#FortiOS SSL-VPN critical #RCE #vulnerability already exploited in the wild. Patch available, upgrade to FortiOS version 7.2.3.
The advisory contains several #IOC, such as log messages, IP addresses and filesystem artifacts.
However, when you wondered how we can check presence of filesystem artifacts, there is no quick reference/howto in the advisory. After a while, I was able to find only this diagnose command to list up to 20 last modified files in the given path. You can try it.
# diagnose sys last-modified-files /data/lib 20
Does somebody know how to list all files in given path via CLI, please? Bonus point for macb timestamps 😉
https://www.fortiguard.com/psirt/FG-IR-22-398
CVE-2022-42475 @fortinet #FortiGate #ThreatIntel #threatintelligence #sysadmin #network #firewall
Tonight I recreated the #Commodore logo from the original design specifications by Chris Yaneff from 1965! It was made for the #PenPlotter #RetroComputing #VintageComputing
Unfortunately a week and a half ago I was laid off by Netlify.
If you or someone you know is looking for an SRE with a strong background in Ansible, Terraform, and Node.js, let’s chat!
You can reach me here or on linkedin ( https://www.linkedin.com/in/gmattbond/ )
RT @mollycrabapple@twitter.com
Two things to remember when an AI pusher calls you a Luddite
1-The Luddites were a movement by skilled textile workers that smashed machines as a protest tactic to get better labor conditions from exploitive factories
2-The Luddites failed because the bosses had them killed
🐦🔗: https://twitter.com/mollycrabapple/status/1602299750367232000
I'm going to give a free online talk for the DevOps Columbia virtual meetup, January 19th. It's called DevSecOps: More Than Just Pipelines. Anyone with Internet can go!
Fact of the day: You don't need to be a full-time programmer, to contribute to #LibreOffice! 锁琨珑 (Kevin Suo) is an accountant, and helps to fix bugs in his spare time: https://blog.documentfoundation.org/blog/2022/12/12/community-member-monday-%e9%94%81%e7%90%a8%e7%8f%91-kevin-suo/
What happens to your smartphone when it gets stolen?
I recently had my iPhone stolen while on a business trip in London and, through the wonders of Find My, have been able to track its journey in the past few weeks. I found it to be a fascinating insight to what appears to be a rather sophisticated phone theft operation and thought I'd share!
Even if he hadn’t written three of the most-loved #DoctorWho stories, Chris Boucher would be a legend for just this line:
"You know, the very powerful and the very stupid have one thing in common. They don't alter their views to fit the facts. They alter the facts to fit their views, which can be uncomfortable if you happen to be one of the facts that needs altering."
RIP Chris 💙💙
So is the flag still there? Images of the #Apollo17 landing site from the Lunar Reconnaissance Orbiter Camera show that in 2011 the flag was still standing and casting a shadow! @NASAMoon
Check it out: http://lroc.sese.asu.edu/posts/379#extended
#NASAhistory
"Google is a company that’s only made one-and-a-half successful products in its entire history. It made a search engine and a Hotmail clone, and everything else that it’s done that’s successful it bought from someone else. The only way it was able to build a good video service was by buying YouTube. This is why merger scrutiny is such a big deal."
— @pluralistic
at https://www.newyorker.com/culture/the-new-yorker-interview/cory-doctorow-wants-you-to-know-what-computers-can-and-cant-do
Cisco discloses high-severity IP phone zero-day with exploit code https://www.bleepingcomputer.com/news/security/cisco-discloses-high-severity-ip-phone-zero-day-with-exploit-code/
RANT, infosec telcos
Yesterday, not only did I learn that a family member has a freaking VOIP phone... in a fairly remote area... you know... where power outages are not exactly rare but...
Ok, so apparently they've had an internet outage for 10 days and all they get is the runaround from the provider.
10 DAYS!!! 😱
So I decide to use my google foo™ and see what I can find. I start with the provider's "Check for Outages" page.
I enter their address...
1/
It’s still remarkable to me that we let ourselves be conned into buying that THIS is what “freedom” looks like.
#cardependency #cities #cars #transportation
I’m so deeply on staycation I’ve forgotten what day it is. My plans include:
* Death Stranding
* Metroid Fusion - I’m stuck on the spider
* Elden Ring - I’m stuck on the Elden Beast
* 3D printing this Dark Saber
* Taking 6502 classes at Pikuma.com
* writing ActivityPub stuff in C#
* Gotham Knights
* Napping in the tub
* Retwisting my son’s locs
* looking for a PS5
* figuring out to how get my #C64 to ssh
* eating at Chipotle every day for lunch 🌮