himazawa

joined 2 years ago
[–] himazawa@infosec.pub 1 points 2 years ago* (last edited 2 years ago)

A raspberry with Adguard + unbound, a zimaboard with truenas scale running the -arr suite, nextcloud, homeassistan, homarr, headscale and caddy 2x2TB nvme and 3x 4tb HDD I recently got a new PC and I think I will convert it to being part of the homelab, it has a ryzen 7 3xxx and a 2070 super.

[–] himazawa@infosec.pub 2 points 2 years ago* (last edited 2 years ago)

The difference is that you need way more interaction. Expose a webserver on the internet and check how many requests you get from just bots.

You can control what you navigate and how to interact with the outside world, but you can’t control how the outside world will interact with your services.

[–] himazawa@infosec.pub 1 points 2 years ago (2 children)

Don’t expose anything from your local network to the internet (unless you want multiple new sysadmins in your house). Try tailscale instead.

[–] himazawa@infosec.pub 1 points 2 years ago* (last edited 2 years ago) (1 children)

It's pretty funny, because from mechanicalkeyboards they suggested to post here because you have more knowledge on low profile keyboards.

[–] himazawa@infosec.pub -1 points 2 years ago

Row staggered but not splitted.

[–] himazawa@infosec.pub 0 points 2 years ago (1 children)

How much like the corne do you want it to be?

like a normal keyboard and not split

Also, how DIY do you want to get?

As long as no soldering is required I am up for everything

 

I am looking for a low profile keyboard compatible with the choc switches. I plan to put the choc sunset on it. I was looking for something similar to the Corne, just without the ergo-split thing. A standard 65-75% would work.

Bonus for hot swappable and no soldering required.

[–] himazawa@infosec.pub 7 points 2 years ago* (last edited 2 years ago)

WannaCry targeted hospitals, businesses and similar machines.

WannaCry targeted everything with SMB exposed, blindly.

Also, you should read more about security through obscurity, the fact that "no one will target you because you are a low-value target" is a false sense of security.

[–] himazawa@infosec.pub 3 points 2 years ago (1 children)

I don't know why the author of the video didn't mention it but LockDown mode is really useful.

At least for me the default is lockdown mode on and appropriate exceptions for websites I trust.

[–] himazawa@infosec.pub 3 points 2 years ago* (last edited 2 years ago) (2 children)

I believe the risk of running outdated software is super inflated and mediatic, 99% of people would be absolutely fine running a version of Android from 3 years ago or Windows 8.

That's the same thing people running windows XP on internet were thinking in 2017.

Then WannaCry arrived and they got their data encrypted :)

[–] himazawa@infosec.pub 3 points 2 years ago* (last edited 2 years ago)

Perhaps images, video, font etc. rendering could be compromised?

Yes, it already happen in the past. Also the Wi-Fi and Bluetooth stack got exploited, like multiple kernel drivers.

But it shouldn't be a matter of "in the past was X exploited?" but more on having a correct security posture.

Honestly if you are arguing about wasting a "perfectly working phone" you should blame it on the vendor, especially Android devices vendors have this let's say "defect" of dropping the support after 4/5 years.

Also not going to talk about custom ROMs (with the super rare exclusion of some) managed by god knows who, without any security team behind.

Since even the NFC and Cellular Network stack got vulnerabilities the only way you would consider an old phone "safe" to use is just turning it into the equivalent of a local ARM server.

Also pretty fun seeing the replies in the original post talking about how Google Play store shouldn't have malware on it.

[–] himazawa@infosec.pub 6 points 2 years ago (3 children)

Do anyone knows if it support local-only without joining the p2p network?

1
submitted 2 years ago* (last edited 2 years ago) by himazawa@infosec.pub to c/infosecpub@infosec.pub
 

What about setting the new language of a post to English? There are people that don’t know how lemmy works that keep on opening new posts and leaving the language to “Undetermined” by mistake so no one can answer them.

view more: next ›