publicvoit, to microsoft
@publicvoit@graz.social avatar

After basically the whole cloud was hacked (see list of related sources on https://karl-voit.at/cloud/ ), the first follow-up incidents went public caused by missing containment actions:

60,000 emails were stolen from 10 accounts
https://www.reuters.com/world/us/chinese-hackers-stole-60000-emails-us-state-department-microsoft-hack-senate-2023-09-27/

If you didn't understand until now: basically EVERYTHING at Microsoft got hacked and Microsoft can't (or won't) get rid of the intruders. Everything authenticated by Microsoft is tainted. Even auth.

mapache, to fediverse
@mapache@hachyderm.io avatar

So, I will add a very basic interface to my static site with . I will follow this https://paul.kinlan.me/adding-activity-pub-to-your-static-site/ but for , which is where my site is hosted, and this is a thread in case I don't find the time to write a blog.

hugovk, to programming
@hugovk@mastodon.social avatar
jbzfn, to azure
@jbzfn@mastodon.social avatar

A client asked me if it was a good idea to move to GCP, told him that regardless of the costs, he'll have a better chance of getting the Pope on the phone than meaningful support from Google.

The cloud equivalent of buying a used car. You're pretty much on your own. Plus very few professionals in our region are getting certified on it.

Most get some Azure | AWS | OCI certs.

GCP is a joke, even down here.

mikegoatly, to azure
@mikegoatly@toot.community avatar

Helping a colleague troubleshoot an oddity - trying to get the details of a Key Vault using the with az keyvault show --name X but it errors out saying that an unrelated resource group could not be found. (Apparently the resource group did exist at one point, but has been deleted)

az keyvault list is empty, as is list-deleted, but the vault definitely exists.

kkarhan, (edited ) to IT German
@kkarhan@mstdn.social avatar

Wenn ich das richtig interpretiere will as -Dienstleister vieler in wohl Versichertendaten durch 's - "" Netzwerk transferieren lassen...
https://www.stepstone.de/stellenangebote--Administrator-m-w-d-Microsoft-Azure-Cloud-Netzwerk-Hamburg-Essen-Frankfurt-am-Main-Dresden-Ludwigsburg-BITMARCK-Unternehmensgruppe--10294801-inline.html

Ist das angesichts der illegalen und Gesetzeslage ( ist IMHO mit & unvereinbar!) überhaupt zulässig??

AFAIK ist Azure nichtmals -konform!!!

Frage an @bsi @DS_Stiftung @dsk @maxschrems @noybeu @datenschleuder @heiseonline

Wintermute_BBS, to azure

They asked, and my mom told me to be an honest person ... 🤷‍♂️​



eldamir, to azure
@eldamir@hachyderm.io avatar

Getting into working with and is proving painful thus far. I feel like almost zero of my prior experience is transferable. My time spent managing and servers in the past yields zero benefit. Sure, the Azure CLI is sane enough, because I know how to use the terminal.

Getting an overview of the Azure resources I need is horrible though. I need some 15 different services to get a simple multi-container app with storage and DB to run, and configuration is paaaaain 😣

ziti, to dotnet
@ziti@hachyderm.io avatar

Hey there folks, I'm Zach! I’m a dad, husband, and a Principal Solutions Architect at Avantax Wealth Management. The main technologies that I work with are
, , , , and

I enjoy , , , , , , , , , , and are my favorite dog breed, which I have two of.

Looking forward to meeting you all!

coldclimate, to random
@coldclimate@hachyderm.io avatar

Every time I sign into I'm reminded that I would actually rather bang my genitals in the fridge door if it too would solve my problems.
UX folks at Microsoft, make that a user story.

kellogh, to azure
@kellogh@hachyderm.io avatar

out of curiousity has anyone seen data corruption issues with either Azure DevOps Repos (Git only) or ' Git provider. Specifically interested in during merge conflicts, where a file was changed and the change isn't reflected in Git history. Boosts appreciated

ohthehugemanatee, to microsoft
@ohthehugemanatee@fosstodon.org avatar

What are the biggest engineering moves and would have to make to become become the most and native hyperscaler? Dream enormous, please.

zoness, to tech
@zoness@mastodo.neoliber.al avatar

Not sure why I didn’t do it years ago but I finally ditched Wordpress and built my blog with Hugo, a static site generator: https://zoness.me

For a small space that is essentially a rant zone, it’s absolutely perfect and has significantly reduced the complexity of deploying to new servers.

Also I moved off of Azure back to my previous host, Vultr. Turns out I just need a low powered VM for most things.

publicvoit, to microsoft German
@publicvoit@graz.social avatar

-Cloud: Weitere kritische Lücke – scharfe Kritik an Microsoft
https://www.heise.de/news/Microsoft-Cloud-Weitere-kritische-Luecke-scharfe-Kritik-an-Microsoft-9234573.html?wt_mc=rss.red.ho.ho.atom.beitrag.beitrag

"Vertrauen Sie uns einfach" 🤣😜🤪🫣😂🙈🤡

heapwolf, to microsoft
@heapwolf@fosstodon.org avatar

Anyone who built anything on right now.

publicvoit, to microsoft
@publicvoit@graz.social avatar

seems to have lost a key that gives attackers access to basically ALL Microsoft services including "Login with Microsoft".

In other words: it looks like anything from Microsoft clouds including 3rd-party authentication is compromised. And they won't set up their systems from scratch as you'd normally do after a hack.

This & more updated on my "You Can't Control Your Data in the Cloud" article on https://karl-voit.at/cloud/

mjgardner, (edited ) to microsoft
@mjgardner@social.sdf.org avatar

I can't connect to our container registry from anymore because unceremoniously removed support from their extension last month. They say it "will be moved to a separate [as yet unpublished] extension.” https://marketplace.visualstudio.com/items/ms-azuretools.vscode-docker/changelog#user-content-1.27.0---16-october-2023:~:text=GitLab%20Container%20Registry%20support%20will%20be%20moved%20to%20a%20separate%20extension

The same release added registry support and retained separate support. This essay from last year about as an onramp to Microsoft lock-in is looking more and more accurate: https://ghuntley.com/fracture/

dustinrue, to azure
@dustinrue@chateaude.luxe avatar

Real question, any of my followers actually knowledgable about Front Door and can tell me why a high number of requests results in 400 response codes periodically.

publicvoit, to azure
@publicvoit@graz.social avatar

Russian Hackers Breach Microsoft
https://www.techopedia.com/news/russian-hackers-breach-microsoft-expert-analysis

After Chinese(?) hackers infiltrated & most probably all connected systems for years without being noticed, the Russians do seem to have stolen important source code.

Takeaways: isn't able to protect their most important assets. They don't even notice hackers in their systems for a long period of time. When your threat model relies on secret source code, you're not coding good .

publicvoit, to microsoft German
@publicvoit@graz.social avatar

"Gesundheitswesen überlastet, #Microsoft will mit #Cloud und KI helfen"
"Microsoft wirbt stark für den Einsatz seiner Dienste im Gesundheitswesen. Die Cloud-Infrastruktur #Azure sei dabei sehr sicher, verspricht das Unternehmen."

https://www.heise.de/news/Gesundheitswesen-ueberlastet-Microsoft-will-mit-Cloud-und-KI-helfen-9684821.html?wt_mc=rss.red.ho.ho.atom.beitrag.beitrag

Es kann sich dabei wohl nur um einen Scherz handeln, oder? Nachdem die Kronjuwelen von Azure seit mehreren Jahre nachweislich infiltriert sind und kürzlich Millionen öffentliche interne Dateien aufgetaucht sind ... 🤦‍♂️

#Sicherheit #security #TI

publicvoit, to security
@publicvoit@graz.social avatar

I write a blog article on the breakdown of , focus on lost keys, not realizing being compromised by state actors for years & infiltrated security team. See list on https://karl-voit.at/cloud/

I need a catchy but not too clickbaity/exaggerated title so that I don't lose potential readers but also express the importance/impact.

Help me brainstorm.

My draft: "The Security of Microsoft Services and Many Windows Hosts Is Compromised" but I'm afraid that is too weak.

mapache, to OpenAI
@mapache@hachyderm.io avatar

On the weekend I was playing with porting a action to DevOps, and it is the first time that the prompt engineering concept it hit me, like for real. When people mentioned "prompt engineering", I got it, and I could imagine it, but I did not saw it so real.

alan, to voyager
@alan@subdued.social avatar

I must admit, this news about and has me shook:

"A fresh analysis of Voyager 2's images show both ice giants are in fact a similar shade of greenish blue, which is the 'most accurate representation yet' of the planets' colors, the new study finds."

https://www.space.com/uranus-neptune-similar-shades-of-blue-voyager-2-images

0x58, to random

⚠️

Portal - Errors accessing the Azure Portal - Investigating

Impact Statement: Starting at approximately 15:00 UTC Azure customers may experience error notifications when trying to access the Azure Portal. We are aware of this issue and we're currently investigating. Further updates will be provided shortly.

https://azure.status.microsoft/en-gb/status/

rodtrent, to ai

The global artificial intelligence (AI) in cybersecurity market size was evaluated at USD 17.4 billion in 2022 and is expected to hit around USD 102.78 billion by 2032 https://rodtrent.com/ipa

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • khanakhh
  • kavyap
  • thenastyranch
  • everett
  • tacticalgear
  • rosin
  • Durango
  • DreamBathrooms
  • mdbf
  • magazineikmin
  • InstantRegret
  • Youngstown
  • slotface
  • anitta
  • ethstaker
  • ngwrru68w68
  • cisconetworking
  • modclub
  • normalnudes
  • osvaldo12
  • cubers
  • GTA5RPClips
  • Leos
  • tester
  • megavids
  • provamag3
  • lostlight
  • All magazines