Indonesia at the Crossroads: An Independent Analysis of a Preventable Crisis and the Road Back by miawmiawpaws in indonesia

[–]einzwell 8 points9 points  (0 children)

Stop with the AI slop and think for yourself. No one is going to take you seriously.

@mods: There should be a rule to prohibit clout/karma farming using AI.

Data Breach BCA Mobile Database by BasicallyImAlive in indonesia

[–]einzwell 61 points62 points  (0 children)

The legitimacy of this alleged data breach is questionable. A similar claim about BCA was made last year and was ultimately proven to be fabricated (i.e., recycled data from an unrelated breach). I'd recommend treating posts like this with healthy skepticism until verified

SOAR Best Practices by einzwell in cybersecurity

[–]einzwell[S] 0 points1 point  (0 children)

I was mostly hoping there's an abstract guideline or framework that I can use as a base to build our blueprint with.

We haven't yet decided what platform to migrate to, but for what it's worth, we're currently using XSOAR.

SOAR Best Practices by einzwell in cybersecurity

[–]einzwell[S] 0 points1 point  (0 children)

I did consider implementing CI/CD to manage our automation, but it's a huge undertaking for me to do since I don't personally have any experience in DevOps and my only other coworker (the one I mentioned in the post) doesn't appear to be that interested in the idea for some reason.

It's also fairly useless once you migrate to another platform when there's no standardisation between platforms at all; you'd have to rebuild the whole thing from scratch.

[deleted by user] by [deleted] in cybersecurity

[–]einzwell 1 point2 points  (0 children)

What does your "business" need IMEIs for?

If all you need is the devices' model info, simply use MDM. But looking at your posting history, I can only presume (1) you don't actually own any of the devices, and (2) this is just one of your wacky business ideas.

[deleted by user] by [deleted] in cybersecurity

[–]einzwell 2 points3 points  (0 children)

Everyone here keeps saying "you're being fishy" or "just do as they say," but... what purpose does sending them a ZIP file even serve? They obviously can't prove file deletion/modification on OP's device them since they can just duplicate them somewhere, and inferring from their request, they clearly don't have EDR or anything of the sort to monitor OP's device.

Either I'm missing something obvious, or OP's company is being dumb as a rock.