• 0 Posts
  • 70 Comments
Joined 2 years ago
cake
Cake day: July 6th, 2023

help-circle




  • Pretty much all languages are middleware, and most of the original code was shell/bash. All new employees in platform/devops want to immediately push their preferred language, they want java and rust environments. It’s a pretty safe bet if they insist on using a specific language; then they don’t know how awk or sed. Bash has all the tools you need, but good developers understand you write libraries for functionality that’s missing. Modern languages like Python have been widely adopted and has a friendlier onboarding and will save you time though.

    Saw this guy’s post in another thread, he’s strawmanning because of lack of knowledge.


    • VLC media player is the gold standard
    • Open broadcasting software / stream labs for broadcasting and studio management
    • Ffmpeg for video editing
    • Yt-dlp for downloading video
    • audacity MP3 editing
    • Plex / jellyfin / Stashapp for media server
    • Pixlr for cloud photo editing
    • Yarn / chocolatey / Asdf / node / poetry - package management
    • Flaresolver, pihole, home automation, nginx
    • Qbit-*arr for file sharing
    • Massgrave for windows activation
    • Filezilla for ftp (upgrade hosting)
    • Depending on bullshit level: discord, Google workspace offers custom domain Google accounts
    • Anything past that I write for myself or find a project with a dockerfile



  • Mostly customer provided certs, high end clients make all kinds of stupid requests like the aforementioned man-in-the-middle chain sniffers, clients that refuse DNS validation, clients that require alternate domains to be updated regularly. Management is fine for mywebsite.com, but how are you solving an EV on the spoofed root prod domain, with an sso cert chain for lower environments on internal traffic that is originally provided by a client? And do you want the cs reps emailing each other your root cert and (mistakingly) the key? I’ve been given since SCARY keys by clueless support engineers. I don’t want to do this every 3 months.


  • As someone who creates custom domain name applications, FUCK THEM WITH A PINEAPPLE SPIKY SIDE FIRST. This problem is on par with timezones for needless complexity and communication disasters. Companys and advertisers are now adding man in the middle certs for additional data collection/visibility. If the ciphers not cracked, changing the certs exposes significantly more failure, than letting one get a little stale.
    Sysadmin used slam! It’s super effective!



  • Hailey “Hawk Tuah” Welch is an influencer that gained a lot of popularity from her nickname (the sound of spitting, with HEAVY implications of performing fellacio). She used her platform to voice a very reasonable and intelligent opinion, which surprised a lot of people because her nickname is essentially blowjob queen.

    One of her opinions is that it’s important to spread cyber security and used her fame to try to educate the public (potentially a fake story from the image? Idk this drama). And some xit-head claiming to be a cyber security expert ate the onion and offered some shitty advice. Proton fact checked them, because there are a ton of fake news stories about her right now.


  • You can prevent downtime by mirroring your container repository and keeping a cold stack in a different cloud service. We wrote an loe, decided the extra maintenance wasn’t worth the effort to plan for provider failures. But then providers only sign contracts if you are in their cloud and you end up doing it anyways.

    Unfortunately most victims aren’t using best practices let alone industry standards. The author definitely learned the wrong lesson though.





  • I have yet to hear about bitwarden getting pwned

    Honestly this is the part that scares me the most. Well maybe it’s the fact we have multiple plausible scenarios… What happens when you get locked out of bitwarden? I imagine the 256 randomized salted hash passwords will be hard to call, some companies will likely be able to restore your password via phone support. During that time, informed attackers will potentially have the master keys to your entire life. Fighting ai chatbots trying to recall security questions. During that time your phone and Internet service could be shut off, secondary emails changed and validated, money transferred out of bank accounts, stocks and crypto sold. Crowdstrike was a valuable security company.



  • My rhcsa expired and I only have experience beyond that. Your task right now is to find a job and the easiest way to do that is to leverage your network. If you don’t have a network, you need to prove that you can commit to a long term plan and learn a skill. Most people do that with degrees. Unfortunately a lot of people have degrees and technology is getting more competitive. That’s where you see school competitions and certifications. If you don’t want to do that, you’ll need to be able to speak competently to the role.

    Unfortunately right now I do not recommend platform/devops/sre for anyone breaking into the field. If I create an application today, it’s server less or bring your own dockerfile on a provided machine image. So what are you administrating? Legacy shops will be around for decades, but the future here is layered architecture not os tasks.


  • Wouldn’t the object need to be something of deep importance to the individual or be a poetic representation? I always assumed the volleyball was a symbol of everything he left behind. Things like recreation no longer mattered; only survival. :shrug: but I also thought the movie sounded incredibly boring. If you want a random item, go for qualities like “awkward to carry” or “gets hot when left in the sun”. Give your characters personality or force them to choose that object at a moment it’s inconvenient.

    • An oversized diamond/ faberge egg - it’s valuable, heavy or fragile and inconvenient, in a critical moment your character may need to smash it against something risking damage
    • Teddy Roxbury/furby - favorite toy growing up? Creepy voice at stalking moments? Mid point twist when the batteries die?
    • Harmonica - potentially a little Disney princess forest friend vibes
    • Bowling ball - Wilson prolly plays a little different when it’s not feasible to take him on a raft, prevents you from climbing trees and burns precious calories transporting. Mobility is now a plot point. Decent weapon tho
    • Toilet plunger/brush - everyday object that can be utilized differently, maybe adds that little bit extra reach to save the day?