#nextnews:

29ct Premium-Laden, #VW- #IDs mit #Steckdose, Aufladen in 5min, #Mazda- #Gate, Abzocke im #D_Netz

Stabile #EAuto- #Zulassungen im Februar, neue Zahlen zum Fahrzeugbestand und ein möglicher Technologiesprung bei Batterien: In den aktuellen nextnews geht es außerdem um die neue elektrische Mercedes V-Klasse, zahlreiche neue Funktionen für VWs ID-Modelle und Probleme mit der LFP-Batterie im Mazda 6e...

#nextmove
@nextmovevideos

https://m.youtube.com/watch?v=4GdDspMENXA

nextnews: 29ct Premium-Laden, VW-IDs mit Steckdose, Aufladen in 5min, Mazda-Gate, Abzocke im D-Netz

YouTube

Investigation scenario:
We just received three notifications with alerts from #Suricata #IDS

1) GPL SMTP vrfy root, from unknown IP to our mailserver

Shortly after that, two more alerts appeared:

2) ET HUNTING SUSPICIOUS Dotted Quad Host MZ Response; from the same unknown IP to Windows computer in our network
3) ET MALWARE Possible Metasploit Payload Common Construct Bind_API, again from the same unknown IP to the same Windows computer

What happened?
What to do? How to analyze network traffic and investigate those alerts?

We do not have any EDR or XDR installed on that Windows computer. Right now,we have only Suricata eve.json logs ingested to the #OpenObserve #SIEM

If you would like to see more, you are welcome to attend my @suricata webinar on March 11.
Register here: https://us02web.zoom.us/webinar/register/WN_I6BNbCU2SNG2fAOEiotPiQ

Hey Security folks - tell me about your rules and detections for OpenClaw - IDS, SIEM, other!

#OpenClaw #IDS

@da_667 i may have to break into the mountains and drink a cold one

make a paid version of suri with ndpi for opnsense - plus upsells - their licensing is good , somebody may already do this? either way good idea#hashcat #ntop products #ids #opnsense

#you can't run away from your problems #you can run away from your problems

Rulezet (The detection rule management) v1.4.0 released — Taxonomy, Precision, and Advanced Discovery

Version 1.4.0 is a milestone update that transforms how intelligence is categorized and retrieved within Rulezet. By placing Tags and Taxonomies at the heart of the ecosystem, this release empowers users with granular control over their data. From private custom tagging to a revolutionary filtering engine, v1.4.0 ensures that finding the right rule is no longer a search—it’s a precision operation.

On the administrative side, we’ve introduced robust tools for visibility control and system resilience, including a new backup architecture and CVE sanitization to maintain data integrity across the platform.

🔗 Online version https://rulezet.org/
  Release notes https://github.com/ngsoti/rulezet-core/releases/tag/v1.4.0
🔗 Source code https://github.com/ngsoti/rulezet-core

#nids #ids #opensource #opendata #cybersecurity #detection #soc

@circl

Indiana quietly bans trans residents from changing gender markers on IDs

https://fed.brid.gy/r/https://www.advocate.com/politics/indiana-gender-marker-change-ban

I am told #proxmox is fab & it is ... but does it make sense to run #nixos #virtualmachines on proxmox: one for each task e.g. #ids #Jellyfin #peertube ? Or is it best to put all one's eggs into 1 single #cpu #ram #storage basket in one bare metal server that does it all? Or what of a #minipc #nixos farm instead? Does that spread risk of downtime due to machine breakdown issues or is maintenance too hard? Any experiments or experiences to report ? Thanks. #homelab #PVE #lxe @homelab
Just months after a data #breach where #hackers got access to some of their stored government-issued #IDs, this seems like a brilliant idea by #Discord.

Putting a good chunk of recent technical knowledge exclusively on their platform has always been a mistake.

https://discord.com/press-releases/discord-launches-teen-by-default-settings-globally
Discord Launches Teen-by-Default Settings Globally

Discord is announcing enhanced teen safety features rolling out globally that reinforce its long-standing commitment to creating a safer and more inclusive experience for users over the age of 13.

palestine.pixel

「彼がイスラエル人だから、この件は表に出なかったんだ」
ラスベガスに秘密のバイオ研究所を所有するイスラエル人、オリ・ソロモンは、当局が#HIV、結核、マラリアを含む1,000点以上の致死性#ウイルスサンプルを発見した後、釈放された。彼は移動を容易にするため、#フランスパスポートと複数の偽造#身分証明書も所持していた。
“You didn’t hear about it because he’s Israeli.”
Ori Solomon, the #Israeli owner of a secret bio lab in Las Vegas, was released after authorities discovered over 1,000 samples of deadly #viruses , including #HIV, tuberculosis, and malaria. He also held a #French passport and multiple fake #IDs to facilitate his movements.

How to Stop Using LIKE for IDs

LIKE on numeric IDs forces scans.

#mysql #like #ids #performance #howto #query

https://www.youtube.com/watch?v=VxrZCnuN5K0

How to Stop Using LIKE for IDs #like

YouTube