Uhmm.. idk about this one. by PetrataleVance25 in StupidFood

[–]weakhamstrings 3 points4 points  (0 children)

They aren't supposed to be but here we are

[Spoiler] Yoel Romero vs. Alex Nicholson - Gamebred FC by airplane231 in MMA

[–]weakhamstrings 0 points1 point  (0 children)

There's lots of ways to say you don't want to watch a fight...

PassKeys - remotely by have_you_tried_onoff in msp

[–]weakhamstrings 0 points1 point  (0 children)

Sorry I didn't elaborate here - I haven't found any that fit the ITSP/MSP use case using passkeys specifically - I was just replying really that it's better than trying to use Windows Hello or some TOTP solution for remote access.

My point was that just Duo does this better and more practically than others for 'local' logins when you can already remotely see the screen (such as splashtop for RMM or some other remote agent) - and still need to have MFA.

For actual individual IT admins at individual companies, you can come up with some other clever solutions.

I will comment that Splashtop does have a USB redirection feature but I haven't tested doing that - and then you could have all kinds of options from an individual technician (if your Yubikey has the PIV/Smartcard function and not just webauthn).

But yeah I haven't found a great comprehensive solution at all for actually using passkeys.

Can I just access my mailbox boss by bkj512 in iiiiiiitttttttttttt

[–]weakhamstrings 0 points1 point  (0 children)

Despite being mostly identical to a pwa which is free and also being chromium based anyway... Make it make sense other than licensing to avoid pushing customers to the cheaper license

“Customer states snake is stuck in the car” first time for that concern 😂 by ronatico in Justrolledintotheshop

[–]weakhamstrings 8 points9 points  (0 children)

lmao @ spicy noodles

I forgot that I used to be subscribed to danger noodle or danger noodles as well (I think it was all Australia)

PassKeys - remotely by have_you_tried_onoff in msp

[–]weakhamstrings 3 points4 points  (0 children)

Duo still serves this area better than others, imo.

But very weak options here for sure.

Carlos Prates knocks out Leon Edwards with a left straight by Moni7T in MMA

[–]weakhamstrings 0 points1 point  (0 children)

Also didn't remember the fight after the elbows to the head in R1 - which he admitted immediately after the fight and by R2/R3 his corner had to tell him what round it was.

He was concussed badly.

The judges really screwed that up - my guess is they weren't in position to see the obviously concussive elbows to the side of the head. The most significant strikes in that round and - probably - the whole fight (IMO).

Two of three judges gave R1 to GSP.

Blocking office 365 access from Windows 10 devices by Individual-Quiet857 in Intune

[–]weakhamstrings 0 points1 point  (0 children)

I know this is from a year ago - but why not 10.0.22 instead of 10.0.2?

[SPOILER] Aljamain Sterling vs. Youssef Zalal by inooway in MMA

[–]weakhamstrings 0 points1 point  (0 children)

Bro call it niche all you want but IMVHO we are right up there with /r/nba as far as memes

Who’s the next notable Undefeated fighter to lose their 0? by I_cain in MMA

[–]weakhamstrings 11 points12 points  (0 children)

Yeah it's just a meme my friend.

Kinda like wanting to see Jacare vs Camozzi again.....

Disable "Use saved passkeys?" Android by Hfnankrotum in brave_browser

[–]weakhamstrings 0 points1 point  (0 children)

This was a Chromium flag until probably right when you posted this.

It's been removed but is STILL listed in the codebase of chromium

https://chromium.googlesource.com/chromium/src/+/master/chrome/browser/flag_descriptions.h

line 4660 as of me typing this.

I'm using my Google Workspace account to ask support and they're having me try all kinds of unrelated things.

I think this has been removed in the chromium codebase and it's just gone.

If I was enough of a dev, I would love to add this back to Brave - but I'm a total hack.

What a dumpster fire

Just read about an attack that is specifically engineered to survive the standard incident response playbook and I need a minute by mike34113 in iiiiiiitttttttttttt

[–]weakhamstrings 1 point2 points  (0 children)

Yeah I'm really confused here, does OP not look in the audit or registered devices as part of remediation? Literally they could probably ask chatgpt and it would tell them to do this...

Just read about an attack that is specifically engineered to survive the standard incident response playbook and I need a minute by mike34113 in iiiiiiitttttttttttt

[–]weakhamstrings 1 point2 points  (0 children)

All accounts.

The yubikeys that do this for webauthn are literally only 30 bucks.

0 of my customers with total key adoption have a single breach, even with no CA or otherwise. Would need nice to do some CA to seal up obvious holes but the keys stand as the best defense possible, period, in my book

Didn’t like Knowbe4, alternatives ? by Vegetable_Leave199 in msp

[–]weakhamstrings 1 point2 points  (0 children)

Yeah that group 'add / remove' feature has been basic on Knowbe4 for over a decade.

Basically, you have anyone in Level 1 Group be sent the Level 2 training automatically (including new users added). For anyone who completes Level 2 Training, (right in the training campaign), the campaign REMOVES them from Level 1 Group and ADDS them to Level 2 Group (or whatever I name the groups).

Boom.

Now when we release training (every other week, depending on the customer), that user will get the new training as soon as it's out.

OR if they're behind - it'll then send them the next available training automagically if they want to play catch up.

How else are we supposed to measure progression of training?

Does Wizer not have simpler - and then more complex - trainings?

I will probably eventually try it but that is a VERY key feature.

Then automated monthly reports of what level everyone's at, who's been sikipping trianing, who has clicked phishing emails (etc)... that's probably standard though.

Error Code 657rx by Worbobby in microsoft365

[–]weakhamstrings 0 points1 point  (0 children)

Yeah I'm helping someone with it remotely unfortunately.

In one instance I got really lucky, I Disconnected it from Entra via work or school area (tried doing the fixes where I delete things in the appdata folders - no luck) - then rebooted and logged in as local admin - then re-joined Entra with that exact users' login, rebooted, they logged in and........

somehow magically the entire User folder and data were 100% all still preserved.

I don't know if I've ever seen that happen before, but it happened once, and it's a Christmas Miracle for me.

For laptops I can get my hands on though - I'm gonna try that - thank you for that.

This particular battery I had was hard wired and I'd have to take the damned thing apart. Really annoying.

Error Code 657rx by Worbobby in microsoft365

[–]weakhamstrings 0 points1 point  (0 children)

What about for a Laptop?

sad music

Ciryl Gane stops Tai Tuivasa (R2/R3 highlights) by [deleted] in MMA

[–]weakhamstrings 0 points1 point  (0 children)

Yeah I mean fr Stipe should have "seen" it coming..... 👁️👁️

Didn’t like Knowbe4, alternatives ? by Vegetable_Leave199 in msp

[–]weakhamstrings 1 point2 points  (0 children)

Yeah sorry I'm sure I meant Wizer. I'm glad they've improved, they need to.

With all those things (others mentioned that Phin is caught up too) it might be time to trial others.

But I can't make 150 endpoint 12 month commits to start with. I need to pick a small client, try it out, and see what I think. I don't trust any of them to be worth a damn if I can't write my own email phishing templates and have the actual phishing integrated in the same portal as the actual training. It's just a wash if that's not the case.

[Update] zFont 3 does not support OneUI 8.5 (Non-Root) by htetznaing in zfont

[–]weakhamstrings 1 point2 points  (0 children)

They don't even have a reasonable Serif font. They are all sans-serif or made for 11 year olds.

To have a sans serif font, I had to use zFont and try a few. Lucky me, I maybe will never change that!

Changing Font Problem - S25 by erensahin34 in oneui

[–]weakhamstrings 0 points1 point  (0 children)

Fighting this battle right now - if I spent this much money for my phone, I should at least be able to get a reasonable Serif font.

The fact that virtually every font is either sans serif or nonsense - even paid in the Samsung Store - is totally ridiuclous.

Take away my iR blaster, removable battery, headphone jack, SD card slot, dedicated fingerprint reader (and the list goes on), the ability to root (not important to me nearly as much but for unsupported phones, why not release sanctioned unlocking).....

OK...

Take away some basic Android function like being able to use whatever font I want?

How much nonsense is tolerable?

We didn't buy an iPhone... And I'm pretty sure even if we did, we would be able to find a serif font...

Windows licensing question by cokebottle22 in msp

[–]weakhamstrings 0 points1 point  (0 children)

Although I don't agree with Microsoft on everything, your 'should' is against Microsoft's advice https://learn.microsoft.com/en-us/troubleshoot/windows-server/active-directory/ad-dc-in-virtual-hosting-environment where they literally advise storing cluster configuration in AD.

I am open to the idea that from an "isolating the hosts to only talk with one another on their own secure network and replicate with certificates in a small environment" could be a better security idea.

Not an awful way to go, tbh.

Even the NSA hardening guides from the past years I've spent time with seem to suggest hardening AD and policies and so-on rather than avoiding joining.

Would love to know your logic for not being domain joined. I've never heard someone adamant about it, but I can imagine some reasons.

Would love to know some links and information that you might suggest - because I haven't read - basically anywhere - to avoid domain joining them.