@techspence What are you thoughts on PAWs? In my experience, literally all orgs draw the line there and use bastion hosts instead. Admins refuse to do office tasks in a VM or separate workstation.
It's been quiet for a while around bloodhound Python, however I'm happy to share that I am now maintaining the project at my personal GitHub. The latest version fixes many bugs/issues, also thanks to the many PRs that were submitted (thanks all!). https://t.co/biBprRdgJj
Linux: Password-based remote auth is a big no-no, especially for root! Use public keys and sudo instead.
Windows: Or we can just enable it by default. Let's call it SMB. Oh and the hash is also the password, because why not.
Just released #hashcathelper 1.0.0. This version is ready to visualize password re-use in multi-domain environments thanks to a feature suggestion by @n00py1. Now available on PyPI!
https://t.co/DO9q7QtLNu
@_dirkjan@bookingcom Same for me. Was contacted via WhatsApp, but they had all details. Very convincing. This has been going on for years and booking claims it's an issue with the hotels.
Yet I never had this issue with hotels[.]com. Made a one-time exception for booking - instantly almost scammed.
@florianaigner When people thought the world was flat, they were wrong. When people thought the earth was spherical, they were wrong. But if you think that thinking the earth is spherical is just as wrong as thinking the earth is flat, then your view is wronger than both of them put together
Security researchers have disclosed vulnerabilities in AudioCodes desk phones and Zoom Zero Touch Provisioning (ZTP) to gain full remote access to devices
#cybersecurity#audiocodes#zoom
https://t.co/yNAk4N4DSi
OK, I have no idea how long this series of tweets will be, but I've heard from several people associated or previously associated with NCC. While I've verified the association, bear in mind that a lot of this is from single sources.
To start with, here's some backstory on the original round of layoffs in February:
A North America-wide all-hands meeting was scheduled with only a few days notice, which was unusual. On that day, the British press were reporting that NCC was forecasting lower growth than expected and were going to lay off ~8% of its global workforce.
The all-hands meeting confirmed layoffs would be coming. Managers would be notified that same day, and the layoffs would start at 12PM EST on the next day (a Friday).
The layoffs were described by one source as a "bloody massacre". Employees were locked out of their computers before their manager had a chance to contact them and tell them the bad news. Several of these employees were onsite at customers in the middle of engagements. Several employees were locked out by mistake and only found out hours later that they were still employed.
The actual number of employees laid off ended up being significantly higher than the 7-8% they were told in the all-hands meeting. One source estimated that between 10-15% of all North American employees were let go.
Mismanagement was blamed by one source for the layoffs, as the North American side of the business was heavily dependent on work from big west coast tech firms and startups, which was a shift from a lot of east coast financial customers.
When these big tech firms started their own layoffs, they reduced the number of services being bought from NCC, resulting in the February layoffs.
@peter4logo @florianaigner Clauser ist auch nicht der erste Nobelpreisträger mit zweifelhaften Positionen. Ein weiterer Fall der Nobel-Krankheit.
https://t.co/bxznA3EFbz
@peter4logo @florianaigner Sämtliche Publikationen von Clausen beziehen sich auf Quantenphysik. Dadurch kann man weder auf das sachliche Argument eingehen, noch hat er irgendeine besondere Autorität auf dem Gebiet. Soll er sein Modell doch Peer Reviewen lassen.
https://t.co/qKYd1VeSOI