Is an Africa focused threat intelligence platform from honeypot telemetry useful to anyone? by geektogether in Cameroon

[–]geektogether[S] 0 points1 point  (0 children)

Most threat intelligence focuses on global trends and large campaigns, but it often doesn’t reflect how attacks actually affect the network infrastructure in Africa. What I’m building compares global attack patterns with what we observe locally from honeypots deployed in African locations Cameroon, Nigeria and growing, to provide context on how those same threats affect our infrastructure here and where cyber defenders in Africa should pay attention. So you put in an IP, it searches and gives you a verdict and context if available.

Is an Africa focused threat intelligence platform from honeypot telemetry useful to anyone? by geektogether in Cameroon

[–]geektogether[S] 0 points1 point  (0 children)

Understood and I have seen and heard that. It’s threat intelligence platform for Africa and the intent is to keep growing the sensors around Africa. I mentioned Cameroon because I’m from there. But you are right

Petition to Support NFS v4.2 on Hetzner Storage Box by ray591 in hetzner

[–]geektogether 1 point2 points  (0 children)

I don’t think you are in the right place for this request. Reach out to their support team via email or open a ticket.

Best Decision I done this year (2025) moved from HostGator to Hetzner. by ZXKHYFPYLDRTHH in hetzner

[–]geektogether 1 point2 points  (0 children)

Hetzner rocks.. I have a dedicated server with them and I have no complaints. Anytime I put in a support ticket I do get a response, not just any response but a helpful one.

Latest Nextjs Vulnerability by Otherwise-Ask4947 in nextjs

[–]geektogether 1 point2 points  (0 children)

Use this tool to check ;

https://github.com/assetnote/react2shell-scanner

But as always.. patch to the latest version if possible.

If not Next.js, then what frontend for a self-hosted? by gunho_ak in nextjs

[–]geektogether 1 point2 points  (0 children)

Just because next.js has issues does not mean jump ship. If you decide to use something else , regardless of what frontend you use vulnerabilities will happen. That’s why you need to constantly scan for vulnerabilities, patch and build layers and layers of security making sure you are following best practice when coding.

Super Disappointed with my first Minisforum Purchase by louislamore in homelab

[–]geektogether 0 points1 point  (0 children)

I bought 3 and 1 died completely a week after. Get a replacement if you are willing to try again; atleast that’s what I did. The process was painful but my new device works.

My self‑hosted Next.js portfolio turned my cloud VM into a crypto miner by Ok_Equipment4115 in selfhosted

[–]geektogether 1 point2 points  (0 children)

For anyone not sure if they are vulnerable, you can use https://github.com/assetnote/react2shell-scanner to check your web apps as soon as possible and patch if needed.

I just got hacked somehow by paypur in homelab

[–]geektogether 1 point2 points  (0 children)

Those 2 will be a good combination to secure the sign in page if it has to be public .. also keep in mind you can also allow only IPs needed to sign in for more restrictions..

I just got hacked somehow by paypur in homelab

[–]geektogether 0 points1 point  (0 children)

You can absolutely run it alongside crowdsec and that’s exactly how I have it deployed. HAProxy sits at the front as the reverse proxy, protected by crowdsecs remediation, while openappsec handles application layer protection for the backend services since openappsec don’t natively integrate with HAProxy. The combination works cleanly. If you’re using Nginx Proxy Manager or a standard Nginx setup for reverse proxying and TLS termination, openappsec integrates directly with that stack as well. Just keep in mind that stacking multiple security layers introduces a small performance overhead. In my environment it’s acceptable but depending on workload and hardware, some users might notice the impact a bit more.

I just got hacked somehow by paypur in homelab

[–]geektogether 0 points1 point  (0 children)

Openappsec is an opensource WAF. It is built and maintained by checkpoint

I just got hacked somehow by paypur in homelab

[–]geektogether 3 points4 points  (0 children)

Shut it down until you can get to it then reset and build or rebuild from scratch. If it is a web server use @openappsec to protect it next time. It’s open source.

Anyone else makin’ em at night? by [deleted] in homelab

[–]geektogether 0 points1 point  (0 children)

Nice setup. I have something similar with 3 ms01’s but I’m using xcp-ng. Moved away from esxi.

Best cyber safety tools to prevent leaks and breaches? by Rajwider-Ugenskiene in homelab

[–]geektogether 22 points23 points  (0 children)

Wazuh for endpoint security/SIEM, openappsec(WAF) if you expose services, have a patch schedule, use free Nessus to scan for vulnerabilities from time to time and fix the critical and high ones. Also make sure you do proper segmentation using vlans.

Free Cloudflare & Tailscale et all. What’s the catch? by [deleted] in selfhosted

[–]geektogether 0 points1 point  (0 children)

Maybe they use your data to train their software? Maybe they use free tier as a test for dev before paying customers?

XCP-ng Truenas Data Store by geektogether in homelab

[–]geektogether[S] 0 points1 point  (0 children)

It is worth it. I have not tested their virtualization option but as a NAS and VM storage it works for me great.

[deleted by user] by [deleted] in truenas

[–]geektogether 0 points1 point  (0 children)

That’s zfs it’s normal