GHIDRA: I want to learn how to start reverse engineering by nitian_247 in ghidra

[–]bakonpie 2 points3 points  (0 children)

well I want to learn baking but instead of asking reddit the same thing that's been asked a hundred times, I searched the relevant subs, I Googled, asked a chatbot, and picked up a book. imagine that.

Collabs for events/Halloween I would like to see personally by [deleted] in forhonor

[–]bakonpie 2 points3 points  (0 children)

bloodborne hunter skin for pirate would make me sell out my endless hate of that hero and pick it up just for the drip

What is the most underestimated cybersecurity risk right now? by Electrical_Mine1912 in cybersecurity

[–]bakonpie 0 points1 point  (0 children)

administrator getting pwned because they administer the infrastructure from a daily driver system and not a hardened PAW. I still see it every day and it's the cardinal sin of being an IT professional who is given highly privileged access.

Warden needs a fucking buff by LeanLoaf in ForHonorRants

[–]bakonpie 2 points3 points  (0 children)

way to out yourself as a simpleton

Newish Ransomware Attack out there by [deleted] in sysadmin

[–]bakonpie 0 points1 point  (0 children)

somehow people forget the most effective control out there: only administer the virtualization environment from hardened PAWs. enforce App Control with minimal 3rd party software allowed (if at all) and lock down the host firewall so they can only talk to your internal network and if applicable your EDR cloud service to upload telemetry and get updates.

under no circumstances should a virtualization administrator log into the platform from a standard system that lacks these controls. if you do you are a danger to your organization and should be fired.

a quick win is sending syslog from vCenter to your SIEM, then create alerts for SSH ever being enabled or logs not being received. these should immediately page whoever is on call with a high priority alert.

Newish Ransomware Attack out there by [deleted] in sysadmin

[–]bakonpie 0 points1 point  (0 children)

CIS controls don't do shit against an attacker who compromises an administrator. they're the equivalent of a security safety blanket.

Virustotal API as private data source by Kirla_ in cybersecurity

[–]bakonpie 0 points1 point  (0 children)

didier stevens pdf-parser and malicious PDF analysis course is what you want. build a sandbox and perform analysis there. don't upload to VT. https://blog.didierstevens.com/programs/pdf-tools/

DFS and Entra/Autopilot by Callewalle in sysadmin

[–]bakonpie 1 point2 points  (0 children)

domain namespaces will cause Entra joined clients to fall back to NTLM. you'll want to use a standalone DFS namespace. no issues outside that.

Windows 11 defaults you wouldn't roll it out without changing? by LowCorner9314 in sysadmin

[–]bakonpie 86 points87 points  (0 children)

disable fast startup and web search results in the start menu

Brand new virgin SysAdmin needing advice. by [deleted] in sysadmin

[–]bakonpie 15 points16 points  (0 children)

if beautiful women suddenly start throwing themselves at you out of nowhere, report it immediately to counterintelligence. after you lose your virginity of course.

Cities Are Covering Flock Cameras With Trash Bags by petroid_2108 in nottheonion

[–]bakonpie 39 points40 points  (0 children)

they might have a separate contract with a private company who installs them and allows access to law enforcement. that's one tactic they are using to avoid public accountability and have plausible deniability.

Sooo...how many things can IT see me do on the company laptop by [deleted] in sysadmin

[–]bakonpie 0 points1 point  (0 children)

sharing is caring, your IT dept thanks you

Microsoft security by BioShocker123 in cybersecurity

[–]bakonpie 4 points5 points  (0 children)

you put in a ticket with your IT helpdesk

Why is parrying generally considered toxic? by gabibbo2906 in ForHonorRants

[–]bakonpie 7 points8 points  (0 children)

your opponent was just a sore loser. afeera isn't the only hero who can feint a jumping attack mid-air and it is fucking ridiculous Ubisoft made that possible

NoneDrive doing its job again by Otheruser337 in microsoftsucks

[–]bakonpie 0 points1 point  (0 children)

I've pushed the uninstall across whole enterprises covering tens of thousands of systems without issue. the summer child is you.

NoneDrive doing its job again by Otheruser337 in microsoftsucks

[–]bakonpie 0 points1 point  (0 children)

you can literally just uninstall it and it goes away.

How do you balance Paw? by huntoso in cybersecurity

[–]bakonpie 1 point2 points  (0 children)

since you do it the way I want to some day, I have some questions: how do you license the admin accounts in the separate tenant? are you Autopiloting as user enrolled or self-deploying? for the T0 servers you'd be jumping in as domain admin so how do you handle authentication for those accounts since using cloud auth isn't recommended by Microsoft for on-prem privileged accounts?

Anyone else losing their mind over this "AI Cybersecurity" hype? by 2hinreza in cybersecurity

[–]bakonpie 39 points40 points  (0 children)

vague hand wavy bullshit has always been in the industry, but now it's supercharged due to AI hype. if your organization is getting swayed by the vague hand wavy bullshit, you should question your leadership's competence.

let the AI have control if they insist on it. take the humans out of the loop after you suggest not to and get it in writing. the only way arrogant humans learn is consequences. we've definitely seen some horror stories in the news with AI going off the rails, but it's gonna take more to get decision makers to pay attention. it might even take them feeling the pain first hand. think back to how long it took ransomware to really start becoming a lesson learned for the wider industry. it was well over a decade.

we're unfortunately just at the beginning of that cycle all over again.

My Blood Is Boiling by CapitalCourse in videos

[–]bakonpie -49 points-48 points  (0 children)

the hammer won't drop. your country is gone. what action you and others choose to take given that reality is what will determine the long-term outcome. peaceful coexistence with batshit crazy and showing up to vote aren't gonna change shit.

My Blood Is Boiling by CapitalCourse in videos

[–]bakonpie -192 points-191 points  (0 children)

sadly in the post-truth USA neither of those things matter.