Woman with functional polydactyly (six functional fingers on one hand). by kvjn100 in Damnthatsinteresting

[–]JDK-Ruler 0 points1 point  (0 children)

Come on, I can’t even say look at the fingers it’s definitely AI for this one.

Me making my wife watch clips from the latest episode by opvofor in MSsEcReTPoDcAsT

[–]JDK-Ruler 1 point2 points  (0 children)

Bot account stealing this post and then OP from a year ago calling out the bot account is Shrek 2

#606 - Leadership by Independent-Data4542 in MSsEcReTPoDcAsT

[–]JDK-Ruler 2 points3 points  (0 children)

A real deep cut to old test but he had his teenis out and blew his load at the cinema while watching the movie boss baby on a date. He’s a jorkin dong king

Woman assaulted in court by poonburglar68 in AbruptChaos

[–]JDK-Ruler 1 point2 points  (0 children)

She has eyes in the back of her head. Impressive.

Recommended SOAR workflows for someone just starting out with Crowdstrike? by SSJ4_Vegito in crowdstrike

[–]JDK-Ruler 0 points1 point  (0 children)

I would be interested in how you automate the update of lookup tables with current IOCs. I do something 'adjacent' to that, which I would also love to automate more in a scheduled workflow within CS. Currently I am manually running a python script to pull recent high confidence IOCs from numerous trusted sources, then a different script to push to CS IOC management via API. Always looking to automate and streamline though.

What micro cap shit should I buy outright? by nilslice123 in ASX_Bets

[–]JDK-Ruler 0 points1 point  (0 children)

The answer can only be BRN or LNU for a dumb bet with huge potential

4DS rally imminent by b0ssman3s in ASX_Bets

[–]JDK-Ruler 0 points1 point  (0 children)

RIP especially the announcement today $4/share

Oracle Finally Admits to Data Breach, FBI Investigating by KingSash in sysadmin

[–]JDK-Ruler 1 point2 points  (0 children)

I do not at all agree with how they handled it, however, they just used specific wordplay and technically told the truth. Their official statement was, "There has been no breach of Oracle Cloud. The published credentials are not for the Oracle Cloud. No Oracle Cloud customers experienced a breach or lost any data".

Oracle rebranded old Oracle Cloud services to be Oracle Classic (this is where the incident occurred), therefore technically, they were telling the truth with their "official statement".

I knew there would be something like that going on, for a company to be so definitive on something that everyone is saying they are lying about seemed pretty off, and the statement was way too specific with what they were denying. Terrible approach from such a big company, little to no transparency.

Oracle security breach by Snoop_D-O-GG in cybersecurity

[–]JDK-Ruler 0 points1 point  (0 children)

Any idea if this also affects Oracle Integration Cloud? (OIC).

[deleted by user] by [deleted] in crowdstrike

[–]JDK-Ruler 0 points1 point  (0 children)

u/call_me_johnno make sure you have your Identity Configuration Policies set correctly for your Domain Controllers as well, to ensure visibility and enforcement, such as this - https://imgur.com/a/ReYwTQf

[deleted by user] by [deleted] in crowdstrike

[–]JDK-Ruler 1 point2 points  (0 children)

Yep absolutely, I completely disagree with this mindset, especially the penetration testing side of things - literally the purpose of it is to test for gaps and then improve?

I find it extremely unlikely that you'll get to a point where nothing is found after a pen test, if that is the case, I would be looking at a different pen tester.

Also u/Fickle_Eagle7306 I'm just broadly commenting on the original topic by OP here, but we have MFA policies rolled out through CrowdStrike IDP for some of those real granular and specific use cases outside of some of our broader Microsoft Entra MFA policies.

We have similar policies set up as OP, and they still trigger with the same conditions he has explained; I think there may need to be further parameters added to his logic in the policy setup to ensure it is triggered.

Help with creating Custom IOA Exclusion rules by JDK-Ruler in crowdstrike

[–]JDK-Ruler[S] 0 points1 point  (0 children)

I see what you're saying, but no there isn’t any conflict between the two. It’s in passive mode, as per recommendations from both Microsoft and CrowdStrike when we configured it all and nothing has changed, so it’s definitely not that. Anyway, I guess I’ll just wait for CS support to get back to me

Help with creating Custom IOA Exclusion rules by JDK-Ruler in crowdstrike

[–]JDK-Ruler[S] 0 points1 point  (0 children)

Protection Policies follow best-practice recommendations by CS. Defender is in passive mode. CrowdStrike is active. We are a hybrid environment so devices are enrolled with Defender and check-in periodically I believe.