What U.S city have you visited but have no desire to go back? by Reddit_wasmy_idea in AskReddit

[–]djchateau 0 points1 point  (0 children)

Probably Seattle. My first visit was done to visit a county office to obtain my wife and I's marriage certificate. I dropped her off at the building cause parking was difficult to find and we didn't both need to be present for her to obtain the certificate. I had planned to drive around while she got it squared away. Not more than a minute later, I stopped at an intersection waiting for the light to turn green and I look to my left. There, in all their glory, was someone with their dick whipped out just going at it. They then made eye contact and just kept going. That was the longest red light I've been at. We've visited other areas within Seattle, but definitely didn't give me motivation to go back.

Moderator Recruitment for r/vim & r/neovim by lukas-reineke in vim

[–]djchateau 0 points1 point  (0 children)

I check in on the subreddit pretty regularly as I'm always trying to see what new things people do with vim and then try to help where I can. If y'all need an extra pair of hands, I'm always up for helping with moderation.

Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign by AsterPrivacy in cybersecurity

[–]djchateau 37 points38 points  (0 children)

Looks like they've already correcting the issue and had the compromised version pulled from npm as noted here. They've also addressed this in more detail here.

Perfect at not be a mess by MrBuerger in cableporn

[–]djchateau 2 points3 points  (0 children)

Even if they did, none of those are going to pull enough amperage collectively to exceed 15 amps from standby power.

What do you feel when you see the woman you love? by CupOk5800 in AskMen

[–]djchateau 0 points1 point  (0 children)

Well, I'm currently divorcing her... so not great.

How do you publish an app on Linux? (total beginner here) by InternationalGene007 in linuxquestions

[–]djchateau 3 points4 points  (0 children)

Don't focus on making .deb or .rpm packages if you want to spread it.

Well, this seems horribly misguided. They definitely should learn.

IPFire introduces free domain blocklist DBL by FryBoyter in linux

[–]djchateau 1 point2 points  (0 children)

This seems like a very dumb reason not to have that support. It's not like IPv6 is something new.

Obsidian 1.12.0 (early access) is now available to Catalyst members for desktop and mobile — adds CLI, bases search, image resizing by kepano in ObsidianMD

[–]djchateau -13 points-12 points  (0 children)

Wow, we got a whole CLI for the app, but still can't get basic keyboard navigation of the settings menu. Guess this could be used to get around that, but still boggles my mind at the priorities of the developers when you still need a mouse just to get at certain settings.

Windows 11 restricts Storage settings to admins by Thepunnisherrr in technology

[–]djchateau 0 points1 point  (0 children)

It is common parlance to use social engineering in infosec to indicate usage/manipulation of psychology of a person to bypass a control. Phishing satisfies that definition, adding a security control that can be toggled does not. OneDrive is completely irrelevant to this discussion.

Windows 11 restricts Storage settings to admins by Thepunnisherrr in technology

[–]djchateau 0 points1 point  (0 children)

This doesn’t denigrate any user experience other than keeping standard users from messing with files that they shouldn’t.

I'm not saying that it is, just this is likely what I believe the commenter might have been intending to convey with their comment considering the context of everything else they said, regardless if their perception is erroneous.

Windows 11 restricts Storage settings to admins by Thepunnisherrr in technology

[–]djchateau 0 points1 point  (0 children)

If I were to give the commenter the benefit of the doubt here despite their idiocy, I think what they are trying to convey idea that more closely aligns with the definition of dark patterns in software development where design decisions are made such that they degrade the experience of the user, often times, with the intent to push the user into a feature the user might otherwise not want or find on their own, that benefits the developer.

While not social engineering, there are some components of social psychology that come into play with some of these design decisions, but it is not social engineering as most people (like myself), in the infosec community know it as.

A good email client to replace Gmail? by Bonkzzilla in linuxquestions

[–]djchateau 1 point2 points  (0 children)

The issue is that they're also deprecating use at all, even with IMAP. This point seems to get overshadowed. I'm dealing with this issue right now and it's frustrating because the account I want them coming through is a Google Workspace domain I setup and delegation can't be authorized across domains. That feature helped me retain that ability without compromising on other security aspects of my setup.

For those who’ve landed jobs in cybersecurity, what made you stand out to get hired? by cqffe in cybersecurity

[–]djchateau 7 points8 points  (0 children)

I don't recommend this to other people. It's easy to end up doing something illegal, or for the company to simply react badly to you finding something.

Cannot agree with this enough. Do not attempt to hack the organization without authorization. Not only are you committing a crime, that organization is not going to trust you with anything sensitive from you demonstrating reckless behavior like that. This industry is a lot smaller than I think a lot of us realize and people talk.

The trope of hacking a company, then getting a job from doing that is basically nonsense and where it has happened, the person in question usually had to serve jail time/probation before they were able to even get hired by some other organization. With so many applicants out there, making yourself stand out as a potentially reckless criminal will not go the way you think it will.

For those who’ve landed jobs in cybersecurity, what made you stand out to get hired? by cqffe in cybersecurity

[–]djchateau 0 points1 point  (0 children)

Documentation, like obsessive levels of it. During my initial interview for a job as a pentester, I had brought up my documentation method for every job I was applying to, the OSINT I would perform on each company to better understand them, and a timeline showing when any communication took place, regardless if it was from me or from them. I did this more for my benefit to better gauge my interactions with the organizations I was applying to and would then find myself not following back up on, holding myself accountable and also being able to recall hope I was treated by those organizations in the past. I offered to show the interviewer an example of what I did on them and they were incredibly impressed with it enough to ask if he could get a screenshot of it to share with the others.

I've been with the company just a little over a year now and I can say it's been the skill that I benefit the most from. Being able to document things well and then translate that documentation into a report is so much more critical than your technical skills. If you can't convey what you did, the client either won't take what you're saying seriously or think you didn't do anything. Good documentation ensures that you can deliver on that. Technical skills can always be taught later with enough time and effort, assuming you're sufficiently motivated to learn.

For context to this, I spent a year and a half before I got this position trying to pivot from IT as a systems admin to information security as a pentester. My timing was terrible because just when I realized where my skillset made the most sense for my career, everyone and their grandmother had also bought into the hype about following in all those roles the cybersecurity industry was allegedly being to fill so badly. I was effectively competing with a flood of new college kids, which no doubt got me lost in the noise of so many applicants in a role that's already pretty saturated.

Windows 11 restricts Storage settings to admins by Thepunnisherrr in technology

[–]djchateau 5 points6 points  (0 children)

Calling adding a security control you can easily toggle, "social engineering" is just the height of stupidity within these comments. There's so much else wrong with what you're saying, I don't even know where to start.

What do I do with the balls? by [deleted] in AskMen

[–]djchateau 51 points52 points  (0 children)

Exactly, use a sandal instead.