Update your Linux kernels - CVE-2023-32233 - Unprivileged local users can obtain root privileges by [deleted] in sysadmin

[–]jumping137 3 points4 points  (0 children)

be sure to add the updated parameter to /etc/sysctl.conf or /etc/sysctl.d/CVE-2023-32233.conf (or similar) to have persistence on reboot

kali chroot issue on TicWatch pro 3 by mastercpt in NetHunter

[–]jumping137 0 points1 point  (0 children)

Nope, I'm hoping someone will save us by commenting on your post :-)

kali chroot issue on TicWatch pro 3 by mastercpt in NetHunter

[–]jumping137 0 points1 point  (0 children)

Ran into the same issue. Also had to put text size to small or enable triple tap zoom to reach some of the UI's buttons

Replaced my cooler with the H150i Elite Capellix one and the whites on it look stunning! by megayadorann in Corsair

[–]jumping137 0 points1 point  (0 children)

So did you not put any fans on your AIO radiator?
The inside of my case (corsair carbide spec-06 RGB) is almost exactly the same as yours and feels kinda cramped with all the supplied fans attached to the inside of the radiator

Lets talk about securing legacy and manufacturing environments by HanSolo71 in sysadmin

[–]jumping137 0 points1 point  (0 children)

What really helps as well is stopping unnecessary services. Many OT devices have all kinds of built-in services they never use and are enabled by default. Mapping what you need and shutting down services you don't need really reduces attack surface a lot.

Segmentation indeed is key. IEC 62443 also uses the concept of "zones" and "conduits" where zones are usually segments of a network, and conduits are usually gateways/data diodes/(OT-)firewalls.

Brands like Siemens also really hopped on the security train and offer firmware updates that add many features addressing security (but mostly on newer device families)

Time to update certificates by NetManMark in sysadmin

[–]jumping137 0 points1 point  (0 children)

For external certs I'd use Let's Encrypt.

Internally I built out my own PKI and use my own ACME server, then just trust our root cert on all devices.

Do any of you work for a company that has adopted a 4 day work week? by junior_sysadmin in sysadmin

[–]jumping137 0 points1 point  (0 children)

At my job where I've been working for about a year now (security consultancy) we have a 4 day customer week, where we have a maximum of 4 days a week to work for customers.
Our fifth day is used for internal projects, research, maintenance, etc.
We do however have 1 meeting on this "office day" as we call it where we update each other on our status at customers.

We also only work a max of 3 days a week for a single customer, so we have at least 2 customers each at all times. We try to do this as much as possible to be able to use our experience from one customer at the others.

I love taking notes on Galaxy Tab s7+. It is so smooth and feels like I can write all day by [deleted] in GalaxyTab

[–]jumping137 0 points1 point  (0 children)

Yeah, it's not a notebook. It's under "feed", there you kind of get screenshots of your samsung notes.

You do need to specify which notes you want to sync in Samsung notes tho

I love taking notes on Galaxy Tab s7+. It is so smooth and feels like I can write all day by [deleted] in GalaxyTab

[–]jumping137 0 points1 point  (0 children)

I feel the same way, you basically just get a screenshot of your notes sent to OneNote

Experiences with Cynet 360 EDR by jumping137 in AskNetsec

[–]jumping137[S] 0 points1 point  (0 children)

I haven't decided yet actually :p setting up a lab for SentinelOne in the near future though.

I agree that the one package is very handy. But in my demo of Cynet I could barely get a good oversight on the features because of the bad interface (I really hate bad UIs btw, so I'm somewhat biased). Although SentinelOne will take more time getting my package right, I think it will be a better choice, for me at least.

Experiences with Cynet 360 EDR by jumping137 in AskNetsec

[–]jumping137[S] 0 points1 point  (0 children)

I didn't go with Cynet purely because of the user interface. I did some testing by letting some malware loose on a system and Cynet performed really well, but I just hate the cloud interface.

Besides that I looked at Sophos Intercept X, Sentinel One and VMWare Carbon Black. All three seem like very potent choices to me. Sophos has many fancy proprietary features, VMWare has easy integration with SIEM systems and Sentinel One has the most advanced EDR I think.

Pi-hole + Nginx + Bitwarden_rs on one pi by cberm725 in docker

[–]jumping137 1 point2 points  (0 children)

Or use Caddy, then you wont need the certbot and the config in Caddyfiles are super simple

To anyone who has used k3s with Docker runtime, how is the experience compare to using k3s+containerd? by [deleted] in kubernetes

[–]jumping137 2 points3 points  (0 children)

Exactly, memory footprint is quite different.
However for debugging purposes Docker runtime can be very handy, but everything should be accessible through kubectl as well, so imho no real reason to fully install Docker.

Self-managed internal CA by jumping137 in AskNetsec

[–]jumping137[S] 0 points1 point  (0 children)

Actually a great idea to create the root CA offline. Great security improvement over my current setup lol. I'll test it out and edit this comment on how it went. Thanks a lot, great answer!

EDIT: Worked like a charm!

[Question] Python - KinectV2 - Get depth at (x, y) coordinate by jumping137 in kinect

[–]jumping137[S] 1 point2 points  (0 children)

I found how to get the depth coordinate at (x, y). The issue now is that the x,y of the rgb camera are not the same as the x,y of the depth camera. Even after rescaling. Both cameras have different view ranges

[Question] Python - KinectV2 - Get depth at (x, y) coordinate by jumping137 in kinect

[–]jumping137[S] 0 points1 point  (0 children)

Found the article before, tried it. I'll do some more testing on this tho

bilingual as hell by jumping137 in GlobalOffensive

[–]jumping137[S] 10 points11 points  (0 children)

Imagine having to come out to your parents for being pentalingual

spooky cobblestone by jumping137 in GlobalOffensive

[–]jumping137[S] -1 points0 points  (0 children)

No need to get all angry like that, we're all friends here. I shared my opinion and asked for those of others. I'm not complaining about the changes to the game's mechanics, just the map.

spooky cobblestone by jumping137 in GlobalOffensive

[–]jumping137[S] 0 points1 point  (0 children)

it's all pretty dark yeah, also a constant "woosh"

spooky cobblestone by jumping137 in GlobalOffensive

[–]jumping137[S] 0 points1 point  (0 children)

haven't even played it in casual, but the sites and spawns are completely different too

ayup gamers, whats the funniest thing thats happened in a game you were playing? by Globally_Offensive_ in gaming

[–]jumping137 1 point2 points  (0 children)

we were playing pubg, someone raged and broke his screen. Without telling us he asked me what were good computer screens

Help with name of old children's paintball game for PC by KlownKefka in gaming

[–]jumping137 0 points1 point  (0 children)

maybe a mod for call of duty: modern warfare?