@Viss@mastodon.social
@Viss@mastodon.social avatar

Viss

@Viss@mastodon.social

D̒͂̕ᵈăᵃn̕ᶰ Ť̾̾̓͐͒͠ᵗe͗̑́̋̂́͡ᵉn̅ᶰtᵗl̀̓͘ᶫe̓̒̂̚ᵉrʳ
:: Founder, Phobos Group
:: Quad Flooper :: Scoville Addict
:: Public Speaker :: food pornographer
:: Twitter Alum (2011-2012)
:: security longhair :: tattoo'ed nerd

<script>alert(1)</script>
'>"></div><blink><marquee>visit hax.lol for a good time

#startups #security #infosec #redteam #publicspeaking #asm #attacksurfacemanagement #orbital #fundraising #saas
#drones #quads #hotsauce #spices #homeassistant #homeautomation #cartoons #animation

This profile is from a federated server and may be incomplete. Browse more on the original instance.

Viss, to random
@Viss@mastodon.social avatar

happy friday, internet!

gsuberland, to random
@gsuberland@chaos.social avatar

honestly so glad I pivoted my career to focusing on industrial control and embedded systems security, rather than sticking with average office stuff, because stuff like "Slack trains LLMs on your company messages with no isolation between roles" and "MS Recall makes infostealers trivial and ruins all ability to isolate an access timeline" is enough that I'd just be throwing my hands up and saying fuck it, I give up. I salute those who have the energy to fight the tide.

Viss,
@Viss@mastodon.social avatar

@gsuberland on the consulting end of things, the dumb cloud bullshits have finally spooked people enough that they want to go back to on-prem so now suddely we're getting lots of pings for help with stuff.

its real interesting to be sure

Viss,
@Viss@mastodon.social avatar

@gsuberland i guess we'll see, i mean, im in the line of fire there so i should be able to get some kind of read on that :D

Viss, to random
@Viss@mastodon.social avatar

congrats rockwell automation, welcome to like 2012.

Viss, to random
@Viss@mastodon.social avatar

wow what year is it?

jasonkoebler, to random
@jasonkoebler@mastodon.social avatar
Viss,
@Viss@mastodon.social avatar

@zackwhittaker @jasonkoebler ahahahahah fucking what :D

Viss, to random
@Viss@mastodon.social avatar

yeeeeessss
YEEESSSS

Viss,
@Viss@mastodon.social avatar

@capraobscura hard agree

Viss, to random
@Viss@mastodon.social avatar

im really curious how "a bunch of small businesses sued visa and mastercard and won" isnt major, major news

https://www.10news.com/news/local-news/settlement-reached-in-class-action-lawsuit-against-credit-card-companies

Viss,
@Viss@mastodon.social avatar

@aka_quant_noir youre right - 5 billion is not a lot for visa or mastercard

but the case law that these cases have created is now a way bigger problem for them

Viss, to random
@Viss@mastodon.social avatar

the 4th of july is a funny time for the uk to have an election, isnt it?

Viss,
@Viss@mastodon.social avatar

@Chip_Unicorn sadly the election tends to land juuuust on my birthday, or just after it (between nov 7 and 9 usually).

this year its on the 3rd

which sadly, isnt the 5th.
but if it WAS the 5th, that would make this year particularly amusing :D

Viss,
@Viss@mastodon.social avatar

@Chip_Unicorn i guess im just so used to the results landing when i mentioned that i figured THAT was the date.

so youre right, thats hilarious :D

gsuberland, to random
@gsuberland@chaos.social avatar

huh. I just inhaled my adhd meds. coughed and spluttered a whole lot, but nothing came back up.

this is going to be interesting.

Viss,
@Viss@mastodon.social avatar

@gsuberland if you start seeing all the timelines, can you ping me? cuz ill have questions :D

Viss, to random
@Viss@mastodon.social avatar

a story in two parts
(theyre the same part)

today alone, my firewall sent me 9 emails informing me that it's taken starlink out of my routing group (i loadbalance 2 isps) because the packetloss was so high it broke the threshhold i set.

yes ive talked to starlink support about it MULTIPLE TIMES. they even replaced the router. they refuse to believe the issue is between the dish and their groundstation.

image/png

Viss, to random
@Viss@mastodon.social avatar
Viss, to random
@Viss@mastodon.social avatar

https://www.youtube.com/watch?v=cUbIkNUFs-4&ab_channel=AlisonBurke

on the left is "everyone"
and on the right is "companies jamming AI into absolutely everything"

Viss, to random
@Viss@mastodon.social avatar

it really does boggle the mind, that microsoft does these things that, at least from what i can tell, EVERYBODY HATES AND NOBODY WANTS .. but still:

Viss, (edited )
@Viss@mastodon.social avatar

@capraobscura its gonna be "suddenly everyone installing enlightenment or customizing xfce" season soon

Viss,
@Viss@mastodon.social avatar

@capraobscura people are going to absolutely lose their fucking minds when they realize:

"all the extra shit you need to buy and license for windows that makes it easier to use, safer, gives you granular controls, firewalling, logging, security, attestation and more - just comes built into linux. free."

Viss,
@Viss@mastodon.social avatar

@capraobscura "wait i dont need to pay for splunk, i can just use blacklight and apache solr?!"

Viss,
@Viss@mastodon.social avatar
Viss, to random
@Viss@mastodon.social avatar

you dont get copy and paste anymore either.

Viss,
@Viss@mastodon.social avatar

@dale why are you being fair? they arent

gsuberland, to random
@gsuberland@chaos.social avatar

Microsoft Recall is going to make post-breach impact analysis impossible. Right now IR processes can establish a timeline of data stewardship to identify what information may have been available to an attacker based on the level of access they obtained. It's not trivial work, but IR folks can do it. Once a system with Recall is compromised, all data that has touched that system is potentially compromised too, and the ML indirection makes it near impossible to confidently identify a blast radius.

Viss,
@Viss@mastodon.social avatar

@kauer @gsuberland there are a multitude of reasons:

  • vendor lock in (games, various drivers, apps written specifically for windows)

  • regulatory lock in (scada, .gov, healthcare, finance/daytrading, "the industry says so")

  • "its what everyone else is using, so if i use it itll be easier"

  • interoperability (we're a windows shop and we're gonna have trouble dealing with ms office docs / xls / ppt etc from partner orgs who are also windows, etc)

  • or maybe they REALLY like ransomware.

Viss,
@Viss@mastodon.social avatar

@kauer @gsuberland also

  • the sales guy wont get his commission by selling linux
  • the other sales folks wont get THEIR commission selling a cornucopia of software (av, edr, logging, mdm, fleet management, patch management, middleware etc, other shit that costs money)
  • windows is a scaffolding framework into which you install "shit that costs money"
  • nobody wants to stop the niagara falls of money, so they push windows
Viss,
@Viss@mastodon.social avatar

@kauer @gsuberland oh im well aware.

but suit and ties gonna suit and tie

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • rosin
  • thenastyranch
  • ethstaker
  • DreamBathrooms
  • osvaldo12
  • magazineikmin
  • tacticalgear
  • Youngstown
  • everett
  • mdbf
  • slotface
  • ngwrru68w68
  • kavyap
  • provamag3
  • Durango
  • InstantRegret
  • GTA5RPClips
  • tester
  • cubers
  • cisconetworking
  • normalnudes
  • khanakhh
  • modclub
  • anitta
  • Leos
  • megavids
  • lostlight
  • All magazines