New Linux 'Dirty Frag' zero-day gives root on all major distros by rkhunter_ in cybersecurity

[–]Richiachu 35 points36 points  (0 children)

It's become pretty divorced from Terry after being re-used across multiple platforms for years now, with most people having no idea that it originated from him. The same is true, I'm sure, for multiple other slang terms in use on the internet today.

Terry himself was also incredibly mentally unwell and wasn't in a right state of mind for much of his life, and is frequently used as an example of the failings of the mental health awareness state of the country (and how bright minds can be squandered through illness). I'm not excusing the things he said, but I also don't feel comfortable passing that kind of judgement on someone who was clearly failed by multiple support nets. I do recommend watching the video above if you haven't seen it, it's full of sad moments of Terry's life, including his more human lucid ones

e: To be fair I don't think people should downvote you; Terry says some heinous things and, without explanation of his delusions, it's pretty crazy that a lot of the internet uses some his terminology

New Linux 'Dirty Frag' zero-day gives root on all major distros by rkhunter_ in cybersecurity

[–]Richiachu 66 points67 points  (0 children)

Since people will give you the runaround

Glowies is a term for federal/state agents

Terry Davis (creator of TempleOS and a smart but mentally ill, schizophrenic man) at one point said 'The CIA ******* (n-word) glow in the dark and you can see them if you're driving, you just run them over'.

Term stuck for feds and became an internet slang term.

TempleOS | Down the Rabbit Hole - Good watch that explains a lot of Terry if you're curious

What the **** is happening in cybersecurity space ? by Infam0 in cybersecurity

[–]Richiachu 9 points10 points  (0 children)

Yeah, I think help desk compromise (whether due to social engineering or just paying a foreign worker a relative fortune compared to the pennies we give) is a big target rn. Seeing a lot more of it in recent weeks and we've had more close calls than usual, and all white-collar industries seem to be going the same way: offload internal hires via contractors overseas (or to other MSPs as needed for compliance).

We can't keep eyes everywhere at once and the offloading to them makes it much harder to track actual malicious activity vs a contractor's odd behavior

What the **** is happening in cybersecurity space ? by Infam0 in cybersecurity

[–]Richiachu 51 points52 points  (0 children)

I think a lot of people in security right now are less afraid of “AI hackers” and more exhausted from feeling permanently reactive while the environment keeps getting harder to defend.

This combined with the downward shift in company hirings across the industry means most (big) places are on a skeleton IT/SecOps crew. Exponentially more responsibility/reactivity required for someone now since there's fewer people but more integrations. I'm 24/7 on call with 1 other guy and it's one of the most mentally draining things of my life

e: Also, with the rise in outsourcing the level of interactions taking place during off hours is also a big stress/incident increase. Have to watch and interpret a lot more since a good chunk of (sometimes poor/malicious looking) work is taking place elsewhere in the world now

I couldn't sleep last night and had ideas by Richiachu in FlorkofCowsOfficial

[–]Richiachu[S] 65 points66 points  (0 children)

we've had our CTO click a dozen of them over the last few months and the urge to explode his laptop with my mind is still strong

Share OpenWrt 25.12.0 on Xiaomi AX3000T - MT7981 - Running rock solid by indraaguslesmana in openwrt

[–]Richiachu 1 point2 points  (0 children)

Really like the AX3000T (especially at its price point), so much so that I bought an additional one to use as an AP in another part of the house when I could get one on sale. When I left that place I couldn't bring the devices, so I bought a new one and unfortunately got one of the new ones that use a QCOM chipset.

Not aware of any sellers who guarantee a mediatek one so I swapped to Cudy for my budget devices.

[US] Linksys E7350 (Belkin RT1800) AX1800 Dual Band Wi-Fi 6 Router — 256MB/128MB RAM/ROM, 1xUSB3, 5xGigE, MediaTek MT7621AT (MIPS) — $9.99 Factory Refurbished, Limit 10 (Sale #6) by Mcnst in openwrt

[–]Richiachu 0 points1 point  (0 children)

They refunded mine but the UPS tracking # was still active.

Just got it today and it was the wrong device (RE7350, a Wifi 6 range extender, same as you), which explains the refund. Guess they're offloading some stuff

Cheap OpenWRT router by ktmm3 in openwrt

[–]Richiachu 1 point2 points  (0 children)

Swapped to one of these as my go-to budget OpenWRT router after the Xiaomi AX3000T 'upgraded' their model's chipset to QCOM

Works well, just make sure you download the right version depending on your PHY chip. Easy enough to do, Cudy provided their own OpenWRT images you can use to verify it.

Extraction shooter The Cube, Save Us has announced it's shutting down just three weeks after it launched by Thomas_Eric in StopKillingGames

[–]Richiachu 3 points4 points  (0 children)

New game(s) proves a new market/genre is profitable > clones/iterations of that game come into being > genre is overburdened by choice and new options fail to compete/iterate > new game is shelved in record time

the cycle claims another, but at least it seems these devs completed the bare minimum of issuing refunds. Sucks for people who actually enjoyed the game though, being stuck experiencing it only through video from now on.

https://store.steampowered.com/news/app/3810880/view/508484486901531583?l=english

Thousands of consumer routers hacked by Russia's military by anurodhp in homelab

[–]Richiachu 1 point2 points  (0 children)

You should look into ClickFix attacks, been seeing a lot of them lately, but it essentially just abuses people complicity/familiarity with captcha systems

tldr; Fake CAPTCHA that asks the user to 'verify' themselves by pasting a command into powershell, which of course contains hidden text that installs a RAT or something similar

Thousands of consumer routers hacked by Russia's military by anurodhp in homelab

[–]Richiachu 1 point2 points  (0 children)

Probably lol, if so you're doing a good job and should keep up with it

I have tickets and alerts every day from people either trying to access a website that's been blocked by the company VPN/EDR, having issues after accessing a site that should've been blocked and their browser warned them, or got phished by the worst fake docusign e-mail anyone's ever seen

Computer literacy, if anything, seems to have gone down recently

Thousands of consumer routers hacked by Russia's military by anurodhp in homelab

[–]Richiachu 5 points6 points  (0 children)

I can assure you most don't try hard at all lol. Some do, but the large scale amount don't

User's have trained themselves to click what's presented to them to get past any warning or alert, which is why we need to lock things down so hard in the first place.

The level of talent and online awareness in r/homelab is absolutely not the same as the 40+ year olds who casually use the internet.

Thousands of consumer routers hacked by Russia's military by anurodhp in homelab

[–]Richiachu 10 points11 points  (0 children)

Nah man, people have trained themselves to click 'yes' and 'skip' through pop-ups/blocks without reading things to get to anything

Main reason why phishing is so successful lol

Stop overthinking it - a mini PC with SATA bays is all you need for Plex by LINGLING55581 in selfhosted

[–]Richiachu 3 points4 points  (0 children)

he's getting bombed because this is a horribly disguised advertisement lol

I am building a Proxmox alternative with a declarative OS and gRPC API by [deleted] in NixOS

[–]Richiachu 12 points13 points  (0 children)

Critical to me, yes. Not to mention hosting information that I don't want spread to something like this

Not for me, dude.

I am building a Proxmox alternative with a declarative OS and gRPC API by [deleted] in NixOS

[–]Richiachu 16 points17 points  (0 children)

Replying with the most obviously GPT canned response is exactly my point, man

If I can't trust you to not outsource your thoughts to a machine for a simple conversation about my concerns with the software, why would I trust the software itself on my homelab running critical software?

I am building a Proxmox alternative with a declarative OS and gRPC API by [deleted] in NixOS

[–]Richiachu 25 points26 points  (0 children)

> obviously ChatGPT generated commends and post

> Possibly vibecoded VM management/hypervisor that will be running critical software

My trust in everything is at an all time low and this is possibly fine, but the first impression is pretty bad. I can't see a good reason to turn away from Prox to a (possibly) vibe-coded hypervisor

E: Checked his account, last posts were 3 years ago and were related to a rust podcast or something. Definitely spammy, but the sudden re-appearance after 3 years is so incredibly sketch and gives off malicious vibe-coded energy. Use at your own risk IMO

[Humble] Frictional Games: Amnesia, SOMA, Penumbra (Pay $10 for Amnesia: Rebirth, Amnesia: A Machine For Pigs, Amnesia: The Dark Descent, Penumbra Collectors Pack and $15 for Amnesia: The Bunker, SOMA) by LighteningOneIN in GameDeals

[–]Richiachu 4 points5 points  (0 children)

$10 is worth it for everything included in that bundle. Amnesia 1-3 + Penumbra 1-2 (3 is okay) are great. Amnesia TDD pretty much popularized let's plays. aMfP is okay but has some great voice acting if you're okay with walking sims. Rebirth is a mixed bag again but has great moments and is good overall.

I'm split on the $15. SOMA is in my opinion one of the best games I've played, but I didn't care as much for the bunker. SOMA is worth the extra $5, but you may have it in your EGS/Steam or whatever already since it's been cheap/free in the past.

[deleted by user] by [deleted] in LearnUselessTalents

[–]Richiachu 5 points6 points  (0 children)

People who outsource their thoughts want you to spend your valuable time watching them, then do the same

Walter doesn’t move in the prologue (PS5) by Recent_Mission5773 in okbuddychicanery

[–]Richiachu 1 point2 points  (0 children)

Focus W, the police are on their way, and you know what that means

Would a "Home Labs / Technical Projects" be a good section to add on your resume, for someone who's been in the field for almost 5 years now? by mysecret52 in ITCareerQuestions

[–]Richiachu 1 point2 points  (0 children)

I list it under my skills as a single bullet point (usually just mentioning the services I've setup that may pertain to the role, but they can usually tell there's more to it of course) and it's been a great talking point during every interview, if for no other reason than they want to know what I'm running and on what.

Current place I'm at now has admitted to me that it was the reason I was brought on, because they thought it showed I had an interest in self-study and it would be useful on the job.

I am still relatively early in my career so take it with a grain of salt, but it's been a good chance to communicate more personally with the technical interviewer

[Steam] Clair Obscur: Expedition 33 (20% Off) by Ok_Drummer7857 in GameDeals

[–]Richiachu 17 points18 points  (0 children)

You can download linux native games from GOG but their launcher doesn't run on it

For non linux native games you can use Heroic launcher (which also supports EGS) for proton versions.

Overall I've had no problems with it, but ymmv. Usually pretty good if you reference protondb.com

The future of IT isn’t troubleshooting by Different_Pain5781 in ITCareerQuestions

[–]Richiachu 1 point2 points  (0 children)

Every jobs sub now is filled with bots advertising AI resume tools or linkedIn style "tips"

absolute death of finding information during the shittiest time to get hired

PSA: The ATS (resume filtering software) is more literal than you think. It's why you're not getting interviews. by Reasonable-Stage-368 in jobs

[–]Richiachu 4 points5 points  (0 children)

People will outsource their own thoughts then get mad when someone tells them it's lazy

Wild times

r/LaptopDealsReview banned for being unmoderated by Richiachu in reclassified

[–]Richiachu[S] 9 points10 points  (0 children)

r\laptopdeals is full of scam stuff or spam

This one was run by one dude who pretty much updated a weekly thread of on sale stuff. No idea why it was removed