe:

      If you burn 110K in cash.
      And have a team of cyber security experts.

      Today, yes. But in six months it'll be a script and $30K in compute power. In two years it'll be $500 of AWS time.

    • bbigfordB

      Symantec PGP vs...

      IT Discussion
      • security encryption gpg pgp • • bbigford
      4
      2
      Votes
      4
      Posts
      981
      Views

      scottalanmillerS

      Can't reply on SW, it's having one of its "this thread won't let you respond" hiccups.

    • scottalanmillerS

      UNIX: sudo

      IT Discussion
      • unix linux freebsd bsd sam linux administration sam freebsd administration security solaris sudo • • scottalanmiller
      1
      1
      Votes
      1
      Posts
      1.5k
      Views

      No one has replied

    • gjacobseG

      Boxcryptor

      IT Discussion
      • boxcryptor box.net google drive dropbox encryption security cloud storage cloud security • • gjacobse
      3
      0
      Votes
      3
      Posts
      1.2k
      Views

      DashrenderD

      Yes, I have. It was talked about on Security Now a few years ago.

      It allows TNO (Trust No One) on cloud storage . You control the keys for encryption. of course, if you don't have the keys, the data is useless.

    • Reid CooperR

      Barracuda Borks Firewalls with Automatic Update

      News
      • security barracuda firewall networking • • Reid Cooper
      12
      3
      Votes
      12
      Posts
      1.9k
      Views

      DashrenderD

      @scottalanmiller said in Barracuda Borks Firewalls with Automatic Update:

      @Dashrender said in Barracuda Borks Firewalls with Automatic Update:

      ERL for crying out loud!

      Keep one on spare for just these kinds of emergencies!

      lol I was thinking the same - most can probably afford to just keep this on the shelf in case of an issue.

    • DustinB3403D

      Ubiquiti Security Gateway - Is there a software version

      IT Discussion
      • ubiquity security • • DustinB3403
      60
      1
      Votes
      60
      Posts
      5.7k
      Views

      JaredBuschJ

      @Dashrender said in Ubiquiti Security Gateway - Is there a software version:

      @stacksofplates said in Ubiquiti Security Gateway - Is there a software version:

      @Dashrender said in Ubiquiti Security Gateway - Is there a software version:

      @stacksofplates said in Ubiquiti Security Gateway - Is there a software version:

      @Dashrender said in Ubiquiti Security Gateway - Is there a software version:

      @stacksofplates said in Ubiquiti Security Gateway - Is there a software version:

      @JaredBusch Right. That's why I always assumed the USG was really limited. That is all I could find for network settings.

      @Dashrender Ah ok. That makes sense

      it was limited only via the GUI. If you created a JSON file on the controller in the correct location, you could do darn near anything a EdgeRouter can.

      The GUI is finally catching up with the features.

      Ah ok. Ya that's mostly how I use mine anyway. Like I said, I've never used one so I'm running on assumptions.

      I'm pretty sure you can actually fully control the APs through the CLI and JSON files. I think you can use the CLI to tell it where to get the JSON file (a none Unifi controller), but damn. .talk about pain.

      I didn't realize you could use the config files for the APs. I've only used the busybox shell for joining the controller. Makes sense that it would use them though.

      I think that's how most if not all of it works. using the GUI, you update the JSON files, they are then downloaded to the devices, tada.

      That is also my understanding but not something I've ever checked or tested

    • mlnewsM

      Database Ransom Attacks Now Include Hadoop and CouchDB

      News
      • security couchdb hadoop malware ransomware hacking windows it pro • • mlnews
      2
      2
      Votes
      2
      Posts
      1.1k
      Views

      scottalanmillerS

      0_1485431142097_fdyhfr-meme-generator-hide-yo-kids-hide-yo-wife-5dc51d.png

    • mlnewsM

      ELCE on Long Term Embedded Linux Security

      News
      • linux embedded linux embedded security elce patching • • mlnews
      1
      1
      Votes
      1
      Posts
      759
      Views

      No one has replied

    • scottalanmillerS

      Proposed Email Attack Vector

      IT Discussion
      • security email vulnerability social engineering • • scottalanmiller
      4
      3
      Votes
      4
      Posts
      1.2k
      Views

      brad_altnB

      Thanks for sharing this, Scott. Threats are always evolving!

    • travisdh1T

      Android malware bites back in the real world.

      News
      • android military security fail • • travisdh1
      9
      2
      Votes
      9
      Posts
      2.2k
      Views

      scottalanmillerS

      @IRJ said in Android malware bites back in the real world.:

      @travisdh1 said in Android malware bites back in the real world.:

      @scottalanmiller said in Android malware bites back in the real world.:

      @travisdh1 said in Android malware bites back in the real world.:

      @scottalanmiller said in Android malware bites back in the real world.:

      Android seems like a really bad choice for high security applications, like military. Custom Raspberry Pis with super locked down Linux general purpose OSes would make more sense.

      Any consumer cellular devices period, I can easily triangulate a cell phone with very little hardware investment.

      Do we know that they were consumer phones? I didn't look into it. You can put Android on non-phones, too.

      True. I was assuming because the malware was able to stay in contact somehow. Might have been on a dedicated military network with just 1 connection to the outside.

      Very interesting article...

      You don't have to hack hundreds of phones. Have 3-5 important android devices may be enough to nearly paint a full picture.

      And one might attack another.

    • FiyaFlyF

      Outdated Java and IE security settings for CUCM. When did this become okay?!

      IT Discussion
      • java cisco unity call manager security • • FiyaFly
      5
      3
      Votes
      5
      Posts
      1.8k
      Views

      DashrenderD

      @FiyaFly said in Outdated Java and IE security settings for CUCM. When did this become okay?!:

      @scottalanmiller said in Outdated Java and IE security settings for CUCM. When did this become okay?!:

      That seems pretty bad.

      For firefox, had to follow this: http://stokebrand.com/blog/2015/7/6/cannot-login-to-cisco-callmanager-after-firefox-update
      For Java, I had to drop the security from very high to just high, disable some "Block these apps" settings and add an exemption for the https://IP:port of the CUCM server.

      For those who don't want to follow the link for firefox, I had to set these in about:config
      security.ssl3.dhe_rsa_aes_128_sha=false
      security.ssl3.dhe_rsa_aes_256_sha=false

      Perhaps you need to setup a VM specifically for managing that old equipment.

    • scottalanmillerS

      New Privacy Policy at EverNote

      News
      • evernote security • • scottalanmiller
      17
      0
      Votes
      17
      Posts
      2.5k
      Views

      travisdh1T

      @RojoLoco said in New Privacy Policy at EverNote:

      @Nic said in New Privacy Policy at EverNote:

      @RojoLoco said in New Privacy Policy at EverNote:

      @Nic said in New Privacy Policy at EverNote:

      The only thing I can think of is that they had the retraction ready to go at the time the made the initial change.

      If that is the case, that almost makes it worse... like they wanted to see if they could get away with it, but knowing they wouldn't.

      Stranger things have happened 🙂 The positive possibility is that there were two factions in the company, one wanting the change and the other cautioning about the disaster. The compromise they came to was to float the balloon but have a plan b in place for disaster. The cynical possibility is what you describe; and attitude of "let's see if they buy it but if not here's the retraction".

      I view the world with cynical glasses.

      No such thing as a coincidence, I agree!

    • nadnerBN

      Yahoo Pre-Hack Hack

      News
      • yahoo security fail • • nadnerB
      2
      0
      Votes
      2
      Posts
      1.0k
      Views

      T

      Glad I never cared about my yahoo accounts, I let two lapse that I know of, and the third....who the hell knows....Meh, I knew they were weaksause.

    • scottalanmillerS

      One Billion Additional Yahoo Accounts Compromised

      News
      • breach yahoo security bbc • • scottalanmiller
      4
      0
      Votes
      4
      Posts
      1.2k
      Views

      DashrenderD

      LOL That company just needs to turn off all of it's servers, sell off everything and divy up the money to the shareholders!

    • stusS

      [ALERT] Yikes, A New And Scary Double-Ransomware Whammy.

      IT Discussion
      • ransim ransomware security malware knowbe4 • • stus
      2
      4
      Votes
      2
      Posts
      1.2k
      Views

      scottalanmillerS

      Wow, that IS a scary one.

    • scottalanmillerS

      KnowBe4: Former NSA Director Michael Hayden: "We have a Russia Problem"

      News
      • security knowbe4 • • scottalanmiller
      1
      1
      Votes
      1
      Posts
      580
      Views

      No one has replied

    • 1
    • 2
    • 12
    • 13
    • 14
    • 15
    • 16
    • 31
    • 32
    • 14 / 32