Spyke

Replies

Comment on

I find this to be most accurate with Debian

Reply in thread

There is nothing more important than security patches on a system.

I used to work at an FMI, which’s motto was “keep things stable”. Even the ciso department bought that crap. Until we hired a white hat hacker. The only thing given was the name of the company. He managed to get into the building, access an employee’s workstation and install a root kit on one of the most important financial message tracking systems (you know, the one that instructs other systems to transfer money), using a security bug, which would have been patched if they kept a regular (security) update cycle. After shit hit the fan, many people were fired and an update cycle was introduced.

No system is important enough to not patch. And if you believe it is, you’re wrong.

Comment on

Ansible Playbook - How do I reverse engineer a running system?

I would copy the existing system onto a new system:

  1. Update system to the latest packages
  2. Create a new base system using the same distro
  3. Check which packages are not on the new system, add them to your playbook
  4. Install packages on new system
  5. This will take some time. Run a find of all files and pass them to md5sum or sha512sum to get a list of files with their checksum. Compare the list from the old system to the new system.
  6. Update your playbook with these findings. Template is probably the way to go, Lineinfile might be good as well, use copy if nothimg else works.
  7. Check firewall settings and update your playbook.

Anyhow this will take some iterations, but while you have a copy of your ‘production’ system, you can test on your ‘test’ machine until you have the same functionality.

Comment on

Moving from the US to the EU soon... Any advice?

Reply in thread

The integration part is because we would like for anyone to fit in, and not be confined to your ‘hood’

We don’t mind you not speaking the language, but English is usually not a first language, sometimes not even a second, and sometimes omitted. Especially in rural areas.

So yeah, it’s nice if we can actually have a conversation about the local soccer team, or town buffoon who thinks the government is conspiring about pricing covid shots too high…

Comment on

When Big Tech sets its own rules, Europe has failed

Translation (by Deepl)

When Big Tech sets its own rules, Europe has failed Brussels is apparently prepared to make far-reaching concessions to Trump. This means the idea of digital sovereignty and Europe’s digital decade is over 

Donald Trump wants simpler rules for US companies - and is returning the favour for generous campaign donations. Brussels threatens to buckle.

The big digital companies should have a say in which rules apply to them in future, at least that is what is currently being discussed behind closed doors. It’s like letting the tobacco companies run a lung clinic. Or putting the oil lobby in charge of protecting coastal waters. In Brussels, the dog should watch the sausage. Even the EU Commission’s first ideas for appeasing Trump’s anger were hair-raising. After all, the Digital Markets Act (DMA), the centrepiece of Europe’s digital decade and part of a whole series of sister regulations, could be softened if Washington so wished.

Comment on

What makes CrowdStrike so ubiquous that their error created such catastrophe?

Reply in thread

What CrowdStrike is actually selling, is someone who actually looks at the system logs and who pushes a button when something pops up. Roughly.

There are better solutions on the market. Unfortunately CrowdStrike has the more aggressive sales team.

For those wondering, I’m referring to *nix based solutions like SElinux, appArmor, iptables, nftables, cgroups, … But you need to monitor your logs if you want to take appropriate action.

memes

Comment on

thats crazy

Reply in thread

You assume I would think you’re wrong. I do not.

Morally, assassination is despicable. But so is fascism.

I applaud you for taking the high road, while I just say Fuck ‘em all. Fascism should not be tolerated, even in a democracy.