floof.org

Secvalve mastodon (AP)

I am seeing so many incorrect reckons from people about patch management staging.

Modern EDR content updates don’t work the way old school patches do.

You have agent versions.

Policy versions.

Content versions.

This all work slightly differently.

Staging them old school ways is impossible if you want to get protection for threats updated in time.

1 2

Delta Sierra mastodon (AP)

Wake up babe, new furry elevator stress test meta just dropped.

#furry #convention #AnthroWeekendUtah2024 #elevator

1 5
we need to add furries to the list of ADA protected categories
1 1
Delta Sierra mastodon (AP)

@foone "emotional support fursuit"

It's not even an exaggeration, honestly!

1 1

Fi 🏳️‍⚧️ mastodon (AP)

Oh, so, spicy take -

I expect to see other failures of similar nature to the crowdstrike issue, in other companies and their products.

My expectation is informed by the massive number of layoffs in the past couple years, and a suspicion that many companies' internal infrastructure has been running in a degrading or possibly entirely unmaintained state since heavy layoffs occurred.

1 2
GrumpSec Spottycat mastodon (AP)
weird how MS cloud crap has had a lot of issues since they laid a bunch of people off.. (and continue to do so)

Big Purple mastodon (AP)

Content warning: MH (mild neg)

1 1

Content warning: re: MH (mild neg)


I just digitized a VHS tape produced by Yggdrasil Computing, Inc., titled "Linux - Installation and Beyond" that doesn't seem to be preserved anywhere. It's an interesting look back at what Linux installation was like in 1995, and hopefully should provide some historical context for those of you who weren't (un?-)lucky enough to live through this period of Linux.

YouTube: https://youtu.be/2IAa6MYVpVs

Internet Archive: https://archive.org/details/linux_-_installation_and_beyond

1 1

Av Husky 🎈 mastodon (AP)
For this #squeakysaturday, let's keep things squeaky clean, ok? 🧼🫧 with @vexit.bsky.social #rubberfur #latex
1 1
Kay Ohtie 🔜 FWA mastodon (AP)
Very clean and cleaning! ❤

A squeaky hello for #internationaldayoflatex! #squeak #rubberfur #squeakysaturday📷 Starburst @karinKariwanz
1 2

PSA: delete your old Photobucket account now! Don’t put it off.

You know those emails you’ve been getting for a year from Photobucket threatening to delete your old account and you were like lol who cares and ignored them?

Turns out they didn’t delete them anyway, they repurposed the business as a broker of biometric data to AI companies and they’re using your old pictures for that. You have to actually go in and delete your account to opt out, and you only have until Monday, July 22 to do it.

1 4

Microsoft Recovery Tool available now, with instructions to assist with the Crowdstrike issue impacting Windows endpoints.

This will require physical access & 1GB USB. You will need admin rights (+ access to the Bitlocker key, if Bitlocker is in place).

https://techcommunity.microsoft.com/t5/intune-customer-success/new-recovery-tool-to-help-with-crowdstrike-issue-impacting/ba-p/4196959

1 1

Them: “You’re not trans, why are you always defending them?”

Me: “I am also not a domestic cat, and if I see you abusing one of those I’ll kick your ass too.”

1 4
I'm trans AND a cat, so thanks twice
1

Tanzureir -> FWA mastodon (AP)

Shiny yote meets fluffy proot! What kind of mischief are they planning 👀

Left: @datbluehusky.bsky.social
Right: me
📸: @Shinyraptor

#SqueakySaturday #latexfur #rubberfur #latex #rubber

1 2

Patricia Aas mastodon (AP)

Normal folks hating on C++: it’s an old and memory unsafe programming language.

Me hating on C++: there is a convicted rapist and registered sex offender on the C++ committee and the committee leadership worked really hard to keep him there.

1 1

Ninji mastodon (AP)

I got to be a dog at Glasgow Pride today 🐺

Was hectic and warm but it was fun!

1 2
Tufty Indigo 🪗 mastodon (AP)
but only until the end of June, right? uhhhhh... :blobfoxlaughsweat:
Ninji mastodon (AP)
@tuftyindigo nah, I'm gay all year round

elle mastodon (AP)
just heard someone call the people who can't resist looking at their bright little phones in a movie theatre "moth people" and I will be using this moving forward
1 2

1 2


Seiko mastodon (AP)
A friend called me onto this photo my buddy Lingling did and I somehow missed. I really love this vibe!
1 2

Pippin friendica

Apollo 17 launched from the moon to return to earth 51 years, 7 months and 6 days ago, and no one's been back since. I'm 50, and no one's been to the moon — or even outside low earth orbit — in my lifetime. The (manned) space age finished before I was born!

The idea that we should now attempt to colonise a planet or moon within the time it takes us to trash the earth into unlivability is fanciful, to say the least.


This entry was edited (9 months ago)
1 2

Filip W mastodon (AP)

This is a remarkable story.

A factory belonging to a Polish snack company Aksam burned down last weekend, restricting its production capacity to only about 35%.

However, the CEO announced that no employee will be fired.

"Employees will be employed in a two-week system. Then there will be a crew exchange. I want everyone to have a job. However, a two-week job does not mean a reduction in salary. It will be full. In our company, we always put the human being in the first place and this will not change" - said the president Adam Klęczar

Here is the story (in Polish) https://businessinsider.com.pl/biznes/fabryka-paluszkow-splonela-zwolnien-jednak-nie-bedzie/0je1txd

This entry was edited (9 months ago)
1 2

David D. Levine mastodon (AP)
I won't be using passkeys any time soon. https://me.micahrl.com/blog/concerns-about-passkeys/
1 3

Juggling With Eggs mastodon (AP)

‘In this area of healthcare, like no other I know of, the professionals with the requisite expertise are positioned by their critics as having been “captured by ideology” and therefore lacking in credibility. Meanwhile, those without the expertise are positioned as “independent”, which critics argue makes them better able to evaluate the evidence – despite having never worked in the field and having no understanding of its complexities’

Dr Aiden Kelly, clinical psychologist

#Trans

1 1
Juggling With Eggs mastodon (AP)

“the ban is not supported by the Cass review or the wider evidence, and the exceptional approach to transgender youth is discriminatory and unfair.”

https://www.theguardian.com/commentisfree/article/2024/jul/19/transgender-children-ban-puberty-blockers-wes-streeting

1 1

Tom Walker mastodon (AP)
Mastodon is the world's biggest community of people who deeply love computers and also think that the world would probably be better off without computers
1 5

e(Ag)le 🦅 mastodon (AP)

people often ask me if my radio software's badass unicorn mascot is trans-coded

well duh, it's radio software, everything on it gets transcoded

1 3

CelloMom On Cars mastodon (AP)

"To deter long-distance travel, the band offered an initial presale of tickets for local postal codes only.

#MassiveAttack are giving train travellers special privileges: access to a VIP bar with separate toilets, extra pre-sale tickets and free transfers to and from the train station via electric bus. They are also working with the local train network, Great Western Railway, to lay on five extra trains for travelling fans."

https://www.bbc.com/travel/article/20240717-the-band-that-doesnt-want-you-to-travel-for-their-tour

1 3

Petition to make the 19th of July "International BSOD Day"
1 2

Haroon Siddique sums up the problem with the Just Stop Oil sentencing:

'Individual comparisons, while also imperfect, can also pose questions. Can it be right that protesters who forced closure of a motorway will be locked away for so long, when in March a woman was given a six-month suspended sentence for causing death by careless/inconsiderate driving?'

And if you think this is just 'whataboutism' then you've missed the point about property & life in law!

#politics
https://www.theguardian.com/law/article/2024/jul/19/just-stop-oil-jail-terms-questions-harsh-treatment-protesters

1 2

Èlia 🌸🦊 mastodon (AP)
so apparently the Crowdstrike crash was due to a c++ nullptr dereference. Common C++ win
1 1
RevK :verified_r: mastodon (AP)
Ah, Mr Bobby *(0x9c) Tables...

1 2

Tinker ☀️ mastodon (AP)

So managers are starting to spew the whole "well I didn't do anything wrong, it affected everyone else, so we're not liable" bullshit.

Did you allow a third party vendor to have the highest privilege access to all of your systems AND let them run Remote Code Execution on your systems whenever they want?

You didn't have a test environment set up to test each update or patch that is applied to your systems before you push them to prod? No? Just let it auto-update?

Yeah, that "Risk Transference" didn't work so well as your GRC policy seemed to think it would, huh? I know they're a security company and they SHOULD have tested it, but they didn't, did they?

I know everyone else does it, but if everyone else jumped off a bridge, would you?

Just because everyone else fucked up, doesn't mean you didn't fuck up.

There's gonna be a lot of deep discussions in this post-mortem and hopefully orgs will change. Those that don't will just be hit again... and again... and again.

#crowdstrike

1 1

Chris Trottier akkoma (AP)

Wow! 😲

CrowdStrike’s CSO sold $1.5M worth of stock right before the outage today!

I repeat, the Chief Security Officer sold $1.5M worth of stock!

https://www.barrons.com/articles/crowdstrike-insiders-sold-stock-cac5e509?siteid=yhoof2

1 2

No one you look up to is better than you are.
1 2

Jen Again mastodon (AP)
yr favorite mascot said trans rights.
1 3
good time to remind everyone of this
1 2

iximeow mastodon (AP)
THEY POSTED A BLOG https://www.crowdstrike.com/blog/technical-details-on-todays-outage/
This entry was edited (9 months ago)
1 2

Darren mastodon (AP)

Note that the BBC didn’t go offline today.

That’s because their entire operation is run from a bank of half a million BBC Micros all linked together in an enormous basement under Broadcasting House.

The whole of greater London takes its heating from that basement.

1 2
Phil M0OFX hometown (AP)
Nine tenths of the heat comes from the Ferranti ULAs. The contribution of the 6502 CPUs is negligible.

Stephen Ramsay hometown (AP)

If a hacker had done this, we would be trying to put them in prison forever. If this were a company making a physical device that happened to kill people, the settlement numbers would be astronomical.

I predict that *at best,* there will be some kind of "hearing" along the lines of the Boeing inquisition, but I doubt even that will happen.

Which makes me wonder (among other things) why we have allowed software bugs and errors to occupy their own special moral category.

1 2

Hazelnoot sharkey (AP)
"there's nothing more permanent than a temporary solution"
1 1
Sharkie mastodon (AP)
I used to have a line that I preached: "short term solutions become long-term problems"
1

Mimo 💮 mastodon (AP)

Something I love bringing up again from time to time: a little more than five years ago a friend and I found a functional microphone in a smart kitchen appliance that wasn't advertised to have one. The product in question was being promoted hard by Lidl because they sold it at a fraction of the price of similar devices.

https://www.numerama.com/tech/525214-monsieur-cuisine-connect-micro-cache-android-non-securise-les-dessous-du-robot-cuisine-de-lidl.html

It made national & european news and I was interviewed by the biggest TV news show at prime time.

All we wanted was run Doom on the thing. We installed Discord on it and hopped into a call because we thought it would be funny and fell off our chairs when it turned out the person on the other side could hear us just fine

1 3

TK Wolf mastodon (AP)

"Please allow me a moment to clean this up. Rest assured, I will let no harm come to you."

I've been swooning over Von Lycaon for a while now, and @gearwurk surprised me with this awesome art of Von TK! I guess Mr. Von Lycaon decided it was time for a new recruit. ^^

Thanks again so much! ^^

This entry was edited (9 months ago)
2 3

Matthew Garrett mastodon (AP)
"Linux would have prevented this!" literally true because my former colleague KP Singh wrote a kernel security module that lets EDR implementations load ebpf into the kernel to monitor and act on security hooks and Crowdstrike now uses that rather than requiring its own kernel module that would otherwise absolutely have allowed this to happen, so everyone please say thank you to him
1 1
Later posts Earlier posts