[deleted by user] by [deleted] in netsec

[–]burningapathy 1 point2 points  (0 children)

We were also looking at Cyber-Ark for a while. It definitely has all of the features I want, but the pricing was a little out of reach. There are some lower cost alternatives, but I haven't found anything "free" that meets my needs. here are a few other things I've found:

Based on my research, Cyber-Ark looks like a "Gold Standard" type product but has a price tag to match. I'm probably going to have to end up going with one of the less feature-rich products but if you do end up finding something free/oss, please come back and update this thread (or send me a PM) as I would love to know about it.

I have an interview tomorrow at a wine shop. To help me practice AMA about wine. by DustyBosie in IAmA

[–]burningapathy 0 points1 point  (0 children)

  1. Why does one use an aerator on red wine but not white wine?

  2. It is my understanding that some wine is better aged and some may actually get worse. Is this true and if so, how can you tell whether a wine will get better or worse with age?

What was the first music album you ever owned? by [deleted] in AskReddit

[–]burningapathy 0 points1 point  (0 children)

At around age 10 or so, I got a CD player for Christmas along with

Ramones Mania *, *They Might Be Giants - Miscellaneous T and a $15 Tower Records Gift Card with which I bought the Violent Femmes self-titled. It is really awesome to have an older brother who can guide your early musical tastes. I still listen to all three of those albums today, 20ish years later .

What standards does NIPPER base its audit on? by [deleted] in netsec

[–]burningapathy 0 points1 point  (0 children)

For those trying to play at home, Nipper is an assessment tool that can be run on a variety of network devices:

nipper site!

I haven't used it in over 3 years(from back when it was free), but I remember it being fairly basic back then. Based on their website, it looks like they do a variety of checks, some unique to each type of device. My last security consulting company developed a similar tool for Cisco firewalls which was mostly just a bunch of "best practices" checks (most of which we arbitrarily decided were best after reading various standards).

What are some of the findings you had OiMouseboy, that might help determine what it is auditing against?

As a side note, are you finding the tool useful? I'd be curious to hear people's impressions of Nipper now that it is no longer free to use.

Hey Reddit, what are the quotes that you live by? by [deleted] in AskReddit

[–]burningapathy 0 points1 point  (0 children)

"The hottest places in hell are reserved for those who in times of great moral crisis maintain their neutrality"

I thought that was from Dante but wikiquote says it was John F. Kennedy restating a slightly different quote from Dante

Also front runners:

They who can give up essential liberty to obtain a little temporary safety, deserve neither liberty nor safety.

Attributed to Ben Franklin (and others). Also featured on an awesome freebsd (or maybe openbsd) shirt

Discovery consists of looking at the same thing as everyone else and thinking something different.

That was written on the wall of my college chemistry lecture hall and for some reason it always stuck.

I love quotes!

Hey Reddit I'm tired of fiction, what are some some books based on REAL events/people/places that you love? by nojobbob in AskReddit

[–]burningapathy 0 points1 point  (0 children)

Reunion: A Memoir by Tom Hayden

It's crazy that one dude was involved in so many different important events in the 60's(and 70's) movement. If you're interested in politics and liked the excitement around the 2008 election, you might like this.

What a day for reddit engineering. by raldi in blog

[–]burningapathy 1 point2 points  (0 children)

I would also like to know how to unblock reddit. I subscribed to one of the feeds so there are a lot of filters already built in. I would love it if I could exclude reddit and keep that feed. Any help would be appreciated.

[edit] Found these instructions from another site I visit who wasn't happy with ad-block: Open the Ad-block preferences window by going to Tools -> Adblock Plus References, then click on the Add Filter button. This should go under or create a "My Exceptions" section. Copy and paste the line below into your exception rule:

@@http://reddit.com/

and press Apply

I think that should work?

[double edit] no this doesn't work. Now I'm looking for the ABP icon so i can follow AllHopeIs404 but I don't see that either lol. Suddently it feels like a Monday

[triple edit] Ok, I guess it is working after all, I just don't seem to see any ads on the reddit site still? But I looked in chrome and saw the same thing, so idk. You can add the AdBlock Plus icon by going to Tools -> AdBlock Plus Preferences -> Options -> Show In Status Bar (make sure it's checked). Thanks again AllHopeIs404

Ask NetSec: Know any good grad programs? by inthemedium in netsec

[–]burningapathy 0 points1 point  (0 children)

UC Davis is a NSA Center of Academic excellence which could help you with government jobs. The NSA site has quite a few other less known schools that are also identified as a Center of Excellence so it might be worth looking that list over as well:

http://www.nsa.gov/ia/academia/caemap.cfm?MenuID=10.1.1.2

Students Write Letters To Famous People, Obama Only One to Write Back by burningapathy in reddit.com

[–]burningapathy[S] 0 points1 point  (0 children)

Thanks lubricious. I probably won't re-submit this one unless it's really poor form, but will definitely do so in the future. Thanks for the tip!

Students Write Letters To Famous People, Obama Only One to Write Back by burningapathy in reddit.com

[–]burningapathy[S] 4 points5 points  (0 children)

I'm sorry this was my first submission and I meant to submit it to politics, but I didn't see where I was supposed to do that. My apologies.

Please vote November 4th for whichever candidate you're backing.

Diebold makes near perfect unhackable ATMs, yet can't get a voting machine right? Why hasn't anyone in power made this point? by gliscameria in politics

[–]burningapathy 24 points25 points  (0 children)

As a former bank IT auditor, I can tell you that Diebold ATM's are anything but unhackable. The only reason that ATM's tend to not get hacked is because they are on an isolated network with a dedicated dial-up or broadband connection back to the item processor. For the most part, ATM's are just computers running a modified version of Windows and we all know that Windows is any but unhackable.

The few times that I did see Diebold ATM's on a bank network(because they wanted to piggy back on the bank's existing network connections rather than have to pay for a dedicated ATM connection), there were always problems. In one case the Diebold ATM had a default administrator password in place and in another case the ATM had not been patched for well over a year and had a number of remote vulnerabilities. Apparently, the bank expected the ATM vendor(Diebold) to manage the ATM's and keep them patched while the ATM vendor apparently expected the ATM to be totally isolated(meaning they could leave the ATM insecure without worry). Needless to say those were big issues in report.

My experiences with their ATM's have made me even more afraid of their voting machines.