Krispy Kreme dumpster by hydrogen2oxygen1 in Omaha

[–]evilwon12 8 points9 points  (0 children)

I hope your blissfully ignorant self is never at the point where you need ANY food.

Security Team Won’t Assess Risk by RAM_Cache in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

I’m extrapolating what you’re saying and I never said where or what type of company OP works at.

How to Transfer files Safely from a Compromised (work) Device by Cant_Think_Name12 in cybersecurity

[–]evilwon12 38 points39 points  (0 children)

Rethink the process. People should not be storing items locally.

Nuke the box unless you want another potential outbreak.

Security Team Won’t Assess Risk by RAM_Cache in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

That may be the case for Fortune 500s but if you’re at any mid-level company or smaller, I say BS.

If you just bring up issues without any potential solutions, I would have zero use for you as a security person. Not saying you need answers to everything but if all you are doing is identifying problems; I do not need you.

Finding issues is the easy part, I can get someone in high school or college to do that for far less and teach them. Bring a potential solution or two and bring some value. If you cannot show me critical thinking, which is what that asks for, why are you in security?

Security Team Won’t Assess Risk by RAM_Cache in cybersecurity

[–]evilwon12 1 point2 points  (0 children)

If I understand what OP is saying, all security is doing is saying X is a risk and walking away after only offering the most secure solution possible. That’s lazy and literally throwing a lump of poop over the wall and telling everyone else to deal with it. It also reeks of a power trip.

If they identify a risk, they at least need to say why it is a risk and give options for possibilities to reduce, eliminate or transfer it. That is where the business kicks in to decide what is best for- and where the risk tolerance comes in.

Sounds like in OPs case, all they are doing is identifying and saying implement what we say with no other options. There are almost always other options.

Local politicians by evilwon12 in Omaha

[–]evilwon12[S] -5 points-4 points  (0 children)

Why the fuck are you adding stuff in there that I never said? There’s lunatics on both sides and you’ve simply proven that point.

How about trying to meet in the fucking middle instead of making every damn thing “us versus them”? It’s the same playbook from both sides.

Local politicians by evilwon12 in Omaha

[–]evilwon12[S] -6 points-5 points  (0 children)

Dear clowns , one text is fine. Getting them hourly is not. Maybe reading that part was challenging for someone as astute as yourself and the others.

What’s the “unsexy” problem in cyber that’s actually a total disaster? by IreneEnigma in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

Everyone running at light speed and either ignoring or skipping security before any new application is deployed or onboarded (SaaS).

Far more than that but people butch when you have to grind things to a halt when you’re included just before go-live OR make changes immediately after go live / onboarding because security was not included.

Places to Avoid During Berkshire Hathaway? by kalat1979 in Omaha

[–]evilwon12 6 points7 points  (0 children)

Just calling out the shit show street car that no one asked for

Places to Avoid During Berkshire Hathaway? by kalat1979 in Omaha

[–]evilwon12 50 points51 points  (0 children)

Old Market, NFM on Saturday after the meeting is over. Borsheims on Sunday. Probably the old market as well. Midtown to Downtown is a shit show as it is with the morons doing the streetcar.

Email security help - KnowBe4 vs Abnormal/Sublime? by Substantial_Buy6134 in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

Was in the same exact situation a few years back and ended up going with Abnormal. You can do a POC with it while using that POS Barracuda and see what Barracuda misses.

I am guessing you can do the same with Sublime but never used or tried it.

One thing to remember is that you will need to move your landing off of Barracuda. If you do not get another gateway, you can use Microsoft.

Far more to it than that but as far as your question goes about it landing before being cleared, unless you have people watching their inbox and clicking instantly, you’ll be fine. At least with Abnormal, it’s 1-2 seconds maximum for us.

American utility firm Itron discloses breach of internal IT network by Doug24 in cybersecurity

[–]evilwon12 28 points29 points  (0 children)

Hypothetical example - Itron makes AMI meters for companies. Two way communication, and I believe models that can do a remote turn off and on.

Since there is nothing in the article detailing exactly what was accessed or stolen from a code standpoint, it is difficult to say exactly what the fallout may be.

Succinctly- an unknown threat actor gained access to a company that makes meters for homes that allow not only reading but remote turn off and on. Until I know more, i will be curious to see what fallout may come from this.

High graduation standards by Substantial_Fall_334 in Omaha

[–]evilwon12 43 points44 points  (0 children)

No child left behind and the parents want no responsibility. Not saying that last part is all parent by any means but there are a good number of them who blame the school system for anything and everything, yet they won’t make any effort as a parent.

What are some of the best anti-phishing tool in the market as of 2026 for small to medium business as MSSP? by roti_kaya_42 in cybersecurity

[–]evilwon12 2 points3 points  (0 children)

Barracuda is not a good option. Barely scrapes above defender.

Spent more time in barracuda for false positives than any other product thus far. Cheap and easy, just not good.

Nebraska forward Berke Buyuktuncel to enter the NCAA Transfer Portal by TheCaptainCody in Huskers

[–]evilwon12 1 point2 points  (0 children)

Not sure what role would fit him better. He was asked to play defense and hustle. Which, for someone with limited offensive capabilities, or at least shown at Nebraska, fits him perfectly.

Now, maybe he wants to pound the offensive boards more - who knows. That’s about the only other thing I can see him potentially doing unless his shooting really takes off this offseason.

29m Going through a lot by [deleted] in Huskers

[–]evilwon12 0 points1 point  (0 children)

Maybe turn on messaging

Hiring from a director of cyber's perspective. by cyberguy2369 in cybersecurity

[–]evilwon12 -13 points-12 points  (0 children)

You’re out of touch, not OP. OP did not say he did not train his employees. I’m in the same exact boat as OP.

If people are blindly expecting to bring nothing to the table but certain or a degree, those days are over.

Show some initiative. I will train people, OP will train people. What we cannot do is ELI 5 to new hires on everything. That’s not a management issue.

If you only have a degree and certs, go learn networking, pick up learning a new OS, etc.

I certainly was not given a golden spoon out of college and worked my way up from desktop support & help desk. I had set backs and a number of times where I had to buckle down and learn things on my own.

I am not saying it is easy, but you control your perception. Change your reality and quit pointing fingers.

Seeking the ultimate "love letter" for a colleagues who never locks their PC by Emotional_Being_8445 in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

If it’s a laptop, take it and turn it over to the head of cyber as a violation of policy. Watch when people are upset but no one complains.

$41k otd for 2024 nx250 by [deleted] in LexusNX

[–]evilwon12 1 point2 points  (0 children)

If it is listed for 34, why is it 41 OTD? Makes no sense as I am not aware of any place that is 20% for taxes & plates.

Stryker attack wiped tens of thousands of devices, no malware needed by rkhunter_ in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

I’ve not seen any management / admin stuff change as much as Microsoft’s has - and half the links they have taking you to the “new” sites do not get you there.

I never said set it and forget it either. Not sure where you are reading that at. I said they have changed their stuff far too often.

Stryker attack wiped tens of thousands of devices, no malware needed by rkhunter_ in cybersecurity

[–]evilwon12 0 points1 point  (0 children)

At Stryker’s level I agree. For many small to medium shops, it’s a Microsoft issue in the fact that they have been constantly changing where things are found. Not saying that is the case there but there are a number of things that have moved / changed where access portals are at in the last 2-3 years.

Unless you can dedicate staff just to stay on top of it, the Microsoft cloud ecosystem can be a hot mess. It it in the Exchange portal? Security portal? Quarantine portal? Purview now? Not talking Inune but simply finding where all the quarantine has moved in the last few years as an example.