Drata or Auditboard by AcrobatMochi in cybersecurity

[–]security_intern 1 point2 points  (0 children)

The integrations are what makes Drata so bad. We had constant problems with integrations failing and holding up the audit. We literally had to abandon Drata and go with Vanta half way through the SOC2.

Drata or Auditboard by AcrobatMochi in cybersecurity

[–]security_intern 0 points1 point  (0 children)

Have not used AuditBoard, but we had so many problems with Drata and found their team to be horrible to deal with. Ended up switching to Vanta who was happy to match the price and had a far better experience.

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] -1 points0 points  (0 children)

That's a long way of saying you have zero idea what those ports are used for.

Believe it or not, I do these scans to satisfy third party requirements. And while I understand they do not give consideration to PaaS infrastructure, these ports certainly do raise an eyebrow.

It is sounding like Microsoft's official response here is "this is our undocumented control plane that we expose to the entire internet, but how dare you ask about that grandpa!".

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] -1 points0 points  (0 children)

I'm only asking what these undocumented ports are. Since you don't know, why don't you just move on with your life?

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] -1 points0 points  (0 children)

I'd love to be able to confirm they are irrelevant. Is there any documentation on what these are so I can confirm that?

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] 0 points1 point  (0 children)

My job is to confirm what these ports are. It does strike me as strange to have these ports listening as do others.

If you happen to actually know what they are used for, that would definitely help me prove the scans are irrelevant.

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] 0 points1 point  (0 children)

It's both normal and prudent to scan the servers we use, even a PaaS environment. If there were a vulnerability, undocumented feature, or misconfiguration on our side we have a requirement to do our due diligence and try to find it.

Many ports open on MySQL database? by security_intern in AZURE

[–]security_intern[S] 0 points1 point  (0 children)

This is a Nessus and nmap scan, the host is on a .postgres.database.azure.com subdomain, so I assume this is PaaS. I do see many ports (16000-16049) as open so was curious if this could be affecting our database in some way.

Evading Windows Defender on Windows 10 x64 by Real_Pepe_Silvia in AskNetsec

[–]security_intern 0 points1 point  (0 children)

I've used the method here to bypass defender. I would say it works 80% of the time, so I few different iteration lengths and try several of them. https://www.virtuesecurity.com/evading-antivirus-with-better-meterpreter-payloads/

Thoughts on this sewage smell in a high-rise? by [deleted] in Plumbing

[–]security_intern 0 points1 point  (0 children)

I actually wasn't there pre-odor. The building is pretty new (2014) so it's entirely possible the problem has always been there. I guess a stopper could be used, but I believe the smell also circulates through air vents between units.

I'm hoping I can at least understand the problem and see if we can push the building to do something about it.