CAWright

joined 3 years ago
[–] CAWright@infosec.pub 9 points 1 week ago

Greenland probably craves Brawndo too.

[–] CAWright@infosec.pub 1 points 3 weeks ago

More like the body dissolving barrel in breaking bad?

[–] CAWright@infosec.pub 7 points 3 weeks ago

If it were simpler to GTFO, I absolutely would.

[–] CAWright@infosec.pub 3 points 3 weeks ago

JFC. How stupid can you be?

[–] CAWright@infosec.pub 26 points 3 weeks ago (4 children)

I don't think "marinated" is the right word here. What's the word you use when you keep something in formaldehyde?

[–] CAWright@infosec.pub 3 points 1 month ago (1 children)

What's the opposite of addictive? Because that's what Microsoft is.

[–] CAWright@infosec.pub 3 points 1 month ago

I was required by Federation law to post it.

[–] CAWright@infosec.pub 8 points 1 month ago (3 children)

There are five.

[–] CAWright@infosec.pub -2 points 3 months ago

These succeed because we don't hold people accountable for being stupid. We live in a world that allows, even encourages, willful stupidity. These attacks aren't particularly well crafted. They are just mindlessly executed by willfully ignorant users. The answer is not more tech or more training, it's more accountability for the yokels pretending that it's okay to be stupid and pinball through life. A few brain cells of critical thinking would prevent most of these.

[–] CAWright@infosec.pub 2 points 5 months ago (1 children)

It screams as in a sports car flying past you, not as in someone being stabbed to death. :)

[–] CAWright@infosec.pub 1 points 5 months ago (3 children)

I'm running CachyOS KDE on my Surface Pro 6. Cachy screams on it. If you don't need the touch screen, you don't need the linux-surface kernel and can get all the benefit out of hte Cachy kernel.

[–] CAWright@infosec.pub 5 points 6 months ago
 

I shouldn't be surprised.

 

This is my one deal killer for Linux on the Desktop. I have a stack of laptops with Linux installed (mostly Fedora). They are all Dell Latitudes. My main two are a Gen 12 i7 and a Gen 8 i5. I'd rather use the Gen 12 i7 (it also has more RAM and storage). However, the i7 doesn't have S2 sleep, only S0ix. When I shut the lid, it will lose about 40%-50% battery over an 8 hour period. The Gen 8 i5 does have S2 and sleeps okay with it. I only get a 10% drop in battery over the same period.

I hear that this is some Microsoft-Dell shenanigans to "better" support Win10/11. But is there a lightweight 14" or 15" laptop out there that will run Linux well and sleep without draining the battery so much? Would and AMD system work better than Intel?

I see all the complaints about sleep but there has to be something better than 40%-50% drop on the nightly that would require me to keep it on power just to have a fresh laptop when I need it.

6
submitted 1 year ago* (last edited 1 year ago) by CAWright@infosec.pub to c/blueteam@infosec.pub
 

I need some help here. I'm looking for vulnerability management software that accepts data from vulnerability scanners (Tenable.io and Nessus in my case) and allows for analysts to review the scanned vulnerabilities for further action. This will mostly be in creating tickets, but I want analysts to be able to group vulns together where appropriate (e.g., one system has a ton of vulns because it's obviously been left out of an automated patching program, the solution is not to patch each vulnerability but to include it in the automation) and create tickets appropriately. It also need to support simple Risk Acceptance workflows (no giant approval chains, but likely more just analysts grouping and marking sets of vulns as RA). Finally, it needs to be multi-tenant or at least have some siloing capabilities.

We are currently using Tenable.io for on-going vulnerability scanning in some smaller clients, but the vulnerability management functionality is severely lacking. I've looked at Nucleus, but it looks to be far too much for what we need. They also have a 5000 seat minimum and come out to around $10/asset, which is above our price range.

I don't want to replace Tenable as I trust it for quality of scanning, but I'd potentially switch to Rapid7 or Qualys if that worked with another vuln mgmt tool better.

Thoughts?

view more: next ›