ricci, to security
@ricci@discuss.systems avatar

Hey! Let's talk about #SSH and #security!

If you've ever looked at SSH server logs you know what I'm about to say: Any SSH server connected to the public Internet is getting bombarded by constant attempts to log in. Not just a few of them. A lot of them. Sometimes even dozens per second. And this problem is not going away; it is, in fact, getting worse. And attackers' behavior is changing.

The graph attached to this post shows the number of attempted SSH logins per day to one of @cloudlab s clusters over a four-year period. It peaks at about 3.4 million login attempts per day.

This is part of a study we did on our production system, using logs of more than 640 million login attempts, covering more than 1,500 hosts on our side and observing more than 840 thousand incoming IP addresses.

A paper presenting our analysis and a new, highly effective means to block SSH brute force attacks ("Where The Wild Things Are: Brute-Force SSH Attacks In The Wild And How To Stop Them") will be presented next week at #NSDI24 by @sachindhke . The full paper is at https://www.flux.utah.edu/paper/singh-nsdi24

Let's dive in. 🧵

adelgado,
@adelgado@eu.mastodon.green avatar

@ricci @cloudlab @sachindhke my simple solution (like @AndresFreundTec mention) is to use random ports for SSHd. Give a bit of extra work but with automation via Ansible and Puppet is negligible.

inspirationgrid, to art
@inspirationgrid@graphics.social avatar
furrypuppet, to random
@furrypuppet@mastodon.social avatar
operationpuppet, to fediverse
@operationpuppet@mastodon.content.town avatar
Bogusmeatfactory, to VideoGames
@Bogusmeatfactory@dosgame.club avatar

Tonight I'll be streaming the point and click adventure version of King's Quest II... or should I say, King Saltine will be streaming their playthrough of King's Quest II.... I've lost my dang mind.

operationpuppet, to random
@operationpuppet@mastodon.content.town avatar

New monstor just dropped! This is my second sack , done for an O:P community member. Turns out I quite enjoy making sack !

Front full view of blue furry monster sack puppet
Left full view of blue furry monster sack puppet
Right full view of blue furry monster sack puppet

felixf, to random
@felixf@chaos.social avatar

Why does the Jira at Perforce let me create a user with my e-mail address, send me an activation link, and then tells me that this user is not allowed to access Jira?

On that note, why is the issue tracking not public anymore in the first place? Feels like the open source nature of is getting diminished.

CyrilBrulebois, to random
@CyrilBrulebois@mamot.fr avatar

Alright, “idling” between 400%CPU and 600%CPU (for a setup with < 15 hosts, all of them having had their agent run a while ago, each of those taking a couple seconds) is going to be the final nail in the coffin for me.

Atrocious migration experience, every single time, and now a huge waste of resources? Enough.

operationpuppet, to random
@operationpuppet@puppet.town avatar

Another #puppet off to their forever home! I think of this one as “that guy at the Linux conference who wouldn’t stop talking to us at the bar.” #puppets #puppetbuilding #smallbusiness

benatti, to rust

Any programmers around here?

appsec4one,

@gvrooyen @iw just be glad that it isn’t as popular a word as or or . Maybe the next programming language will be ‘THE’ and freak out all the search engines.

operationpuppet, to Podcast
@operationpuppet@puppet.town avatar

Okay, finally getting around to a pinned #introduction post on this server.

Hi, I'm Kevin, a professional #puppet builder, amateur puppet performer and maker of puppet-based media. I run my own shop, host regular #live streams and host a #podcast. My style is very much inspired by Jim #Henson and The #Muppets, of course!

Here's a (very) small sample of some my favourite pieces I've made over the years. All links in my profile or go to https://www.operationpuppet.com

A yellow Nosferatu puppet with bushy eyebrows and claws
A closeup of a green monster puppet with half closed eyes
A cute small blue furry monster puppet

tioh, to random

Merry Christmas #puppet #christmascard

adelgado, to mastodon
@adelgado@eu.mastodon.green avatar

I finally managed to create a Puppet module to install Mastodon https://codeberg.org/adelgado/puppet-mastodon

makkhorn, to random
@makkhorn@c.im avatar

PROVE ME WRONG
He's a miswired human and . BUT WORSE, if he flames out, there still will be a huge operation in place to carry on.

mjg59, to random
@mjg59@nondeterministic.computer avatar

Today I got to tell my students that in the bad old days we used to write scripts that just SSHed into every machine and ran sed on config files but today we had puppet and I regret to inform you that based on their facial expressions we apparently still write scripts that just SSH into every machine and run sed on config files

kkarhan,
@kkarhan@mstdn.social avatar

@mjg59 isn't doing exactly that?

Basically all systems that don't rely on a client to regularly pull configs does that...

TheSmollestofBeans, to art
@TheSmollestofBeans@ohai.social avatar
TheSmollestofBeans, to Halloween
@TheSmollestofBeans@ohai.social avatar

(Reposted to fix a picture) I made an Audrey II puppet and dressed up as Seymour from Little Shop of Horrors for Halloween. Ended up with the prize for scariest costume from my work’s costume contest 😎
#Halloween #handmade #art #puppet #HalloweenCostume

Carnivorous plant puppet with scariest costume trophy
Carnivorous plant puppet sitting on desk

operationpuppet, to random
@operationpuppet@mastodon.content.town avatar

Movin’ right along! Another gets a forever home.

monkeyflower, to Meme
operationpuppet, to fediverse
@operationpuppet@mastodon.content.town avatar

As I think about using integration more, I reflect that I used to be discouraged there aren't a lot of people here.

But then I realized: that's not a bad thing. I can be among the first. This is actually a perfect place to be. Imagine being the among the first of any genre on any platform.

I may not have a big audience here but each one of them will be an actual human person. That's valuable.

adtothebone, to Vintage

If David Letterman and Conan O'Brien Mated

operationpuppet, to random
@operationpuppet@mastodon.content.town avatar

A days work in the mines.

hughsie, to Ansible
@hughsie@mastodon.social avatar

My "Use fwupd to deploy Linux firmware updates and more" blog was published to the @rhdevelopers site, comments most welcome.

https://developers.redhat.com/articles/2023/06/08/use-fwupd-deploy-linux-firmware-updates-and-more

It explains a bit how to use from other programming languages or in frameworks such as and , so might be useful for people thinking of using fwupd in a customer project.

mapologies, to Dragonlance
@mapologies@mastodon.social avatar

Bert & Ernie are the most famous flatmates from . They are known as Epi y Blas or Beto y Enrique in Spanish. Does your language have a different name too?

More maps http://mapologies.com/puppets

furrypuppet, to random
@furrypuppet@mastodon.social avatar
  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • InstantRegret
  • Youngstown
  • thenastyranch
  • Durango
  • rosin
  • slotface
  • osvaldo12
  • everett
  • ngwrru68w68
  • kavyap
  • GTA5RPClips
  • cisconetworking
  • DreamBathrooms
  • megavids
  • magazineikmin
  • cubers
  • ethstaker
  • Leos
  • tacticalgear
  • mdbf
  • normalnudes
  • khanakhh
  • tester
  • provamag3
  • modclub
  • anitta
  • lostlight
  • All magazines