• 0 Posts
  • 76 Comments
Joined 2 years ago
cake
Cake day: March 2nd, 2024

help-circle
  • They’ll have lost the source code for all the enterprise plugins (SAP, Salesforce, etc etc) they have, all the infrastructure as code and provisioning code to run their software in Grafana Cloud, all their closed source code for apps like IRM that were never open source, and probably a load of expensive source code they acquired through partnerships with companies like warpstream.

    So yeah probably a six or seven figure loss. In particular the IaC means the attackers can spend tokens to find possible cloud vulnerabilities that will allow them to attack the cloud product, maybe even steal customer data.




  • yeah the chip on the card itself is not the component that will make the connection with the payment terminal. luckily for you, you don’t have to have the antenna be that same shape, it can fit into different shapes and still be effective, like the tip of a magic wand. or even a ring. try it with low value cards first and don’t break the antenna. good luck!












  • they’re all attack attempts. set up fail2ban, enforce ssh key-based authentication, run it in a non standard port and create firewall allow lists for trusted users, networks or countries if you can. make sure everything is patched frequently.

    expect consequences for running onion hidden services - captchas and denied service for that IP address, but also attacks against the hidden service itself.


  • Tuya devices are super cheap, often sold as massive loss leaders and frequently rebadged as other brands (MOES comes to mind, as well as lots of “iThing” type brands)

    It is not surprising at all that lots of folks eschew the mobile app and use HA to control them. Also the Local Tuya integration is difficult to use and often doesn’t work at all.




  • I bought an LG commercial display, which was roughly double the cost of an equivalent LG TV.

    It’s awesome, it has 2x HDMI inputs and no smart features at all. It is supposed to go in video walls (big arrays of tiled TVs) so don’t need all that AI stuff.

    Control is via RS232, so I soldered a connector onto an ESP-32 and installed ESPHome on it to control power, volume and screen.

    A soundbar isn’t quite right for me, but again I would recommend something with RS232 and use an ESP-32 (if you like hacking) or a commercial rs232 to ethernet adapter (like this) if you don’t.