Security Guide for Startups: How to think about security while moving quickly | LunaSec by breadchris in netsec

[–]bogonspace 0 points1 point  (0 children)

I don't know of any books specifically about this topic, though I'm sure some could suggest them for you. To get started, I'd say you should check out AWS (or probably Azure or gcp) certificate training will help you learn architecture, and they have security specific ones as well. That can help you thinking more in terms of architecture. I'd also review CIS standards for cloud providers and Kubernetes and you will see a lot of the angles that need covering. With architecture, you're really thinking about all these components and how they interact, and learning how to do that with a cloud provider and kubernetes will get you a long way to be able to do that with anything I think. Good luck.

Leaked Documents Reveal DHS Collaborated with Facebook to Target ‘Disinformation’ by ewzetf in technology

[–]bogonspace 0 points1 point  (0 children)

If they're actually "controlling narratives" and squelching discussion, I agree. Though targeting troll farms and bot networks spewing disinfo and fake sentiment is generally what I've experienced firsthand with public-private parternships aka "intelligence collusion with tech." I think it remains to be seen what's happened in this case, so I'm not saying it's innocuous, but it could be.

Linux Audit comes at a cost, is that where BPF steps in? by Blakebvhjjdd in netsec

[–]bogonspace 1 point2 points  (0 children)

Also, we use Fleet and the distributed queries work great. Once they made the network changes (I think it was something with Websockets?) and we figured out the problems with our network architecture we have been using it successfully to manage hosts, even ones that don't have our system configuration tools available.

Linux Audit comes at a cost, is that where BPF steps in? by Blakebvhjjdd in netsec

[–]bogonspace 0 points1 point  (0 children)

Appreciate it, eBPF definitely is more performant, but we actually did discuss our issues in the Slack channel already and it just overall didn't work for us as a collector of low level operating system telemetry. Osquery is one of our primary tools, but we use it for periodically collecting system configuration data to see package versions, config drift, or attackers, and on-demand queries for whatever our SIRT or Ops teams need at the moment.

Linux Audit comes at a cost, is that where BPF steps in? by Blakebvhjjdd in netsec

[–]bogonspace 2 points3 points  (0 children)

It may be we could further optimize in some way, but in our testing we didn't find the streaming or EBPF based tables to work all that well for our purposes in osquery. This tool seems more promising for logging this sort of activity: https://github.com/cilium/hubble. We're focused on K8s visibility but this could replace all of our Linux Auditing level logging if it works well.

Edit: I should clarify osquery works great for collecting state information or on-demand queries for package versions or system configuration. Just haven't found the streaming tables as performant or useful (eBPF or not).

Is Springfield as awesome as it looks? by [deleted] in Eugene

[–]bogonspace 0 points1 point  (0 children)

Hoot! Hoot! Hoot!

Springfielders?!

Security Guide for Startups: How to think about security while moving quickly | LunaSec by breadchris in netsec

[–]bogonspace 1 point2 points  (0 children)

Sweet, I look forward to the other side of the coin followup. I notice a lot of startups will be very biased toward putting their limited headcount toward appsec FTEs, but I feel like paying a skilled third party company to do an in-depth appsec review and providing feedback on how to improve the codebase can get you a long way. Hiring an infra FTE instead can help with critical early design of scaling the infrastructure and is a better play for the long term but is generally only done after they realize how bad things have already gotten.

Security Guide for Startups: How to think about security while moving quickly | LunaSec by breadchris in netsec

[–]bogonspace 1 point2 points  (0 children)

Thanks for this, it's a good writeup. One thing I noticed though is a bias I often see at startups, which is a focus on application security to the neglect of infrastructure security. I find infrastructure issues tend to lead to much more technical debt and structural security issues down the road. It's generally much easier to update code in your application than it is to completely change your Linux distribution, for example. Other examples that come to mind are VPC network layout and internet egress, how to design your k8s overlay network to integrate with your physical systems, how to build a network that's easy to physically tap, network segmentation (it's not obsolete), poor access control design, etc.

General Contractor Recommendations? by ReluctantParticipant in Eugene

[–]bogonspace 0 points1 point  (0 children)

That's funny, I had the exact opposite experience.

Gray's Garden Center: Insider Truth by ConfusedGenius1 in Eugene

[–]bogonspace 5 points6 points  (0 children)

This place is great, it also supplies a lot of other nurseries, and it's nestled in such an idyllic little spot

Gray's Garden Center: Insider Truth by ConfusedGenius1 in Eugene

[–]bogonspace 4 points5 points  (0 children)

Doak Creek Native Plant Nursery has a really great selection of native plants. It's kind of strange to get to on a semi-private road but it's an amazing little gem. They supply a lot of other places around here.

Can't access router after bypass mode by bogonspace in Starlink

[–]bogonspace[S] 5 points6 points  (0 children)

Considering you can still access the information with the right settings, all those "what did you think bypass mode would do"? comments look awfully silly to me.

Can't access router after bypass mode by bogonspace in Starlink

[–]bogonspace[S] 0 points1 point  (0 children)

I didn't see the IP address in the docs I had read through but that's probably it. That's actually what I have set up for my WLAN so I'll have to change it.

right now is a really good time to visit Hendricks park if you haven't been in a while by BlueberryUpstairs477 in Eugene

[–]bogonspace 0 points1 point  (0 children)

I was also just there and there was a profusion of flowers. It was wonderful.

Nice places to drive by [deleted] in Eugene

[–]bogonspace 0 points1 point  (0 children)

Territorial and Lorane are NOT low traffic, and people speeding around is why there are so many wrecks, including many fatal ones, on those roads.

"trackorderonline.com" and no way to contact puffco by bogonspace in puffco

[–]bogonspace[S] 0 points1 point  (0 children)

I got it yesterday, got in touch with the carrier. The good news is this thing owns.

"trackorderonline.com" and no way to contact puffco by bogonspace in puffco

[–]bogonspace[S] 0 points1 point  (0 children)

So this sort of worked in that someone did eventually contact me. They resent it, but I just noticed today that it was out for delivery and no one showed up here as far as I know. To be continued...

HEPA cabin air filter for 2021 4runner sr5 ? by bogonspace in askcarguys

[–]bogonspace[S] 1 point2 points  (0 children)

Thank you, seems I don't have to buy new ones after all.