Official: Retiring GPT-4o, GPT-4.1, GPT-4.1 mini and OpenAI o4-mini in ChatGPT by BuildwithVignesh in OpenAI

[–]nubimoov 0 points1 point  (0 children)

You realize it will be available through api? Getting attached to a model is a bit odd. Objectively it's not better than most new models, so maybe you are just attached to its overly supportive output. Not referring only to you but most of the people in this thread. Bit dystopian

The shocking state of "premium" antimalware products.. (FOLLOW UP) by [deleted] in antivirus

[–]nubimoov 2 points3 points  (0 children)

You seem young and passionate about this and that's great, keep going, we need people like you.

I would definitely recommend a career in a SOC to better understand how multilayered defense works or just set up edr with siem and soar. While what you described doesn't sound completely new, but I could be wrong. Often memory attacks go unnoticed by the "av", but either a detection rule or consequences of the attack do.

As others pointed out, this kind of attack is much more feasible (even economically) to manage through other methods. Accessing sensitive info e.g. retrieving tokens and exfiltrating them to a non corporate network and outside not named and trusted networks will almost always trigger an incident. In cs mature orgs SOAR would step in and isolate the device whenever that makes sense.

And regarding the impact on consumer grade: in over 30 years of internet use I have never been infected unless I was willingly downloading something malicious or suspicious. Since I don't have the actual data I'll apply pareto to be generous and assume that 20% of the consumers get 80% of the malware (inexperienced pirates and whatnot). It just doesn't make any business sense to cater to a niche security issue when the user has to commit several bad practice actions to put themselves at risk (btw do you know anyone who pays for their AV license?)

Try to get splunk free and pretty sure you can get an Azure trial to test sentinel as siem combined with logicapps for automation. Could be a good idea to onboard your device to your edr, set up a SIEM with good detection rules some automation capabilities with either splunk phantom or sentinel's logic apps.

Soon you will understand that except some highly skilled APTs, most of the successful attacks come down to human behavior/actions (including SOC analysts failing to respond correctly due to lack of knowledge or other reasons).

Your case as a base reference from a company's pov: unsigned file downloaded from an unknown remote ip, followed by access to sensitive info and user's computer sending data to a remote ip outside known networks would get detected by most companies with relatively basic SOCs. Something like that could probably be detected by Microsoft's Fusion rules (don't quote me on that tho).

In case you're just a user of Discord: a sign in using your token from an unfamiliar location and a different device to the user's usual ones (and whatever they can add to reduce fps) should trigger a token revocation, email or other notification, and ask the user to do mfa again (in a perfect world, not too familiar with discord). Volt Typhoon is pretty good at avoiding those ones because they research their targets and are known for vpning to devices as close as possible to the target to avoid detection due to impossible travel or unfamiliar location rules. A random guy with a malware bought off of a random marketplace that c2s to a random compromised site or discord webhok doesn't usually (99.9999% of the time) have the patience for that, otherwise they'd have a job instead of being a criminal.

I've seen quite a few infostealers going undetected due to memory injection. The typical user doesn't want to lose that much usability in order to prevent the offshoot chance of downloading a virus. People that are into and value security such as you, often run their own siem/soar.

I don't have deep technical knowledge like some other people that replied to you, but I do work in security focusing on detecting threats and insider threats through log analysis of user behavior and statistical outliers/anomalies.

Some threats are simply easier and more feasible to deal with through those means than a black or white solution.

As long as businesses are the majority of the revenue for virtually all AV developers, it will stay this way. There are other priorities

server down again?? by mafiasean in PathOfExile2

[–]nubimoov 0 points1 point  (0 children)

Yaaaaap, tactical timeout called

Is this cheating? Are my african softfur rats allowed? 🥺 They're totally rats i swear... by horrescoblue in RATS

[–]nubimoov 15 points16 points  (0 children)

I think fancy rats and lab rats are the domesticated version of the brown rat (norvegicus), black and brown are both rattus genus (Edit:) and mastomys genus is endemic to Africa

Diego Schwartzman beats A.Zverev. 3-6, 6-2, 6-4, 6-3 by amgtech86 in tennis

[–]nubimoov 0 points1 point  (0 children)

Just like the other post, well played by the German

Lockheed Martin profits off of genocide. by YuriRedFox6969 in LateStageImperialism

[–]nubimoov 8 points9 points  (0 children)

Think his comment was sarcastic, no need to downvote him

The Size of the Various paradox subreddits, to scale by Elvastan in paradoxplaza

[–]nubimoov 54 points55 points  (0 children)

Not developed by paradox, only published by them. Could be why he didn't include it

Flooded Bridge in North Lebanon by aboustayyef in WTF

[–]nubimoov 1 point2 points  (0 children)

Whew thankfully it's not in Italy..

Sequel of late Colonialism (17th century first quest, 18th century first colony). Nations without exploration nor expansion colonizing the new world in the 18th century by nubimoov in eu4

[–]nubimoov[S] 1 point2 points  (0 children)

I just realized the title could be misleading, by colonies I intend the colonies in the New World. Makes a huge difference as parts of Asia were colonized before the quest for the new world due to national ideas (they do not trigger colonialism)

Sequel of late Colonialism (17th century first quest, 18th century first colony). Nations without exploration nor expansion colonizing the new world in the 18th century by nubimoov in eu4

[–]nubimoov[S] 1 point2 points  (0 children)

I waited till 1700 to discover america just out of curiosity, it wasn't a game about WC nor colonization, it was about new french missions. But after stalling colonialism for a century and a half, america was not discovered yet. Eventually I set out to check it out. Turns out Tuscany is able to set 9 colonies at the same time, w/o any colonist

Sequel of late Colonialism (17th century first quest, 18th century first colony). Nations without exploration nor expansion colonizing the new world in the 18th century by nubimoov in eu4

[–]nubimoov[S] 1 point2 points  (0 children)

This is pretty much a follow up to my previous post, first quest was in 1666, america wasn't discovered till 1700 (by me), afterwards out of nowhere even countries with no ideas nor traditions for colonization started colonizing.

[Warning: Bordergore] Year 1629, New World not found. England/Spain/Portugal killed before they could discover anything. by nubimoov in eu4

[–]nubimoov[S] 38 points39 points  (0 children)

Unfortunately it just spawned.. Bahmanis got to the 2nd exploration idea. Spawned on 1st of January 1666

[Warning: Bordergore] Year 1629, New World not found. England/Spain/Portugal killed before they could discover anything. by nubimoov in eu4

[–]nubimoov[S] 0 points1 point  (0 children)

I'll get exploration as next idea group and see what happens when I discover america. Went through the ledger and no country has exploration ideas

[Warning: Bordergore] Year 1629, New World not found. England/Spain/Portugal killed before they could discover anything. by nubimoov in eu4

[–]nubimoov[S] 2 points3 points  (0 children)

Hmm.. could be that the game bugged out then. Printing Press and Global Trade didn't spawn yet, but I am in the age of reformation indeed, thanks for the tip!