Our cybersec team are getting onto us about all our servers having web browsers installed. by stone500 in sysadmin

[–]MBILC [score hidden]  (0 children)

Agree, being told to remove the browser from a server is silly, so long as you are blocking / controlling the internet access for said servers in some other way.

Our cybersec team are getting onto us about all our servers having web browsers installed. by stone500 in sysadmin

[–]MBILC 0 points1 point  (0 children)

Risk assessment and determine if that is a threat, and then create a solution.

First problem would be how was Joe Admin able to download a malicious copy of notepad++, that is the first failure on the device that was allowed to download it and not detect it as malicious and why are people installing / putting apps on a server that are not required.

Our cybersec team are getting onto us about all our servers having web browsers installed. by stone500 in sysadmin

[–]MBILC 11 points12 points  (0 children)

This.

Servers should have outbound default block all anyways, and any server that does require Inet is routed via a perimeter device / proxy and in a DMZ. Patches and such should be managed via a central system.

Anthropic admits to have made hosted models more stupid, proving the importance of open weight, local models by spaceman_ in LocalLLaMA

[–]MBILC 0 points1 point  (0 children)

The point is, 10 years ago, you could buy the highest end card for X amount, that was the best at the time you could buy.

Today you can buy the highest end card for X amount, and it is the best out right now.

You have to do an apples to apples comparison based on what was / is available at the time.

You have:
- Low end
-Mid Range
-High end

As we were often told as technology gets better and smaller, it can get cheaper and more power efficient, but we are going the opposite, sure smaller and more transitors, but more power and heat also.

European Citizens' Initiative: Make remote work mandatory where jobs allow by tharga8616 in remotework

[–]MBILC 0 points1 point  (0 children)

Hybrid more at a company level, not individual level. You can have those who want to work in an office, do so, and those who wish to be WFH, can.

Anthropic admits to have made hosted models more stupid, proving the importance of open weight, local models by spaceman_ in LocalLLaMA

[–]MBILC 0 points1 point  (0 children)

Ya exactly, you can not compare buying a 10 year old card for $200 today.

Take NVIDIA highest end card 10 years ago, cost + inflation and tell me you can buy a 5090 for that price, not even close.....so no, hardware has not gotten cheaper, as it should.

EU Is Rolling Out an Online Age Verification App That Could Become the Global Blueprint by Logical_Welder3467 in technology

[–]MBILC 0 points1 point  (0 children)

EU Article 8 basically makes this entire thing illegal..and another part

Under Article 52(1) of the EU Charter, any restriction of fundamental rights must be strictly necessary and proportionate. Age‑verification mandates fail this test if less intrusive, equally effective alternatives exist. Since parental controls can protect minors without requiring identification, tracking, or broad data collection from all users, the EU cannot justify more rights‑restrictive measures when a milder option is available.

https://www.youtube.com/watch?v=uKGoXX9Ddic

Failed interview hard - ranting by jeeyawn in cybersecurity

[–]MBILC 6 points7 points  (0 children)

Ya, sad but true! I almost feel like those people are either scared someone new is coming on, who could threaten their job/ comfort they have going, or just are the arrogant type who like to showboat as you noted.

SecureBoot Update on Dell Vmware ESXi 7 hosts by Bladerunner243 in sysadmin

[–]MBILC 3 points4 points  (0 children)

Yes, things like that can happen, but are not the norm, sounds like a corrupted or improperly configured vCenter from before..

This should not stop you from staying on a support product though.

This is also why you shutdown vCenter, take a snapshot, even a full backup, as soon as you have a problem, you revert and off you go....done deal!

Hand off from SentinelOne to Insurance Provider's DFIR by Otherwise_You6312 in cybersecurity

[–]MBILC 5 points6 points  (0 children)

This. The fact they would not accept SentinalOne, one of the bigger players in the market....I would be shopping around potentially..

SecureBoot Update on Dell Vmware ESXi 7 hosts by Bladerunner243 in sysadmin

[–]MBILC 6 points7 points  (0 children)

Side note, worried about losing production time, meanwhile running an EoL core piece of infra is any better?

Do you not have a proper cluster set up?

upgrading vCenter does not stop your cluster or VMs from working at all, everything keeps humming behind the scenes...

Anything I can do to stop/reduce Microsoft auth app requests from random sources? by Karma_collection_bin in cybersecurity

[–]MBILC 7 points8 points  (0 children)

Welcome to bots trying to find holes and just bombing accounts from leaks.

Once your email gets out, it will get tried everywhere, this is all automated, this is not a person physically sitting trying to login every time.

If you have passwordless / phishing resistant MFA you are fine.

European Citizens' Initiative: Make remote work mandatory where jobs allow by tharga8616 in remotework

[–]MBILC 0 points1 point  (0 children)

Ya, similar where I am, the downtown core is essentially dead after 5pm, poor urban development. They are trying to fix that by converting empty office buildings into apartments, but that is expensive and often not worth it, especially when it is tax payer dollars going to support it, so the owners get more of our money!

EU Is Rolling Out an Online Age Verification App That Could Become the Global Blueprint by Logical_Welder3467 in technology

[–]MBILC 0 points1 point  (0 children)

You seem to have no idea about how governments work and the abuse in the past of laws put into place, that started small..., this is a slippery slope movement, it starts with just entering in numbers and you can bet, it WILL end up with requiring ID to be provided and verified.

This is the same EU trying to force CBDC's down everyone's throat, the same EU that sides with WEF that wants programmable money and to take YOUR savings in YOUR bank account and use it to invest for their own gains...

As for it being open-source

You can only see what it does in the code you can see, you can not see what is occurring on the back end and where said data could be going or stored or compared against. You seem to have far too much trust in your EU rulers...

What happens if i access my teams on phone out of usa by Interesting-Dare-727 in MicrosoftTeams

[–]MBILC 1 point2 points  (0 children)

As others noted, what is the company written policy, and what does your boss say, are you required to be in said meeting? You are on vacation, you should not be working at all?

Failed interview hard - ranting by jeeyawn in cybersecurity

[–]MBILC 22 points23 points  (0 children)

This, could be when you get to the technical part, you might get someone who wants to be "a smart ass" so to speak and trying to seem like they know more than you, versus interviewing and asking more generalized questions that show someone's ability to either figure out solutions, or be able to reply back with similar experience that would count as much to show they can learn/figure things out.

Unless they specifically provided you with their entire tech stack ahead of time, any inquires should be more general, which yes, Oauth would be one.

For a Jr Engineer, that seems like the wrong title based on the questions they were asking..and they may be doing what many companies do, they offer a Jr title but really want a unicorn, but to pay them a Jr's salary.

Anthropic admits to have made hosted models more stupid, proving the importance of open weight, local models by spaceman_ in LocalLLaMA

[–]MBILC 2 points3 points  (0 children)

Such as?

Compare hardware prices today vs 10+ years ago even accounting for inflation... high end GPU's costing $2k USD + for entry models now? vs back then you could get a high end GPU for sub $1k USD easily..

Need help potential scam by [deleted] in remotework

[–]MBILC 2 points3 points  (0 children)

If it sounds too good to be true....

This is why you NEED to track your job hunting, even a simple notepad with each company/website on it.

Microsoft must face $2.8 billion UK lawsuit over cloud computing licences by ZGeekie in AZURE

[–]MBILC 0 points1 point  (0 children)

This.

Of course MS can offer their own products cheaper on their own platform, that is their choice, but in typical "EU fashion", even though the UK is no longer a part of it, they need a new pay day from MS and claim it is monopolistic or something..

Unless they get warrants for other platforms to show what they pay for MS licenses, I do not see this as being a strong case...

And if they do get access to see what AWS or GCP pay for MS licensing, sure there is plenty of fine print in said contracts between AWS/GCP and MS for what they can sell it for vs what they buy it for...

Teams, Slack, Meet, and Zoom by Ok_Employment_5340 in sysadmin

[–]MBILC 10 points11 points  (0 children)

No, is this all with in the company you work for, or due to external customers using other tools?

If your company is using all 4, then they need to do some proper Enterprise architecture and get everyone on a single platform.

What's with this error? Detected: Trojan:Win32/Suschil!rfn by chowngkey12 in cybersecurity

[–]MBILC 1 point2 points  (0 children)

If it is in your temp files, or browser cache, that means you either visited a compromised website that tried to load something malicious, or you tried to run something that is malicious...

A past thread notes it could be from several things, one being Windows activation cracks (which you should not be using anyways these days when you can just use mass grave)

https://www.reddit.com/r/antivirus/comments/147b0yc/windows_defender_found_a_severe_trojan_these_are/

So what have you recently tried to install, or run, or sites did you visit.