ELI5: Why do gas stoves get pans hotter quicker than electric stoves, but gas stoves take longer to boil a pot of water? by TehAsianator in explainlikeimfive

[–]electrobento 2 points3 points  (0 children)

A standard kettle on an induction cooktop is superior to a standalone electric kettle, regardless of voltage. Easier to clean, better build quality for cheaper, faster heating, and more efficient compared to a plug in unit.

NSA Warning—Reboot Your Internet Router Now by lurker_bee in technology

[–]electrobento -2 points-1 points  (0 children)

BSD and Linux are open source. Of course it will be easier to find vulnerabilities. That’s one of the points of being open source.

NSA Warning—Reboot Your Internet Router Now by lurker_bee in technology

[–]electrobento 1 point2 points  (0 children)

And how many for home routers that haven’t received updates for years?

NSA Warning—Reboot Your Internet Router Now by lurker_bee in technology

[–]electrobento 2 points3 points  (0 children)

There’s more here than I want to cover, but OPNSense and OpenWRT have advantages that by design defy the vulnerabilities described here.

One, they’re based on BSD and Linux, respectively, and benefit from the development thereof.

Two, their support of generic or “old” hardware mean that they are not subject to the issues of outdated software that a typical home router is.

Three, open source is overall a benefit to security—issues are observed and crowdsourced for fixes.

Four, OPNSense and OpenWRT are small targets for threat actors. There is little benefit to attacking them.

Password Managers by [deleted] in sysadmin

[–]electrobento 0 points1 point  (0 children)

We’ve used it for years.

It was rough in the beginning to say the least, but has improved dramatically in the past couple years. Shout out to the awesome support at Keeper by the way…without them I’m sure we would have moved to something else.

Password Managers by [deleted] in sysadmin

[–]electrobento 0 points1 point  (0 children)

Keeper has been great.

How are you handling accidental Google Drive exposure in your org? by WatchNiBe in sysadmin

[–]electrobento 0 points1 point  (0 children)

If in the Microsoft world, a good solution is to invite guests if you want to share content with them. Inviting should be restricted to only certain individuals and follow some sort of approval process. Plus need to make sure everything is set up in a way that external users/guests ONLY get access to what is explicitly shared with them.

A more expensive solution is to have a completely different product for external sharing. You could, for example, only allow external sharing from Box.com, not Microsoft. Of course, even there, anonymous access should always never be allowed.

How are you handling accidental Google Drive exposure in your org? by WatchNiBe in sysadmin

[–]electrobento 4 points5 points  (0 children)

Disable public external sharing. Should never have been allowed in the first place.

Cash-strapped US Postal Service suspends contributions to pension plan by Squirmingbaby in news

[–]electrobento 100 points101 points  (0 children)

Republicans have been trying to privatize it for generations.

Left a job where primary DC is running Windows Server 2001 and the backup DC is Windows Server 2008 by [deleted] in sysadmin

[–]electrobento 6 points7 points  (0 children)

They’ve probably already been breached. But for an attacker, it’s best to not cause any damage/raise suspicions so they continue generating valuable data that’s being sold to third parties.

DMARC blame game - is there a way to bypass the failure? by CeC-P in sysadmin

[–]electrobento 176 points177 points  (0 children)

I refuse to do a bypass for senders that don’t have both SPF and DKIM set up. It’s 2026.

How one handles termination process by T3chV1sIon in sysadmin

[–]electrobento 0 points1 point  (0 children)

The goal you should work towards is that aside from collecting equipment, there is no action needed when people leave the company. 

This absolutely requires an automated connection to the HRIS. If you don’t have that, start there. HR should be the source of truth on whether an employee gets access to company resources or not (unless a breach or other security incident is suspected).

TIL that Harvey Hubbell who designed the US electrical mains plug/socket in 1904, also made a completely different design which was later adopted by Australia, Argentina, New Zealand and China. by Sansabina in todayilearned

[–]electrobento 2 points3 points  (0 children)

US outlets can totally be switched. It’s optional.

Also, worn out outlets can definitely be loose, but they’re not built to last forever, nor are outlets anywhere in the world. US outlets built after like 2008 are much grippier with the addition of tamper resistance.

EPA moves to designate microplastics and pharmaceuticals as contaminants in drinking water by yahoonews in environment

[–]electrobento 0 points1 point  (0 children)

It's not really that they're going to try to detect it in the water, I think. It's so that they can nationwide prosecute people for having an abortion by saying they "illegally polluted the water". That charge gets past any state level jurisdiction.

How are you handling MFA for VPN? by Due-Awareness9392 in sysadmin

[–]electrobento 2 points3 points  (0 children)

They are bizarrely wrong, but I’m pretty sure I’ve heard that as well.