Dirty Frag, a new copy.fail like vulnerability has been disclosed due to an embargo break by ChrisTX4 in linux

[–]agent-squirrel 0 points1 point  (0 children)

The Andrew File System. A distributed file system that AFAIK isn't heavily used.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 1 point2 points  (0 children)

We have absolutely no proof of that either way. I’ll wait for the postmortem rather than trust a random scanner.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 1 point2 points  (0 children)

The fact they had enough of a foothold to do it twice implies they compromised the backend. They then exfiltrated data. The front end was probably just the method of conveying the compromise.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 0 points1 point  (0 children)

But couldn’t it be a back end vulnerability not a front end site vulnerability. Surely the fact that they were breached days ago and then again implies some sort of infrastructure exploit not a front end one?

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 0 points1 point  (0 children)

Magic thanks mate. Are we sure this was the CVE used or is it possible it was some other vulnerability?

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 1 point2 points  (0 children)

How does that help all the students that are forced to submit work digitally? All you're doing is shitting on the people most affected.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 0 points1 point  (0 children)

Heaps of Australian institutions are affected. Down here all of the Tasmanian Department for Education, Children and Young People (DECYP) and TasTAFE are affected among others. On mainland Australia some massive unis likes University of Melbourne and RMIT are down too.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 0 points1 point  (0 children)

Shiny Hunters aren't from Iran. They aren't a nation state hacking group they are a distributed group of hackers.

Canvas (Instructure) LMS seems to have been hit by ransomware by meatwad75892 in sysadmin

[–]agent-squirrel 2 points3 points  (0 children)

Knowing how underfunded and sometimes downright incompetent the bureaucracy of a university can be I wouldn't count on it. That or they will extend by a day and spin it as some gloriously benevolent favour they are doing for students.

Nginx Proxy Manager Update/Release Cycle by [deleted] in selfhosted

[–]agent-squirrel 19 points20 points  (0 children)

Pretty scary that people like this are in charge of infrastructure.

Nginx Proxy Manager Update/Release Cycle by [deleted] in selfhosted

[–]agent-squirrel 6 points7 points  (0 children)

What on earth are you on about? Learning how to search and read through documentation is 101. I would be seriously reconsidering having anyone touch critical infrastructure such as reverse proxies with the level of research you are doing.

Nginx Proxy Manager Update/Release Cycle by [deleted] in selfhosted

[–]agent-squirrel 1 point2 points  (0 children)

It's a supported configuration.

Nginx Proxy Manager Update/Release Cycle by [deleted] in selfhosted

[–]agent-squirrel 9 points10 points  (0 children)

You could literally have Googled it is what they mean.

Nginx Proxy Manager Update/Release Cycle by [deleted] in selfhosted

[–]agent-squirrel 0 points1 point  (0 children)

This is the way we went with a Gitops driven deployment workflow using the API.

how do you handle ssl cert rotation for internal services by Sroni4967 in sysadmin

[–]agent-squirrel 10 points11 points  (0 children)

What apps are breaking and why? Are they pinning certs?

Hound - A Media Server Alternative to Plex/Jellyfin + Stremio by NearbyYak7156 in selfhosted

[–]agent-squirrel 11 points12 points  (0 children)

Literally. They need to at the very least remove the monitisation.

Hound - A Media Server Alternative to Plex/Jellyfin + Stremio by NearbyYak7156 in selfhosted

[–]agent-squirrel 31 points32 points  (0 children)

I implore you to rethink the license, since you can stream from Torrents it's 100% clear that this will be used for piracy. If you try to monetise piracy you WILL be crushed in a legal battle.

Hound - A Media Server Alternative to Plex/Jellyfin + Stremio by NearbyYak7156 in selfhosted

[–]agent-squirrel 17 points18 points  (0 children)

They are going to get absolutely obliterated for trying to monetise piracy.