HN user

Nerada

308 karma
Posts0
Comments90
View on HN
No posts found.

"Employee surveillance" sounds a lot more nefarious than the reality of these systems for most organizations.

Your network admin has had access to the proxy, and by extension, all your browsing history since forever. Now, your UEBA does that, but mainly just sits there and flags things like a user normally hitting a single host to suddenly hitting 300 hosts on the network, or a user having an average data upload of 500MB/week to 200GB in a single session.

Very few people care if you're using the corporate network to listen to YouTube Music (or even looking for other jobs), most just want to be notified of data exfiltration, compromised accounts, or malicious network activity.

I stopped buying anything Samsung for essentially the same reason. I was overseas and my S7 switched off and wouldn't turn back on. I walked into the flagship store and was immediately turned away because I didn't purchase it in that country.

DDR5 comes with on-die ECC. My understanding is this only checks errors occuring within the RAM itself, not errors that occur during transmission to and from RAM.

My question is, how common are transmission errors over errors happening within RAM?

Essentially you hook up all your log sources to a User and Entity Behaviour Analytics (UEBA) platform, it comes up with a model of "normal" behaviour, and flags users for investigation when they start acting outside of those norms (or things you want to explicitly flag on).

No data egress for 6 months, then 20GBs of outbound traffic? Someone's getting notified to take a look and see what that was and where you sent it. You only authenticate against one host on the network, and suddenly you're hitting thousands of hosts? Someone's getting notified to investigate, &c.

Tangentially related, I had GPT-4 plan the sightseeing on my latest holiday.

It both picked out the interesting places of note, and then I asked it to plan them in such a way that made sense walking-wise (so I wasn't backtracking) and it did so without a hiccup.

IKWYD is impressive. Not the results. I'm behind CGNAT and it's claiming my IP is static when it's dynamic so I know none of these files, but the fact that it was able to get my local IP at all when I'm behind both a corporate VPN and being routed through a CASB (with SSL interception enabled and working) is impressive. I wonder how it's done that. Maybe something DNS-based?

First time I've seen my local IP in one of these, genuinely impressed.

I miss how every hobby had a forum running on phpBB, SimpleMachines, Invision, etc.

HN is great, but it's very point in time. If I find an interesting topic posted over a day ago, it's never getting new replies. It's a snapshot of the thoughts on that topic for that single day, nothing more.

I tunnel everything through an overseas server for the same reason, but it's waived away in the blog as "not gaining anything" and "shifting the trust from one ISP to another" - Well, yes. That's the point.

I'm in the same boat. My main objection to uBO is the cryptic UI. I have no idea what the two columns to the right of a domain are as there's no column headings, or the two nested buttons in each column, one of which is grey (where I'd assume there'd be green to counter the red?), or the "+"/"++" that sometimes appear over said buttons... Or the green bars that creep in from the far left over the domain names, at staggering lengths.

The uMatrix UI on the other hand was incredibly intuitive, and more granular. Then again, maybe that comes down to me not understanding what the hell is going on with uBO's UI.