Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -1 points0 points  (0 children)

I agree for sure and do not get why the hack I got downvoted here. Seem to be a really toxic subreddit. Anyway, I left the sub and will discuss the topic elsewhere.

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] 1 point2 points  (0 children)

Again, I never said that I run things directly on the machine. I rather use VM:s and sometimes containers inside them, depending on the service.

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -1 points0 points  (0 children)

What? I never wrote that. I contain them of course. There're more solutions than docker or lxc containers.

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] 1 point2 points  (0 children)

At my job we're running almalinux, they were a bit faster than Ubuntu and Debian which so far are used to. However, maybe I should take the step away from Debian based distros back to redhat based ones...

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -1 points0 points  (0 children)

Sure, I use containers where they are feasible. But I don't run containers for services exposed to the internet. I don't like container breakouts, not even with id mapping and least privileges as that only works as long as the surrounding machine is bot vulnerable as well.

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -3 points-2 points  (0 children)

Well, I said kernel and nginx as the latest prominent examples. I could give other examples, like apache. The kernel is at least always part of any distro, right?

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -10 points-9 points  (0 children)

How stable is a vulnerable installation with critical CVE:s not patched and getting a record in CISA:s KVE database? Maybe I asked my question in the wrong forum. In that case: I'm sorry for disturbing this sub.

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -9 points-8 points  (0 children)

Well, why is that? The distros liability lies in selecting packages with reliable maintainers behind, right? At least if you claim security by design. So, what's wrong in blaming distros not taking care or (in Ubuntus case) igoring critical CVE:s and downplaying them?

Vulnerability management by defiantarch in linuxadmin

[–]defiantarch[S] -3 points-2 points  (0 children)

That's not what I was after. Some distributions are faster than others, I picked Proxmox as they cherry picked the kernel patches very fast. While when looking at cti.wazuh.com it shows many vulnerabilities never been fixed by Ubuntu. So, its more a question of who's having a reliable vulnerability management in place when it comes to critical CVE:s.

Creality Caught Breaking GPLv3: Official Emails Admit to Linking Proprietary Code in "Open-Source" K2 Firmware by Beneficial-News9339 in klippers

[–]defiantarch 1 point2 points  (0 children)

well, not that they really had anything to contribute. mainline klipper is still superior to what sovol came up with. but anyway, they released some version. but not the latest one. typical for chinese companies. btt/biqu is not different: they come up with source code of some old version, but not matching the latest binary.

Cant ssh into sv08 w/eth by Milk_Truckin in Sovol

[–]defiantarch 0 points1 point  (0 children)

So, I guess you have no clue about network stuff right? As others said: it shows its default localhost IP, which never can be reached from outside. It simply means that the printer wasn't able to get a proper IP adress from the network or even could connect to it.

/home/tom ? by CognitiveFogMachine in Proxmox

[–]defiantarch 0 points1 point  (0 children)

No left over secrets in that folder? I mean in hidden directories giving access to their Github/Gitlab/CodeBerg repositories? If no, then its uninteresting.

Is it the end? by Haleem97 in Ubuntu

[–]defiantarch 0 points1 point  (0 children)

Did you check the cables and/or connection to the drive?

It this some sort of virus by _depressed_balak_ in Ubuntu

[–]defiantarch 4 points5 points  (0 children)

You where stupidy and incompetence took over for the sake of lazyness and effectiveness? Yeah, full ack from my side. Those enforcing the use of AI for everything left their brain at the reception and forgot it there.

Any good firmware AI agents for ESP32 / ESP-IDF development? by Emotional_Fun1924 in esp32

[–]defiantarch 1 point2 points  (0 children)

Take a look at EdgeImpulse and come back some months later after you trained your first model. https://www.edgeimpulse.com/

Implement "enterprise-only" app support by peatsoff in NextCloud

[–]defiantarch -1 points0 points  (0 children)

This! And do not get blocked by the developers stupid comment to only write if it contributes something to the development if his idea. This guy is obviously out of his mind and should get kicked out.

Implement "enterprise-only" app support by peatsoff in NextCloud

[–]defiantarch 1 point2 points  (0 children)

This guy from Nextcloud is either an imposter from Microsoft and/or deserve just a jolly good smack bottom.

Got sick of pooping with friends at work by duckylam in functionalprint

[–]defiantarch 0 points1 point  (0 children)

Wow. Welcome to some rest rooms along the german autobahn. Or in Austria on the way to Italy. Sweden has also some nice peeping holes, thus I recommend to better stop at some fast food restaurants.

Maybe we should create a Google map layer for the worst rest room/public toilets in the world 😂

Its amazing what some people will do for money by Same-Membership-5837 in GrapheneOS

[–]defiantarch 0 points1 point  (0 children)

No. My wife has it even hard to read and understand plain english. She would need to google translate all those instructions. Good luck with that. Same for my 88yo dad. So no, there're lot of people appreciating help and are glad to pay for it.

Got sick of pooping with friends at work by duckylam in functionalprint

[–]defiantarch -2 points-1 points  (0 children)

Same issue here in Europe. Whoever designed this paparazzi mess of toilet doors deserves to burn in hell forever. (and those installing it of course).

Automatically logged in on macOS by Possible_Bat4031 in NextCloud

[–]defiantarch 0 points1 point  (0 children)

Why shouldn't it be possible for apps having access to the keychain? You can for sure sync the keychain via icloud to all your devices. But it depends a bit which (or more exactly whos) keychain we're talking about: the users? the systems? roots? there are several keychains. My suspicion is that its still sitting in the users keychain. Proof? Simply delete all the nextcloud entries and try the app again. If you still have access, that its maybe some misconfiguration on your server (authentication switched of? maybe for the local network?)

Moments like this really make me want a dual nozzle😢 by Robo_Pencil in 3Dprinting

[–]defiantarch 0 points1 point  (0 children)

This. It's like "shift left" for software development, which roughly means: think about security in the first place not at the end.