GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Embed Notice

HTML Code

Corresponding Notice

  1. Embed this notice
    :debian: 𝚜𝚎𝚕𝚎𝚊 :opensuse: (selea@social.linux.pizza)'s status on Monday, 06-Jan-2025 07:53:24 JST:debian: 𝚜𝚎𝚕𝚎𝚊 :opensuse::debian: 𝚜𝚎𝚕𝚎𝚊 :opensuse:

    People have probably seen this before, and I have - but not to this extent.

    All certificates that are public, are actually "streamed" to public databases, that in line with regulation set by CA's, browsers and other vendors.

    What that means, is that if you issue (or buy) a certificate from a public CA - and you are only using it in an internal environment - people WILL know that you have a host with that particular CommonName somewhere.

    I've issued a couple of certificates today, and since I host my own Authoritive DNS-servers, I am able to fully trace the requests coming into my DNS-zone.
    Immediately after I've issued said certificates - I see many request arriving from all over the world, together with port-scans and all that shit.
    And if you dont have a A-record for that particular hostname - the portscans will go directly against @.
    All that from Cloud providers such as AWS, GCP, and shit.

    Fascinating.

    And if you want to check all the certificates that is issued - in real time, Check out "certstream"

    https://certstream.calidog.io/

    #linux #infosec #security #letsencrypt

    In conversationabout 5 months ago from social.linux.pizzapermalink

    Attachments

    1. No result found on File_thumbnail lookup.
      Certstream
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.