Conversation
Notices
-
Embed this notice
I love reading security recommendations explanations aimed at utterly computer illiterate people. This naive approach at security based on recommendations that are usually either mostly inapplicable or at times even placebo never stops being funny.
image.png
image.png
- ✙ dcc :pedomustdie: :phear_slackware: likes this.
-
Embed this notice
They didn't use windows defender. Ngmi. 😏
-
Embed this notice
@phnt some of the hacker groups are among the smartest people in technology. They will have no problem getting in. This is what you do for your old mothers computer or grandma
-
Embed this notice
@phnt things you can do to not pay a guy to run a backup twice a week
-
Embed this notice
@phnt Lmoa.
-
Embed this notice
@BasedLunatic The weakest link in a company security is always a human. Why try to get into their infra from the outside, when some dumbass will open a zip file with a vbs script. AV won't save you against something custom anyway. At best it will figure out something isn't right after the infection.
>implement an awareness and training program
aka. The hackers are big scary program. Sure, your employees will know what a cybercriminal is, think he's probably wearing a hoodie all day sitting in front of a computer with the matrix scroll. But some retard will still click on a link even when told not do so, even if you set Exchange to mark external incoming emails with [EXTERNAL] in the subject and inject a warning into the body.
Bbbut, since implementing a training program, our phishing tests have gone down by 30% from 50%. Which literally means, half of your company will still get you infected, if something malicious lands in their inbox.
>consider disabling Ransomware Deployment Protocol
>change password regularly
aka. I'll add some number to the end of my password, because the IT retards keep wanting me to change it every 2 months.
-
Embed this notice
@phnt normalfaggots are the reason i have to 2fa twice a day because of session expiry
-
Embed this notice
@hakui
>open company laptop
>login in with password
>big popup shows up
>enter a 4 digit code from your Microsoft Authenticator app on your personal phone
>go away for 10 minutes
>repeat
Or the similar
Password: randomangel15
>password expired after 2 months, change password
>1randomangel15
>...
>15randomangel15
>...
>15randomangel15a
>...
-
Embed this notice
@Nudhul
>security update hold back: 2 days
>some random proprietary enterprise app or driver broke
>driver updates
What are those?
-
Embed this notice
@phnt >apply latest security updates
"windows troubleshooter could not detect the reason for your internet connection problem. would you like to search online for a solution?"
-
Embed this notice
@phnt my favorite is when it wants to search your computer for driver updates, like you'd just have the latest version laying around somewhere and not install it right away.
-
Embed this notice
@phnt these hacker groups know a great deal of psychology too
-
Embed this notice
@phnt oh i have 6 variations of the same password on repeat to get past the "cannot be the same as the last 5 passwords"