Sysadministrivia

8K posts

Sysadministrivia banner
Sysadministrivia

Sysadministrivia

@SysAdm_Podcast

Apparently twitter does not let you include the word admin in your handle. Go figure. https://t.co/NmOsH0lUoW most tweets by @brentsaner

USA 가입일 Şubat 2015
1.2K 팔로잉934 팔로워
고정된 트윗
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
you're welcome.
Sysadministrivia tweet mediaSysadministrivia tweet mediaSysadministrivia tweet media
English
2
1
4
0
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
stop fucking writing shit in java
English
0
1
1
55
Simone Margaritelli
Simone Margaritelli@evilsocket·
TIL you can enumerate valid email addresses for any G Suite domain with a simple HTTP request ... pretty neat!
Simone Margaritelli tweet media
English
71
556
5.3K
747.6K
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
@GeorgeOhWell10 @erlichya And ZIP (technically, DEFLATE) used only *parts* of LZ77 along with Huffman encoding. ZIP was entirely Katz and Conway, not LZ, and isn't itself spec'd to any compression whatsoever- just provides hooks/allowances for it.
English
1
0
3
439
Brandon Paddock
Brandon Paddock@BrandonLive·
I'm curious. Other than the fact that they've had known incidents... is there a basis for believing 1Password is more generally more secure than LastPass?
English
12
7
44
42.1K
Sysadministrivia 리트윗함
Kelly Vaughn
Kelly Vaughn@kvlly·
Stop using LastPass as your password manager. Move to any other one, and please change any passwords you have on there now.
English
193
445
2.7K
588.9K
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
@Paul__Walsh @evacide @kvakes Anything beyond is a fundamental misunderstanding of the right to privacy. The consumer/user has no direct and enforceable guarantee that the privacy of their real-life identity is respected *except for never requiring it in the first place*.
English
1
0
0
0
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
@Paul__Walsh @evacide @kvakes My entire argument is this API call, in mention, is now pointless. There is no purpose to verifying "identity" (as you've taken upon yourself to claim context) unless it's something tied *to servicing* that identity.
English
1
0
0
0
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
@Paul__Walsh @evacide @kvakes well, no- there *is* PII. a specific *value* be ephemeral, but it's still required. further, tokenizing to a specific entity is, itself, still PII. Personal - yep, entity is an individual, a person Identity -ah, yep, there is indeed a set of data and history tied to this entity
English
1
0
0
0
Paul Walsh
Paul Walsh@Paul__Walsh·
@SysAdm_Podcast @evacide @kvakes The use of real names doesn’t necessarily have to mean the collection of real names. For example, an entity could verify real names and then immediately delete them when a unique ID is created. Metadata could be restricted to behavior - zero PII. A possible use case!?!
English
1
0
0
0
Paul Walsh
Paul Walsh@Paul__Walsh·
@evacide @kvakes What are your thoughts on requiring the real identity of people for the purpose of reducing the risk of them doing harm (i.e. harassment/bullying) - ***assuming*** they can *always* remain anonymous to everyone inside that network. Happy to follow links to resources.
English
2
0
3
0
Slack
Slack@SlackHQ·
@brandonscript Ah, so like a timed "/mute for 1 hour"? We'll share the idea, thank you!
English
48
0
23
0
Sysadministrivia
Sysadministrivia@SysAdm_Podcast·
@chakkerz @gamozolabs from an actual hardening/security perspective, though, they're both good. either one is better than neither. :)
English
0
0
0
0