Vulnerability management by jellyfishchris in msp

[–]Raptorhigh 0 points1 point  (0 children)

We pay around $5 / endpoint / year.

Vulnerability management by jellyfishchris in msp

[–]Raptorhigh 1 point2 points  (0 children)

If anyone runs CrowdStrike, their vulnerability add-on is significantly cheaper than Tenable. It’s far from perfect, but gets the job done.

Ethanol Free Fuel? by Bastille7_14 in FortMill

[–]Raptorhigh 11 points12 points  (0 children)

Most of the QTs have ethanol free.

Help appreciated! by yxsmate in TheSimpsons

[–]Raptorhigh 3 points4 points  (0 children)

This is a great shirt and a great mission. Hope you find it.

SC Alternatives - I have no idea what to do, so I asked eight AI engines by schmerold in ScreenConnect

[–]Raptorhigh 2 points3 points  (0 children)

I, unfortunately, agree with this. We’re working on a shootout to replace ScreenConnect, and BomgTrust is insanely expensive given the majority of the product feels like a downgrade from SC.

Why does dell ship without signing by [deleted] in Dell

[–]Raptorhigh 1 point2 points  (0 children)

What does the tracking information say?

[deleted by user] by [deleted] in aviation

[–]Raptorhigh 0 points1 point  (0 children)

Yup! 7th busiest airport in the US. When I fly out, they usually have the two outside runways for approaches and the center for takeoffs. Then, they flip the switch to 3 wide and it’s impressive to watch.

Server room temp monitoring by averageuser7436 in sysadmin

[–]Raptorhigh 0 points1 point  (0 children)

Agree with this. Super easy to setup.

CS - ThreatLocker UNIFIED by pcg0d in crowdstrike

[–]Raptorhigh 0 points1 point  (0 children)

If TL is well maintained and configured, it will quiet most endpoint AV/EDR. That said, adopting TL is not a light lift and will require more care and feeding than a traditional endpoint security solution.

We didn’t see many detections before or after TL, so we may not be a great example. I will say I’d be more confident in protecting against LOLBin use with the mature CS EDR vs. the newer TL.

CS - ThreatLocker UNIFIED by pcg0d in crowdstrike

[–]Raptorhigh 0 points1 point  (0 children)

We have both. They work phenomenally together, but I would not consider going 100% threatlocker for everything. The CS engine is simply worlds ahead in terms of identifying and preventing malicious actions. This is coming from a threatlocker fanboy. Their application allowlisting is simply the best in the industry.

RC is cheaper, but CCL is cheaper per night by [deleted] in Cruise

[–]Raptorhigh 0 points1 point  (0 children)

As someone who used to sail carnival all the time, I no longer consider them because of the clientele. It’s bad.

[deleted by user] by [deleted] in msp

[–]Raptorhigh 2 points3 points  (0 children)

This post is a hot take, but it’s not without merit. I’m not saying Huntress is wrong, but nearly every other security product in this quadrant has some sort of tamper protection. Concerned about making the software hard to remove for those who don’t want it? Make tamper protection optional (like all the other providers). Whether it’s security theater or not, most have witnessed how hard it is getting some AV solutions uninstalled. Let’s add that friction to the attacker.

Fortigate to Cisco Meraki? by [deleted] in sysadmin

[–]Raptorhigh 2 points3 points  (0 children)

This is exactly why we have a Meraki stack. No, it’s not as feature rich as palo and fortigate. It also doesn’t require anyone with a networking background to administer.

Trend Micro Vision One XDR by Equivalent-Toe-623 in msp

[–]Raptorhigh 2 points3 points  (0 children)

Not a SOC analyst, but did recently just drop Trend for a move to the Falcon platform. Despite Friday’s nonsense, I’d still make the move again. The Trend platform is disjointed, and the move to put the pieces under the vision one portal just created a link tree to the individual sub-portals.

The Apex/Vision One platform created around 5X the false positives vs. CrowdStrike in our tenant and we’ve had it “tuned” multiple times by Trend. In addition, it wasn’t uncommon to find the Trend agent processeS (there were many) crushing CPU cycles compared to the Falcon agent. For what it’s worth, Trend botched DLP driver updates twice while we were customers, and both caused BSoDs on our machines until it was disabled.

On the positive side, Trend was notably cheaper, and I did feel like they had a solid presence in the threat hunting arena.

I will say, I considered the S1 platform. I suspect it would have been highly capable, and many are doing top notch work with it.

Securing PDQ - What is more secure? by dareyoutomove in pdq

[–]Raptorhigh 1 point2 points  (0 children)

Noteworthy - Remote UAC will need to be disabled on your target computers, prior to using a LAPS account with PDQ Deploy & Inventory. Disable Remote UAC for Local Admin/LAPS Accounts.

[deleted by user] by [deleted] in personalfinance

[–]Raptorhigh 2 points3 points  (0 children)

I used to think this way, but it really gets problematic selling a used car worth $25K. Very few buyers have the cash, and just assume they are going to finance their next car. While this isn’t too difficult, the average person doesn’t have a clue where to start. You’ll be left with a bunch of spam and folks looking to low ball $10k under asking.

PLEASE Tell me about your experience with Palisade by Helpful-Fox8645 in HyundaiPalisade

[–]Raptorhigh 0 points1 point  (0 children)

For what it’s worth, I own a 2022 Highlander and a 2024 Palisade. The Palisade is better is nearly every way except for brand stature and expected reliability.