Looks like they're back.
Any favorite resources for getting up to speed on #Docker?
(Almost) complete description of the Exchange exploit chain, with a few interesting details: https://www.praetorian.com/blog/reproducing-proxylogon-exploit/
Turns out a few people might have been saved by a reverse proxy configuration that doesn't forward the /rpc URL (required only by Outlook Anywhere, not for OWA or ActiveSync), which is used to discover the internal host name of the the Exchange server that's required by other steps.
Sometimes, reducing attack surface helps, even if you can't know in advance.
Does this system with the 2.2GHz 6-core CPU, 16GB of RAM, and the H310 (I'll flash to IT mode) seem like a reasonable Truenas Core build? I haven't built a #Truenas box before, but that seems in the ballpark. #Dell #T320 https://www.techsupplydirect.com/dell-12g-poweredge-t320-8-bay-3-5-large-form-factor-2u-server-configure-to-order/
I just found out this morning about an AWESOME app that I've been waiting on for arguably decades. http://ventoy.net. It allows you to create a multiboot USB just by dropping ISOs onto the drive. It worked with everything I threw at it (Windows XP-10, Ubuntu, Kali, SecurityOnion, Hiren, FreeDOS, etc) except OS/2. I highly recommend all techs/security/forensic people check it out!
After three weeks and a bunch of cussing my LineageOS tester is back up and running again. #degoogled now I just need to replace the back glass and move back in.
I went through all this work rescuing this server, but now I'm not sure what to do with it. I need a NAS, but it's a non standard motherboard in a 2U case with no drive bays. I don't need another firewall right now, and any other service I can think of would be better on lower end, quieter hardware :/. Resale value isn't likely to be there. Decisions...
A mastodon instance created by Derek Taylor, creator of the DistroTube channels on YouTube and LBRY. Derek is an advocate for free and open source software.